Knowledge

State of (in)security - Week 11, 2026

Take action: If you use AI platforms and chatbots, remember that they are just web applications and have a bunch of other possible flaws. Make sure databases, API endpoints, and system prompts are locked down with proper authentication, access controls, and integrity monitoring, not left exposed as an afterthought. Regularly audit your AI infrastructure for basic web application flaws like exposed APIs, SQL injection, and missing authentication, because even the most advanced AI tools can be undone by classic, well-known security mistakes.


Learn More

In the week between March 9, 2026, midnight and March 16, 2026, midnight we witnessed a total of:

  • 22 advisory/vulnerability events
  • 16 incident/data breach events

Week over Week comparison of week 11 2026 vs week 10 2026

We also shared 4 practical knowledge items


Total impacted individuals via the events of the week

There were a total of 3,343,098 impacted individuals across 6 incidents, with the largest breach being the Cal AI Faces Alleged Data Breach Claims Exposing 3 Million User Records incident exposing 3,000,000 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
Malware, Ransomware and Related Attacks4
Software Vulnerability and SDLC Exploits2
Unauthorized access2
Intentional System Sabotage and Crime1
System Misconfiguration Exploits1
Third Party Compromise1
Social Engineering and Phishing1

Industry breakdown of incidents

IndustryNumber of incidents
Consulting/Professional Services3
Healthcare3
Food and Beverage2
Finance2
IT/Software/Technology1
Non-profit/Charity1
Retail1
Entertainment/Leisure1
Energy1
Telecommunications1

 

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 11, 2026