Knowledge

State of (in)security - Week 16, 2026

Take action: This week third party libraries and AI are the focus: If you're using Claude Code, update immediately to the latest version and stop using authentication helpers. Instead, set the ANTHROPIC_API_KEY environment variable directly. If you use Axios in your applications, start planning an update to version 1.15.0 or later. Make sure your nginx-ui instances are isolated from the internet and accessible from trusted networks only.


Learn More

In the week between April 13, 2026, midnight and April 20, 2026, midnight we witnessed a total of:

  • 17 advisory/vulnerability events
  • 22 incident/data breach events

Week over Week comparison of week 16 2026 vs week 15 2026

We also shared 4 practical knowledge items

Total impacted individuals via the events of the week

There were a total of 16,717,203 impacted individuals across 8 incidents, with the largest breach being the McGraw-Hill Confirms Data Breach Linked to Salesforce Misconfiguration incident exposing 13,500,000 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
Malware, Ransomware and Related Attacks6
System Misconfiguration Exploits2
Third Party Compromise2
Social Engineering and Phishing2
Software Vulnerability and SDLC Exploits1
Human bad security behaviour1
Unauthorized access1

Industry breakdown of incidents

IndustryNumber of incidents
Healthcare4
IT/Software/Technology4
Finance4
Education2
Hospitality/Events2
Manufacturing2
Retail2
Entertainment/Leisure1
Transport/Logistics1

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 16, 2026