Latest Internet & Cybersecurity News

📅May 28, 2026 at 1:00 AM
Global cybersecurity is dominated by ransomware, supply-chain intrusions, data theft, and state-backed pressure on critical infrastructure and public trust.
1

GCHQ warns Russia is escalating cyber pressure on the UK and Europe

Britain’s signals-intelligence chief said Russia is “relentlessly targeting critical infrastructure, democratic processes, supply chains and public trust,” urging action from government and industry. The warning highlights cyber risk as a broader geopolitical issue rather than a purely technical one.Source 2

2

Microsoft warns of a credential-theft campaign hitting 35,000 users across 13,000 organizations

Microsoft reported a credential theft campaign affecting users in 26 countries and spanning 13,000 organizations, showing how large-scale identity attacks remain a major threat vector. The incident underscores the continuing focus on account compromise rather than only malware deployment.Source 1

3

GitHub says attackers stole thousands of internal repositories after poisoned extension install

A developer-installed malicious Visual Studio Code extension led to the theft of roughly 3,800 internal repositories, according to the reported disclosure. The case illustrates how trusted developer tooling can become an entry point for supply-chain compromise.Source 1

4

‘Megalodon’ supply-chain campaign hit more than 5,000 GitHub repositories

An automated malicious campaign dubbed “Megalodon” used fake pull requests to steal sensitive information from open-source projects. Kaseya reported 5,718 malicious commits across 5,561 repositories in just six hours, highlighting the speed and scale of modern repository abuse.Source 1

5

Supply-chain attacks on open-source JavaScript and Python projects continue to surge

Kaseya’s breach roundup says attacks against open-source JavaScript and Python repositories remain on the rise, reinforcing concerns about ecosystem-wide exposure. The trend is important because a single compromised package or workflow can affect downstream users at scale.Source 1

6

Grafana Labs disclosed a GitHub Actions ‘Pwn Request’ attack and extortion attempt

Grafana Labs said a misconfigured GitHub Actions workflow let a threat actor steal a privileged GitHub App token and exfiltrate private source code. The company also reported an extortion attempt tied to the incident, showing how CI/CD and source-control weaknesses can lead to both theft and coercion.Source 1

7

German university hospitals report a large patient-data breach through an external billing provider

Hackers targeted Unimed, a billing-service provider used by university hospitals in several German cities, exposing tens of thousands of patients’ data. The case shows how third-party service providers can become high-impact entry points into healthcare systems.Source 1

8

Beacon Mutual begins notifying victims after ransomware attack exposed personal information

The Rhode Island workers’ compensation insurer said it detected the attack on January 14, 2026, and later found attackers had access to systems for about a week. Roughly 162,000 people may have been affected, including more than 131,000 Rhode Island residents.Source 1

9

American Lending Center reports ransomware-related exposure of 123,158 individuals

The California-based lender said attackers accessed files containing sensitive personal information, including names, dates of birth and Social Security numbers. The incident demonstrates that financial-services breaches continue to produce large-scale identity risk.Source 1

10

GCHQ warns cybersecurity must become ‘10 times more urgent’ across society

Anne Keast-Butler said cybersecurity needs to be treated with much greater urgency “from boardrooms to living rooms,” reflecting concern that defense gaps span institutions and individuals. The warning aligns with broader government messaging that cyber resilience is now a national-security issue.Source 2