---
title: "Berlin Ransomware Theft, Eastlink Data Breach, Dark Web Exposure – Cybersecurity News [August 31, 2026] | DuoCircle"
description: "Cybersecurity news highlights Berlin ransomware, the Eastlink data breach, dark web ID exposure, zero-day exploits, malware, and espionage threats."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/cybersecurity-news-update-week-36-of-2026/"
---

Quick Answer

Cybersecurity news this week includes the Berlin ransomware theft, Eastlink data breach, 153 million driver’s license scans exposed, actively exploited SonicWall flaws, Chrome zero-days, malicious browser extensions, and new Lazarus and Russian-linked campaigns.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Berlin%20Ransomware%20Theft%2C%20Eastlink%20Data%20Breach%2C%20Dark%20Web%20Exposure%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2031%2C%202026%5D&url=undefined%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F&title=Berlin%20Ransomware%20Theft%2C%20Eastlink%20Data%20Breach%2C%20Dark%20Web%20Exposure%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2031%2C%202026%5D "Share on Reddit") [ ](mailto:?subject=Berlin%20Ransomware%20Theft%2C%20Eastlink%20Data%20Breach%2C%20Dark%20Web%20Exposure%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2031%2C%202026%5D&body=Check out this article: undefined%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F "Share via Email") 

![cybersecurity news update](https://media.mailhop.org/duocircle/spf-record-3849-1788771123582.jpg) 

It’s been an unusually heavy week in cybersecurity. A ransomware gang is blackmailing Berlin’s city government over a multi-terabyte data theft, while a [U.S. federal law enforcement agency](https://en.wikipedia.org/wiki/Federal%5Flaw%5Fenforcement%5Fin%5Fthe%5FUnited%5FStates) and one of the **UK’s largest airport operators** were both hit by separate extortion groups. A medical device giant was knocked offline by a disruptive cyberattack, and a Canadian telecom warned tens of thousands of customers about a breach. Elsewhere, researchers exposed a massive dark web marketplace selling over 150 million stolen driver’s license scans, a [state-linked espionage campaign](https://www.cybersecuritydive.com/news/state-actor-cisco-routers-China-espionage/829181/) resurfaced, and attackers wasted no time weaponizing several newly disclosed software flaws - from school print servers to network switches to browser extensions.

[Email security](https://www.duocircle.com/) starts with [SPF](https://www.duocircle.com/email/spf-management/), DKIM, and [DMARC](https://www.duocircle.com/email/dmarc/), **helping organisations** reduce [domain impersonation](https://www.scworld.com/brief/massive-domain-spoofing-campaign-uncovered) and protect users from phishing attempts.

## Berlin city government blackmailed after 5.79 TB ransomware theft

The [Rhysida ransomware gang](https://ebuildersecurity.se/en/cyber-news/berlin-refuses-rhysida-ransom-before-state-election/) has claimed responsibility for breaching Berlin’s city administration systems, saying it exfiltrated 5.79 terabytes of data including tens of thousands of contracts, emails, and passwords. _The intrusion was first discovered in early August, though officials still haven’t confirmed the full scope of what was taken_.

The attackers are reportedly demanding roughly 30 bitcoin, worth around $2.5 million, in exchange for not leaking the stolen files. **City officials** have not said whether they intend to pay.[Kaseya](https://www.kaseya.com/blog/the-week-in-breach-news-09-02-26/)

![Hosted Email Server 2025](https://media.mailhop.org/duocircle/hosted-email-server-2025-1788771985680.jpg)

## Canadian telecom Eastlink warns 75,000 customers of data breach

Eastlink, a telecommunications provider in Canada, is **notifying roughly 75,000 customers** that their account information may have been exposed after unauthorized access was detected in late August. Names, contact details, account numbers, and PINs were among the data potentially affected, though the company says banking details were not accessed.

Eastlink shut down the affected platforms on its website and app as a precaution while it investigates further. [CBC](https://www.cbc.ca/news/canada/nova-scotia/eastlink-data-breach-august-2026-9.7325413)

## 153 million driver’s license scans surface on new dark web marketplace

A dark web platform called [Nexus advertised](https://www.securityweek.com/153-million-driver-license-images-offered-on-dark-web/) more than 153 million U.S. and Canadian driver’s license scans for sale, alongside millions of other ID cards, travel documents, and medical cards. **Journalist Brian Krebs verified** the data was genuine after the sellers used his own license as a free sample - and even showed him a scan of U.S. Defense Secretary Pete Hegseth’s license.

