Latest Internet & Cybersecurity News

📅January 19, 2026 at 1:00 AM
Critical vulnerabilities patched by Microsoft, Cisco, and others amid ransomware attacks, hospital disruptions, state-sponsored exploits, and global cybercrime crackdowns.
1

Microsoft Issues Emergency Patch for Actively Exploited Windows Zero-Day CVE-2026-20805

Microsoft released an urgent patch for CVE-2026-20805, a critical zero-day vulnerability affecting all supported Windows versions that is under active exploitation. The flaw allows attackers unauthorized access, prompting immediate updates.Source 7 This follows January Patch Tuesday fixing 112-114 flaws, including one exploited zero-day.Source 2Source 5Source 6

2

Cisco Patches Zero-Day RCE in Secure Email Gateways Exploited by China-Linked APT

Cisco addressed CVE-2025-20393 (CVSS 10.0), a maximum-severity flaw in AsyncOS for Secure Email Gateway exploited as zero-day by China-nexus APT UAT-9686. Patches prevent root command execution if exposed ports are open.Source 2Source 5Source 6Source 8 Disclosure came nearly a month after detection.Source 2

3

Benzona Ransomware Claims Attack on Emergent International Holdings

Ransomware group Benzona claimed responsibility for breaching Emergent International Holdings, Inc. (USA) on January 17, 2026, threatening data release without contact. The business services firm faces full leak publication.Source 3

4

Belgian Hospital AZ Monica Shuts Down Servers After Cyberattack

AZ Monica hospital network in Antwerp and Deurne halted operations, canceled procedures, and transferred patients due to a cyberattack forcing server shutdowns. Impact disrupts critical healthcare services.Source 1Source 6

5

Black Basta Ransomware Leader Added to EU Most Wanted and INTERPOL Red Notice

Ukraine's cyber police raided homes of alleged Black Basta and Conti affiliates cracking passwords for breaches; leader now on EU Most Wanted and INTERPOL lists. Suspected Russian ringleader hunted.Source 2Source 8

6

China Bans U.S. and Israeli Cybersecurity Software in Firms

Beijing ordered Chinese companies to cease using U.S. and Israeli cybersecurity tools over security risks, per sources. Move escalates tech tensions.Source 1

7

Microsoft Disrupts RedVDS Cybercrime Subscription Service

Microsoft, with Europol and others, shut down RedVDS, a service enabling millions in global fraud via legal actions in US and UK. Part of broader anti-cybercrime operation.Source 1Source 5

8

Ransomware Hits South Korean Kyowon, Exposing 9 Million Accounts

A ransomware attack disrupted Kyowon operations, potentially breaching over 9 million user accounts. Sources confirm major data exposure risk.Source 1

9

Central Maine Healthcare Data Breach Impacts 145,000 Patients

Breach at Central Maine Healthcare compromised data of over 145,000 patients, highlighting healthcare vulnerabilities. Incident details under investigation.Source 1

10

Europol, Spanish Police Arrest 34 in Black Axe Cybercrime Crackdown

Operation against Black Axe criminal network led to 34 arrests in Spain for cyber-enabled fraud and laundering. International effort targets African organized crime.Source 1

11

Instagram Password Reset Flaw Fixed by Meta, No Breach Confirmed

Meta patched Instagram flaw causing mass reset requests; denies 17.5 million account breach despite stolen credential reports. Cybercriminals exploited recycled passwords.Source 1Source 5

12

European Space Agency Suffers Cyberattack, Hundreds of GB Data Stolen

Hackers breached ESA systems, stealing hundreds of gigabytes of scientific data in a major incident. Details on perpetrators and impact emerging.Source 12