Latest Internet & Cybersecurity News

đź“…March 17, 2026 at 1:00 AM
Major cyberattacks hit medtech firms like Stryker and Intuitive Surgical; Chrome zero-days patched; INTERPOL takedowns disrupt cybercrime; rising ransomware and supply chain threats dominate global cybersecurity.
1

INTERPOL's Operation Synergia III Takedowns 45,000 Malicious IPs and 94 Arrests

INTERPOL’s Operation Synergia III across 72 countries led to 94 arrests and the takedown of over 45,000 malicious IP addresses and servers linked to phishing, malware, and ransomware.Source 1Source 1 The operation demonstrates effective international intelligence fusion and coordinated sinkholing for disrupting cybercrime.Source 1 Practitioners note it yields devices and leads for further investigations.Source 1

2

Iran-Linked Handala Group Attacks Stryker, Disrupting Manufacturing

Iran-linked Handala hackers targeted medical device maker Stryker, wiping thousands of servers and devices, exfiltrating 50TB data, and disrupting global manufacturing and shipping.Source 1Source 2Source 3 Attackers abused Microsoft Intune for living-off-the-land tactics, bypassing traditional malware defenses.Source 1 This highlights risks to medical supply chains from geopolitical hacktivism.Source 3Source 6

3

Intuitive Surgical Cyberattack via Phishing Exposes Customer Data

Surgical robotics firm Intuitive Surgical suffered a phishing-based breach compromising employee credentials, customer contacts, and business records.Source 2Source 10 The company contained the incident without affecting da Vinci systems due to network segmentation.Source 2 It follows closely after the Stryker attack, signaling heightened medtech risks.Source 2Source 10

4

Google Chrome 146 Patches Two Actively Exploited Zero-Days

Google's emergency Chrome 146 update fixes CVE-2026-3909 and CVE-2026-3910, high-severity bugs in Skia and V8 exploited in the wild.Source 1Source 5 Discovered March 10, 2026, these enable rapid user-scale attacks, urging immediate patching and exploit hunting.Source 1Source 5 Browser zero-days remain a top threat vector.Source 1

5

Authorities Disrupt SocksEscort Proxy Service and Avrecon Botnet

U.S. and European authorities sinkholed SocksEscort, a proxy service powered by Avrecon botnet infecting 360,000 devices since 2020.Source 1 Used for fraud, ransomware, and abuse, its takedown degrades multiple criminal operations.Source 1 This underscores proxy infrastructure's role in cybercrime ecosystems.Source 1

6

LeakBase Cybercrime Forum Taken Down, Disrupting Stolen Data Trade

Law enforcement shut down LeakBase, a forum with 140,000 users distributing breached credentials for stuffing and fraud since 2021.Source 3 Arrests of operators highlight international cooperation's impact on underground markets.Source 3 Experts warn similar forums will emerge, needing sustained efforts.Source 3

7

GlassWorm Campaign Injects Malware into Python GitHub Repos

GlassWorm attackers use stolen GitHub tokens to force-push malware into hundreds of Python repositories since March 8, 2026.Source 8 Malware steals crypto and data via C2 linked to Solana wallet; uses rebasing to evade detection.Source 8 This supply-chain attack preserves commit history, posing risks to developers.Source 8

8

Payload Ransomware Breaches Royal Bahrain Hospital

Payload Ransomware claimed stealing 110GB from Royal Bahrain Hospital, amid Middle East conflict-driven opportunistic attacks.Source 4Source 7 Healthcare remains a prime target for data theft and disruption.Source 4 No ransom details disclosed yet.Source 4

9

Ericsson US Data Breach via Compromised Third-Party Provider

Ericsson revealed attackers accessed data of 15,000+ individuals through a breached service provider in April 2025, reviewed in 2026.Source 3 Highlights third-party risks in telecom supply chains.Source 3 No operational disruptions reported.Source 3

10

Microsoft Teams Phishing Deploys A0Backdoor Malware

Phishing campaigns target Microsoft Teams to deploy A0Backdoor malware, part of top threats this week.Source 3 Combined with rising attacks (2,086 weekly avg in Feb 2026).Source 7 Urges enhanced phishing training.Source 3Source 7

11

ShinyHunters Threaten 400 Firms with Stolen Salesforce Data

ShinyHunters warn 400 organizations of leaking breached Salesforce data unless extorted, stemming from configuration errors.Source 3Source 4 Salesforce urges reviewing guest privileges.Source 3 Exposes SaaS misconfig risks without exploits.Source 3

12

Signal Faces Phishing Leading to High-Profile Account Takeovers

Encrypted app Signal hit by phishing tricking users into sharing codes for account takeovers of journalists and officials.Source 7 Core infrastructure secure, but stresses user awareness.Source 7 No encryption breaches reported.Source 7