These news items are automatically aggregated from industry sources and are not individually reviewed. Any inaccuracies are unintentional —
let us know and we'll correct or remove it.
On 29 May 2026, a severe thunderstorm caused simultaneous utility power loss across multiple Azure West US 2 datacentre buildings. Backup generators activated but failed to fully synchronise under the sudden load surge, and thermal protection mechanisms shut down others as cooling systems lost power. Services including AKS, Azure SQL, Redis, Virtual Machines, and Storage were affected for approximately fifteen hours. The incident is a textbook case for why single-region cloud deployments carry operational risk no amount of internal redundancy can fully eliminate.
AWS launched Kiro Web into public preview this week, making its spec-driven AI development environment available through any browser without a desktop install. The browser interface is the only place where Kiro’s autonomous mode is currently available, and credits run at half the standard rate during the preview period ending today.
A logic flaw in Gitea’s container registry API (CVE-2026-27771, CVSS 8.2) let unauthenticated users pull private container images from more than 30,000 deployments across 30 countries. The vulnerability went undetected for nearly four years and also affects Forgejo forks. Upgrade to Gitea 1.26.2 immediately.
Verizon’s 2026 Data Breach Investigations Report, based on more than 22,000 confirmed breaches, finds that exploiting unpatched software flaws (31%) has overtaken stolen credentials as the top way attackers get in – the first time in the report’s 19-year history. Third-party supply chain breaches jumped 60%, and AI is compressing attack timelines from months to hours.
The FBI issued a FLASH alert on May 26 warning that the Silent Ransom Group has escalated its extortion campaign against U.S. law firms by physically sending operatives into office buildings under the guise of IT support. More than 38 firms have already had data published on the gang’s leak site, with total confirmed attacks exceeding 100.
Vercel released deepsec in early May 2026 as an open-source, CLI-first security harness that uses AI coding agents to surface hard-to-find vulnerabilities across large codebases. It runs on your own infrastructure, scales to thousands of concurrent sandboxes, and integrates directly into existing DevOps workflows.
Two weeks before WWDC 2026 opens on June 8, Apple quietly registered genai.apple.com, a subdomain that returns a connection timeout rather than a 404, signalling it is staged and ready to go live. Combined with reporting that iOS 27’s rebuilt Siri will use Google Gemini technology routed through Apple’s own Private Cloud Compute infrastructure rather than Google’s servers, the registration suggests Apple is preparing to position generative AI as something that can be both capable and private.
Microsoft Threat Intelligence has disclosed a threat actor called Storm-2949 that walked through an organisation’s entire Azure and Microsoft 365 environment using only password resets and social engineering against MFA prompts. No malware, no novel CVE. The attack reached Key Vault secrets, SQL databases, SharePoint documents, and production virtual machines before defenders detected it.
A critical unauthenticated SQL injection flaw in Ghost CMS (CVSS 9.4) is being actively exploited in the wild, with attackers hijacking more than 700 websites, including those of major institutions, to deliver ClickFix malware through injected JavaScript. Sites running Ghost versions 3.24.0 through 6.19.0 need to patch immediately.
A new ransomware family called Payload has claimed 12 victims across seven countries since launching in February 2026, targeting both Windows and VMware ESXi infrastructure with a refined Babuk-derived encryption scheme that erases per-file private keys from memory after locking each file, making recovery without the operator’s key mathematically impossible.
This site uses cookies. By continuing to use this website, you agree to their use.
We’ll help you resolve your infrastructure challenges
Our team of experts is ready to help you with your infrastructure challenges. We’ll give you honest and personal treatment. Get in touch to learn more.