Latest Internet & Cybersecurity News
Stryker Discloses Major Cybersecurity Attack Disrupting Global Microsoft Environment
On March 11, 2026, medical device giant Stryker suffered a cyberattack causing widespread disruption to its Microsoft environment, impacting order processing, manufacturing, and shipping. An Iran-linked group Handala claimed responsibility, with reports of device wipes possibly via endpoint tools like Intune, though no ransomware was detected.
Stryker activated incident response, contained the breach, and confirmed connected products remain safe.
Iran-Linked Hackers Blamed for Stryker Cyberattack Amid Escalating Tensions
Reuters reports suggest Iran-linked Handala group behind Stryker's attack, characterized as destructive retaliation with data deletion rather than extortion. Experts note attackers may have misused legitimate admin tools in Microsoft Configuration Manager for wipes.
This raises alarms for Houston firms facing similar threats during potential Iran conflicts.
Loblaw Companies Reveals Data Breach Exposing Customer PII
Canada's largest retailer Loblaw disclosed on March 10, 2026, a targeted attack exposing names, emails, and phone numbers from a non-critical IT segment. No passwords, financial, or health data was compromised; the breach was contained without malware evidence.
Affected customers face heightened phishing risks, prompting notifications and logouts.
FBI Seeks Gamers' Help to Track Steam Malware Campaign
On March 16, 2026, FBI's Seattle Division urged Steam users affected by malware in games like BlockBlasters and PirateFi to report details. The campaign ran from May 2024 to January 2026, targeting personal info and crypto via infostealers.
Victims are asked about communications, losses, and wallet details to aid the investigation.
Hack Attempt Targets Poland's National Nuclear Research Center
Poland's nuclear research center faced a recent cyberattack potentially by Iranian hackers, amid rising geopolitical cyber threats. The incident highlights vulnerabilities in critical infrastructure.
Details on impact or response remain limited in early reports.
Houston Companies Warned of Iran-Related Cyber Threats Post-Stryker
Following Stryker's March 11 attack, Houston firms are at higher risk from Iran-linked cyber operations during wartime escalations. The breach affected thousands of employees globally via Microsoft systems.
Businesses urged to bolster defenses against destructive attacks.
Web Hacking Vulnerabilities Still Prevalent in 2026, Demos Show
Recent demos highlight ongoing real-world exploits like IDOR, broken access controls, XSS, and CSRF on major platforms, found as recently as weeks ago. Bug bounties remain viable with AI changes; experts recommend 200-hour learning via HackerOne and PortSwigger.
Client-side controls easily bypassed by removing restrictions.
Stryker Attack Highlights Risks in Microsoft Intune and Config Manager
Reports indicate Stryker attackers possibly leveraged Intune for remote wipes and CVE-2025-47179 in Microsoft Configuration Manager for privilege escalation. No confirmed malware; focus on misused admin capabilities in centralized management.
Experts stress testing management infrastructure like internet-facing apps.
Loblaw Breach Likely Due to Access Control Weaknesses, No Exploits Found
Technical analysis shows Loblaw intrusion via credential compromise or poor governance, not malware or known CVEs. Detected March 10, 2026, after suspicious activity; no lateral movement observed.
Primarily impacts Canadian customers with phishing vector from exposed PII.
Cisco Promotes AI-Powered Security at NVIDIA GTC 2026
Cisco showcases secure AI factories and zero-trust segmentation at NVIDIA GTC March 16-19, 2026, with hybrid mesh firewalls for data centers and clouds. Observes 750B+ daily security events; partners with McLaren F1 for AI race data security.
Upcoming RSAC presence with Splunk emphasizes unified AI-driven defenses.
Steam Games Used as Malware Vectors in Prolonged Infostealer Campaign
FBI identifies seven Steam titles infected from 2024-2026, distributing infostealers for credential and crypto theft. Platform's popularity makes it prime for such attacks; no specific actor named yet.
Public form collects victim data to trace threat group.
Stryker Confirms No Ransomware in Cyber Incident Updates
Multiple Stryker statements from March 12-13, 2026, affirm incident contained to Microsoft environment with no malware detected. Teams investigate full impact; products like SurgiCount and Triton unaffected.
Commitment to transparency with customer and media updates.