Daily Digest

Ransomware Surges, AI Aids Attackers, Critical Flaws Exploited

Ransomware Surges, AI Aids Attackers, Critical Flaws Exploited

August 17, 2026
12 articles (6 new, 6 updated)
36 min read

Summary

Ransomware attacks continue to escalate, with a recent report indicating a 33% surge in Q2 2026, impacting 2,139 victims. Threat actors are increasingly leveraging AI coding assistants, accelerating malicious tool development and shrinking response windows for defenders. The Qilin ransomware group remains active, targeting high-value entities like MOSAID Technologies with double-extortion tactics.

Critical vulnerabilities are being actively exploited. A new 'ShieldBreak' exploit (CVE-2026-69414) bypasses Microsoft Defender patches, with Microsoft investigating a fix. On macOS, CVE-2026-65400 is being exploited to install cryptominers, with potential for more destructive payloads. SAP Commerce Cloud faces active exploitation of CVE-2026-58231, prompting urgent patching.

Supply chain attacks remain a significant concern. The LiteLLM attack, initially compromising Trivy's CI/CD pipeline in March 2026, has now exposed secrets from over 2,400 companies, including major tech firms, due to persistent access and compromised credentials.

New incidents include a data breach at SafePal, exposing personal information of nearly 40,000 hardware wallet customers, increasing the risk of phishing. An unpatched Unisoc modem exploit on Android devices can grant full kernel access, with affected chipmakers reportedly unresponsive. Liechtenstein has ruled out paying ransom after a financial data hack, while Colombia's Ministry of Justice was hit by ransomware, causing service disruptions. Poland's MyDr healthcare platform is reportedly facing a massive breach affecting millions, with attackers leaking sensitive medical data. The 'crpx0' ransomware gang is now selling stolen data after failed extortion attempts, highlighting evolving monetization strategies.

Filter by Category

New Articles (6)

Updated Articles (6)

📢 Share This Publication

Help others stay informed about cybersecurity threats

📅 Daily Edition

Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.

🔢 Deduplication Applied

Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.

🔗 Full Articles Linked

Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.