Spanish National Police arrested an individual for leaking sensitive information about members of key state organizations, including the National Cybersecurity Institute (INCIBE). The arrest marks a significant enforcement action against data exposure crimes.
The suspect targeted multiple government agencies, compromising personal and professional data of state employees. Authorities identified the individual through investigation into the unauthorized disclosure of information from INCIBE and related institutions.
Doxing—the public release of private information intended to enable harassment or harm—has become an increasing concern for government cybersecurity. Spain's action reflects broader efforts by European nations to prosecute digital crimes involving sensitive data exposure.
The National Police did not disclose the volume of data leaked or specific agencies affected beyond INCIBE. Investigations are ongoing to determine the extent of the breach and whether additional charges will be filed.
The arrest underscores vulnerability in government data security infrastructure and the need for stronger protections against insider threats and unauthorized access. Spain's cybersecurity authorities are reviewing protocols across state institutions.
Domain registrar Namecheap handed over a customer's account to an unverified third party after a password reset request, raising security concerns for a 13-year customer.
AegisAI, a security startup founded by former Google executives, secured $36 million in funding to deploy AI agents that detect sophisticated spear phishing attacks.
The US government issued an updated advisory warning that Iranian hackers are actively disrupting critical infrastructure systems used by American water and energy providers.
Apple has published SOC 3 audit reports for its Private Cloud Compute infrastructure, providing third-party verification of security controls for on-device AI processing that routes some tasks to Apple servers.