zero-day
NEWS ROUNDUP – 13th April 2026
This DFM 48-hour roundup tracks the European Commission cloud breach linked to the Trivy supply-chain compromise, emergency Adobe Reader zero-day patching, healthcare disruption at Signature Healthcare, UNC6783 targeting outsourced support functions, Operation Atlantic freezing more than $12 million tied to crypto fraud, and new policy movement on enterprise connected device security and EU digital wallet certification efforts.
NEWS ROUNDUP – 20th February 2026
Attackers are cutting response windows: Unit 42 cites cases reaching data exfiltration in 72 minutes. Figure Technology Solutions confirmed a breach tied to leaked user records, while Meriden, Connecticut reported ransomware disruption. Mandiant warned of active exploitation of a Dell RecoverPoint for VMs zero-day, and the UK ICO prevailed in the DSG Retail appeal, sharpening expectations for “appropriate security” practice.
NEWS ROUNDUP – 11th February 2026
Active exploitation of SolarWinds Web Help Desk led to Velociraptor deployment, while the European Commission investigated a breach in its mobile device management environment. Singapore detailed a coordinated telco response to UNC3886. CISA added six known-exploited vulnerabilities, and Microsoft patched six exploited zero-days. BeyondTrust disclosed an unauthenticated RCE. Courts sentenced a fugitive tied to a $73M pig-butchering scheme in absentia.
NEWS ROUNDUP – 14th January 2026
Under rapid patch pressure, defenders are juggling exploited flaws in common enterprise and developer services while real-world disruption hits hospitals, utilities, and large consumer platforms. The practical priority is sequencing: isolate exposed edge systems, validate logs and backups, then patch and hunt for pre-fix exploitation artifacts. Intelligence signals also show more “trusted channel” lures via messaging apps, expanding monitoring beyond email.
NEWS ROUNDUP – 26th December 2025
Digital Forensics Magazine’s 48-hour cybersecurity roundup tracks the most actionable developments across incident response, investigations, major disruptions, and emerging threats worldwide. This edition highlights ransomware and DDoS impacts, a WatchGuard Firebox zero-day under active exploitation, and supply-chain risk from compromised repositories and malicious npm packages. It also covers law-enforcement crackdowns, policy shifts affecting identity verification and privacy, plus new standards guidance for protecting tokens and assertions.
