Week 27

SecureFact – July 6, 2026

Major cybersecurity incidents impacted healthcare, manufacturing, insurance, and automotive organizations, exposing sensitive customer and employee data across multiple industries.

Medtronic notifies customers impacted by ShinyHunters data breach

Medtronic, a major healthcare device manufacturer, disclosed a confirmed data breach affecting approximately 9 million customer records. The ShinyHunters extortion group claimed responsibility for the attack, which occurred between April 13-19, 2026. The compromised data includes full names, contact information, dates of birth, Social Security numbers, and health-related information. The threat actors initially listed Medtronic on their dark web extortion portal on April 18, demanding ransom by April 21. However, the entry was removed later that month, and Medtronic confirmed the stolen data was not exposed online. The company is providing affected customers with 24-month credit monitoring and identity theft protection services. Medtronic emphasized that all medical devices remain safe and unaffected by the cybersecurity incident.

(Source: Read full report)

Kubota says hackers had month-long access to network systems

Kubota North America Corporation disclosed a confirmed data breach where hackers maintained access to corporate IT systems for over a month between March 16 and April 20, 2026. The unauthorized access exposed sensitive employee and dependent personal information including full names, Social Security numbers, dates of birth, taxpayer IDs, driver’s license or government ID numbers, direct deposit bank account information, corporate payment card information, and benefits enrollment and claims data. The exact data types exposed varied per individual. Kubota began sending personalized notifications via email on June 30, informing each affected individual about their specific exposure. The company is providing Kroll identity protection services to help victims mitigate risks. Kubota advised recipients to monitor healthcare-related statements and bank accounts, and to immediately report suspicious activity to authorities. The company implemented additional security measures to prevent similar incidents. At the time of disclosure, no data extortion groups or ransomware gangs had claimed responsibility for the attack, and no operational or business disruptions were reported.

(Source: Read full report)

Insurance giant Aflac discloses data breach after subsidiary hack

American insurance giant Aflac disclosed a confirmed data breach affecting its Japan subsidiary, compromising personal and bank account information of 4.38 million customers. Threat actors gained unauthorized access to Aflac Japan’s systems between June 15-25, 2026, which was discovered on June 25. Upon identifying the breach, Aflac Japan promptly suspended certain systems to contain the incident and prevent further intrusion while continuing to serve policyholders. The compromised data includes policy and coverage details, personal information, and bank account information. Aflac Japan notified the Japan Financial Services Agency and other relevant authorities, and intends to provide appropriate notifications to affected individuals. The company confirmed that U.S. business systems were not accessed by the unauthorized third party. The full scope and ultimate impact remain under investigation. This is Aflac’s second major breach in recent years; one year prior, the company disclosed another breach amid attacks targeting insurance companies, with signs pointing to Scattered Spider involvement.

(Source: Read full report)

Nissan discloses employee data breach linked to Oracle zero-day attacks

Nissan disclosed a confirmed data breach affecting current and former employees after threat actors exploited an Oracle PeopleSoft zero-day vulnerability (CVE-2026-35273) in data theft attacks linked to the ShinyHunters extortion group. Nissan Americas uses Oracle PeopleSoft software to manage employee information including payroll, tax administration, and personnel records. The breach impacts employees in the United States, Canada, Mexico, and Brazil. Compromised data may include employee contact information, banking information, Social Security numbers, Social Insurance Numbers, National Identification Numbers, financial and tax information, and dependent and beneficiary information. Nissan activated incident response procedures, engaged external cybersecurity experts, secured affected systems, and is working with Oracle to address the issue. The company is offering free credit and dark web monitoring services to affected individuals where available. As a precaution, Nissan restricted access to employee pay slips and direct deposit changes to company network computers or secured VPN connections while implementing additional identity verification measures. The attack is part of a broader campaign where ShinyHunters exploited the PeopleSoft zero-day against over 300 instances across 100 organizations between May 27 and June 9.

(Source: Read full report)

Stay updated with SecureFact™

Get weekly cybersecurity insights delivered to your feed.

Subscribe