Bare Metal Cyber Weekly Roll-Up — October 9, 2026
This week’s roll-up opens with a cloud ransomware outage that disrupted hundreds of companies and local governments in Japan, showing how one provider incident can spread across many operations. A sweeping FortiGate campaign also shows the danger of stolen privileged credentials, persistent administrator accounts, and ransomware access at the network edge. In Denmark, misuse of a trusted company’s registry access exposed identity data tied to millions of people. The issue also tracks active NetScaler compromises that can outlive patching and attacks against self-hosted Atlassian systems within hours of disclosure. Together, these stories make one theme clear: resilience depends on third-par…
This week's stories:
- Japan cloud ransomware outage disrupts 495 organizations
- Stolen FortiGate access locks out admins and fuels ransomware
- Denmark registry breach exposes data tied to 8.8 million people
- NetScaler attacks disrupt remote access and leave hidden control
- Sensitive Atlassian files face attacks within hours of disclosure
- FBI disrupts China-linked attacks on critical infrastructure
- Pentagon breach creates long-term identity risk for millions
- Old SharePoint gaps drive ransomware into critical services
- Country-code registry breaches enable trusted website impersonation
- South Korean bank breaches expose customer and worker data
- Developer secrets exposed by a compromised Tensorlake package
- Developer access turns into cloud exposure through GitHub workflows
- GitHub users face malware across 17,610 FakeGit repositories
- Helpdesk breach reaches full server control in seconds with AI
- Exposed AI servers become cryptomining and attack launchpads
More cybersecurity coverage at BareMetalCyber.com.