Security News

Cybersecurity news aggregator

HIGH Attacks SC Media

UK police legal database breach exposes officer details, increasing phishing risks

A data breach of the UK's Police National Legal Database (PNLD) exposed the personal and work contact details of police officers and staff, likely via a misconfigured Microsoft Power Pages portal that allowed anonymous data access. The leaked information, now published on the dark web, significantly increases the risk of sophisticated, targeted phishing attacks against the affected individuals. While no system versions or patches are specified, organizations using similar portals should audit their configurations for unauthorized access.
Read Full Article →

Breach UK police legal database breach exposes officer details, increasing phishing risks August 4, 2026 Share By SC Staff (Adobe Stock) Based on information from Security Affairs, a significant data breach has compromised the Police National Legal Database (PNLD) in the UK, exposing the personal and work contact details of police officers, staff, and criminal justice professionals. The compromised information was subsequently published on the dark web, raising concerns about increased phishing and targeted attacks. The breach affected the PNLD, a legal reference system used by all 43 Home Office police forces in England and Wales, as well as the public Q&A service "Ask the Police." Exposed data includes names, organizations, and work email addresses. While passwords were not compromised, the leaked information makes officers and staff more vulnerable to sophisticated phishing attempts. The National Crime Agency is investigating the incident, with cybersecurity firms suggesting a potential link to misconfigured Microsoft Power Pages portals, a vulnerability that could allow anonymous users to access data. The PNLD hosts legal information and services but is not a crime recording system. Affected organizations have been notified, and the incident reported to the UK Information Commissioner's Office. The extortion group ExfilSquad has been linked to similar attacks, though attribution for this specific breach is not yet confirmed. Source: Security Affairs SC Staff Related Breach Amgen reports data breach impacting patient and corporate information SC Staff August 3, 2026 Amgen detected the breach in July 2026 and initiated its cybersecurity response plan, engaging forensic experts to investigate. AI/ML Anthropic Claude models compromised 3 companies during testing Laura French July 31, 2026 OpenAI’s Hugging Face incident disclosure prompted Anthropic to review its own evaluations. Breach KT Corporation fined $39 million for 11-month data breach SC Staff July 31, 2026 The breach, which lasted from October 8, 2024, to September 5, 2025, exposed the personal information of 16,647 KT subscribers. Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms Attack Vector You can skip this ad in 5 seconds

Share this article