In the latest cybersecurity intelligence for May 19, 2026, the landscape shifts as the Verizon DBIR reports vulnerability exploitation has surpassed stolen credentials as the primary breach cause for the first time. Concurrently, Microsoft took down the 'Fox Tempest' malware-signing-as-a-service operation, a key enabler for ransomware gangs. Other major developments include a sophisticated supply chain attack on TanStack's npm packages, a new Windows 11 zero-day exploit named 'MiniPlasma', and the emergence of 'WantToCry' ransomware targeting exposed SMB services. These events highlight a trend towards faster, more complex attacks, increasing pressure on organizations to accelerate patch management and secure their software supply chains.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.