United Kingdom

Country

AstraZeneca Data For Sale after Attack

March 20, 2026

An AstraZeneca data breach linked to the LAPSUS$ threat group just appeared on a Dark Web post and it is showing a new type of ransomware attack, a threat research group said.
Based on the materials reviewed, the claim goes beyond a routine leak post and suggests possible exposure of internal code repositories, access-related data, cloud and infrastructure references, and employee-linked records, according to a report with cybersecurity threat intelligence provider, SOCRadar.
A breach involving AstraZeneca ended up advertised on a Dark Web forum and also appeared on a data leak site associated with LAPSUS$. The listing claims the attackers obtained a large archive containing internal data, including source code, infrastructure-related material, and access-linked information.

read more

Evergreen Printing Cyber Incident Causing Operational and Fulfillment Disruption

December 19, 2025

Evergreen Printing suffered a ransomware attack that disrupted its operations. In particular newspaper printing, subscriber fulfillment systems, and mailing operations were impacted. Affected customers were forced to rebuild mailing lists and deal with delays in press operations. The company activated its incident response plan and engaged outside experts to investigate and remediate the attack. Besides The Retrospect, no other Evergreen Printing customers have been publicly named.

read more

Ransomware Strikes Peter Green Chilled, Threatening Supply Chain

May 14, 2025

Peter Green Chilled, a UK food logistics and cold‑chain distributor, was hit by a ransomware cyberattack. The incident disrupted the company’s ability to process new orders and forced it to warn customers of the breach. The company acknowledged that order processing had been paused, though it maintained that transport operations continued during the disruption. The attack had immediate supply‑chain consequences: suppliers reported stock sitting idle in warehouses and at ports, risking spoilage and financial loss if products could not be delivered to retailers in time.

No ransomware group has publicly claimed responsibility.

read more

Ransomware Attack at London Literary Agency

February 7, 2025

The Agency, a London-based literary and talent agency, disclosed a ransomware attack. The incident caused significant disruption to its IT systems. The Agency informed clients that personal and internal data may have been accessed or copied during the breach, reported the incident to the UK Information Commissioner’s Office. No public confirmation that any stolen data was released by the hackers responsible for the attack.

read more

Ransomware Disrupts Collins Aerospace Systems, Causing Major Flight Delays Across Europe

September 19, 2025

A cyberattack disrupted the MUSE (Multi‑User System Environment) check‑in, boarding and baggage handling software operated by Collins Aerospace — a major aviation systems provider and aerospace subsidiary of RTX Corporation. This incident impacted multiple large airports across Europe. Systems affected were automated electronic check‑in desks; boarding pass printing and baggage drop systems; shared passenger processing kiosks.

London Heathrow Airport (UK) reported long delays and manual operations. Brussels Airport (Belgium) reported cancellations and many delayed flights some days saw airlines cancel ~50 % of scheduled departures. Berlin Brandenburg Airport (Germany) experienced check‑in and boarding disruptions, long wait times. Dublin and Cork Airports (Ireland) experienced moderate to minor impacts on check‑in and boarding. Other European airports with MUSE dependency also reported delays.

read more

British COLT Telecom hit by WarLock Ransomware

August 12, 2025

UK-based telecommunications company Colt Technology Services suffered a cyberattack, The attack caused a multi-day outage of some of the company’s operations, including hosting and porting services, Colt Online, and Voice API platforms. The company stated the impacted systems are support services, not the core customer network infrastructure. Warlock is said to be behind the attack. The group has not leaked even a snippet of the data it stole online. Instead it opted to try and sell the data privately via auction

The recovery might not be completed until late November 2025. If Colt’s estimated return-to-normal timeframe is accurate, the time spent tackling the disruption would amount to more than three and a half months.

read more

Multi-regional Cyberattack at Luxury Fashion Brand Louis Vuitton

July 2, 2025

Louis Vuitton was the victim of a multi-region cyberattack in July 2025. The attack impacted customers in the UK, South Korea, Turkey, and Portugal. The unauthorized party accessed data such as names, contact information, and purchase history. No financial or payment data was compromised. Louis Vuitton notified affected customers and relevant authorities, including the UK’s Information Commissioner’s Office (ICO) and the CNIL in Europe. The company is investigating the incident while strengthening its security systems.

read more

Jaguar Land Rover Shuts Down Retail and Production Sites across the World

August 31, 2025

“Our retail and production activities have been severely disrupted,” said a statement Tuesday from Jaguar Land Rover (JRL) after the luxury auto vehicle maker suffered a cyberattack. Over a week later JLR announced it will extend the production shutdown for another week, until September 24, following a devastating cyberattack that impacted its systems worldwide at the end of August. JLR also confirmed that the attackers stole “some data” during the breach and instructed staff not to report to work. The disruption has spread throughout its supply chain, threatening thousands of jobs.

On October 7, Bloomberg reports that the UK government has agreed to guarantee a $2 billion emergency loan to help JLR pay its suppliers.

read more

Salesforce Hack at CCCEP, largest Coca-Cola Bottler

May 22, 2025

Salesforce database at Coca-Cola Europacific Partners (CCEP) was reportedly compromised by the hacking group Gehenna. Data was posted on the web. The Coca-Cola Europacific Partners Salesforce database contained 64 gigabytes of data, including “Salesforce accounts, Salesforce cases, Salesforce contacts and Salesforce products.”

As of now, the incident has not been acknowledged by Coca-Cola or CCEP.

read more

Global Car Rental Giant Hertz Notifies Customers Data Breach

October 15, 2024

Car rental giant Hertz notified its customers of a data breach. The rental company said the breach relates to a cyberattack on one of its vendors between October 2024 and December 2024.

The stolen data varies by region, but largely includes Hertz customer names, dates of birth, contact information, driver’s licenses, payment card information, and workers’ compensation claims. Hertz said a smaller number of customers had their Social Security numbers taken in the breach, along with other government-issued identification numbers.

Notices on Hertz’s websites disclosed the breach to customers in Australia, Canada, the European Union, New Zealand, and the United Kingdom. Hertz also disclosed the breach with several U.S. states, including California, Maine, and Texas. Emily Spencer, a spokesperson for Hertz, would not provide TechCrunch with a specific number of individuals affected by the breach but said it would be “inaccurate to say millions” of customers are affected.

read more