Visualização normal
-
HACKMAGEDDON
-
1-15 August 2026 Cyber Attacks Timeline
Cyber crime dominated the first half of August 2026, driving 108 confirmed incidents in just fifteen days. Malware remained the attacker's weapon of choice, a third of breaches traced back to an exploited public-facing application, and Public Administration emerged as the hardest-hit sector.
-
HACKMAGEDDON
-
1-15 August 2026 Cyber Attacks Timeline Infographic
A single-page visual breakdown of the 108 cyber attacks recorded between August 1–15, 2026 — from the motivations behind them and the sectors hit hardest, to the tactics attackers used to get in.
1-15 August 2026 Cyber Attacks Timeline Infographic
-
HACKMAGEDDON
-
July 2026 Cyber Attacks Statistics
July 2026 saw 188 confirmed cyber attacks across 69 countries, with financially motivated Cyber Crime driving three in four incidents. Malware remained attackers' weapon of choice, exposed public-facing applications were the most common way in, and Information & Communication infrastructure absorbed the heaviest share of targeting. Here's the full breakdown of who attacked, how, and where.
July 2026 Cyber Attacks Statistics
-
HACKMAGEDDON
-
16-31 July 2026 Cyber Attacks Timeline Infographic
103 confirmed cyber incidents reported between 15 and 31 July 2026 — including attacker motivations, top techniques, initial access vectors, hardest-hit sectors, and targeted countries, all in one interactive HACKMAGEDDON timeline.
16-31 July 2026 Cyber Attacks Timeline Infographic
-
HACKMAGEDDON
-
16-31 July 2026 Cyber Attacks Timeline
103 confirmed cyber incidents reported between 15 and 31 July 2026 — including attacker motivations, top techniques, initial access vectors, hardest-hit sectors, and targeted countries, all in one interactive HACKMAGEDDON timeline.
16-31 July 2026 Cyber Attacks Timeline
-
HACKMAGEDDON
-
1-15 July 2026 Cyber Attacks Timeline Infographic
Cyber Crime dominated the first half of July 2026, driving 76.5% of all confirmed activity, with Malware the clear weapon of choice at 43.5% of attack techniques. Exploitation of public-facing applications (MITRE T1190) led initial access methods at 27.6%, while Information & Communication infrastructure bore the brunt of targeting, accounting for 32% of sector hits — well ahead of Public Administration and Financial Services.
1-15 July 2026 Cyber Attacks Timeline Infographic
-
HACKMAGEDDON
-
1-15 July 2026 Cyber Attacks Timeline
85 confirmed cyber incidents shaped the first half of July 2026, with cyber crime accounting for more than three-quarters of all attacks. Malware — spanning RATs, infostealers, spyware, and backdoors — was the dominant weapon, involved in 37 of 85 incidents (43.5%). Information & Communication infrastructure emerged as the hardest-hit sector, targeted in nearly 1 in 3 sector mentions.
1-15 July 2026 Cyber Attacks Timeline
-
HACKMAGEDDON
-
H1 2026 Cyber Attacks Statistics Infographic
Last Updated on July 16, 2026 Bundled Page This page requires JavaScript to display. H1 Unpacking…
H1 2026 Cyber Attacks Statistics Infographic
-
HACKMAGEDDON
-
H1 2026 Cyber Attacks Statistics
In H1 I recorded 1,071 confirmed cyber incidents. Financially motivated Cyber Crime drove nearly 7 in 10 attacks, malware remained the top weapon (40.5% of attack-vector entries), and exploitation of public-facing applications was the leading initial access technique (23.7%). Cyber Espionage accounted for roughly 1 in 5 incidents, with the Information & Communication sector bearing the heaviest targeting (26.1% of classified events).
H1 2026 Cyber Attacks Statistics
-
Security Affairs
-
Spanish Police Arrest Man Linked to CARR, Z-Pentest, and NoName057(16)
Spain arrested a suspected CARR and Z-Pentest collaborator in an FBI-led probe for aiding pro-Russian hackers, coordinating attacks, and using crypto. Spanish National Police arrested a man in Palencia last March on charges of membership in and collaboration with a terrorist organization, glorifying terrorism, and computer damage. The investigation, carried out jointly with the FBI, identified him as a collaborator of two pro-Russian hacktivist groups: CyberArmy of Russia Reborn (CARR) and Z
Spanish Police Arrest Man Linked to CARR, Z-Pentest, and NoName057(16)
Spain arrested a suspected CARR and Z-Pentest collaborator in an FBI-led probe for aiding pro-Russian hackers, coordinating attacks, and using crypto.
Spanish National Police arrested a man in Palencia last March on charges of membership in and collaboration with a terrorist organization, glorifying terrorism, and computer damage. The investigation, carried out jointly with the FBI, identified him as a collaborator of two pro-Russian hacktivist groups: CyberArmy of Russia Reborn (CARR) and Z-Pentest, both designated as terrorist organizations responsible for attacks against critical infrastructure in the United States and Europe.
“The investigation began last August when, thanks to information provided by the FBI, the National Police investigators were made aware of the alleged involvement of the detainee in actions aimed at providing logistical and support cover to a Ukrainian hacker, located in Ukraine, linked to the pro-Russian hacktivist group CyberArmy of Russia Reborn (CARR), in order to facilitate his escape to Russia, through Poland and Belarus.” reads the press release published by the Spanish Police.
The operational support the suspect allegedly provided — helping a foreign hacker evade capture by routing an escape through two countries — puts this well beyond keyboard activism.
