Knowledge

State of (in)security - Week 17, 2026

Take action: If you use the Bitwarden CLI (@bitwarden/cli) version 2026.4.0, treat it as fully compromised - uninstall it immediately, downgrade to 2026.3.0, and rotate every credential on that machine (GitHub/npm tokens, AWS/GCP/Azure keys, SSH keys, .env secrets). Block audit.checkmarx.cx at your network egress and audit your GitHub account for unauthorized repos or workflow changes.


Learn More

In the week between April 20, 2026, midnight and April 27, 2026, midnight we witnessed a total of:

  • 10 advisory/vulnerability events
  • 21 incident/data breach events

Week over Week comparison of week 17 2026 vs week 16 2026

We also shared 7 practical knowledge items


Total impacted individuals via the events of the week

There were a total of 999,867 impacted individuals across 11 incidents, with the largest breach being the UK Biobank Data Breach: 500,000 Volunteer Records Listed for Sale on Alibaba incident exposing 500,000 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
Malware, Ransomware and Related Attacks4
Social Engineering and Phishing3
Unauthorized access3
Software Vulnerability and SDLC Exploits2
Third Party Compromise2
Intentional System Sabotage and Crime1

Industry breakdown of incidents

IndustryNumber of incidents
IT/Software/Technology4
Government4
Healthcare4
Finance3
Other1
Construction/Realestate1
Retail1
Education1
Food and Beverage1
Insurance1

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 17, 2026