Cisco Battles Critical Zero-Day as Massive Breaches at Conduent & Canadian Tire Expose 63M+
Summary
This cybersecurity brief for March 1, 2026, covers a critical 10.0 CVSS zero-day vulnerability in Cisco SD-WAN software under active exploitation. The landscape is further defined by massive data breaches, with business services giant Conduent reporting a ransomware attack affecting over 25 million individuals, and Canadian Tire confirming a cloud misconfiguration exposed 38 million customer accounts. Other major incidents include a ransomware attack on the University of Hawaiʻi Cancer Center, the emergence of the 'Oblivion' Android RAT, and a surge in cyber hostilities in the Middle East linked to geopolitical tensions.
Today New Articles
Cloud Misconfiguration at Canadian Tire Exposes 38 Million Customer Accounts
Retail giant Canadian Tire has confirmed that a data breach discovered in October 2025 compromised the personal information of over 38 million customer accounts. The incident, which affected e-commerce databases for brands including Canadian Tire, SportChek, a...
Middle East Cyber Conflict Escalates Following Military Strikes on Iran
Coordinated military strikes against Iran on February 28, reportedly involving the U.S. and Israel, have ignited a significant escalation in cyber warfare across the Middle East. Security firms have issued heightened threat advisories, warning of disruptive at...
Coupang Reports $26M Loss, Blames 34M-Customer Data Breach for Fallout
South Korean e-commerce giant Coupang has reported a net loss of $26 million for Q4 2025, a sharp reversal from a profit a year earlier. The company directly attributes the poor financial performance and a miss on revenue estimates to the fallout from a Novemb...
UH Cancer Center Pays Ransom After Breach Exposes Data of 1.24 Million People
The University of Hawaiʻi (UH) Cancer Center has disclosed a major data breach stemming from a ransomware attack in August 2025. The incident compromised the sensitive personal information of approximately 1.24 million people, including Social Security numbers...
Indian Chief Justice: Forensic Science is a 'Protective Shield' Against Digital Crime
Speaking at the National Forensic Sciences University, Chief Justice of India (CJI) Surya Kant described forensic science as an essential "protective shield" for the justice system in the face of complex digital crimes. He highlighted that threats like cyber i...
India Risks Trading 'Autonomy for Efficiency' with Foreign AI, Warns Ex-Diplomat
At the Asia Economic Dialogue, former Indian foreign secretary Nirupama Rao warned that India risks losing its national autonomy if it becomes overly dependent on foreign-developed artificial intelligence. She argued that relying on "borrowed algorithms" might...
Indian Banks Embrace AI to Combat 1.4 Million Annual Cyberattacks
Leaders in India's banking sector are turning to Artificial Intelligence (AI) as a strategic defense against a rising tide of cyber threats, estimated at 1.4 million attacks annually. Executives highlighted that AI is crucial for fraud detection, cost reductio...
Statamic CMS Flaw (CVE-2026-28423) Enables Cloud Credential Theft via SSRF
A Server-Side Request Forgery (SSRF) vulnerability, CVE-2026-28423, has been disclosed in the Statamic content management system. The flaw, which has a CVSS score of 6.8, exists in the Glide image manipulation feature. An unauthenticated attacker can exploit i...
Article Updates
Patch Released for "ClawJacked" WebSocket Hijacking Flaw in OpenClaw AI Agent
Update:Further details have emerged regarding the 'ClawJacked' vulnerability in the OpenClaw AI agent. A new patch, version 2026.2.25, has been released, superseding the previously mentioned version. This update explicitly clarifies that the flaw allows malicious web...
Conduent Data Breach Impact Explodes to 25 Million Americans, Safepay Ransomware Blamed
Update:The Conduent data breach, attributed to Safepay ransomware, now confirms additional affected clients including Humana and Volvo Group North America, expanding the scope beyond Blue Cross Blue Shield. New technical analysis provides a comprehensive list of like...
Cisco Scrambles to Patch Critical SD-WAN Zero-Day Exploited for Months
Update:Cisco has updated its patching guidance for CVE-2026-20127, now recommending version 20.9.1 or later for all affected Catalyst SD-WAN Manager instances, superseding previous specific branch recommendations. The critical CVSS 10.0 zero-day, actively exploited b...