Latest Internet & Cybersecurity News

đź“…January 22, 2026 at 1:00 AM
Major ransomware attacks hit McDonald's India, Under Armour, hospitals, and retailers; Oracle patches 337 vulnerabilities; EU boosts cybersecurity act; AI predictions surge for 2026 threats.
1

Zestix Breach Exposes 50+ Multinational Companies via Stolen Credentials

Threat actor Zestix used infostealer malware logs to access corporate file-sharing portals of over 50 companies, including Iberia Airlines and Maida Health, due to lack of MFA.Source 1 No sophisticated exploits were needed; data was exfiltrated directly with valid credentials.Source 1 Affected sectors span aviation, health, and robotics.Source 1

2

AZ Monica Hospital Network Shut Down by Cyberattack

Belgian hospital network AZ Monica halted all servers, canceled procedures, and transferred patients after a January 13 IT outage.Source 1 Investigation underway with police notified; ransomware not confirmed but suspected.Source 1 Operations disrupted across Deurne and Antwerp campuses.Source 1

3

Kyowon Ransomware Attack Disrupts South Korean Conglomerate

Kyowon detected abnormal network activity on January 10, 2025, isolating servers; customer data possibly leaked.Source 1 Attackers entered via exposed internet server, spreading ransomware to subsidiaries.Source 1 Incident response activated promptly.Source 1

4

Everest Ransomware Claims McDonald's India Breach with 861GB Data

Everest group published details on January 20, 2026, claiming exfiltration of customer data and documents from McDonald's India.Source 2 Demands ransom; data includes personal info for potential phishing.Source 2 McDonald's has not confirmed; follows prior incidents.Source 2

5

Oracle Releases January 2026 CPU with 337 Security Patches

Oracle's first 2026 Critical Patch Update addresses 337 vulnerabilities across over 30 products, resolving about 230 unique issues.Source 5 Patches cover multiple product lines for enhanced security.Source 5 Released to mitigate widespread risks.Source 5

6

Under Armour Customer Data Exposed: 72 Million Emails Leaked

Everest ransomware incident from November 2025 led to 343GB data theft; 72 million emails, names, birthdates, and purchases published January 21, 2026.Source 6 Enables AI phishing and fraud; lawsuit filed against company.Source 6 Experts warn of long-term risks.Source 6

7

Central Maine Healthcare Breach Impacts 145,000 Individuals

Cybersecurity incident involved theft of data affecting 145,000 patients at Central Maine Healthcare.Source 8 Reported January 21, 2026; details on attack method undisclosed.Source 8 Highlights healthcare vulnerabilities.Source 8

8

Black Kite Report: 70% Retailers Have Exposed Credentials

2026 Wholesale & Retail Report reveals over 70% major retailers, 60% wholesalers, and 52% supply chain with exposed credentials.Source 4 Shared supply chain targeted; urges patching CISA KEV vulnerabilities.Source 4 Credential theft dominant vector.Source 4

9

EU Commission Proposes Revised Cybersecurity Act

European Commission advances revised Act to enhance cyber resilience and secure ICT supply chains.Source 9 Addresses strategic risks to democracy and economy; includes new protections.Source 9 Proposal announced January 21, 2026.Source 9

10

CrowdStrike Predicts Surge in AI-Generated Vulnerabilities for 2026

Experts forecast AI-driven vulnerability research becoming practical, increasing exploits market.Source 3 AI fuels cyberattacks; traditional defenses may fail against acceleration.Source 3 Rise of autonomous agents and hyperscale attacks expected.Source 3

11

CIRO Breach Exposes 750,000 Individuals

Canadian Investment Regulatory Organization (CIRO) breach affects 750k; part of week's major incidents.Source 1 Details limited but underscores regulatory sector risks.Source 1 Combined with healthcare and enterprise breaches.Source 1

12

Ingram Micro Ransomware Exposes Staff Records

Ingram Micro admits ransomware attack exposed employee data; incident reported recently.Source 10 Highlights distributor vulnerabilities in supply chain.Source 10 Ongoing coverage in breaches category.Source 10