Software

Industry

Cyberattack at Software Developer Advantive

April 10, 2026

Tampa, Florida-based software developer for manufacturers, Advantive LLC, suffered a data breach in April where personally identifiable information ended up stolen in the hack.
The data breach occurred between April 10 and April 11, affecting 4,977 people. During this period, attackers gained unauthorized access to sensitive information, including the names of individuals and their financial information, such as account numbers and credit or debit card details.
Advantive disclosed a data security incident involving unauthorized access to certain business files.

read more

Cyberattack at Software Developer Flash Charm

August 23, 2025

Austin, Texas-based B2B software developer, Flash Charm, Inc., which does business as Idera, suffered a cyberattack in August and is now letting victims know their personally identifiable information ended up stolen in the hack.
“On October 31, 2025, we detected that an unauthorized party gained access to a third-party file-hosting system,” the company said in a letter to victims. “The access ended up confined to this third-party file-hosting system and did not extend to any of our products or other systems.”
As a result of the August 23 attack, the company took immediate containment steps, notified federal law enforcement, and worked with leading forensics teams to investigate the matter.

read more

Cyberattack At Safety Software Firm, Kokomo Solutions

December 1, 2024

Northbrook, Illinois-based Kokomo Solutions, Inc which does business as Kokomo24/7 suffered a cyberattack in December and is now informing victims what happened during the hack.
Kokomo Solutions is a computer software company that develops health, safety and wellness management platforms for organizations, schools and communities. Among the organizations it works with is Los Angeles Unified School District.
“Unfortunately, we are writing to advise you of a recent incident that may have involved some of your personal information,” Kokomo said in a letter to victims of the attack. “We are writing to advise you of the incident and to provide you with guidance on steps you can take in response to this incident, should you feel it is appropriate to do so.”
“On December 11, 2024, we discovered unusual activity on our computer network,” the letter said. “Upon identifying the issue, we promptly took steps to contain and remediate the incident. We also engaged a forensic security firm to investigate the incident and confirm the security of our computer systems.”

read more

Blytheco Hit in Cyberattack

August 26, 2025

Irvine, California-based manufacturing sector software provider, Blytheco, Inc., suffered a cyberattack in August where personally identifiable information ended up stolen.
“On or about August 26, 2025, we detected a network security incident, in which an unauthorized third-party accessed our network environment,” the company said in a letter to victims of the attack. “We quickly engaged third-party forensic specialists to assist us with securing the network environment and investigating the extent of any unauthorized activity. Our investigation determined an unauthorized third party acquired certain individual personal information during this incident.”
In its investigation, Blytheco created a data file of potentially impacted individuals and finalized it November 7.

read more

Energy Software Provider, Enverus Holdings Suffers Cyber Incident

August 12, 2025

Energy industry software services provider, Austin, Texas-based Enverus Holdings, Inc. fell victim to a third party provider cybersecurity attack in August where personally indentifiable information ended up stolen from victims.
On August 27, Enverus discovered it was one of hundreds of companies affected by the Salesloft Drift Chatbot cybersecurity incident.
“Upon discovery, Enverus activated its incident response plan, promptly disconnected the integration, and engaged cybersecurity experts to help assess the impact to Enverus,” the company said in a letter to victims.
“The investigation determined that, on August 12, 2025, an unauthorized actor leveraged credentials stolen from Salesloft to access a small amount of information from Enverus’s Salesforce instance,” the letter said.

read more

Ingram Micro Cyberattack Triggers Multi-Day IT Outage and Major Revenue Losses

July 3, 2025

Ingram Micro, a global technology distributor and IT services company, suffered a cyberattack resulting in global outage and employees working from home. The attack knocked key IT systems offline — including ordering platforms like Xvantage and license management tools — which meant that customers and partners could not place, track or manage orders for IT products and services during the outage. The company restored many of the internal systems and platforms impacted by the attack within days and performed a company-wide password and Multi-Factor Authentication (MFA) reset to restore operations.

The SafePay ransomware gang threatened to leak 3.5TB of data on July 30, 2025.

read more

Cyberattack at IT Management Software Firm ConnectWise

August 15, 2024

IT management software firm ConnectWise says a suspected state-sponsored cyberattack breached its environment and impacted a limited number of ScreenConnect customers. “ConnectWise recently learned of suspicious activity within our environment that we believe was tied to a sophisticated nation state actor, which affected a very small number of ScreenConnect customers,” ConnectWise shared in a brief advisory.

ConnectWise did not answer BleepingComputer’s questions about how many customers were impacted, when the breach occurred, or whether any malicious activity was observed in customers’ ScreenConnect instances. However, a source told BleepingComputer that the breach occurred in August 2024.

read more

Outage at Mathworks, a leading US Simulation Software Co.

May 27, 2025

MathWorks, a leading developer of mathematical computing and simulation software, has revealed that a recent ransomware attack is behind an ongoing service outage. Online applications and internal systems became unavailable. Customers experienced issues preventing them from creating new accounts, while others who haven’t signed in since 11 October 2024 were not able to log in at all. No ransomware gang has claimed the breach, suggesting that MathWorks has either paid the ransom demanded by the attackers or is still negotiating.

read more

Massive Cyberattack Hits Salesforce Affecting 760 Companies

August 8, 2025

Extortion groups claim to have stolen over 1.5 billion Salesforce records from 760 companies. The breach led to unauthorized access to customer data stored within Salesforce instances integrated with the Salesloft Drift app. Customers who had integrated with the Salesloft Drift app and shared data with it were directly impacted.

The attacks were claimed by threat actors stating they are part of the ShinyHunters, Scattered Spider, and Lapsus$ extortion groups, now calling themselves “Scattered Lapsus$ Hunters.” Google tracks this activity as UNC6040 and UNC6395.

read more

Data Breach at Italian Mobility Services App Provider

April 5, 2025

Mooney Servizi/My Cicero was hit by a cyber attack on April 5. The company manages the digital systems of mobility companies in the main Italian cities. Personal data of users of Atm, Tuabruzzo and Unico Campania apps were compromised. The attack caused slowdowns and malfunctions. The compromised data included users’ names, contact information, and customer profile.

ATM requested a detailed report from Mooney Servizi, reinforced its security protocols for third-party access, and notified both the Italian Data Protection Authority and the National Cyber Security Agency.

read more