Personal Business Look closer How we work How we score Questions Security and trust Talk to us Sign in Book your audit
← Briefing archive
Protector Class desk · September 20, 2026

Weekly Breach Intelligence Briefing

Healthcare and education remain primary targets in North America, with ransomware and supply-chain compromises driving major incidents. Six verified breaches in the last 90–150 days exposed over 11 million records across healthcare, fintech, and education sectors.

Critical 275M (estimated) records May 1, 2026

Canvas Learning Platform Exposes Student Records Across 41% of North American Universities

Instructure Canvas

ShinyHunters ransomware group breached Canvas learning management system, stealing names, email addresses, ID numbers, and messages from students across North American institutions.

What it means: Education sector vulnerability exposed millions of minors and students to identity fraud and targeted social engineering.

Critical 1.8M records Feb 2, 2026

NYC Health and Hospitals Breach Affects 1.8 Million Patients via Third-Party Vendor Compromise

NYC Health + Hospitals

Unauthorized actor accessed NYC Health + Hospitals systems from November 2025 through February 2026 due to a third-party vendor security breach, exposing protected health information.

What it means: Healthcare provider liability increased; third-party dependency remains the weakest link in healthcare security posture.

Critical 2.8M records Jun 11, 2026

Baylor Genetics Ransomware Attack Exposes Critical Care Data for Newborns and Rare Disease Cases

Baylor Genetics

Unauthorized third party accessed Baylor Genetics network between June 11–17; breach included prenatal screening, hereditary cancer surveillance, and neonatal critical care genetic sequencing data.

What it means: Exposure of sensitive genetic and familial health data enables long-term health discrimination and family-wide targeting.

High 55.3M records Nov 2025

Suno AI Music Platform Exposes 55.3 Million User Accounts with Payment Records

Suno

Breach occurred in November 2025 but became public in July 2026; exposed 55.3 million email addresses, phone numbers, and tens of thousands of Stripe purchase records with payment card metadata.

What it means: Consumer payment patterns and contact data exposed to resale and credential-stuffing attacks.

High 70K records Apr 23, 2026

Canada Life Extortion Attack Compromises 70,000 Canadians in Major Financial Services Breach

Canada Life

ShinyHunters ransomware group breached Canada Life insurance and compromised personal information of approximately 70,000 people, primarily from one large corporate group plan, followed by pay-or-leak ransom threat.

What it means: Financial services customers face fraud risk; Canadian insurance sector targeted via extortion.

High 8TB data (proprietary schematics, designs, customer docs) records May 12, 2026

Foxconn North American Factory Network Compromised, 8TB Proprietary Design Data Stolen

Foxconn

Nitrogen ransomware group claimed it stole 8 terabytes of sensitive data from Foxconn North American factories, including manufacturing schematics, project details, and customer documents tied to major tech clients.

What it means: Industrial espionage and supply-chain compromise affect downstream technology manufacturers and customers.

← Earlier briefing Later briefing →