April 2026 served as a stark reminder that the modern attack surface is increasingly fluid, stretching far beyond the traditional corporate perimeter. This month’s headlines were dominated by sophisticated supply chain compromises, inadvertent internal leaks, and the persistent threat of misconfigured cloud assets. As attackers pivot toward more surgical methods of data exfiltration and extortion, the recurring theme remains the vulnerability of third-party ecosystems and the high cost of minor technical oversights.
Booking.com & Basic-Fit
Travel and Leisure: Phishing and Unauthorized Access Hit Consumer Records
In mid-April, the travel and fitness industries faced significant security challenges. Booking.com notified its customer base of a targeted campaign where attackers utilized “ClickFix” malware to infiltrate the systems of hotel partners. By compromising these endpoints, threat actors gained access to specific guest reservation details, which were subsequently used to launch highly convincing phishing attacks. Simultaneously, European fitness leader Basic-Fit reported a breach affecting approximately 200,000 members in the Netherlands. The unauthorized access exposed sensitive personal data, including physical addresses and bank account information, underscoring the ongoing interest cybercriminals have in large-scale consumer databases within the leisure sector.
Frost Bank & Citizens Financial
The Everest Ransomware Fallout: Shared Vendor Vulnerability Exploited
The financial sector felt the impact of a significant supply chain compromise in April when the Everest ransomware group successfully targeted a third-party service provider utilized by both Frost Bank and Citizens Financial. Rather than a direct hit on the banks’ internal networks, the breach occurred at a common link in their operational chain. The resulting data exposure was substantial, involving the sensitive records of over 3.5 million customers combined. Information leaked included Social Security numbers and account identifiers, illustrating a growing trend where attackers prioritize high-value hubs in the financial ecosystem to maximize their reach across multiple institutions.
Anthropic
Internal Exposure: Accidental Publication of “Claude Code” Source Maps
Anthropic, a major player in the AI space, confirmed an internal data exposure that occurred at the start of the month. Unlike typical external intrusions, this incident was the result of a “human packaging error.” A 57MB source map file was inadvertently included in a public npm package, effectively making over 512,000 lines of internal TypeScript code for their “Claude Code” tool accessible to the public. While Anthropic maintained that no user data or core model weights were compromised, the leak provided a rare, unsolicited look into the proprietary architecture of their developer tools, highlighting the risks inherent in rapid software deployment cycles.
Vercel
Supply Chain Tactics: AI Tool Vulnerability Leads to Credential Exposure
Cloud deployment platform Vercel fell victim to a complex supply chain attack originating from a third-party AI utility, Context.ai. On April 19, it was revealed that attackers leveraged an OAuth vulnerability within the AI tool to gain a foothold in Vercel’s environment. The intrusion allowed for the extraction of internal metadata and “non-sensitive” environment variables. While the breach was contained quickly, the incident forced a massive rotation of security tokens and credentials. The case serves as a cautionary tale for the growing integration of AI tools into developer workflows, which often introduce new, unvetted pathways into sensitive infrastructure.
McGraw-Hill
Misconfiguration Risks: Salesforce Exposure Leads to Extortion Threats
Educational publishing giant McGraw-Hill became the target of the ShinyHunters extortion group following a security lapse involving a misconfigured Salesforce instance. In mid-April, the group claimed to have accessed a vast repository of data, which they leveraged to threaten the company with public disclosure. While McGraw-Hill initially moved to minimize the reported scale, external security researchers later identified millions of unique email addresses and personal records circulating in underground forums. The incident reinforces a persistent reality in cloud security: even the most robust platforms can become liabilities if internal configurations are not rigorously audited.
The Era of Ecosystem Vulnerability
If April set the tone for the second quarter of 2026, it is that tactical evolution is favoring the exploit of trust relationships. We are seeing a move away from “smash-and-grab” style attacks in favor of targeting the digital glue that holds modern enterprises together. Whether through accidental code leaks at Anthropic or the exploitation of third-party AI tools at Vercel, the month’s events highlight that a company’s security is only as strong as the weakest link in its integrated supply chain. Moving forward, the focus for security teams must shift toward holistic visibility and the hardening of the third-party services they rely on most.