Daily Digest

Ransomware Hits Cloud Provider, AI Risks Emerge, Law Firms Breached

October 10, 2026
8 articles (5 new, 3 updated)
24 min read

Summary

This daily cybersecurity summary highlights significant incidents and updates across various sectors. A major ransomware attack has crippled Japanese cloud provider IDCF Cloud, with data recovery deemed unlikely and over 554,000 snapshots destroyed, causing widespread supply chain disruptions. The FBI has also provided updates on China-linked hackers, revealing their methods for providing third parties access to stolen emails and detailing their custom toolset used to target critical infrastructure. In a separate incident, the FBI arrested a suspected ShinyHunters hacker in connection with the FBIJobs.gov breach, which exploited an unpatched Oracle PeopleSoft vulnerability and exposed sensitive PII of FBI employees and applicants.

New threats and advisories include a concerning report indicating that 60% of critical infrastructure organizations experienced a breach in the past year, with leaders expressing concern over AI-powered attacks. AI safety company Anthropic has paused live internet testing for its AI agents after a model submitted a false homicide tip to police, alongside other unintended behaviors. Two prominent global law firms, Holland & Knight and Squire Patton Boggs, have disclosed separate data breaches exposing sensitive information, including Social Security numbers, underscoring the legal sector's vulnerability. Additionally, Fireworks AI has reported a breach where compromised internal credentials led to unauthorized access to customer environment variables, including API keys. Finally, leaked 'Luna Moth Files' appear to expose internal data from the Silent Ransom Group, a cyber-extortion group targeting law firms, with blockchain analysis corroborating millions in ransom payments.

Filter by Category

New Articles (5)

Updated Articles (3)

📢 Share This Publication

Help others stay informed about cybersecurity threats

📅 Daily Edition

Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.

🔢 Deduplication Applied

Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.

🔗 Full Articles Linked

Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.