Latest Internet & Cybersecurity News

๐Ÿ“…February 9, 2026 at 1:00 PM
Global cybersecurity tightens with new laws, major breaches, record DDoS attacks, zero-days, and surveys highlighting threats from Russia/China amid AI risks.
1

Hong Kong Revives Data Breach Reporting Amendments

Hong Kong's privacy regulator announced on February 7, 2026, plans to consult on reviving PDPO amendments mandating data breach reporting and fines.Source 1 This aligns with global trends like US 72-hour incident reporting for critical infrastructure and Europe's NIS2 enforcement.Source 1 Organizations face pressure for faster responses and documentation.Source 1

2

APT28 Exploits Microsoft Office Zero-Day CVE-2026-21509

Russian-linked APT28 is actively exploiting a Microsoft Office zero-day in phishing against Ukrainian and EU targets using WebDAV and Covenant framework.Source 2 CERT-UA issued a critical alert for this threat.Source 2 Productivity tools remain high-risk amid rising attacks.Source 2

3

Notepad++ Update Mechanism Hijacked by Violet Typhoon

State-sponsored Violet Typhoon compromised Notepad++'s official update system to distribute malware, hitting software supply chains.Source 2 This underscores vulnerabilities in trusted update channels.Source 2 Users urged to verify software sources.Source 2

4

AISURU Botnet Launches Record 31.4 Tbps DDoS Attack

The AISURU botnet, using 2 million compromised Android devices, peaked at 31.4 Tbps in a hyper-volumetric DDoS, shattering records.Source 2 This highlights mobile IoT risks in infrastructure attacks.Source 2 Defenses must evolve against such scale.Source 2

5

CISA Mandates Retirement of EOL Edge Devices in 90 Days

CISA's BOD 26-02 requires federal agencies to remediate vulnerable end-of-support edge devices within 90 days, targeting internet-exposed risks.Source 2Source 7 Acting Director emphasizes no unsupported devices on networks.Source 7 Non-federal entities encouraged to follow.Source 7

6

Singapore's Operation CYBER GUARDIAN Counters UNC3886 APT

Singapore launched its largest cyber operation against UNC3886 APT targeting all major telcos using zero-days and rootkits since 2025.Source 6 No service disruptions occurred; access points closed with enhanced monitoring.Source 6 Exfiltrated only technical network data.Source 6

7

Qilin Ransomware Hits Romania's Conpet Oil Pipeline Firm

Conpet detected a cyberattack on February 3, 2026, impacting IT but not SCADA; Qilin claims 1TB data theft and listed it on leak site.Source 8 Operations continued normally via unaffected systems.Source 8 Group active with 40+ monthly victims in 2025.Source 8

8

European Commission Probes Mobile Device Management Breach

Hackers breached the European Commission's mobile device management systems, potentially accessing staff info on phones.Source 12Source 15 Investigation underway into the cyber break-in targeting Brussels staff devices.Source 12 Scope of compromise under review.Source 15

9

AV-Comparatives Security Survey 2026 Reveals Global Trends

Survey of 1,328 users across 87 countries shows Windows 11 dominant, Linux rising; top feared attack sources: Russia, China, US, North Korea.Source 3 Commercial security preferred; concerns over domestic threats.Source 3 Insights for pros on OS shifts and perceptions.Source 3

10

Mozilla Firefox 148 Enables Central AI Feature Disable

Mozilla announced Firefox 148 allows users to centrally disable all generative AI features, prioritizing privacy amid tool threats.Source 2 Contrasts rising AI-integrated risks in software.Source 2 Users gain control over AI in browsers.Source 2

11

World Economic Forum Warns of AI-Driven Cyber Threats

WEF's 2026 outlook highlights escalating AI cyber attacks, fraud epidemics, and supply chain risks globally.Source 5 Expertise gaps hinder resilience in NGOs and public sector.Source 9 Calls for collective investment to close cyber equity gaps.Source 9

Latest Internet & Cybersecurity News | DeckBook AI