Latest Internet & Cybersecurity News

đź“…January 5, 2026 at 1:00 PM
Coordinated ransomware attacks hit Romanian critical infrastructure; major data breaches expose millions in healthcare, finance, and consumer sectors amid rising 2026 cyber threats.
1

Romanian Water Authority and Energy Producer Targeted in Coordinated Holiday Ransomware Campaign

On December 26, 2025, Romania's Apele Române water authority and Oltenia Energy Complex, a major coal-based power producer, suffered ransomware attacks by the 'Gentlemen' group. The strikes disrupted ERP systems, email, and websites but spared operational technology, exploiting holiday reduced vigilance and critical infrastructure links.Source 2 Analysts note the attackers targeted administrative IT layers supporting national energy and water systems.Source 2

2

Jaguar Land Rover (JLR) Hit by Ransomware via Third-Party Software Exploit

In 2025, Scattered Lapsus$ Hunters exploited vulnerabilities in third-party supplier software to deploy ransomware, crippling JLR’s production and logistics in the UK, Slovakia, and Brazil.Source 1 The attack highlighted ongoing risks in supplier ecosystems and cloud platforms.Source 1 Production shutdowns underscored organizational exposure through shared digital infrastructure.Source 1

3

St. Paul, Minnesota Declares Emergency After Ransomware Disrupts City Services

In July 2025, the Interlock ransomware group attacked St. Paul, encrypting billing, emergency coordination, and citizen services systems, prompting a state of emergency.Source 1 The breach compromised a shared network drive, severely impacting municipal operations.Source 1 It reflects trends in civic infrastructure disruptions.Source 1

4

ShinyHunters Breach Exposes TransUnion Data of 4.46 Million US Consumers

ShinyHunters, alongside Scattered Spider, targeted high-value integrations, exposing personal data of 4.46 million from TransUnion, plus Google, Workday, and others.Source 1 The extortion campaign prioritized third-party CRM systems over single targets.Source 1 Over one million were also affected in Allianz Life's third-party CRM breach.Source 1

5

Neighbourly Data Breach: Stuff Files Court Injunction to Halt Dark Web Spread

New Zealand's Neighbourly site, owned by Stuff, suffered a major breach exposing names, emails, posts, messages, and GPS data now for sale on the dark web.Source 4 The High Court accepted an injunction application to prevent further spread; the site was down on New Year's Day.Source 4 Experts warn GPS data poses life risks.Source 4

6

700Credit Breach Leaks Millions of SSNs via Third-Party API Exploitation

Detected October 25, 2025, attackers compromised a third-party partner in July, exploiting an API to extract consumer records including SSNs over weeks.Source 8 South Carolina reported over 108,000 residents affected by January 2, 2026.Source 8 Lawsuits allege negligence in the auto finance data exposure.Source 8

7

Bitfinex Hack Convict Ilya Lichtenstein Released Early to Home Confinement

Ilya Lichtenstein, convicted for the 2016 Bitfinex hack exploiting multi-signature vulnerabilities, was released under the First Step Act.Source 9 He and his wife laundered stolen bitcoin through mixing services and gift cards.Source 9 The case highlights persistent crypto exchange risks.Source 9

8

Covenant Health Cyberattack Exposes Nearly 500,000 Patients' Data

Initially reported as 8,000 affected, the May 2025 attack by Russian Qilin group stole data on 500,000 including SSNs, DOBs, and treatment info—852GB total.Source 10 Covenant offers 12 months identity protection; Qilin leaked files after no ransom.Source 10 The breach far exceeded early estimates.Source 10

9

Bank Sepah Breach in Iran: 42 Million Customer Records Stolen

The Codebreakers collective stole 42 million records from Iran's Bank Sepah, leaking data after rejected ransom demands.Source 1 This large-scale attack underscores regional cyber threats.Source 1 It contributes to 2025's pattern of massive data thefts.Source 1

10

UNFI Cyberattack Disrupts North American Food Supply Chain

United Natural Foods Inc. (UNFI) suffered a cyberattack disabling electronic ordering, causing widespread supply delays.Source 1 The incident highlights operational technology and supply chain vulnerabilities.Source 1 It reinforces lessons for 2026 digital resilience.Source 1

11

Sedgwick Confirms Cyber Incident on Federal Contractor Subsidiary

On January 5, 2026, Sedgwick confirmed a cybersecurity incident involving its major federal contractor subsidiary and TridentLocker ransomware.Source 11 Details on impact remain emerging.Source 11 This adds to ongoing enterprise breaches.Source 11