Latest Internet & Cybersecurity News

đź“…February 26, 2026 at 1:00 PM
Major cybersecurity developments include Google disrupting China-linked UNC2814 espionage, massive Conduent breach affecting 25M, surging app exploits via AI, supply chain attacks dominating threats, and password manager vulnerabilities.
1

Google Disrupts UNC2814 GRIDTIDE Cyber Espionage Campaign

Google, with industry partners, terminated UNC2814 infrastructure after 53 breaches in 42 countries using Google Sheets API for C2 by this China-nexus group targeting governments and telecoms.Source 1 The actor, tracked since 2017, affected over 70 countries; Google issued victim notifications and expects re-establishment efforts.Source 1 This highlights network edge exploitation in ongoing Chinese intrusions.Source 1

2

Conduent Breach Expands to 25 Million US Victims

The Conduent third-party breach now impacts 25 million Americans, up from 10 million, including SSNs, medical data from state benefits and healthcare programs across 30+ states.Source 2 Claimed by SafePay ransomware, attackers exfiltrated 8TB over three months, affecting Volvo employees and insurers like Blue Cross.Source 2 Victims face long-term identity theft and fraud risks from sensitive data exposure.Source 2

3

IBM Reports 44% Surge in App Exploits Driven by AI

IBM's 2026 X-Force report notes a 44% rise in attacks on public apps due to missing authentication and AI vulnerability scanning, with exploits causing 40% of 2025 incidents.Source 3 Ransomware groups grew 49%, infostealer malware hit 300K ChatGPT credentials; manufacturing topped targeted sectors.Source 3 AI lowers barriers, automating reconnaissance and attacks by nation-states and criminals.Source 3

4

Critical RCE Vulnerabilities Patched in Serv-U, FileZen, Zyxel

Vendors patched critical remote code execution flaws in Serv-U, FileZen, and Zyxel products.Source 4 AI is aiding hacks on FortiGate devices, major breaches alleged, UK fines issued over age checks, and a zero-day seller jailed.Source 4 These updates address widespread risks in networking and file transfer software.Source 4

5

New OTI Impact Score Debuts for Industrial Cyber Incidents

At S4x26, the Operations Technology Incident (OTI) Impact Score launched as a 0-10 'Richter Scale' for OT cyber damage, crowdsourced for objectivity.Source 5 It scores historical and future incidents to counter sensationalism and aid resource allocation.Source 5 NVIDIA partners with Akamai, others on AI for critical infrastructure protection.Source 5

6

27 Attack Scenarios Exposed Vulnerabilities in Top Password Managers

Researchers demonstrated 27 attacks on Bitwarden (12), LastPass (7), Dashlane (6), and 1Password (2), compromising vaults via key escrow, flawed encryption, sharing, and legacy paths.Source 6 Attacks challenge zero-knowledge claims; vendors are remediating post-disclosure.Source 6 Examples include malicious auto-enrollment hijacking user vaults.Source 6

7

Supply Chain Attacks Named Top Global Cyber Threat in 2026

Group-IB's High-Tech Crime Trends Report 2026 declares supply chain attacks dominant, infiltrating vendors, SaaS, and open-source for mass access.Source 7Source 8 In MEA, 80% phishing targets internet/finance; IABs sold 200+ corporate accesses in 2025.Source 8 Ransomware hit GCC real estate, finance hardest.Source 8

8

Thales Report: 66% of Companies Lose Track of Data Amid AI Rise

Thales 2026 Data Threat Report reveals only 34% of organizations know all data locations, risking crises as AI accesses unsecured systems.Source 9 This gap enables unchecked AI wandering in enterprises with hidden sensitive information.Source 9 AI transformation heightens visibility and control needs.Source 9

9

CrowdStrike 2026 Report: AI Accelerates Adversaries and Attack Surface

CrowdStrike's 2026 Global Threat Report states AI speeds adversary operations and expands enterprise risks.Source 11 It details how AI enhances threat actor capabilities across the attack lifecycle.Source 11 Enterprises face broader exposure from AI-driven tactics.Source 11

10

Australian Government Releases Cyber Security and Online Safety Draft

In February 2026, Australia drafted unfair trading practices prohibition for TMT, focusing on cyber security and online safety after years of discussion.Source 12 It aims to regulate practices in telecom, media, and tech sectors.Source 12 This advances protections against emerging digital threats.Source 12

11

Infostealer Malware Exposes 300K ChatGPT Credentials

IBM X-Force observed over 300,000 ChatGPT credentials stolen by infostealer malware in 2025.Source 3 This contributes to rising identity compromises fueling broader attacks.Source 3 North America saw increased incidents, leading global cases.Source 3

Latest Internet & Cybersecurity News | DeckBook AI