Browsing: Threats & Incidents
Stay updated on the latest cyberattacks, breaches, vulnerabilities, and digital threats impacting users, companies, and everyday technology.
Adidas is investigating a data breach involving a third-party partner that reportedly exposed 815,000 records, including names, email addresses, and passwords. The breach was claimed by the Lapsus$ Group, which announced the incident on February 16. Adidas has stated that its own IT infrastructure and consumer data remain unaffected by this incident.
Figure Technology Solutions has reported a data breach involving stolen customer information, including names, addresses, and phone numbers. The breach occurred due to a social engineering attack where attackers impersonated a trusted contact to gain access to internal systems. The hacking group ShinyHunters claimed responsibility and released the data after ransom demands were unmet, raising concerns about identity theft and fraud risks for affected individuals.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about a critical vulnerability in Honeywell CCTV products, tracked as CVE-2026-1670. This flaw, which has a severity score of 9.8, allows unauthorized access to camera feeds and account hijacking by enabling attackers to change recovery email addresses. The affected models include I-HIB2PI-UL 2MP IP and SMB NDAA MVO-3, among others, and as of February 17, 2026, there have been no known public exploitations of this vulnerability.
Researchers from Check Point have discovered that AI platforms such as Grok and Microsoft Copilot can be exploited for stealthy malware communication. Attackers can use these services to relay commands and retrieve stolen data without being easily detected. The proof-of-concept demonstrated how malware could interact with AI services to create a bidirectional communication channel, bypassing traditional security measures.
Deutsche Bahn, Germany’s national rail company, experienced significant service disruptions due to a DDoS cyberattack on February 17. The attack affected its website and travel app, DB Navigator, rendering them offline for hours. Although services were restored by February 20, the company did not disclose details about the attackers or whether customer data was compromised, emphasizing the importance of protecting user information and system availability.
Flare researchers have identified that threat actors are quickly weaponizing recently disclosed vulnerabilities in SmarterMail, specifically CVE-2026-24423 and CVE-2026-23760. These critical flaws enable remote code execution and authentication bypass on email servers, with over 1,185 vulnerable servers identified. The rapid exploitation of these vulnerabilities has led to confirmed real-world attacks, including ransomware campaigns targeting email infrastructure, which is often less monitored than other systems.
Microsoft faced an issue with Exchange Online that mistakenly quarantined legitimate emails due to faulty heuristic detection rules aimed at blocking credential phishing. This incident began on February 5 and lasted until February 12, affecting users’ ability to open emails and Teams messages. Thousands of URLs were incorrectly flagged as phishing links, leading to significant disruptions in communication for users across the platform.
Cybercriminals are now exploiting firewalls to launch ransomware attacks, as revealed in a Barracuda Networks study. Attackers can escalate breaches into full-scale encryption in an average of three hours, significantly reducing detection time. Many exploited vulnerabilities date back to 2013, indicating that unpatched legacy systems remain a substantial risk for organizations.
Figure Technology Solutions experienced a data breach affecting nearly 1 million accounts, with hackers stealing personal and contact information through a social engineering attack. The breach, confirmed by a Figure spokesperson, involved the theft of data from 967,200 accounts, including names, email addresses, phone numbers, physical addresses, and dates of birth. This incident highlights significant risks associated with social engineering tactics, particularly in the fintech sector.
The Picus Security Red Report 2026 reveals a shift in cyberattack strategies, with attackers focusing on stealth and persistence rather than disruptive ransomware. This change is evidenced by a 38% decline in data encrypted for impact, dropping from 21% in 2024 to 12.94% in 2025. Attackers are increasingly using identity-based access and low-noise techniques, allowing them to operate undetected within organizations, which poses significant risks to cybersecurity and privacy.
Navigation
Your 5-Minute Cybersecurity Brief
A weekly digest of cybersecurity news, phishing alerts, privacy tips, and emerging threats, simplified so anyone can understand what matters and why.