Ransomware, Zero-Days, and Data Breaches Shape This Week’s Cybersecurity Landscape

Weekly summary of Cybersecurity Insider newsletters

Feb 23, 2026
2 minute read
eSecurity Planet のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

This week, a Dell vulnerability is being actively exploited, an Apache flaw allows bypass of RBAC, and over 41% of OpenClaw skills are vulnerable.

Major Threats & Vulnerabilities

Zero-Day Vulnerabilities

A zero-day vulnerability in Dell RecoverPoint is being actively exploited to deploy web shells and backdoors in VMware environments. This highlights the urgent need for patching and monitoring systems for unusual activities.

Critical CVEs and Exploits

Two critical Ivanti EPMM vulnerabilities are under active exploitation, allowing unauthenticated remote code execution on enterprise mobile management servers. Organizations using Ivanti EPMM should apply patches immediately.

A vulnerability in the Apache NiFi system allows lower-privileged users to modify restricted components, bypassing RBAC controls. Users are advised to update their systems to mitigate this risk.

Advertisement

Emerging Threats

The BeyondTrust vulnerability is being exploited for domain takeovers, with CVE-2026-1731 allowing remote code execution. Immediate action is required to prevent unauthorized access.

An audit revealed that 41% of OpenClaw skills are vulnerable, posing significant supply chain risks. Organizations should review and secure their AI deployments.

Industry News

Major Data Breaches

Substack experienced a significant breach, with nearly 700,000 user records leaked online, including email addresses and phone numbers.

In another breach, 967,000 records were leaked in a Figure breach, exposing sensitive financial data.

The state of Texas has filed a lawsuit against TP-Link over alleged security risks and supply chain deception. More details can be found in the official report.

Security Tips & Best Practices

Embedding Security in Development

Ensure security is embedded throughout the SDLC by utilizing threat modeling, code reviews, and automated testing.

Data Loss Prevention

Implement comprehensive DLP strategies by using data classification and behavior analytics.

Ransomware Resilience

Build resilience against ransomware by maintaining proper backups.

Tools & Resources

Explore top UEBA solutions to enhance your cybersecurity posture. Stay informed and prepared by leveraging the right technologies and strategies to protect your organization from evolving threats.

If you want to see more from our Newsletter Archive please click here.

eSecurity Planet Logo

eSecurity Planet is a leading resource for IT professionals at large enterprises who are actively researching cybersecurity vendors and latest trends. eSecurity Planet focuses on providing instruction for how to approach common security challenges, as well as informational deep-dives about advanced cybersecurity topics.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。