惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
G
GRAHAM CLULEY
P
Privacy & Cybersecurity Law Blog
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
宝玉的分享
宝玉的分享
P
Proofpoint News Feed
H
Help Net Security
V
Visual Studio Blog
阮一峰的网络日志
阮一峰的网络日志
C
Cisco Blogs
人人都是产品经理
人人都是产品经理
Know Your Adversary
Know Your Adversary
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
Recorded Future
Recorded Future
I
Intezer
罗磊的独立博客
T
The Exploit Database - CXSecurity.com
Blog — PlanetScale
Blog — PlanetScale
Malwarebytes
Malwarebytes
Spread Privacy
Spread Privacy
T
Tor Project blog
V
Vulnerabilities – Threatpost
云风的 BLOG
云风的 BLOG
腾讯CDC
B
Blog RSS Feed
Stack Overflow Blog
Stack Overflow Blog
F
Future of Privacy Forum
MyScale Blog
MyScale Blog
Latest news
Latest news
IT之家
IT之家
MongoDB | Blog
MongoDB | Blog
The Hacker News
The Hacker News
S
Securelist
博客园 - 【当耐特】
C
CXSECURITY Database RSS Feed - CXSecurity.com
T
Threat Research - Cisco Blogs
Jina AI
Jina AI
Cisco Talos Blog
Cisco Talos Blog
B
Blog
博客园 - 三生石上(FineUI控件)
Last Week in AI
Last Week in AI
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
M
MIT News - Artificial intelligence
V
V2EX
D
Darknet – Hacking Tools, Hacker News & Cyber Security
The Cloudflare Blog
The GitHub Blog
The GitHub Blog
博客园 - 聂微东
F
Full Disclosure
C
CERT Recently Published Vulnerability Notes

Comparitech

Oregon employment firm notifies 142,000+ people of two data breaches claimed by ransomware gangs Cybercriminals say they hacked Harrison County, WV commission, demand ransom Cybercriminals say they breached AdvancedHealth, Tennessee clinic confirms Fluke Corp notifies 18,000+ people of data breach that leaked SSNs What is Token-Based Authentication? Tokens Explained Western Orthopaedics warns 113,000+ people of data breach that leaked SSNs, credit cards, and medical info What is ARP? ARP protocol explained What is symmetric encryption? Crunchyroll VPN not working? Fix buffering, errors & region blocks American Lending Center notifies 123,000+ people of data breach that leaked SSNs How to watch Oleksandr Usyk vs Rico Verhoeven online Cybercriminals say they hacked CarePoint Health, stole data Ransomware gang claims attack and data theft from UK city school Horizon Media reports data breach of SSNs, cybercriminals take credit Claude VPNs (and how to use Claude safely) What is GhostPairing on WhatsApp? What is a prompt injection attack? Where do leaked passwords end up? A statistical analysis of the dark web’s credential pipeline Ransomware roundup: April 2026 Suffolk, VA warns 157,000+ people of data breach that leaked SSNs, finances How to watch UFC 328 (Chimaev vs Strickland) from anywhere Cybercriminals say they hacked Winona County, MN (again) Keeper vs 1Password: Which password manager is best in 2026? What is F-Droid? Is it safe? Proton VPN Secure Core: What is it, and should you use it? What is an agentic browser? Features and how to use them safely Sandhills Medical Foundation warns patients of data breach Cybercriminals say they hacked Massachusetts Development Finance Agency, its second breach in 2 years STELIA Aerospace confirms cyber attack on North American systems. $2.07 million ransom issued Debt collector Rodenburg Law Firm warns 81,307 people of data breach Healthcare ransomware roundup: Q1 2026 stats on attacks, ransoms, and data breaches How to block ads on Paramount Plus A complete guide to smart speaker privacy What is the Great Firewall of China Cybercriminals say they hacked Rusk County, WI What is a decentralized VPN? Do you need a dVPN? Southern Illinois Dermatology warns patients of data breach that leaked SSNs 92,000 people notified of data breach following cyber attack at Puerto Rican hospital Cybercriminals say they hacked Minidoka Memorial Hospital, demand ransom What is sensitive data? Types and how to protect yourself Inside RAMP: What a leaked database reveals about Russia’s ransomware marketplace What is a passphrase? Are they safer than passwords? Phoenix Art Museum warns of data breach that leaked SSNs Mozilla VPN vs NordVPN – VPN Comparison Guide Cookeville Regional Medical Center warns 338,000 people of data breach Antimalware vs Antivirus: What’s the difference? What is URL phishing? Examples and how to stay safe How to use a VPN in Bhutan (and the best options) Cybercriminals give Brockton, MA hospital one week to pay ransom after hack Is Truth Social safe? Everything you need to know What is cyberwarfare? Medical implant maker TriMed warns 80,000+ people of data breach Ransomware roundup: Q1 2026 Heart South Cardiovascular Group warns 46,000+ people of data breach Cybercriminals say they hacked Community College of Beaver County Critical Infrastructure at Risk: 179 ICS Devices Exposed Online
Software maker warns 200,000 Frost Bank customers in Texas of data breach
Paul Bischof · 2026-05-22 · via Comparitech

