Patch Tuesday, May 2026 Edition

2026-05-16T19:23:33Z8c00e8bab051c9a186f938e95e7d7c404d6e70b7a52ab74b477f4aabfb86a8da
CanisterWormCanvasDDoSIoT-botnetIran-linkedPatch-TuesdayRussia-APTScattered-Spiderdata-extortioneducation-breachlaw-enforcement-takedownnation-statepatchingphishingransomwarerouter-exploittoken-harvestvulnerabilitieswiperzero-day

What happened

KrebsOnSecurity reports a busy period of high-impact cyber activity: a widespread data-extortion attack against the Canvas education platform defaced login pages and threatened data on ~275 million students and staff; multiple major vendors (Microsoft, Google, Apple, Mozilla, Oracle, Adobe) pushed large patch sets including several zero-days; U.S. and allied law enforcement disrupted four massive IoT botnets (Aisuru, Kimwolf, JackSkid, Mossad) that had compromised millions of devices; a Brazilian anti-DDoS firm was implicated in enabling large DDoS campaigns; Russian-linked actors exploited un

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
8c00e8bab051c9a186f938e95e7d7c404d6e70b7a52ab74b477f4aabfb86a8da
Enrichment time
2026-05-16T19:23:33Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.