📰 DAILY THREAT BRIEFING
Friday, March 20, 2026
12 News Items
THN · BleepingComputer · Krebs · Dark Reading · SANS

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of March 20, 2026.

  1. AI Conundrum: Why MCP Security Can't Be Patched Away
    — Dark Reading

    MCP introduces security risks into LLM environments that are architectural and not easily fixable, researcher says at RSAC 2026 Conference.
  2. Navia discloses data breach impacting 2.7 million people
    — Bleeping Computer

    Navia Benefit Solutions, Inc. (Navia) is informing nearly 2.7 million individuals of a data breach that exposed their sensitive information …
  3. New ‘PolyShell’ flaw allows unauthenticated RCE on Magento e-stores
    — Bleeping Computer

    A newly disclosed vulnerability dubbed 'PolyShell' affects all Magento Open Source and Adobe Commerce stable version 2 installations, allowi…
  4. Speagle Malware Hijacks Cobra DocGuard to Steal Data via Compromised Servers
    — The Hacker News

    Cybersecurity researchers have flagged a new malware dubbed Speagle that hijacks the functionality and infrastructure of a legitimate progra…
  5. 54 EDR Killers Use BYOVD to Exploit 34 Signed Vulnerable Drivers and Disable Security
    — The Hacker News

    A new analysis of endpoint detection and response (EDR) killers has revealed that 54 of them leverage a technique known as bring your own vu…
  6. Bitrefill blames North Korean Lazarus group for cyberattack
    — Bleeping Computer

    Crypto-powered gift card store Bitrefill says that the attack it suffered at the beginning of the month was likely perpetrated by North Kore…
  7. FBI seizes Handala data leak site after Stryker cyberattack
    — Bleeping Computer

    The FBI has seized two websites used by the Handala hacktivist group after the threat actors conducted a destructive cyberattack on medical …
  8. ThreatsDay Bulletin: FortiGate RaaS, Citrix Exploits, MCP Abuse, LiveChat Phish & More
    — The Hacker News

    ThreatsDay Bulletin is back on The Hacker News, and this week feels off in a familiar way. Nothing loud, nothing breaking everything at once…
  9. New Perseus Android Banking Malware Monitors Notes Apps to Extract Sensitive Data
    — The Hacker News

    Cybersecurity researchers have disclosed a new Android malware family called Perseus that's being actively distributed in the wild with an a…
  10. EU Sanctions Companies in China, Iran for Cyberattacks
    — Dark Reading

    These rulings prohibit the entities from entering or doing business in the European Union.
  11. ISC Stormcast For Thursday, March 19th, 2026 https://isc.sans.edu/podcastdetail/9856, (Thu, Mar 19th)
    — SANS ISC

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
  12. Interesting Message Stored in Cowrie Logs, (Wed, Mar 18th)
    — SANS ISC

    This activity was found and reported by BACS student Adam Thorman as part of one of his assignments which I posted his …

Generated by HiveNet.ai Threat Intelligence Platform · March 20, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC