This week in cybersecurity, the period ending May 22, 2026, was marked by a series of high-impact data breaches in the U.S. healthcare sector, exposing sensitive patient information from multiple HIPAA-regulated entities. Simultaneously, an Iranian APT group, Screening Serpens, intensified its espionage campaigns with new malware. Ransomware continues to evolve, with the new Aur0ra strain employing dual-extortion tactics and reports indicating attackers are now using EDR killers and post-quantum cryptography. CISA has added several actively exploited vulnerabilities to its KEV catalog, including flaws in Microsoft Defender, Langflow, and Trend Micro products, underscoring the urgent need for timely patching across all sectors.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.