<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>News You Should Know 2026 on </title>
    <link>https://justinmcafee.com/series/news-you-should-know-2026/</link>
    <description>Recent content in News You Should Know 2026 on </description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 21 Apr 2026 00:00:00 -0500</lastBuildDate>
    <atom:link href="https://justinmcafee.com/series/news-you-should-know-2026/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>2026.04.21 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.04.21.news-you-should-know/</link>
      <pubDate>Tue, 21 Apr 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.04.21.news-you-should-know/</guid>
      <description>&lt;h2 id=&#34;geopolitics&#34;&gt;Geopolitics&lt;/h2&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://techcrunch.com/2026/04/15/sweden-blames-russian-hackers-for-attempting-destructive-cyberattack-on-thermal-plant/&#34; target=&#34;_blank&#34;&gt;Sweden blames Russian hackers for attempting &amp;lsquo;destructive&amp;rsquo; cyberattack on thermal plant | TechCrunch&lt;/a&gt; - Sweden’s minister of civil defense, Carl-Oskar Bohlin, said &lt;a href=&#34;https://www.svt.se/nyheter/inrikes/regeringen-om-cyberhotet-mot-sverige&#34; target=&#34;_blank&#34;&gt;during a press conference&lt;/a&gt; on Wednesday that the attempted attack happened in early 2025 and attributed the incident to hackers with “connections to Russian intelligence and security services.”&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.04.14 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.04.14.news-you-should-know/</link>
      <pubDate>Tue, 14 Apr 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.04.14.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/04/07/iran_hackers_disrupting_us_water_energy/&#34; target=&#34;_blank&#34;&gt;Iran intruders disrupting US water, energy facilities • The Register&lt;/a&gt; - &amp;ldquo;These PLCs were deployed across multiple US critical infrastructure sectors within a wide variety of industrial automation processes … Some of the victims experienced operational disruption and financial loss,&amp;rdquo; it continued. It&amp;rsquo;s also worth noting that the energy and utilities sector was the fifth-most targeted industry in the US last month, according to Check Point&amp;rsquo;s cyberattack tracking.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.04.07 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.04.07.news-you-should-know/</link>
      <pubDate>Tue, 07 Apr 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.04.07.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/04/03/trump_cisa_budget/&#34; target=&#34;_blank&#34;&gt;Trump wants to slash $707M from CISA&amp;rsquo;s budget • The Register&lt;/a&gt; - Trump&amp;rsquo;s 2027 spending plan says it will &amp;ldquo;refocus&amp;rdquo; CISA by &amp;ldquo;removing offices that are duplicative of existing and effective programs at the State and Federal level, such as certain targeted school safety programs.&amp;rdquo; Overall reduction to CISA budget will be $710M~&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.03.31 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.03.31.news-you-should-know/</link>
      <pubDate>Tue, 31 Mar 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.03.31.news-you-should-know/</guid>
      <description>&lt;h2 id=&#34;supply-chains&#34;&gt;Supply Chains&lt;/h2&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/03/24/1k_cloud_environments_infected_following/&#34; target=&#34;_blank&#34;&gt;1K+ cloud environments infected via Trivy attack • The Register&lt;/a&gt; - &amp;ldquo;That 1,000-plus downstream victims will probably expand into another 500, another 1,000, maybe another 10,000,&amp;rdquo; he continued. &amp;ldquo;And we know that these actors are collaborating with a number of other actors right now.&amp;rdquo;&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/03/24/trivy_compromise_litellm/&#34; target=&#34;_blank&#34;&gt;LiteLLM infected with credential-stealing code via Trivy • The Register&lt;/a&gt; - Two versions of LiteLLM, an open source interface for accessing multiple large language models, have been removed from the Python Package Index (PyPI) following a supply chain attack that injected them with malicious credential-stealing code.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.03.24 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.03.24.news-you-should-know/</link>
      <pubDate>Tue, 24 Mar 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.03.24.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/03/18/japan_proactive_cyber_defense_enabled/&#34; target=&#34;_blank&#34;&gt;Japan to allow ‘proactive cyber-defense’ from October 1st • The Register&lt;/a&gt; - online the nation faces “the most complicated national security environment” since World War II, and because “society as a whole is proceeding with digitalization.”&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/03/18/linux_foundation_ai_slop_defense/&#34; target=&#34;_blank&#34;&gt;Linux Foundation wants to shield FOSS devs from AI bug slop • The Register&lt;/a&gt; - “OpenSSF has the active resources needed to support numerous projects that will help these overworked maintainers with the triage and processing of the increased AI-generated security reports they are currently receiving.”&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.03.17 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.03.17.news-you-should-know/</link>
