Threat Intelligence
NEWS ROUNDUP – 16th February 2026
Google patched an in-the-wild Chrome zero-day while GreyNoise tied most Ivanti RCE probing to a single bulletproof-hosted IP. Canada Goose investigated a 600k-record leak claim as Dutch telco Odido faced exposure fallout. Police in Thailand and India targeted mule accounts, and the EDPB addressed spyware abuse. PCI SSC opened comments and CERT-EU issued a CTI framework for EU institutions today.
NEWS ROUNDUP – 13th February 2026
Over the past 48 hours, CISA added four exploited vulnerabilities to the KEV catalog and issued an ICS advisory on Siemens SINEC NMS. Odido confirmed a customer data leak, while SmarterTools disclosed ransomware after an auth-bypass on an unpatched VM. Researchers flagged active exploitation of a critical BeyondTrust RCE and reported nation-state use of Google Gemini for campaigns this week.
NEWS ROUNDUP – 9th February 2026
European Commission contained suspicious activity against its device management platform, while reports highlighted CERT-EU indicators on infrastructure. Microsoft warned of active exploitation of SolarWinds Web Help Desk flaws. Singapore’s telco sector investigated an alleged state-linked intrusion as Winter Olympics services faced disruption attempts. UK authorities examined cyber-sanctions compliance and NIS bill progress, and Substack and Coupang disclosed user data exposure.
NEWS ROUNDUP – 4th February 2026
CISA warned on Avation Light Engine Pro OT risk as CERT-FR prioritised weekly patches. Investigators tracked Notepad++ updater hijacking and coercive Scattered Lapsus ShinyHunters tactics. Major incidents included Coinbase contractor misuse, NationStates breach downtime, and an Iron Mountain data-theft claim. CISA added SolarWinds Web Help Desk RCE to KEV while Metro and Office exploits circulated across Europe, Americas, and APAC.
NEWS ROUNDUP – 30th January 2026
Nike investigated an extortion-linked breach claim, Rotterdam port operations faced hacktivist-driven DDoS disruption, and CISA added actively exploited Ivanti EPMM vulnerabilities to its KEV catalogue. Law enforcement seized the RAMP cybercrime forum, while NIST advanced its Cyber AI Profile consultation. Identity compromise, control-plane abuse, and data-only extortion dominated incident response priorities globally.
