📰 DAILY THREAT BRIEFING
Wednesday, March 18, 2026
12 News Items
HN · BleepingComputer · Krebs · Dark Reading · SANS · THN Intel · Unit 42 · Security.com

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of March 18, 2026.

  1. More Attackers Are Logging In, Not Breaking In
    — Dark Reading

    Credential theft soared in the second half of 2025, thanks in part to the industrialization of infostealer malware and AI-enabled social eng…
  2. GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSX
    — Bleeping Computer

    The GlassWorm supply-chain campaign has returned with a new, coordinated attack that targeted hundreds of packages, repositories, and extens…
  3. Less Lucrative Ransomware Market Makes Attackers Alter Methods
    — Dark Reading

    Ransomware actors are ditching Cobalt Strike in favor of native Windows tools, as payment rates hit record lows and data theft surges.
  4. Hackers Target Cybersecurity Firm Outpost24 in 7-Stage Phish
    — Dark Reading

    In an unsuccessful phishing attack, threat actors leveraged trusted brands and domains to try to redirect a C-suite executive at Outpost24 t…
  5. Europe sanctions Chinese and Iranian firms for cyberattacks
    — Bleeping Computer

    The European Union Council has announced sanctions against three entities and two individuals for their involvement in cyberattacks targetin…
  6. AI Flaws in Amazon Bedrock, LangSmith, and SGLang Enable Data Exfiltration and RCE
    — The Hacker News

    Cybersecurity researchers have disclosed details of a new method for exfiltrating sensitive data from artificial intelligence (AI) code exec…
  7. LeakNet Ransomware Uses ClickFix via Hacked Sites, Deploys Deno In-Memory Loader
    — The Hacker News

    The ransomware operation known as LeakNet has adopted the ClickFix social engineering tactic delivered through compromised websites as an in…
  8. Top 5 Things CISOs Need to Do Today to Secure AI Agents
    — Bleeping Computer

    AI agents are autonomous actors with real access to data and systems, not just copilots. Token Security explains why identity-based access c…
  9. IPv4 Mapped IPv6 Addresses, (Tue, Mar 17th)
    — SANS ISC

    Yesterday, in my diary about the scans for "/proxy/" URLs, I noted how attackers are using IPv4-mapped IPv6 addresses to possibly obfuscate …
  10. AI is Everywhere, But CISOs are Still Securing It with Yesterday's Skills and Tools, Study Finds
    — The Hacker News

    A majority of security leaders are struggling to defend AI systems with tools and skills that are not fit for the challenge, according to th…
  11. Open, Closed and Broken: Prompt Fuzzing Finds LLMs Still Fragile Across Open and Closed Models
    — Unit 42

    Unit 42 research unveils LLM guardrail fragility using genetic algorithm-inspired prompt fuzzing. Discover scalable evasion methods and crit…
  12. ISC Stormcast For Tuesday, March 17th, 2026 https://isc.sans.edu/podcastdetail/9852, (Tue, Mar 17th)
    — SANS ISC

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

Generated by CryptXNet.ai Threat Intelligence Platform · March 18, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC, THN Threat Intel, Unit 42, Security.com