Latest Internet & Cybersecurity News

📅February 24, 2026 at 1:00 AM
Major cybersecurity incidents dominate headlines: PayPal breach, AI-assisted Fortinet hacks, ransomware on Advantest, UMMC clinics, CISA Dell patch order, and rising AI threats.
1

PayPal Data Breach Exposed Personal Information for Months

A significant PayPal data breach exposed customer personal information over several months, leading to fraudulent transactions. The incident was highlighted in top cybersecurity news roundups for February 23, 2026.Source 1Source 10 Investigations are ongoing to assess the full scope and impact on users.Source 6

2

AI-Assisted Hacker Breaches 600+ Fortinet Firewalls Across 55 Countries

A Russian-speaking threat actor used generative AI to breach over 600 Fortinet FortiGate firewalls in 55 countries by targeting weak credentials on exposed interfaces. The campaign, active for five weeks, automated lateral movement without exploits.Source 1Source 2 Amazon's security team disclosed the attack, emphasizing AI's role in scaling operations.Source 2

3

CISA Orders Emergency Patch for Exploited Dell RecoverPoint Vulnerability

CISA mandated U.S. federal agencies to patch CVE-2026-22769 in Dell RecoverPoint within three days due to active exploitation by Chinese-linked actors since mid-2024. The flaw involves hardcoded credentials enabling backdoor deployment like Grimbolt.Source 1 This affects VMware backup environments and critical infrastructure.Source 1

4

Ransomware Attack Disrupts University of Mississippi Medical Center Clinics

Ransomware hit UMMC, shutting down clinics statewide, canceling elective procedures, and forcing manual operations. Electronic medical records were impacted, with FBI involvement in the response.Source 1Source 6 Emergency care continued amid system restoration efforts.Source 1

5

Advantest Corporation Suffers Ransomware Attack

Japanese semiconductor tester Advantest detected ransomware on February 15, 2026, affecting its network; systems were isolated with third-party help. Potential data exposure is under investigation, serving major chip makers.Source 1Source 4Source 6 No confirmed exfiltration yet, but notifications may follow.Source 1

6

Odido Telecom Data Breach Compromises 6.2 Million Customers

Dutch telecom Odido suffered a breach exposing names, addresses, phone numbers, dates of birth, and IDs for 6.2 million users. Billing info, passwords, and call logs remained safe.Source 2 Threat actors accessed personal data in a major incident.Source 2

7

Deutsche Bahn Rail Operator Hit by DDoS Attack

Germany's national rail operator Deutsche Bahn faced a DDoS attack disrupting booking tools and travel info services. The incident impacted digital operations on Tuesday.Source 2 Investigations continue into the threat actors.Source 2

8

Former Google Engineer Convicted of AI Trade Secrets Theft for China

A former Google software engineer was convicted on 14 counts for stealing 2,000 pages of AI-related trade secrets and uploading them to his personal account. The espionage case ties to the People's Republic of China.Source 3 Sentencing pending.Source 3

9

Russia-Linked Cyber Attack Damages Poland's Power Grid

Polish officials attributed a December 2025 cyber attack on power plants and renewable energy systems to Russian group Sandworm. Equipment was damaged in the incident acknowledged in January.Source 3 It targeted critical energy infrastructure.Source 3

10

Google Patches Critical Chrome CSS Zero-Day Under Active Exploit

Google addressed CVE-2026-2441, a use-after-free flaw in Chrome's CSS engine, exploited in the wild since mid-February 2026. Users urged to update immediately.Source 10Source 12 The vulnerability shocked the security community.Source 12

11

CISA Adds BeyondTrust Vulnerability to Known Exploited List for Ransomware

CVE-2026-1731 in BeyondTrust Remote Support is being used in ransomware attacks, prompting CISA's KEV catalog update. Hospitals and others at risk; prioritize patching.Source 6Source 11 Review logs for lateral movement signs.Source 6