“The suspect also used various encrypted messaging applications to maintain contact with other members of these terrorist groups, coordinating actions and providing support for their activities.” continues the report. “According to investigators, the detainee participated in actions attributed to the pro-Russian hacktivist group NoName057(16), whose operations were later claimed on specialized geopolitical websites, with the aim of disseminating pro-Russian and anti-Western narratives.”
Investigators also linked him to operations attributed to NoName057(16), another pro-Russian hacktivist group, whose attacks were subsequently claimed on geopolitical websites to spread pro-Russian and anti-Western messaging. The suspect was apparently keeping busy across multiple fronts simultaneously.
Police searched the suspect’s home in Palencia, seized computers and cryptocurrency storage devices, and froze a crypto wallet allegedly used to hold profits from selling stolen information.
The police pointed out that there was a financial dimension to the operation, with proceeds from the sale of stolen or compromised information flowing through crypto accounts.
The investigation was conducted by the General Information Commissariat of the National Police, the FBI, and the Provincial Information Brigade of Palencia, under the direction of the Central Court of Instance number One and the National Court’s Prosecutor’s Office. CARR and Z-Pentest have been active against water utilities, energy infrastructure, and industrial control systems across the US and Europe.
The arrest is one of the first in Spain connecting a domestic individual to the operational and logistical support layer that keeps these groups running, not just the keyboard operators, but the people helping them stay out of custody.
CyberArmy of Russia Reborn (CARR) is a pro-Russian hacktivist group known for targeting government agencies, critical infrastructure, and industrial systems across Europe and the United States, mainly through DDoS attacks and disruptive cyber operations.
Z-Pentest is another pro-Russian cyber group that supports similar campaigns, often coordinating attacks aligned with Moscow’s geopolitical interests. Both groups blend ideological messaging with offensive cyber activity and have been linked to attacks on energy, water, and public-sector organizations.
Follow me on Twitter: @securityaffairs and Facebook and Mastodon
(SecurityAffairs – hacking, CARR)
-
HACKMAGEDDON
-
16-30 June 2026 Cyber Attacks Timeline
Between 16–30 June 2026, 96 confirmed cyber incidents shaped the threat landscape — Cyber Crime drove roughly 8 in 10 attacks, malware remained the top weapon, and Information & Communication infrastructure took the hardest hit.
16-30 June 2026 Cyber Attacks Timeline
-
HACKMAGEDDON
-
May 2026 Cyber Attacks Statistics
During May 2026 I collected 165 events: Cyber Crime accounted for 73.8% of events, Malware remained the dominant weapon (48.8%) and Information & Communication was hit the most (37.6%)
May 2026 Cyber Attacks Statistics
-
HACKMAGEDDON
-
16-31 May 2026 Cyber Attacks Timeline
The threat landscape in May H2 2026 was driven by cyber crime and dominated by malware. Exploitation of public-facing app vulnerabilities continued to play an important role, similarly to supply chain attacks.
16-31 May 2026 Cyber Attacks Timeline
-
HACKMAGEDDON
-
April 2026 Cyber Attacks Statistics
In April 2026, Cyber Crime continued to lead the Motivations, once again ahead of Cyber Espionage. Cyber Warfare took the third place, ahead of Hacktivism.
April 2026 Cyber Attacks Statistics
-
HACKMAGEDDON
-
16-30 April 2026 Cyber Attacks Timeline
In the second timeline of April 2026 I collected 108 events, corresponding to an average of 7.2 events per day, a number that confirms a growing trend, driven by the increasing number of supply chain attacks, compared to the previous timeline, where I collected 94 events (6.27 events/day).
16-30 April 2026 Cyber Attacks Timeline
-
HACKMAGEDDON
-
Q1 2026 Cyber Attack Statistics
I aggregated the statistics created from the cyber attacks timelines published in the first quarter of 2026. In this period, I collected a total of 528 events (5.87 events/day) dominated by Cyber Crime with 66%, followed by Cyber Espionage with 18%, Hacktivism with 3%, and finally Cyber Warfare with 2%.
Q1 2026 Cyber Attack Statistics
-
HACKMAGEDDON
-
1-15 April 2026 Cyber Attacks Timeline
The first timeline of April 2026 brings an evolution in terms of methodology: from now on I will map the initial access techniques with the MITRE ATT&CK model. I also decided to merge the categories of Finance and Fintech in the sectors chart. From an event perspective, the first half of April 2026 confirmed a sustained trend...
1-15 April 2026 Cyber Attacks Timeline
-
HACKMAGEDDON
-
March 2026 Cyber Attacks Statistics
After the cyber attacks timelines, it’s time to publish the statistics for March 2026 where I collected and analyzed 282 events: a sharp increase compared to the 176 events of the previous month. In March 2026, Cyber Crime continued to lead the Motivations chart with 64%, ahead of Cyber Espionage at number two with 15%. Hacktivism took over the third position with 6%, ahead of Cyber Warfare with 3%.
March 2026 Cyber Attacks Statistics
-
HACKMAGEDDON
-
16-31 March 2026 Cyber Attacks Timeline
The second half of March 2026 has been very active from an infosec standpoint, with 124 events and a threat landscape dominated by malware. As always, cyber crime led the motivations chart with 65%, slightly up from the previous timeline.
16-31 March 2026 Cyber Attacks Timeline
-
HACKMAGEDDON
-
1-15 March 2026 Cyber Attacks Timeline
In the first half of March 2026 I collected 95 events (6.34 events/day) with a threat landscape dominated by malware once ahead of account takeovers and ransomware.