Microsoft Patches Six Exploited Zero-Days in Massive February Update; CISA Warns of Chinese BRICKSTORM Malware
Summary
This cybersecurity brief for February 12, 2026, covers a critical Microsoft Patch Tuesday addressing 58 vulnerabilities, including six actively exploited zero-days now on CISA's KEV list. Concurrently, CISA, NSA, and Canadian partners released an updated advisory on the BRICKSTORM backdoor, a sophisticated malware used by Chinese state-sponsored actors to target VMware environments for long-term persistence. Other major incidents include a massive data breach at Dutch telecom giant Odido affecting 6.2 million customers, attributed to the ShinyHunters group, and a surge in ransomware attacks prompting new FCC guidance for communications providers.
Today New Articles
Dutch Telecom Odido Hit by Massive Data Breach; 6.2 Million Customers Exposed
Odido, the largest mobile provider in the Netherlands, has suffered a colossal data breach exposing the personal information of 6.2 million customers. The company confirmed the incident on February 12, 2026, after detecting unauthorized access to a customer co...
Automotive Cyber Risk Escalates to Enterprise-Wide Challenge, VicOne Report Warns
A new report from automotive cybersecurity firm VicOne, released on February 11, 2026, warns that cyber threats in the automotive industry have evolved from isolated technical issues into enterprise-wide risks. Titled "Crossroads: Automotive Cybersecurity in t...
SitusAMC Nears Completion of Data Breach Investigation from November 2025 Incident
SitusAMC, a key technology and services provider for the real estate finance industry, announced on February 12, 2026, that it is finalizing its investigation into a data breach first detected in November 2025. The company stated that notifications to affected...
Arizona Urology Practice Breach Exposes PHI of Over 73,000 Patients
Academic Urology & Urogynecology of Arizona (AUUA) has begun notifying 73,281 individuals that their personal and protected health information (PHI) was compromised in a data breach that occurred in May 2025. The notification letters, sent starting February 12...
Turkish Retailer Civil Mağazacılık Breach Exposes Data of 4.5 Million
Civil Mağazacılık, a major Turkish retailer specializing in baby and children's products, has reported a significant data breach estimated to affect 4.5 million individuals. According to a notification filed with Turkey's Personal Data Protection Authority (KV...
Starbucks Discloses Data Breach Affecting 889 Employees via Phishing Attack
Starbucks has revealed a data breach impacting 889 of its employees, or "partners," after their accounts on the company's 'Partner Central' portal were compromised. The breach was the result of a successful phishing campaign where employees were tricked into e...
Higher Education Software Provider Nuventive Achieves SOC 2 Type II Compliance
Nuventive, a software company that provides data and improvement platforms for the higher education sector, announced on February 11, 2026, that it has successfully completed its System and Organization Controls (SOC) 2 Type II compliance audit. This certifica...
Europe's Largest University, La Sapienza, Crippled by Ransomware Attack
La Sapienza University in Rome, Europe's largest university, continues to reel from a major cyberattack that began in early February 2026. The attack forced a precautionary shutdown of most of its IT systems, causing widespread disruption for its 112,500 stude...
Article Updates
FCC Warns Telecoms of 4x Increase in Ransomware, Urges Better Security
Update:New reports from February 12, 2026, highlight a significant escalation in ransomware activity, with a 31.4% increase in incidents over the past four months compared to the 2025 average. January 2026 alone saw 679 claimed attacks, with the U.S. remaining the pr...