Here is the most recent Cybersecurity news for the past week:
🔥Critical Palo Alto Networks Zero-Day Added to CISA KEV Catalog
The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical remote code execution vulnerability (CVE-2026-40112) affecting Palo Alto Networks PAN-OS software to its Known Exploited Vulnerabilities catalog. The flaw allows unauthenticated remote attackers with network access to the management interface to execute arbitrary code with root privileges. Organizations are urged to restrict management access to trusted internal networks immediately.
https://thehackernews.com/2026/05/critical-palo-alto-networks-zero-day.html
🌐Google Rushes Emergency Patch for Active Chrome Zero-Day
Google has released an emergency security update for the Chrome desktop browser to address a high-severity zero-day vulnerability (CVE-2026-5992) being actively exploited in the wild. The flaw is a type confusion vulnerability in the V8 JavaScript engine that can lead to arbitrary code execution or browser crashes. This marks the fourth Chrome zero-day patched by Google so far this year.
https://thehackernews.com/2026/05/google-issues-emergency-fix-for-new.html
🕵️♂️International Police Coalition Disrupts Lumma Infostealer Network
A coordinated international law enforcement operation involving the FBI, Europol, and Eurojust has successfully disrupted the infrastructure of the prominent Lumma malware-as-a-service (MaaS) network. Authorities seized multiple command-and-control servers, licensing domains, and payment portals used by the group to harvest credentials and cryptocurrency wallets globally.
https://www.securityweek.com/international-police-disrupt-lumma-infostealer-infrastructure/
💳HealthEquity Discloses Massive Cloud Storage Data Breach
Healthcare financial services platform HealthEquity has begun notifying over 4.3 million individuals regarding a significant data breach. The company disclosed that an unauthorized third-party used compromised credentials to access an unstructured data repository hosted in a cloud storage environment. The compromised data includes names, addresses, Social Security numbers, and health savings account details.
https://www.bleepingcomputer.com/news/security/healthequity-discloses-data-breach-affecting-43-million-people/



