Thursday, April 9 2026

News Centre

Here you can access the latest 48hr Global News Roundups from DFM

We scour the internet to find the latest stories relating to:

DFIR, Cyber Investigations, Major Cyber Incidents, Exploits & Threat Intelligence, Law Enforcement, Policy, Standards & Compliance and Consumer App Data Leaks

We also provide an Editorial Perspective and a Reference List for further reading.

NEWS ROUNDUP – 18th March 2026

18/03/2026

Intuitive disclosed a phishing-linked breach of internal business applications, CISA added a Wing FTP flaw to its exploited catalog, and investigators traced GlassWorm fallout into compromised GitHub-hosted Python repositories. INTERPOL warned that AI-enhanced financial fraud is scaling globally, while NIST advanced cryptographic validation automation and the UK ICO pressed technology firms to strengthen age checks and protect children’s data better.

NEWS ROUNDUP – 16th March 2026

16/03/2026

Poland’s nuclear research centre blocked a cyberattack while Albania’s parliament isolated email systems during a separate incident. The FBI is tracing victims linked to malware distributed through Steam games, and U.S. prosecutors allege a responder assisted BlackCat ransomware actors. Telus and Stryker reported cyber disruptions, while authorities dismantled the SocksEscort proxy service and INTERPOL seized 45,000 malicious IPs.

NEWS ROUNDUP – 13th March 2026

13/03/2026

Microsoft’s March patch cycle fixed 93 flaws, while CISA warned on Siemens SIDIS Prime in critical infrastructure. Stryker reported manufacturing and shipping disruption after a cyberattack, Albania’s parliament suspended internal email, INTERPOL said 45,000 malicious IPs were taken down, and the U.S. sanctioned facilitators of North Korean IT-worker fraud targeting businesses and remote hiring channels across multiple regions this week.

NEWS ROUNDUP – 11th March 2026

11/03/2026

Microsoft fixed two disclosed zero-days in March Patch Tuesday, SAP shipped critical NetWeaver and FS-QUO fixes, and Dutch agencies warned that Russia-backed operators are hijacking Signal and WhatsApp accounts. Reuters also reported a customer-data breach at Loblaw, while ENISA published package-manager security guidance and the European Commission updated AI Act standardisation FAQs for high-risk systems across Europe and North America.

NEWS ROUNDUP – 9th March 2026

09/03/2026

Australia warned on Cisco SD-WAN exploitation, U.S. investigators examined a suspected China-linked FBI network breach, LexisNexis and TriZetto disclosed major data exposures, and authorities disrupted LeakBase and Tycoon 2FA. The roundup also tracks Google’s 90 zero-day tally for 2025, White House cyber strategy priorities, and European Commission guidance for applying the Cyber Resilience Act across health, government, telecom, and sectors.

NEWS ROUNDUP – 6th March 2026

06/03/2026

CISA added five newly exploited vulnerabilities to KEV as Cisco warned more Catalyst SD-WAN flaws are under active attack. Europol seized LeakBase and disrupted Tycoon 2FA, while Passaic County reported a malware outage and LexisNexis confirmed a data breach. Google challenged geofence warrants, and draft Cyber Resilience Act guidance signalled tougher product-security expectations for vendors and defenders globally this week.

NEWS ROUNDUP – 4th March 2026

04/03/2026

UK NCSC urged organisations to tighten monitoring amid Middle East spillover risks, while Cloudflare reported session-token abuse. AkzoNobel confirmed a breach at a U.S. site after an extortion leak claim, and Russian government portals suffered a multi-vector DDoS. CISA warned VMware Aria Operations is being exploited, and California’s privacy regulator fined PlayOn Sports $1.1M. Supreme Court heard geofence warrant challenge.

NEWS ROUNDUP – 2nd March 2026

02/03/2026

CISA updated hunting guidance for RESURGE malware lingering on Ivanti appliances, while Juniper warned of a critical PTX router takeover flaw. Reuters tracked cyber operations hitting Iranian apps and sites after strikes, as Sophos monitored Iran-linked hacktivist claims. In the US, UH Cancer Center reported SSN exposure affecting up to 1.15 million people. Substack disclosed stolen emails and phone numbers.

NEWS ROUNDUP – 27th February 2026

27/02/2026

Joint NSA-partner guidance and an NHS alert urge urgent hunting and hardening for actively exploited Cisco Catalyst SD-WAN flaws. Dutch telco Odido reports attackers publishing stolen customer data, while ManoMano notifies 38 million users after a third-party breach. Trend Micro patched critical Apex One console RCE. DOJ says scam-center crypto freezes exceeded $580m. EU advanced an undersea cable protection plan.