Affected Technology

Data Leakage incidents

Data exposure and leakage incidents

Matching incidents

7

Technology type

Topic

Low severity STABLE

FlexPLM Remote Code Execution Vulnerability

A critical vulnerability, CVE-2025-12420 (CVSS 9.3), was patched in ServiceNow's AI platform, allowing unauthenticated user impersonation and unauthorized actions. Furthermore, researchers identified that default configurations in Now Assist AI Agents could facilitate "second-order prompt injection" attacks, enabling low-privileged users to exploit inter-agent communication for data access and privilege escalation.

PTCFlexPLMPTC WindchillWindchill PDMLinkAI AgentsData Leakage
Low severity STABLE

Data Breaches Hit 471M Victims: 2026 Report Breakdown - tech

The Identity Theft Resource Center reported 471.2 million data breach victims in H1 2026, a 58% increase over 2025, driven by surging malicious insiders and AI-scaled phishing attacks. This escalation is facilitated by exploits like the ShieldBreak Microsoft Defender zero-day (CVE-2026-69414) and supply-chain compromises, exemplified by the Trezor customer data exposure via ShipMonk.

MicrosoftMicrosoft DefenderShipMonkTrezor customer dataData LeakageRemote Code Execution
1 source: tech-insider.org Updated 23d ago

Back to intelligence feed