Latest Internet & Cybersecurity News

πŸ“…January 16, 2026 at 1:00 PM
AI-driven cyber threats surge alongside ransomware attacks on major firms like Nissan and Kyowon, geopolitical risks rise, and phishing services fuel massive account breaches in 2026.
1

Kyowon Group Ransomware Attack Impacts Millions in South Korea

Kyowon Group confirmed a ransomware attack on January 14, 2026, after detecting abnormal activity on January 10, affecting 600 of 800 servers and exfiltrating data from up to 5.54 million unique users across education and other services.Source 2 The breach caused widespread service outages and is under investigation by authorities.Source 2

2

Nissan Hit by Everest Ransomware, 900GB Data Stolen

Japanese automaker Nissan suffered an Everest ransomware attack announced on January 10, with 900GB of sensitive data including internal records and dealer info stolen.Source 8 The breach raises concerns for global operations, including Australia.Source 8 Recovery efforts are ongoing amid threats of data release.Source 8

3

AI Supercharges Cyber Arms Race in 2026 Trends

94% of leaders see AI as the top cyber risk driver, with 87% noting AI vulnerabilities as fastest-growing threat; 64% of organizations assess AI tool security, up from 2025.Source 1 Attackers use AI for phishing and exploits, while defenders automate responses.Source 1Source 3 Collaboration is key amid geopolitical fragmentation.Source 1

4

Chinese Hackers Breach North American Critical Infrastructure

Government-backed group UAT-8837 exploited Sitecore zero-day (CVE-2025-53690) and stolen credentials to access multiple organizations using tools like Earthworm and Sharphound.Source 4 Post-compromise operations targeted critical sectors over the past year.Source 4 Cisco Talos reported the hands-on-keyboard activities.Source 4

5

Five Malicious Chrome Extensions Target Enterprise Platforms

Socket discovered extensions stealing auth data from Workday, NetSuite via cookie exfiltration, DOM manipulation, and session hijacking.Source 4 They block security controls for full account takeover; Google informed for removal.Source 4 Investigation ongoing into the campaign's scope.Source 4

6

Lumen Disrupts Kimwolf DDoS Botnet Sinkholing 550+ Servers

Internet firm Lumen sinkholed over 550 C&C servers, cutting off malware on 250,000 devices; botnet partially recovered but at reduced size.Source 4 Kimwolf launches massive DDoS using residential devices for stealth.Source 4 Action mitigates scanning and exploitation activity.Source 4

7

BreachForums Hacking Forum User Database Leaked

Over 320,000 accounts from MyBB user table exposed via 7Zip archive by ShinyHunters-named site, including private PGP key.Source 4 Latest incarnation of notorious forum hit amid ongoing cybercrime activity.Source 4 Leak highlights forum vulnerabilities.Source 4

8

Phishing Services Drive 389% Surge in Account Breaches

eSentire reports 389% jump in compromises targeting Microsoft 365 and BEC scams, fueled by Phishing-as-a-Service.Source 10 Legal sector faces email bombing plus helpdesk impersonation, up 14x.Source 10Source 14 Trends expected to persist into 2026 with MaaS/RaaS.Source 10

9

Ransomware Targets OT Systems as Exposure Grows

OT managed via IT/cloud increases internet exposure, predicting more ransomware on edge systems in 2026.Source 5 No new techniques needed; reachability drives attacks.Source 5 Organizations urged to map and secure hybrid environments.Source 5

10

e-machitown Japan Breached, 680K Businesses Affected

Threat actor Solonik claims exfiltration of database with data on over 680,000 local businesses from regional portal emachi.co.jp.Source 6 Includes shop owner details for events and guides.Source 6 Data posted on dark web forums.Source 6

11

Rmoney India Fintech Database Dumped on Dark Web

1.5GB SQL dump of production database leaked January 8, including insurance, KYC, and WhatsApp data.Source 6 Threat actor lists full schemas on forums.Source 6 Impacts customer PII and financial records.Source 6