_The stolen images appear to trace back to IDScan.net, a Louisiana-based identity verification company used by major brands, and the FBI has opened an investigation_. Nexus has since shut itself down, though the data is presumably still circulating elsewhere. [Cybernews](https://cybernews.com/security/drivers-licenses-for-sale-following-idscan-breach-allegations/)[Engadget](https://www.engadget.com/2249522/digital-scans-of-153-million-drivers-licenses-leaked-to-the-dark-web/) [Malwarebytes](https://www.malwarebytes.com/blog/news/2026/09/dark-web-site-puts-153-million-drivers-and-millions-more-ids-up-for-sale)

## Critical SonicWall SMA1000 flaws under active exploitation

[SonicWall confirmed](https://www.bleepingcomputer.com/news/security/sonicwall-warns-of-actively-exploited-sma1000-zero-day-flaws/) that two critical vulnerabilities in its SMA1000 remote access appliances are being actively exploited, and both have been added to CISA’s Known Exploited Vulnerabilities catalog. The flaws can be chained together to achieve unauthenticated remote code execution on affected devices. [Rapid7](https://www.rapid7.com/blog/post/etr-critical-sonicwall-sma1000-vulnerabilities-cve-2026-83548-cve-2026-83549-exploited-in-the-wild/)

Because exploitation began before the issues were publicly disclosed, SonicWall is warning organizations not to assume they’re safe just because they’ve patched-appliances should be checked for **signs of prior compromise** as well. [Rapid7](https://www.rapid7.com/blog/post/etr-critical-sonicwall-sma1000-vulnerabilities-cve-2026-83548-cve-2026-83549-exploited-in-the-wild/)

## N-able N-central zero-day exploited despite earlier hotfixes

Security firm Huntress discovered a new exploit chain in [N-able’s N-central remote monitoring](https://www.huntress.com/blog/n-able-vulnerability-exploitation) platform after a fully patched customer environment was compromised. _The flaw is distinct from an earlier critical vulnerability N-able patched in August, and it allows attackers to bypass access controls and create unauthorized administrator accounts_.

![Smtp Service 2021](https://media.mailhop.org/duocircle/smtp-service-2021-1788772036329.jpg)

On-premises customers are being urged to apply the latest hotfix immediately, since hosted versions of the platform have already been secured by the vendor. [Huntress](https://www.huntress.com/blog/n-able-vulnerability-exploitation)

## Cisco patches critical flaws in Nexus switches and IOS XR software

Cisco disclosed a critical, **maximum-severity-adjacent flaw (CVSS 9.8)** in [Nexus 9000](https://thehackernews.com/2026/09/critical-cisco-nexus-9000-flaw-lets.html) switches built on its Silicon One chips, which can let an unauthenticated attacker execute code with root privileges the kind of hardware increasingly used to power AI data centers. Cisco said it isn’t aware of any malicious exploitation as of the September 2 disclosure. [The Hacker News](https://thehackernews.com/2026/09/critical-cisco-nexus-9000-flaw-lets.html)

The same day, Cisco also released a hardening update for IOS XR software bundling seven vulnerabilities, two of which are also rated 9.8, affecting all releases **regardless of configuration**. [The Hacker News](https://thehackernews.com/2026/09/critical-cisco-nexus-9000-flaw-lets.html)

## Google patches Chrome’s sixth actively exploited zero-day of 2026

Google shipped an emergency Chrome update fixing a high-severity flaw in the [browser’s V8 JavaScript engine](https://www.bleepingcomputer.com/news/security/google-warns-of-new-chrome-zero-day-flaw-exploited-in-attacks/) that was already being exploited in the wild. The bug, a type confusion issue, could let an attacker run arbitrary code inside **Chrome’s sandbox via a** specially crafted webpage. [The Hacker News](https://thehackernews.com/)

This marks the sixth Chrome zero-day patched so far in 2026, underscoring how frequently browsers remain a top target for attackers. Users are **advised to update immediately** and restart their browsers. [The Hacker News](https://thehackernews.com/)

## ”Superior” campaign hijacks 19 browser extensions to steal crypto and passwords

Researchers uncovered a campaign dubbed Superior involving [19 malicious Chrome and Edge extensions](https://www.pcworld.com/article/3224561/19-chrome-extensions-were-secretly-stealing-data-uninstall-these-now.html) capable of stealing cryptocurrency, saved passwords, browser sessions, and form data. The operator reportedly built 14 of the extensions from scratch and took over five previously legitimate ones, pushing malicious updates to unsuspecting users. [GridinSoft, LLC](https://blog.gridinsoft.com/superior-malicious-browser-extensions/)

![Sendgrid Alternative 2023](https://media.mailhop.org/duocircle/sendgrid-alternative-2023-1788772112915.jpg)

One hijacked extension alone had roughly 70,000 users at the time of its malicious update, highlighting how browser extensions remain an underappreciated attack surface for both consumers and enterprises. [GridinSoft](https://blog.gridinsoft.com/superior-malicious-browser-extensions/)

## New BraZetsu malware framework fuels underground access marketplace

Researchers detailed a sophisticated [Python-based Windows malware framework](https://www.infosecurity-magazine.com/news/fraud-investigation-python-malware/) called BraZetsu that’s being used to power a marketplace for compromised computer access. Unlike typical infostealers built for one-off credential theft, BraZetsu functions as a comprehensive toolkit that helps initial access brokers turn hacked systems into **sellable commercial assets**. [The Hacker News](https://thehackernews.com/)