      <pubDate>Tue, 17 Mar 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.03.17.news-you-should-know/</guid>
      <description>&lt;h2 id=&#34;iran&#34;&gt;Iran&lt;/h2&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/03/11/iran_threatens_us_tech_companies/&#34; target=&#34;_blank&#34;&gt;Iran plots &amp;lsquo;infrastructure warfare&amp;rsquo; against US tech giants • The Register&lt;/a&gt; - Iran has reportedly designated Amazon, Google, IBM, Microsoft, Nvidia, Oracle, and Palantir facilities as legitimate targets of retaliatory strikes, according to an Al Jazeera report citing Iran’s state-affiliated Tasnim news agency. 29 locations in Bahrain, Israel, Qatar, and the United Arab Emirates that house offices, datacenters, and research facilities that Iran has set its sights on destroying. This comes a week after Iran said it deliberately targeted three AWS datacenters in the region.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.03.10 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.03.10.news-you-should-know/</link>
      <pubDate>Tue, 10 Mar 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.03.10.news-you-should-know/</guid>
      <description>&lt;h2 id=&#34;iran&#34;&gt;Iran&lt;/h2&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/03/05/mudywater_backdoor_us_networks/&#34; target=&#34;_blank&#34;&gt;Iran intelligence backdoored US bank, airport networks • The Register&lt;/a&gt; - Iranian Ministry of Intelligence and Security (MOIS) has been embedded in multiple US companies&amp;rsquo; networks - including a bank, software firm, and airport, among others - since the beginning of February, with more activity in the days following the US and Israeli military strikes, according to security researchers. Plus, the compromised software company supplies its tech to defense and aerospace industries among others, and has a presence in Israel.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.03.03 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.03.03.news-you-should-know/</link>
      <pubDate>Tue, 03 Mar 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.03.03.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/02/25/chinese_law_enforcement_chatgpt_abuse/&#34; target=&#34;_blank&#34;&gt;OpenAI: Chinese agent used ChatGPT for smear ops • The Register&lt;/a&gt; - Chinese Gov Agent using ChatGPT to plan smear campaigns, write situation reports. Interesting look into how bad guys are bad guying.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/03/03/perplexity_comet_browser_hole_cal_invite/&#34; target=&#34;_blank&#34;&gt;Perplexity Comet browser hole was exploitable via cal invite • The Register&lt;/a&gt; - The second thing is that we show that once the 1Password extension is installed in the Comet browser and is unlocked, we can actually instruct Comet to go to the extension URL and then &lt;a href=&#34;https://labs.zenity.io/p/perplexedbrowser-how-attackers-can-weaponize-comet-to-takeover-your-1password-vault&#34; target=&#34;_blank&#34;&gt;hijack your 1Password account&lt;/a&gt; – full takeover of your 1Password account, which is the worst thing that can happen,&amp;quot; said Bargury.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.02.26 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.02.23.news-you-should-know/</link>
      <pubDate>Thu, 26 Feb 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.02.23.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/02/17/volt_typhoon_dragos/&#34; target=&#34;_blank&#34;&gt;China remains embedded in US energy networks &amp;lsquo;for the purpose of taking it down&amp;rsquo;&lt;/a&gt; - Three new threat groups began targeting critical infrastructure last year, while a well-known Beijing-backed crew - Volt Typhoon - continued to compromise cellular gateways and routers, and then break into US electric, oil, and gas companies in 2025. &amp;ldquo;Nothing that they were taking was useful for intellectual property,&amp;rdquo; Lee said. &amp;ldquo;Everything they were doing and learning was only useful for disrupting or causing destruction at those sites. Voltzite was embedded in that infrastructure for the purpose of taking it down.&amp;rdquo;&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.02.17 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.02.17.news-you-should-know/</link>
      <pubDate>Tue, 17 Feb 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.02.17.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/02/17/lenovo_privacy_lawsuit/&#34; target=&#34;_blank&#34;&gt;US lawyers file privacy class action against Lenovo • The Register&lt;/a&gt; - &amp;ldquo;When a user lands on the homepage of Website, [sic] the Website loads numerous first and third-party tracking implementations that measure and record user data,&amp;rdquo; it says, including the likes of TikTok, Facebook, Microsoft, and Google. This allows Lenovo to collect bulk personal data, it claims, and &amp;ldquo;Lenovo knowingly permits access to, or transfer of, such bulk US sensitive personal data to entities or persons that qualify as covered persons under the DOJ Rule, including its foreign parents that are directly or indirectly controlled by persons in China, such as the Lenovo Group.&amp;rdquo;&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.02.10 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.02.10.news-you-should-know/</link>
