---
title: "Accenture Breach, AssuranceAmerica Exposed, Mount Royal – Cyber News | DuoCircle"
description: "Weekly cybersecurity roundup: Accenture breach, AssuranceAmerica leak, AI ransomware, Edge flaw, ShareFile alert, and key email security updates."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/cybersecurity-news-update-week-28-of-2026/"
---

Quick Answer

The top cybersecurity news this week includes Accenture's confirmed breach, AssuranceAmerica's customer data exposure, AI-driven ransomware, critical Microsoft Edge and U-Boot vulnerabilities, ShareFile security alerts, and growing threats to enterprise and email security.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fcybersecurity-news-update-week-28-of-2026%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Accenture%20Breach%2C%20AssuranceAmerica%20Exposed%2C%20Mount%20Royal%20%E2%80%93%20Cyber%20News&url=undefined%2Fblog%2Fcybersecurity-news-update-week-28-of-2026%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fcybersecurity-news-update-week-28-of-2026%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fcybersecurity-news-update-week-28-of-2026%2F&title=Accenture%20Breach%2C%20AssuranceAmerica%20Exposed%2C%20Mount%20Royal%20%E2%80%93%20Cyber%20News "Share on Reddit") [ ](mailto:?subject=Accenture%20Breach%2C%20AssuranceAmerica%20Exposed%2C%20Mount%20Royal%20%E2%80%93%20Cyber%20News&body=Check out this article: undefined%2Fblog%2Fcybersecurity-news-update-week-28-of-2026%2F "Share via Email") 

![cybersecurity news](https://media.mailhop.org/duocircle/spf-validator-6711-1783939777324.jpg) 

It’s been a heavy week for breach disclosures and AI-powered attacks. IT giant Accenture confirmed a [source-code theft](https://www.securityweek.com/accenture-confirms-data-breach-after-hacker-claims-source-code-theft/), an insurance provider leaked millions of driver’s license numbers, and security researchers documented what they’re calling the first **fully AI-agent-driven** ransomware operation. _Meanwhile, a wave of ransomware sentencings, a critical bootloader flaw, and a Progress Software emergency shutdown order rounded out a busy seven days_.

## Accenture confirms breach after hacker offers stolen data for sale!

A threat actor known as “888” posted on a cybercrime forum claiming to have breached the technology consulting company and stolen just over 35GB of source code in July 2026\. The stolen data reportedly includes source code, RSA keys, SSH keys, **Azure personal access** tokens, Azure Storage access keys, and configuration files, with a screenshot showing what appeared to be a cloned Azure DevOps repository tied to an accenture.com hostname. [Accenture confirmed](https://www.bleepingcomputer.com/news/security/accenture-confirms-breach-after-hacker-offers-stolen-data-for-sale/) the breach but hasn’t verified the full scope of what was taken.

## AssuranceAmerica breach exposes millions of driver’s license numbers!

AssuranceAmerica, a provider of car and rental insurance across more than a dozen US states, discovered unauthorized access to its **systems on March 17** and concluded that attackers stole names, contact information, and driver’s license numbers for almost 7 million customers. _The attackers also took information about customers’ auto insurance policies, drivers, vehicles, and claims details. TechCrunch called it the largest known breach of driver’s license numbers so far in 2026_.

![Spf Validator 5344](https://media.mailhop.org/duocircle/spf-validator-5344-1783939886657.jpg)

## Mount Royal University confirms breach as hackers claim 10TB stolen!

The Calgary-based university [confirmed a data breach](https://www.securityweek.com/mount-royal-university-confirms-data-stolen-in-ransomware-attack/) on June 17 affecting current and former students, after hackers claimed to have stolen and then deleted data from its file storage systems. The university says it’s still investigating and will provide updates once the probe wraps up.

## Nextcloud misconfiguration leaks 367,000 files!

The self-hosted cloud provider left roughly 8GB of data” about 367,000 files” exposed due to a misconfiguration, including invoices, emails, names, and email addresses tied to clients like IONOS, STRATO, and a German school ministry.

## KDDI breach grows to 12 million affected customers!

An update to last week’s story: Japanese telecom giant KDDI, whose **email platform serves** five other ISPs (STNet, JCom, Chubu Telecommunications, NIFTY, and BIGLOBE), now says roughly 12 million accounts and 7.6 million passwords were exposed in the breach” down slightly from earlier estimates of 14 million.

## Two ransomware groups team up for an “unprecedented” campaign!

[Threat intelligence](https://www.ibm.com/think/topics/threat-intelligence) researchers flagged a coordinated collaboration between two major ransomware operations, warning that the **joint campaign represents** a new level of organization and threat to enterprises.

![Spf Record Check 5322](https://media.mailhop.org/duocircle/spf-record-check-5322-1783939958095.jpg)

## Progress Software urges emergency shutdown of ShareFile servers!

Progress emailed ShareFile customers running **Storage Zone Controllers**, warning of a “credible external security threat” and telling them to shut servers down immediately. _The order became public after a customer posted the email to Reddit’s r/sysadmin, and Progress’s status page listed affected customers as “not operational” while it investigates_.

## Malicious npm package targets crypto wallets via Injective Labs repo!

Unknown threat actors compromised the Injective Labs SDK project’s GitHub repository and used it to publish a [malicious npm package](https://www.trendmicro.com/en%5Fus/research/26/c/axios-npm-package-compromised.html) designed to steal cryptocurrency wallet private keys and mnemonic seed phrases. The tainted package, released July 8, came with hidden telemetry functions that exfiltrated wallet data before being pulled from the registry.

