惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Martin Fowler
Martin Fowler
J
Java Code Geeks
博客园 - 【当耐特】
宝玉的分享
宝玉的分享
腾讯CDC
D
DataBreaches.Net
Microsoft Azure Blog
Microsoft Azure Blog
Engineering at Meta
Engineering at Meta
V
V2EX
F
Fortinet All Blogs
MyScale Blog
MyScale Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
T
Tailwind CSS Blog
Jina AI
Jina AI
GbyAI
GbyAI
大猫的无限游戏
大猫的无限游戏
A
About on SuperTechFans
酷 壳 – CoolShell
酷 壳 – CoolShell
爱范儿
爱范儿
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
U
Unit 42
B
Blog
M
MIT News - Artificial intelligence
N
Netflix TechBlog - Medium

Cyber Security News

AIRecon: AI-Powered Penetration Testing Tool with Kali Linux Sandbox Critical Chrome Vulnerabilities Allow Attackers to Execute Arbitrary Code - Update Now! Hackers Use Rokarolla Android Malware to Disable Google Play Protect and Control Devices UNC3753 Uses Screen-Sharing Sessions and RMM Tools to Exfiltrate Sensitive Legal Data New OnionDrop Loader Campaign Uses gainmsg C2 to Deliver LegionLoader Payloads ClickFix Campaign Uses EtherHiding and GULoader to Infect Windows Users via Fake CAPTCHA Ghostwriter Hackers Abuse Gmail Admin-Themed Emails to Steal Credentials and 2FA Codes The Half-Life of Threat Intelligence: When Does an IOC Stop Being Useful? Critical Fortinet FortiSandbox Vulnerabilities Actively Exploited in Attacks Aembit Extends IAM for Agentic AI to Microsoft Copilot Studio India Temporarily Bans Telegram Messenger Over Medical Exam Fraud Microsoft 365 Device Code Phishing Campaign Bypasses Password Theft With Legitimate Login Flow AppViewX Launches Agent Identity Security to Govern Agents for the AI and Quantum Era Hackers Weaponize Microsoft Teams Relay to Hide Ransomware Traffic Developer laptops are the credential store attackers are picking through in 2026, GitGuardian announces Endpoint Protection Interlock and Rhysida Ransomware Operations Share Supper Backdoor and Malware Codebase Novo Nordisk Confirms Cyber Attack — Hackers Accessed Patient Medical Data and Internal AI Assets Russian and Chinese Influence Actors Use AI to Evade Bot Detection and Mimic Human Behavior Microsoft Teams Analyze the Wi-Fi Hotspot Data Connected to an Employee’s Device PRC-Nexus Hackers Exploit REDCap Servers to Spy on US Medical Research Institutions Infinite Campus Data Breach Exposes 137,000 Users Personal Details OptinMonster Plugin Hack Exposes 1.2 Million Wordpress Sites to Cyberattack Ransomware Ecosystem Consolidates Around LockBit Alumni, Qilin, Hyflock, and The Gentlemen Hackers Abuse Legitimate RMM Tools in The Quarry IRS and SSA Phishing Campaigns LiteSpeed cPanel Plugin 0-Day Vulnerability Actively Exploited in the Wild Cisco SD-WAN vManage Vulnerability Exploited in Zero-Day Attacks Nearly 14,000 SimpleHelp Servers Exposed Amid Critical Authentication Bypass Disclosure Microsoft Site Showing Warning Following Certificate Expiry DPAPISnoop Tool Extracts CREDHIST Hashes for Offline Windows Credential Recovery SHADOWBYT3$ Allegedly Claim Breach of Nintendo, Stealing Sensitive Data
Maine Takes Data Breach Reporting Portal Offline After Fa...
Guru Baran · 2026-06-14 · via Cyber Security News

The Office of the Maine Attorney General has temporarily taken its public-facing data breach reporting database offline after discovering that an unknown entity submitted fabricated breach notifications targeting two major online platforms, VRChat and Discord, in what officials are calling a deliberate abuse of the state’s breach disclosure system.

On June 12, 2026, the Maine Attorney General’s office issued a formal statement confirming that the reported data breaches involving VRChat and Discord were hoaxes.

The false filings were submitted by an unidentified third party with no affiliation to either company. After direct conversations with VRChat, one of the two named organizations, officials confirmed the notifications were entirely fabricated. Both fraudulent entries have since been removed from the public database.

Breach Reporting Portal Offline

According to earlier reporting, one fake filing claimed that Discord suffered an “insider wrongdoing” incident that exposed the personal data of more than 10 million users, while a separate filing alleged VRChat leaked data on approximately 2.4 million users signed by an employee who does not exist. Neither company filed those reports.

Maine’s breach notification law is among the strictest in the United States a company must notify the AG’s office even if just one Maine resident is affected by a breach.

This low threshold has made Maine’s public portal a go-to reference for security researchers, journalists, and class-action attorneys seeking early breach disclosures.

Critically, the AG’s office has acknowledged that submissions flow directly from the online reporting form onto the public portal without independent verification. This open-access design, while intended to ensure transparency and timely public disclosure, created an exploitable gap that the unknown actor leveraged to plant false information on an authoritative government website.

The Maine AG’s office has taken the public-facing breach database offline while it reviews internal procedures to prevent future abuse, while still preserving public access to legitimate breach data.

In the interim, entities required to file breach reports can continue doing so through the office’s online reporting service, and those needing information from existing reports can contact the AG’s Consumer Protection Division directly.

This incident highlights a systemic vulnerability in self-reported, auto-published government compliance portals. Security professionals and journalists should treat all portal entries as unverified until confirmed directly by the affected company.

Real large-scale breaches typically generate corroborating coverage across multiple independent outlets, official company advisories, or legal filings a fake entry rarely produces all three simultaneously.

The identity of the individual or group behind the fraudulent submissions remains unknown, and no arrests have been reported as of the time of publication.

Follow us on Google NewsLinkedIn, and X to Get More Instant Updates.

Guru Baran

Guru Baranhttps://cybersecuritynews.com

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.