200,000 Frost Bank customers in Texas warned of data breach

Software developer Sefas yesterday confirmed it notified 191,848 Texans of a December 2025 data breach at Frost Bank, a Sefas client.

According to the breach notice that Sefas sent on behalf of Frost Bank, the compromised data included:

  • Names
  • Social Security numbers
  • Taxpayer ID numbers
  • Account numbers
  • Loan numbers
  • Dates of birth
  • Addresses

A cybercriminal group called Everest took credit for the breach on April 20, 2026. On its data leak website, Everest said it stole 250,000 Social Security numbers from Frost Bank, as well as 3.4 million records from Citizens Bank on the same day. Citizens Bank reported a data breach on April 21. On May 13, Everest said it leaked the Citizens Bank database.

Everest lists Frost Bank and Citizens Bank on its data leak site.
Everest lists Frost Bank and Citizens Bank on its data leak site.

Sefas, Frost Bank, and Citizens Bank have not acknowledged Everest’s claims, and Comparitech cannot independently verify them. We do not know if any of the affected companies paid a ransom, how much Everest demanded, or how many people were notified outside of Texas. Comparitech contacted Sefas, Frost Bank, and Citizens Bank for comment and will update this article if they reply.

“The investigation revealed activity consistent with unauthorized access to the SFTP server we use to provide software support,” says Sefas’ May 20 notice (PDF) to breach victims. “This activity included the download of certain files intermittently between December 2025 and April 2026, containing Frost Bank data.”

Sefas is offering breach victims 12 months of credit monitoring through Cyberscout. The deadline to enroll is 90 days from receipt of the notice letter.

Who is Everest?

Active since 2020, Everest is a ransomware gang and initial access broker. Its victims include NASA, the Brazilian government, and multiple hospitals and clinics. Everest’s malware both encrypts target systems and steals the data stored on them. It then demands a ransom to restore infected systems and delete stolen data.

Everest has claimed responsibility for 205 ransomware attacks in total. Of those, 48 were confirmed by the organizations it targeted.

Healthcare tech company Catalyst RCM notified 140,000 people of a November 2025 data breach claimed by Everest. Some of the group’s other recent attack claims include breaches at Notin.es in Spain, Iron Mountain in Massachusetts, Hosokawa Micron Group in Japan, and UMIILES in Spain.

Ransomware attacks on US finance

From the start of 2025 to now, Comparitech researchers have logged 68 attack claims by ransomware groups against US banks and other companies in the finance sector. The targeted companies confirmed nine of those attacks so far. They include:

  • Starr Insurance reported a November 2025 data breach claimed by Akira
  • MemberSource Credit Union notified at least 22,353 people of a June 2025 data breach claimed by SafePay
  • Time Equities reported an October 2025 data breach claimed by Payouts King
  • American Lending Center notified 123,158 people of a July 2025 ransomware attack
  • Hawaii employers’ Mutual Insurance reported a February 2026 data breach claimed by LeakedData
  • US Tige Securities notified 26,985 people of a July 2025 ransomware attack
  • Loop Capital reported a February 2026 data breach claimed by Chaos

Ransomware attacks can both steal data and lock down computer systems. Once infected, the attacker then demands a ransom to delete stolen data and restore systems. Companies that refuse to pay can face extended downtime, permanent data loss, and putting customers at increased risk of fraud.

About Sefas

Based in Massachusetts, Sefas makes customer communication management software for enterprises. Messagepoint acquired Sefas in March 2026.