This 24-hour period saw Microsoft release its March 2026 Patch Tuesday, addressing 79 vulnerabilities including two publicly known zero-days in SQL Server and .NET. Concurrently, major data breaches were disclosed by Ericsson and Canadian retailer Loblaw, both highlighting different facets of cyber risk. State-sponsored activity remains high, with reports detailing a sustained two-year campaign by Russia's APT28 against Ukraine and a surge in espionage targeting the Middle East by actors linked to China, Iran, and Belarus. Law enforcement also scored a win by disrupting the 'Tycoon 2FA' phishing platform, while new reports detailed sophisticated supply chain attacks against the npm ecosystem and a critical flaw in Nginx UI.
Help others stay informed about cybersecurity threats