Latest Internet & Cybersecurity News

đź“…January 31, 2026 at 1:00 PM
January 2026 cybersecurity highlights major vulnerabilities in OpenSSL, SolarWinds, n8n; massive DDoS attacks, data breaches at Nike; AI risks, ransomware, and law enforcement crackdowns.
1

Critical Vulnerabilities Patched in OpenSSL, SolarWinds, and n8n

OpenSSL released updates fixing 12 flaws including remote code execution. SolarWinds patched four critical web helpdesk flaws with RCE and auth bypass. Two high-severity n8n vulnerabilities allow authenticated remote code execution.Source 2Source 4

2

Major DDoS Attacks Disrupt Online Games

Coordinated DDoS attacks targeted the finals and other online games, causing extensive disruptions. These incidents mark record-level DDoS activity in early 2026.Source 2Source 4

3

Crypto Hackers Leak Data from Hinge and Match Group

Major data leak hits dating platforms Hinge and Match Group by crypto hackers. This breach exposes user data amid rising consumer platform attacks.Source 2

4

Nike Investigates Ransomware Claim of 1.4TB Data Theft

US sports brand Nike probes alleged cybersecurity incident after ransomware gang claims 1.4TB data theft. Investigation ongoing into potential supply chain impacts.Source 5Source 12

5

ServiceNow Patches Severe AI-Driven Vulnerability CVE-2025-12420

ServiceNow fixed the most severe AI security flaw to date, allowing unauthenticated attackers to pose as admins on its AI platform. This tops January's critical vulnerabilities.Source 5

6

US Charges 31 in ATM Jackpotting with Ploutus Malware

Federal grand jury indicts 31 linked to Venezuela’s Tren de Aragua for ATM jackpotting using Ploutus malware to drain machines nationwide.Source 9

7

FBI Seizes RAMP Cybercrime Forum

FBI takedown of 5-year-old RAMP forum removes key hub for ransomware ads, malware, and hacking services, exposing user data.Source 9

8

175,000 Exposed AI Systems Lack Security Controls

SentinelLABS finds 175,000 open-source AI systems across 130 countries without authentication, vulnerable to spam, phishing, and disinformation.Source 9

9

Microsoft Patches Office Zero-Day CVE-2026-21509

Emergency updates fix exploited Office flaw allowing security bypass in versions 2016-2024 and M365, following Patch Tuesday's 114 flaws.Source 9

10

China Restricts US and Israeli Cybersecurity Software

New restrictions limit use of U.S. and Israeli cybersecurity tools in China, impacting global software deployment and compliance.Source 1

11

Six Major Data Breaches Reported in January 2026

January saw six significant breaches across sectors, highlighting persistent vulnerabilities worldwide.Source 8Source 12

12

AI Emerges as Double-Edged Sword in 2026 Cybersecurity

AI revolutionizes defenses but empowers attacks like deepfakes, ransomware, and supply chain exploits; key trend for manufacturing and CISA.Source 3Source 6Source 7