Patch Tuesday, May 2026 Edition
2026-05-16T19:23:33Z•8c00e8bab051c9a186f938e95e7d7c404d6e70b7a52ab74b477f4aabfb86a8da
CanisterWormCanvasDDoSIoT-botnetIran-linkedPatch-TuesdayRussia-APTScattered-Spiderdata-extortioneducation-breachlaw-enforcement-takedownnation-statepatchingphishingransomwarerouter-exploittoken-harvestvulnerabilitieswiperzero-day
What happened
KrebsOnSecurity reports a busy period of high-impact cyber activity: a widespread data-extortion attack against the Canvas education platform defaced login pages and threatened data on ~275 million students and staff; multiple major vendors (Microsoft, Google, Apple, Mozilla, Oracle, Adobe) pushed large patch sets including several zero-days; U.S. and allied law enforcement disrupted four massive IoT botnets (Aisuru, Kimwolf, JackSkid, Mossad) that had compromised millions of devices; a Brazilian anti-DDoS firm was implicated in enabling large DDoS campaigns; Russian-linked actors exploited un
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 8c00e8bab051c9a186f938e95e7d7c404d6e70b7a52ab74b477f4aabfb86a8da
- Enrichment time
- 2026-05-16T19:23:33Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.