Latest Internet & Cybersecurity News

๐Ÿ“…January 26, 2026 at 1:00 PM
Major cybersecurity developments include Nike's 1.4TB data breach claim by WorldLeaks, Russia-linked Sandworm's wiper attack on Poland's grid, GCVE vulnerability tracker launch, and rising AI threats.Source 1Source 2Source 4
1

WorldLeaks Claims 1.4TB Nike Data Theft, Posts Samples After Ransom Deadline

Extortion group WorldLeaks claimed to have stolen 1.4TB of Nike data, including 188,347 files on designs and manufacturing, posting samples after the January 24, 2026 deadline.Source 2Source 4Source 10 Nike is investigating the potential breach but has not confirmed the data's legitimacy.Source 7Source 10 The leak raises risks of IP theft and counterfeits, with no customer PII observed in samples.Source 10

2

Russia-Linked Sandworm APT Targets Poland's Power Grid with DynoWiper Malware

ESET attributes a December 2025 wiper malware attack on Poland's energy grid to Sandworm, using new DynoWiper on the 10-year anniversary of Ukraine grid attack.Source 1Source 8Source 12 The attack failed to cause disruption despite destructive intent.Source 8Source 12Source 14 Tactics overlap with prior Sandworm operations in Ukraine.Source 8

3

GCVE Launches as Decentralized Alternative to Fragile CVE Vulnerability Program

GCVE emerges amid CVE funding crises, aiming for decentralized tracking of software flaws to boost collaboration.Source 1 Europe's initiative raises concerns over potential fragmentation and duplicate entries in databases.Source 1 It seeks to enhance efficiency for global defenders.Source 1

4

Edmunds Data Breach Exposed on BreachForums by ShinyHunters Affiliate

Hacker Wadjet published Edmunds user data on BreachForums on January 25, 2026, linked to ShinyHunters, including PII and behavioral data.Source 6 The leak heightens risks of identity theft, phishing, and fraud.Source 6 Data spans engagement metrics, account metadata, and partial messaging logs.Source 6

5

CISO Predictions for 2026: AI Governance, SME Ransomware Surge, Quantum Prep

Cyber leaders foresee AI accelerating attacks via automation while defenders scale governance and resilience.Source 3 SMEs face rising targeted ransomware; attackers hoard data for quantum decryption.Source 3 Post-quantum readiness enters audits amid state-sponsored threats.Source 3

6

Hundreds of Millions of Audio Devices Vulnerable to Bluetooth Fast Pair Flaws

Flaws in Google's Fast Pair protocol on 17 headphone/speaker models enable wireless hacking, eavesdropping, and tracking.Source 1 Vendors must patch to prevent stalkers and eavesdroppers.Source 1 Affects devices using one-tap pairing.Source 1

7

Cybercrime Groups Evolve into Business-Like Structures Challenging CISOs

2026 sees cybercriminals organizing like legitimate firms, intensifying threats to executives.Source 1Source 9 Rise in sophisticated BEC and payment fraud using AI for impersonation.Source 9 State actors expand beyond Iran via hybrid operations.Source 9

8

MSC Cruises Bans Smart Glasses to Prevent Covert Surveillance

MSC Cruises updated policy banning Ray-Ban Meta smart glasses to curb hidden recording on ships.Source 1 Addresses privacy risks from wearable surveillance tech.Source 1 Travelers advised to avoid if reliant on such devices.Source 1

9

Everest Ransomware Gang Hits Under Armour, Exposes Millions of Accounts

Following Nike claims, Everest ransomware breached Under Armour, leaking 72.7M accounts with PII, locations, and purchase data.Source 2 Part of trend targeting sportswear firms.Source 2 Have I Been Pwned tracked the exposure.Source 2

10

AI-Powered Attacks Evade EDR Using Steganography and Automation

Threat actors leverage AI for steganography, AV abuse, and automated attacks bypassing endpoint detection.Source 11 Defenders urged to combine NDR and EDR for countermeasures.Source 11 Signals shift in AI-cyber defense strategies.Source 11

11

Fincantieri Secures Cyber Resilience Contracts with Italian Navy

Shipbuilder Fincantieri signed deals to bolster cyber protections for naval units against threats.Source 15 Enhances resilience in modern warships.Source 15 Reflects growing maritime cybersecurity focus.Source 15

12

Arcadis Achieves International Cybersecurity Certification

Global engineering firm Arcadis earned certification, strengthening defenses in sustainable design sector.Source 13 Milestone on January 26, 2026.Source 13 Demonstrates commitment to cyber standards.Source 13