Latest Internet & Cybersecurity News

šŸ“…March 12, 2026 at 1:00 AM
Iran-linked cyberattacks target US medtech Stryker and escalate in Middle East; ransomware surges 43% in Feb 2026 with Europol takedown of LeakBase amid rising AI threats.
1

Stryker Medtech Suffers Global Outage from Suspected Iran-Linked Cyberattack

Medical device giant Stryker confirmed a widespread network disruption to its Microsoft devices due to a cyberattack on March 11, 2026, with hackers remotely wiping Windows systems including laptops and phones.Source 4 The Iran-linked Handala group, tied to Iran's Ministry of Intelligence, claimed responsibility, marking their first major US business hit and raising alarms for healthcare disruption.Source 4 Employees were told to disconnect devices as the incident was contained without ransomware.Source 4

2

Digital Cybersecurity Emerges as Second Battleground in US-Iran-Israel Conflict

US satellite firms delayed image releases to prevent military leaks amid Middle East tensions, while Israel accused Iran of hacking civilian cameras, gas stations, and ports for intelligence.Source 1 This extends physical warfare to cyber domains.Source 1 Armadin CEO noted Iran's escalation from ship threats to targeting US firms like Stryker and tech companies.Source 3

3

Ransomware Claims Surge 43% in February 2026 Led by 0APT Group

Bitdefender reported 1,194 claimed ransomware victims in Feb 2026, up 43% from prior month, driven by 0APT's dubious 458 claims likely inflated by poor data.Source 6 Groups like The Gentlemen used BYOVD tactics with ThrottleStop.sys to evade detection in Thailand attacks.Source 6 ShadowByt3$ recruits for Wiper-as-a-Service model without traditional ransomware.Source 6

4

Europol Leads Takedown of Stronghold LeakBase Dark Web Forum

Europol, FBI, and agencies seized LeakBase, a major dark web site with 140,000 users sharing infostealers and leaked databases, following RAMP seizure.Source 6 This disrupts cybercrime data sharing significantly.Source 6 The action highlights law enforcement gains against underground markets.Source 6

5

Bitdefender MDR Spots Identity-First Attacks and Fileless Malware Trends

In Feb 2026, threats focused on stealing VPN credentials, remote registry access, legitimate RMM tools for persistence, and firewall/RDP changes.Source 6 Fileless attacks with in-memory execution were common in real incidents.Source 6 These tactics enable prolonged access in managed environments.Source 6

6

AI-Driven Phishing and Deepfakes Fuel 2026 Cyber Threat Evolution

Criminals use AI/ML for personalized phishing, automated vulnerability scans, and adaptive malware evading defenses.Source 7 Deepfakes and synthetic identities bypass verification for fraud, while contextual threats exploit real-time data.Source 7 BEC and credential theft blend tech with social engineering.Source 7

7

Cloud Misconfigurations Remain Top Breach Cause in Multi-Cloud Setups

Errors like public storage, over-permissions, and config drift in hybrid/multi-cloud expose assets due to poor visibility.Source 7 Inconsistent policies across providers heighten risks.Source 7 Centralized monitoring is urged to detect issues early.Source 7

8

ShinyHunters Exploit Salesforce Gainsight to Hit 200+ Companies

In Nov 2025, ShinyHunters hackers used Gainsight OAuth flaws to steal data from over 200 firms via interconnected SaaS risks.Source 2 This highlights supply chain vulnerabilities in cloud services.Source 2 Affected major companies faced sensitive record losses.Source 2

9

INC Ransomware Disrupts US Emergency Alerts via OnSolve CodeRED

Early Nov 2025, INC gang hit OnSolve’s CodeRED, stealing resident data and halting alerts in multiple US states.Source 2 Officials deployed backups after extortion refusal.Source 2 This critical infrastructure attack underscored ransomware dangers.Source 2

10

Handala Hacktivists Escalate with Stryker Attack Amid US-Iran War

Pro-Iranian Handala, actually MOIS-linked, wiped Stryker devices in a first for major US firms, per Check Point.Source 4 Experts warn of patient safety risks in healthcare targets.Source 4 Related groups like Seedworm hit US nets since Feb.Source 4

11

AtomSIlo Reemerges and 0APT Surges in March 2026 Threat Landscape

Bitdefender's March 2026 debrief notes AtomSIlo's return and 0APT's victim claim explosion, signaling shifting ransomware dynamics.Source 6 BYOVD and log-purging tactics enhance stealth.Source 6 Recruitment for wiper ops like ShadowByt3$ grows.Source 6