Dark Reading reported on several region-specific cyber-risk themes rather than a single discrete incident. The World Economic Forum’s Global Cybersecurity Outlook 2026 found Latin American and Caribbean organizations have the lowest confidence in their countries’ ability to defend critical infrastructure (13% confident vs. 37% globally), citing under-resourced cyber-resilience and incident-response capabilities as digital infrastructure expands. Separately, a Dark Reading commentary described growing European anxiety about overreliance on US technology and cybersecurity vendors, framing it as a strategic and sovereignty concern rather than a specific breach or vulnerability disclosure.
Australia also opened a national-security review into Chinese-made Yutong electric buses deployed in major cities, following researcher reporting that the vehicles’ connectivity and remote-management features could be abused and that a “kill switch” scenario is a perceived risk in a crisis (the article notes the reality is more complex than the headline framing). A ZDNET leadership piece echoed the broader theme that technology and cybersecurity decisions are increasingly treated as national-security bets, but it is largely strategic guidance and executive commentary rather than actionable threat intelligence.

See the actors and campaigns active against you right now.
11 events from the most recent confirmed update back to the earliest known activity.
Dark Reading, citing Check Point, reported that African organizations averaged about 2,700 cyberattacks per week in Q1 2026, down 22% from nearly 3,500 per week a year earlier. The report said attacker focus had shifted toward other regions, especially Latin America, which had overtaken Africa as the most targeted region by the end of 2025.
A Cyfirma report described Malaysia as facing a major structural shift in cyber threats as digitization in critical sectors outpaced defenses, increasing exposure to state-backed espionage and financially motivated cybercrime. The assessment highlighted China-linked groups including APT41 and Mustang Panda, financially motivated actors such as Lazarus Group and FIN7, phishing-driven fraud accounting for up to 75% of incidents by late 2025, and emerging deepfake and large-scale DDoS risks.
Australia's government began reviewing potential national security risks posed by Chinese-made Yutong electric buses operating in major cities, focusing on remote connectivity and possible remote shutdown scenarios.
The World Economic Forum's Global Cybersecurity Outlook 2026 reported that Latin America and the Caribbean had the lowest confidence of any region in national ability to defend critical infrastructure, highlighting cyber inequity and talent shortages.
Reports that Microsoft blocked the ICC Chief Prosecutor's email account following US sanctions further eroded European trust in reliance on US technology providers.
Check Point Research data cited in the reporting found that Latin America experienced a 53% year-over-year increase in cyberattacks in 2025, outpacing the global average.
In December 2025, the UK government awarded Palantir a major Ministry of Defence contract despite broader debate over dependence on US technology suppliers.
Major US technology CEOs attending President Trump's January 2025 inauguration were cited as reinforcing European perceptions of political alignment between US government power and large American tech firms.
The 2018 US CLOUD Act intensified European fears that US authorities could compel American technology companies to provide access to data stored outside the United States.
China's 2017 cybersecurity and national intelligence laws heightened foreign government concern that Chinese technology vendors could be compelled to assist state intelligence or security operations.
A 2013 legal dispute over a US warrant seeking access to emails stored in Ireland became an early flashpoint for European concerns about US jurisdiction over data held by American cloud providers abroad.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
5 references tracked. Mallory keeps watching after this page renders.
darkreading.com
Open sourcescworld.com
Open sourcedarkreading.com
Open sourcedarkreading.com
Open sourcedarkreading.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.