A tumultuous day in cybersecurity for May 29, 2026, is marked by massive data breaches claimed by the ShinyHunters extortion group, affecting nearly 11 million customers of Charter Communications and Carnival Cruise Line. Concurrently, Microsoft is grappling with the active exploitation of three publicly disclosed Windows zero-days, now on CISA's KEV list, following a dispute with a security researcher. The landscape is further complicated by a wave of supply chain attacks targeting developers via npm and VS Code, and CISA's issuance of critical warnings for vulnerabilities in industrial control systems, highlighting pervasive risks across telecommunications, software development, and critical infrastructure.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.