This cybersecurity brief for May 16-17, 2026, covers a series of critical vulnerabilities and high-profile cyberattacks. Key events include the active exploitation of zero-day flaws in Microsoft Exchange (CVE-2026-42897) and Cisco SD-WAN (CVE-2026-20182), both added to CISA's KEV catalog. Additionally, two unpatched Windows zero-days were publicly disclosed, a major supply chain attack compromised the TanStack ecosystem affecting OpenAI, and ed-tech giant Instructure confirmed paying a ransom to the ShinyHunters group after a massive data breach. These incidents highlight escalating threats to enterprise infrastructure, software supply chains, and educational institutions.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.