      <pubDate>Tue, 10 Feb 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.02.10.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/02/04/nitrogen_ransomware_broken_decryptor/&#34; target=&#34;_blank&#34;&gt;Nitrogen can&amp;rsquo;t unlock its own ransomware after coding error • The Register&lt;/a&gt; - Don&amp;rsquo;t rely on threat actors to be your backup, they may not even be able to unlock the data!&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://thehackernews.com/2026/02/microsoft-warns-python-infostealers.html&#34; target=&#34;_blank&#34;&gt;Microsoft Warns Python Infostealers Target macOS via Fake Ads and Installers&lt;/a&gt; - &amp;ldquo;They are typically distributed via phishing emails and collect login credentials, session cookies, authentication tokens, credit card numbers, and crypto wallet data.&amp;rdquo;&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.02.03 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.02.03.news-you-should-know/</link>
      <pubDate>Tue, 03 Feb 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.02.03.news-you-should-know/</guid>
      <description>&lt;h3 id=&#34;general&#34;&gt;General&lt;/h3&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/01/29/faster_patching_please_cry_infoseccers/&#34; target=&#34;_blank&#34;&gt;Vulnerability exploits now dominate intrusions • The Register&lt;/a&gt; - A functional proof-of-concept exploit for React2Shell began circulating online within 30 hours of disclosure, for example.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://techcrunch.com/2026/01/29/fintech-firm-marquis-blames-hack-at-firewall-provider-sonicwall-for-its-data-breach/&#34; target=&#34;_blank&#34;&gt;Fintech firm Marquis blames hack at firewall provider SonicWall for its data breach | TechCrunch&lt;/a&gt; - Marquis said it believes that its August 2025 ransomware attack happened because the company’s firewall service provider SonicWall had its own data breach that exposed critical security information about its customers’ firewalls.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.01.27 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.01.27.news-you-should-know/</link>
      <pubDate>Tue, 27 Jan 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.01.27.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/01/23/shinyhunters_claims_okta_customer_breaches/&#34; target=&#34;_blank&#34;&gt;ShinyHunters claims Okta customer breaches, leaks data • The Register&lt;/a&gt; - On Friday, the criminals leaked data allegedly stolen from market-intel broker Crunchbase, streaming platform SoundCloud, and financial-tech firm Betterment, and confirmed to &lt;em&gt;The Register&lt;/em&gt; that they gained access to two of the three - Crunchbase and Betterment - by voice-phishing Okta single-sign-on codes.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.01.20 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.01.20.news-you-should-know/</link>
      <pubDate>Tue, 20 Jan 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.01.20.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/01/12/no_fire_sale_on_firewalls/&#34; target=&#34;_blank&#34;&gt;DRAM shortage may drive firewall prices higher: analysts • The Register&lt;/a&gt; - Reports last week out of the &lt;a href=&#34;https://www.theregister.com/2026/01/06/memory_firm_profits_up_as/&#34; target=&#34;_blank&#34;&gt;Korea Economic Daily&lt;/a&gt; stated two of the country’s producers of DRAM are planning to raise prices by up to 70 percent this quarter. When combined with the 50 percent increase during 2025, the price of memory could double in cost year-over-year by mid-2026.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.01.13 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.01.13.news-you-should-know/</link>
      <pubDate>Tue, 13 Jan 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.01.13.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/01/05/resecurity_honeypot_shinyhunters/&#34; target=&#34;_blank&#34;&gt;Resecurity traps cybercrim in honeypot • The Register&lt;/a&gt; - &amp;ldquo;In our scenario, our goal was to allow the threat actor to conduct activity and feed them with synthetic data to observe their attack path and infrastructure,&amp;rdquo; the Resecurity team wrote. It Worked.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2026/01/07/stalkerware_slinger_pleads_guilty/&#34; target=&#34;_blank&#34;&gt;Stalkerware maker pleads guilty to sale of snooping software • The Register&lt;/a&gt; - Fleming is due to be sentenced later this year, when he&amp;rsquo;ll be facing up to 15 years in prison, a fine of $250,000, forfeiture of all property that was involved in the offense, and additional penalties.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2026.01.06 News You Should Know</title>
      <link>https://justinmcafee.com/posts/2026/2026.01.06.news-you-should-know/</link>
      <pubDate>Tue, 06 Jan 2026 00:00:00 -0500</pubDate>
      <guid>https://justinmcafee.com/posts/2026/2026.01.06.news-you-should-know/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.theregister.com/2025/12/29/wired_hack_subscriber_info_leaked/&#34; target=&#34;_blank&#34;&gt;Crims punish Wired subscribers by publishing personal info • The Register&lt;/a&gt; - The current leak is centered around readers of Wired magazine. The miscreants published 2.3 million emails, which had the names of 285,000 subscribers, 108,000 home addresses, and 32,000 phone numbers.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://haveibeenpwned.com/&#34; target=&#34;_blank&#34;&gt;Have I Been Pwned: Check if your email address has been exposed in a data breach&lt;/a&gt; - Use this. Sign up your family. Use unique passwords in a password manager.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