## Six flaws found in the U-Boot bootloader!

Researchers disclosed six vulnerabilities in the widely used U-Boot bootloader that could let [attackers run malicious code](https://www.trendmicro.com/en%5Fus/research/25/i/npm-supply-chain-attack.html) during device boot, opening the door to stealthy firmware-level attacks that persist even after a reinstall.

![Spf Permerror 5611](https://media.mailhop.org/duocircle/spf-permerror-5611-1783940206641.jpg)

## “Ill Bloom” flaw drains over $5 million from crypto wallets!

Security firm Coinspect disclosed a vulnerability, nicknamed Ill Bloom, in how certain wallet software generated its recovery phrase the words controlling access to funds. Weak randomness in phrase generation let attackers work out the phrase and empty wallets, with one coordinated sweep **confirmed on May 27**.

## Armenian national pleads guilty to Ryuk ransomware attacks!

A **34-year-old Armenian** man pleaded guilty to hacking US companies and deploying Ryuk ransomware to encrypt their systems, as part of a broader wave of ransomware-related prosecutions this week.

## Ransomware negotiator sentenced to nearly 6 years for aiding BlackCat!

A former negotiator was sentenced to 70 months in prison for conspiring with the [now-defunct BlackCat (ALPHV)](https://www.securityweek.com/third-us-security-expert-sentenced-to-prison-for-helping-ransomware-gang/) ransomware operators, working alongside two other security professionals to extort additional victims.

## ”Ghostcommit” attack hides prompt injection inside a PNG to steal repo secrets!

Researchers demonstrated a technique where a malicious image slipped past AI code-review tools [CodeRabbit and Bugbot](https://www.bleepingcomputer.com/news/security/ghostcommit-hides-prompt-injection-in-images-to-fool-ai-agents-steal-secrets/)” which don’t open image files and tricked a coding agent into reading a repository’s `.env` file and writing the secrets into **code as plain numbers**.

![Spf Record 5231](https://media.mailhop.org/duocircle/spf-record-5231-1783940000287.jpg)

## Okta warns of voice-phishing scheme targeting Microsoft 365 passkeys!

A threat actor tracked as O-UNC-066 has been calling employees across food and beverage, tech, healthcare, automotive, construction, and aviation sectors, posing as security staff to convince them to register a new Entra passkey handing attackers persistent account access for [data-extortion attacks](https://www.cybersecuritydive.com/news/ransomware-extortion-bec-arctic-wolf/812321/).

## China- and India-aligned hackers spied on Pakistani law enforcement for two years!

Researchers disclosed sustained [cyber-espionage activity](https://www.bangkokpost.com/world/3283925/russian-man-extradited-from-thailand-pleads-not-guilty-in-us-cyber-espionage-case) against multiple Pakistani law enforcement agencies running from **February 2024 to April 2026**, targeting servers hosting biometric records, criminal case files, and personnel data including one implant disguised as a routine portal update.

## Microsoft Edge remote code execution flaw needs urgent patching!

Microsoft disclosed **CVE-2026-57992**, a high-severity RCE vulnerability in its Chromium-based _Edge browser, warning that a specially crafted page could hand attackers control of an unpatched system_.

Beyond patching software vulnerabilities, modern [email security](https://www.duocircle.com/) also requires layered protection. [SPF](https://www.duocircle.com/email/spf-management/), DKIM, and [DMARC](https://www.duocircle.com/email/dmarc/) play a key role in **defending domains** against phishing, spoofing, and [email impersonation](https://therecord.media/keir-giles-russia-researcher-email-hacked).

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

## Related Articles

[  news  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\]  May 18, 2026 ](/blog/cybersecurity-news-update-week-20-of-2026/)[  news  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\]  May 25, 2026 ](/blog/cybersecurity-news-update-week-21-of-2026/)[  news  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News  Jun 1, 2026 ](/blog/cybersecurity-news-update-week-22-of-2026/)[  news  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News  Jun 8, 2026 ](/blog/cybersecurity-news-update-week-23-of-2026/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Accenture Breach, AssuranceAmerica Exposed, Mount Royal – Cyber News","description":"Weekly cybersecurity roundup: Accenture breach, AssuranceAmerica leak, AI ransomware, Edge flaw, ShareFile alert, and key email security updates.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-28-of-2026/","datePublished":"2026-07-13T00:00:00.000Z","dateModified":"2026-07-13T00:00:00.000Z","dateCreated":"2026-07-13T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-28-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-validator-6711-1783939777324.jpg","caption":"cybersecurity news"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"news"},{"@type":"ListItem","position":3,"name":"Accenture Breach, AssuranceAmerica Exposed, Mount Royal – Cyber News","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-28-of-2026/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"news","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Accenture Breach, AssuranceAmerica Exposed, Mount Royal – Cyber News","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-28-of-2026/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Accenture Breach, AssuranceAmerica Exposed, Mount Royal – Cyber News","description":"Weekly cybersecurity roundup: Accenture breach, AssuranceAmerica leak, AI ransomware, Edge flaw, ShareFile alert, and key email security updates.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-28-of-2026/","datePublished":"2026-07-13T00:00:00.000Z","dateModified":"2026-07-13T00:00:00.000Z","dateCreated":"2026-07-13T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-28-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-validator-6711-1783939777324.jpg","caption":"cybersecurity news"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
