This week in cybersecurity is marked by a surge in actively exploited zero-day vulnerabilities, with Google patching a critical Chrome flaw (CVE-2026-5281), CISA mandating fixes for vulnerabilities in Citrix NetScaler (CVE-2026-3055) and TrueConf (CVE-2026-3502), and a new unpatched Windows LPE exploit 'BlueHammer' being leaked online. Major data breaches also hit the headlines, with the European Commission attributing a significant compromise to the TeamPCP hacking group and medical giant Stryker recovering from a destructive wiper attack by the Iran-linked Handala group. Extortion tactics continue as ShinyHunters threatens to leak alleged Cisco data.
Help others stay informed about cybersecurity threats