Latest Internet & Cybersecurity News

đź“…February 6, 2026 at 1:00 AM
Cybersecurity news highlights ransomware exploits, AI-driven phishing surges, nation-state attacks on infrastructure, major data breaches, and international defenses amid rising threats.
1

Italy Blocks Suspected Russian Cyberattacks Ahead of Winter Olympics

Italian authorities foiled cyberattacks targeting government infrastructure, Olympic websites, and hotels in Cortina d’Ampezzo, attributed to Russia by Foreign Minister Antonio Tajani.Source 1 The attacks aimed to disrupt foreign ministry systems and an embassy site in Washington, D.C.Source 1 No major disruptions occurred due to proactive defenses.Source 1

2

Ransomware Groups Exploit Critical VMware ESXi Flaw

CISA confirmed ransomware actors exploiting CVE-2025-22225, a high-severity VMware ESXi vulnerability with CVSS 8.2, allowing VM isolation escape and hypervisor control.Source 1 Broadcom patched it in March 2025, but active attacks persist.Source 1 Organizations urged to apply updates immediately.Source 1

3

Incognito Dark Web Narcotics Market Operator Jailed for 30 Years

The operator of Incognito, a major dark web narcotics market, was sentenced to 30 years by Judge Colleen McMahon, calling it the most serious drug case in her career.Source 1 Law enforcement seized servers for transactions, DDoS protection, and crypto payments in March 2024.Source 1 The operation made the perpetrator a global drug kingpin.Source 1

4

AI-Driven Phishing Surges at Unprecedented Scale

Phishing accelerated in 2025, with filters blocking one malicious email every 19 seconds, doubled from prior year, fueled by AI integration in campaigns.Source 1 Reports show 105% rise in remote access tools and 204% in malware-delivering emails.Source 1 Post-delivery analysis and human validation now essential.Source 1

5

SQL Injection Flaw Impacts Thousands of WordPress Sites

A critical SQL injection vulnerability affects thousands of WordPress sites, enabling potential data breaches and site takeovers.Source 1 Immediate patching recommended for all vulnerable plugins and themes.Source 1 No specific exploitation details yet reported.Source 1

6

Zendesk Abuse Fuels Global Spam Wave

Attackers exploit unsecured Zendesk support systems to send automated spam mimicking legitimate notifications, flooding user inboxes worldwide.Source 2 Messages bypass filters, appearing as account activations or support alerts.Source 2 Users report hundreds of emails in short periods.Source 2

7

CISA Adds SolarWinds RCE to Known Exploited Vulnerabilities

CISA listed a critical SolarWinds Web Help Desk flaw allowing unauthenticated remote command execution via untrusted data handling.Source 2 Active attacks confirmed, urging immediate patching.Source 2 Part of ongoing exploitation trends.Source 2

8

Betterment Data Breach Exposes 1.4 Million Accounts

Hackers stole personal data including emails, names, and addresses from over 1.4 million Betterment accounts in January, enabling crypto scams.Source 2 Customer investment accounts reportedly unaffected.Source 2 Breach notification ongoing.Source 2

9

Sinobi Ransomware Hits Impressico Business Solutions

Sinobi Ransomware compromised 150 GB of data from global IT firm Impressico, including contracts, financials, and customer info, now published on dark web.Source 3 Company headquartered in India with international operations.Source 3 No ransom payment details disclosed.Source 3

10

Russian-Linked ELECTRUM Targets Polish Power Grid

Russia-linked group ELECTRUM, overlapping with Sandworm/APT44, attacked Polish power facilities, causing loss of control and equipment damage but no outages.Source 3 Disrupted communication systems at multiple sites.Source 3 Attributed to GRU military intelligence.Source 3

11

Notepad++ Critical Vulnerability Exploited by Nation-State Actor

NIST detailed a critical flaw in Notepad++ update component (pre-8.8.9), exploited June-November 2025 likely by nation-state actors disrupting updates.Source 4 Widely used in healthcare and other sectors.Source 4 Patch applied; monitor for related threats.Source 4

12

New Zealand Health Portal Breach Exposes Sensitive Data

Ransom hackers accessed and downloaded documents from Manage My Health portal's My Health Documents section, threatening dark web release.Source 6 Affects thousands of users in public health system.Source 6 Highlights privacy framework gaps.Source 6