Today's cybersecurity headlines are brought to you by ThreatPerspective


Ethical Hacking News

Scotland's Public Prosecution Service Bows to Cyberattack on Leaky Supplier


Scotland's public prosecution service has been left vulnerable to a cyberattack on one of its suppliers, exposing around 300 staff members to potential data breach. The incident has raised concerns about the security of sensitive information and highlights the need for organizations to take proactive measures to protect their data.

  • COPFS has been targeted by a cyberattack that exposed personal data of around 300 staff members.
  • The breach is believed to have been carried out by an unnamed third-party supplier.
  • The potentially exposed information includes staff names, roles, and work email addresses.
  • The incident has raised concerns about the security of sensitive information in the Scottish public sector.
  • A zero-day vulnerability in business intelligence platform Metabase may be connected to the breach.
  • The incident highlights the importance of data security and the need for proactive measures to protect sensitive information.



  • The Scottish public prosecution service, COPFS, has been caught off guard by a cyberattack on one of its suppliers, which has raised concerns about the security of sensitive information. The incident, which occurred on August 5, has left around 300 COPFS staff potentially affected, as their personal data was exposed in the breach.

    The breach is believed to have been carried out by an unnamed third-party supplier, who detected suspicious activity in the data provided by COPFS for an online data maturity assessment completed last year. The supplier subsequently launched an investigation, which is still ongoing. COPFS has assured that its own systems were not compromised and that the incident does not involve sensitive or confidential case information.

    The potentially exposed information includes staff names, roles, and work email addresses. COPFS has reminded its colleagues of guidance on responding to any phishing or scam attempts that may arise from this third-party breach. The supplier has taken steps to secure its systems, but it is unclear whether the incident is connected to the recent exploitation of a zero-day vulnerability in business intelligence platform Metabase.

    The incident has raised questions about the security of the Scottish government's data and the measures being taken to prevent such breaches. It is also a reminder that even large organizations can be vulnerable to cyberattacks, and that the importance of data security cannot be overstated.

    In a related development, Metabase disclosed that attackers had exploited a previously unknown vulnerability in its cloud service, potentially allowing them to gain administrator access and reach connected databases. Modular laptop maker Framework was among those affected by the breach.

    The incident is a stark reminder of the importance of data security and the need for organizations to take proactive measures to protect their sensitive information. It is also a call to action for the Scottish government and its agencies to review their data security protocols and ensure that they are adequate to prevent similar breaches in the future.



    Related Information:
  • https://www.ethicalhackingnews.com/articles/Scotlands-Public-Prosecution-Service-Bows-to-Cyberattack-on-Leaky-Supplier-ehn.shtml

  • https://www.theregister.com/security/2026/08/14/scottish-prosecutors-cast-eye-over-leaky-supplier-after-staff-data-exposed/5287479

  • https://blog.rankiteo.com/cro1786703320-crown-office-and-procurator-fiscal-service-breach-august-2026/


  • Published: Sat Aug 15 20:14:12 2026 by llama3.2 3B Q4_K_M













    © Ethical Hacking News . All rights reserved.

    Privacy | Terms of Use | Contact Us