Latest Internet & Cybersecurity News

đź“…February 17, 2026 at 1:00 AM
February 2026 cybersecurity highlights include active exploits of Chrome and BeyondTrust zero-days, major telco and luxury brand breaches, AI-driven threats, ransomware surges, and critical patches.
1

Google Patches First Actively Exploited Chrome Zero-Day of 2026

Google released an emergency Chrome update on Friday to address a zero-day vulnerability (CVE not specified) actively exploited in the wild.Source 13 This marks the first such Chrome zero-day patched this year, urging users to update immediately.Source 1Source 13 Check Point also noted Google patching 11 vulnerabilities in Chrome 145.Source 1

2

BeyondTrust Critical Vulnerability Under Active Exploitation

CVE-2026-1731 (CVSS 9.9) in BeyondTrust Remote Support and Privileged Remote Access is exploited within 24 hours of PoC release, enabling unauthenticated RCE.Source 1Source 4 Attackers send crafted requests for remote code execution.Source 4 Check Point IPS provides protection against this command injection flaw.Source 1

3

Odido Telco Breach Exposes Millions of Dutch Customers

Netherlands' largest mobile operator Odido suffered a breach in its customer contact system, potentially affecting 6.2 million users.Source 6 Compromised data includes names, addresses, emails, IBANs, birth dates, and ID numbers, but no passwords or billing info.Source 6 The company engaged experts and assured operational services remain unaffected.Source 6

4

Luxury Brands Dior, Louis Vuitton, Tiffany Fined $25M in South Korea

South Korean authorities fined Dior, Louis Vuitton, and Tiffany $25 million over massive data breaches from a recent hacker attack.Source 8 The penalties highlight accountability for luxury firms handling customer data.Source 8 This underscores growing regulatory scrutiny on breach responses.Source 8

5

Fintech Figure Discloses Data Breach from Employee Phishing

Fintech firm Figure revealed a data breach on February 16, 2026, triggered by an employee phishing attack.Source 10 Details on exposed data remain limited, but it adds to rising phishing incidents.Source 2Source 10 Organizations are urged to bolster anti-phishing training.Source 2

6

Microsoft Releases February 2026 Patch Tuesday Updates

Microsoft issued its February 2026 Patch Tuesday, addressing multiple vulnerabilities as noted in Check Point's report.Source 1 This routine update is critical amid rising exploit trends.Source 1Source 4 Users should apply patches promptly to mitigate risks.Source 1

7

TeamPCP Hijacks Cloud Infrastructure for Cybercrime

Threat cluster TeamPCP targets misconfigured cloud environments like Docker, Kubernetes, and Redis for crypto mining, proxyware, and extortion.Source 4 They scan IP ranges for vulnerabilities like React2Shell.Source 4 This highlights dangers of exposed cloud APIs.Source 4

8

DragonForce Ransomware Cartel Expands Operations

S2W detailed DragonForce, a RaaS group since 2023, growing via attacks on rivals and partnerships to dominate ransomware ecosystem.Source 4 It promotes itself as a cartel for influence.Source 4 Ransomware volatility continues with groups like Qilin surging.Source 5

9

First Contact Health Sanctioned for Cybersecurity Failings

First Contact Health faced sanctions for lacking MFA, conditional access, and monitoring tools, exposing health data.Source 2 An enforcement order mandates security improvements or face stricter action.Source 2 Robust authentication is essential for sensitive data handlers.Source 2

10

Rise of Agentic AI and Quantum Threats in 2026 Cybersecurity

2026 sees Agentic AI enabling autonomous attacks and 'Harvest Now, Decrypt Later' quantum risks intensifying.Source 3Source 11 Focus shifts to resilient recovery and identity-first security.Source 3Source 4 Federal agencies prioritize post-quantum crypto and continuous verification.Source 11

11

German Warning on State-Sponsored Phishing via Messaging Apps

German intelligence warns of state-sponsored phishing abusing messaging apps, amid rising brand impersonation since February.Source 2 Phishing attacks surged, prompting expert vigilance.Source 2 Multi-channel tactics like ClickFix rose 500%.Source 5

12

Aries Global Acquires IS Decisions for Enhanced Access Security

On February 16, 2026, Aries Global acquired IS Decisions, boosting Active Directory security with UserLock and FileAudit.Source 9 Products offer MFA, session controls, and AI-ready analytics for hybrid environments.Source 9 This strengthens identity protection amid perimeter shifts.Source 3Source 9