logo

1,000 Data Breaches Later, the Disclosure Lag is Worse Than Ever

ID: 9cecb485-906b-5d6e-b3cf-942533988ff1

STIX ID: report--9cecb485-906b-5d6e-b3cf-942533988ff1

Feed Name: Troy Hunt – Security Blog

Threat Score
65/100

Date Published: 2026-06-01

Date Updated: 2026-06-01

Author: Troy Hunt

...
...

The author reflects on reaching 1,000 breaches in the Have I Been Pwned database and criticizes the growing delays in public breach disclosure, using recent breaches (Carnival, DentaQuest, ZenBusiness, Charter) and the activities of groups like ShinyHunters as examples; the piece argues that legal incentives, class-action concerns, and regulatory carve-outs enable organisations to delay or avoid notifying affected individuals, increasing harm from widespread PII exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.