This reporting period for February 16-17, 2026, is dominated by the active exploitation of critical vulnerabilities. Dell disclosed a maximum-severity zero-day in its RecoverPoint appliance, exploited by a Chinese espionage group for nearly two years. Concurrently, Google rushed out a patch for the first actively exploited Chrome zero-day of 2026. CISA amplified the urgency by adding multiple widely-used products from SolarWinds, Microsoft, and BeyondTrust to its KEV catalog. Other significant developments include the discovery of a sophisticated Android backdoor, a novel attack using AI assistants for C2 channels, and a firmware rootkit targeting Cisco devices.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.