The framework’s emergence points to a maturing criminal economy, where gaining a foothold on a machine is increasingly treated as a product to be resold rather than a means to a single attack. [The Hacker News](https://thehackernews.com/)

## Lazarus Group used a Windows zero-day in latest Operation Dream Job wave

North Korea’s Lazarus Group has been observed using a new wave of its long-running Operation Dream Job recruitment-lure campaign, this time weaponizing a previously unknown [Windows kernel driver flaw](https://gbhackers.com/microsoft-to-automatically-enable-memory-integrity/). The zero-day was used to **gain system-level privileges** and deploy a new version of the FudModule rootkit, designed specifically to blind endpoint security tools. [Substack](https://cyberwarrior76.substack.com/p/strategic-cyber-threat-intelligence-3b9)

![Spf Validator 4560](https://media.mailhop.org/duocircle/spf-validator-4560-1788775093533.jpg)

The campaign continues Lazarus’s pattern of posing as recruiters to trick targets - often in the crypto and tech sectors -into opening malicious files disguised as job assignments.[CyberWarrior76](https://cyberwarrior76.substack.com/p/strategic-cyber-threat-intelligence-3b9)

## Russian-linked “LAUNDRY BEAR” espionage campaign targets webmail accounts

A **joint government advisory** detailed an ongoing Russian-linked campaign, tracked by different vendors as LAUNDRY BEAR, Void Blizzard, and TA488, that’s been targeting webmail accounts since at least mid-2025\. _More than twenty government agencies co-signed the advisory, which assesses the activity is almost certainly intelligence collection carried out on behalf of the Russian Federation_. [Substack](https://cyberwarrior76.substack.com/p/strategic-cyber-threat-intelligence-3b9)

Separately, Microsoft flagged a related but distinct campaign it’s calling CaptiveCrunch, linked to a sub-cluster of the well-known **APT29 (Midnight Blizzard) group**, which uses [fake captive Wi-Fi portals](https://www.malwarebytes.com/blog/news/2026/08/travelers-targeted-when-logging-into-hotel-wi-fi-networks) to redirect and compromise targets. [CyberWarrior76](https://cyberwarrior76.substack.com/p/strategic-cyber-threat-intelligence-3b9)

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F) [ ](https://twitter.com/intent/tweet?text=Berlin%20Ransomware%20Theft%2C%20Eastlink%20Data%20Breach%2C%20Dark%20Web%20Exposure%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2031%2C%202026%5D&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-36-of-2026%2F) Copy 

Related Articles

- [ ![Cybersecurity News](https://media.mailhop.org/duocircle/spf-permerror-5610-1779093389633.jpg)  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\] Blog ](/blog/cybersecurity-news-update-week-20-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5667-1779700511937.jpg)  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\] Blog ](/blog/cybersecurity-news-update-week-21-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5686-1780301891080.jpg)  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News Blog ](/blog/cybersecurity-news-update-week-22-of-2026/)
- [ ![cybersecurity news](https://media.mailhop.org/duocircle/spf-record-4590-1780921768387.jpg)  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News Blog ](/blog/cybersecurity-news-update-week-23-of-2026/)

## Related Articles

[  news  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\]  May 18, 2026 ](/blog/cybersecurity-news-update-week-20-of-2026/)[  news  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\]  May 25, 2026 ](/blog/cybersecurity-news-update-week-21-of-2026/)[  news  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News  Jun 1, 2026 ](/blog/cybersecurity-news-update-week-22-of-2026/)[  news  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News  Jun 8, 2026 ](/blog/cybersecurity-news-update-week-23-of-2026/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Berlin Ransomware Theft, Eastlink Data Breach, Dark Web Exposure – Cybersecurity News [August 31, 2026]","description":"Cybersecurity news highlights Berlin ransomware, the Eastlink data breach, dark web ID exposure, zero-day exploits, malware, and espionage threats.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-36-of-2026/","datePublished":"2026-09-07T00:00:00.000Z","dateModified":"2026-09-07T00:00:00.000Z","dateCreated":"2026-09-07T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-36-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-record-3849-1788771123582.jpg","caption":"cybersecurity news update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"news"},{"@type":"ListItem","position":3,"name":"Berlin Ransomware Theft, Eastlink Data Breach, Dark Web Exposure – Cybersecurity News [August 31, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-36-of-2026/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"news","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Berlin Ransomware Theft, Eastlink Data Breach, Dark Web Exposure – Cybersecurity News [August 31, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-36-of-2026/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Berlin Ransomware Theft, Eastlink Data Breach, Dark Web Exposure – Cybersecurity News [August 31, 2026]","description":"Cybersecurity news highlights Berlin ransomware, the Eastlink data breach, dark web ID exposure, zero-day exploits, malware, and espionage threats.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-36-of-2026/","datePublished":"2026-09-07T00:00:00.000Z","dateModified":"2026-09-07T00:00:00.000Z","dateCreated":"2026-09-07T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-36-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-record-3849-1788771123582.jpg","caption":"cybersecurity news update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
