The breach was detected on April 15, 2026, and potentially exposed login IDs, full names, email addresses, dates of birth, account identifiers, and in some cases, postal addresses, places of birth, and phone numbers.
The malware, uploaded in mid-December from a machine within Venezuela, employs two batch scripts to weaken system defenses and disrupt operations before deploying the final payload, according to an analysis by Kaspersky.
A survey by BlackBerry Secure Communications found that 98% of security decision-makers in government and critical infrastructure across the US, UK, Canada, and Singapore use foreign-hosted platforms not designed for confidential communications.
Legislation that would provide a 10-day extension for Section 702 of the Foreign Intelligence Surveillance Act has been approved by the House, representing a setback for President Donald Trump and House GOP leaders, who had sought an 18-month renewal, according to The Record, a news site by cybersecurity firm Recorded Future.
About half of 6 million internet-connected systems using the legacy File Transfer Protocol continue to lack encryption, making them vulnerable to cyberattacks, according to SecurityWeek.
Major Dutch online store Bol, which also operates in Belgium, had information from more than 400,000 of its Belgian users allegedly compromised by the hacker using the alias "Jeffrey Epstein," reports Cybernews.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.