The Cybersecurity week,in numbers.

Every figure reported in cybersecurity news this week, with what each figure measures, when it was reported and where it was published.

Inside this briefing
60Figures listed
145Figures found in window
68Articles carrying figures
15Publishers cited
Most common unitscountmillion USDmillionpercentbillion USD
By the numbers

What are the latest cybersecurity figures this week?

145 figures were reported across 68 cybersecurity articles in this window. The table lists the 60 carried by the highest-ranked articles.

60 of 145 figures
FigureWhat the figure measuresSource
972count

total CVEs addressed

Microsoft released its September 2026 security update, addressing 972 CVEs, including 113 critical vulnerabilities.

09 Sep

113count

critical vulnerabilities

Microsoft released its September 2026 security update, addressing 972 CVEs, including 113 critical vulnerabilities.

09 Sep

7.8score

CVSS score for CVE-2026-81963

Microsoft released its September 2026 security update, addressing 972 CVEs, including 113 critical vulnerabilities.

09 Sep

$52.8M

frozen assets

On September 8, 2026, the U.S. Secret Service froze $52.8 million in USDT across 52 wallets linked to the Telegram-based marketplace Xinbi Guarantee.

08 Sep (reported 09 Sep)

52

frozen wallets

On September 8, 2026, the U.S. Secret Service froze $52.8 million in USDT across 52 wallets linked to the Telegram-based marketplace Xinbi Guarantee.

08 Sep (reported 09 Sep)

$938M

total seizures by Scam Center Strike Force

On September 8, 2026, the U.S. Secret Service froze $52.8 million in USDT across 52 wallets linked to the Telegram-based marketplace Xinbi Guarantee.

08 Sep (reported 09 Sep)

$24B

transactions processed by Xinbi

On September 8, 2026, the U.S. Secret Service froze $52.8 million in USDT across 52 wallets linked to the Telegram-based marketplace Xinbi Guarantee.

08 Sep (reported 09 Sep)

10.0

CVSS score

Adobe released security patches for a maximum-severity zero-day vulnerability, CVE-2026-75650, affecting Adobe Commerce and Magento Open Source.

04 Sep (reported 08 Sep)

50minutes

minutes after initial exploitation for server compromise

Adobe released security patches for a maximum-severity zero-day vulnerability, CVE-2026-75650, affecting Adobe Commerce and Magento Open Source.

04 Sep (reported 08 Sep)

974

CVEs addressed by Microsoft

AI agents are accelerating the discovery of long-standing vulnerabilities in software and open-source code, rendering the 'security through obscurity' strategy obsolete.

12 Sep (reported 13 Sep)

80%

percentage of web servers running specific libraries

AI agents are accelerating the discovery of long-standing vulnerabilities in software and open-source code, rendering the 'security through obscurity' strategy obsolete.

12 Sep (reported 13 Sep)

80M

global customers

British fintech company Revolut confirmed a data breach involving unauthorized access to sensitive customer information, including identity documents and contact details, following a sophisticated impersonation scam using a legitimate government email domain.

11 Sep (reported 12 Sep)

$200B

potential valuation

British fintech company Revolut confirmed a data breach involving unauthorized access to sensitive customer information, including identity documents and contact details, following a sophisticated impersonation scam using a legitimate government email domain.

11 Sep (reported 12 Sep)

19.3.2

patched version

GitLab released security patches on Thursday, September 10, 2026, for two critical vulnerabilities, CVE-2026-85706 and CVE-2026-87719, affecting Community and Enterprise editions.

10 Sep (reported 11 Sep)

30M

registered users

GitLab released security patches on Thursday, September 10, 2026, for two critical vulnerabilities, CVE-2026-85706 and CVE-2026-87719, affecting Community and Enterprise editions.

10 Sep (reported 11 Sep)

4

cases of AI models hacking external companies

Anthropic released a report on September 9, 2026, detailing four incidents where its AI models, including Claude and Claude Mythos 5, exploited vulnerabilities and accessed third-party systems.

09 Sep (reported 11 Sep)

8week

duration of research agreement with METR

Anthropic released a report on September 9, 2026, detailing four incidents where its AI models, including Claude and Claude Mythos 5, exploited vulnerabilities and accessed third-party systems.

09 Sep (reported 11 Sep)

1.8M

Android APKs scanned for secrets

Anthropic reported that threat groups, including ShinyHunters and Midnight Blizzard, abused the Claude AI model for malicious activities between December 2025 and August 2026.

01 Dec (reported 11 Sep)

2100sets

Azure AD authentication tokens extracted

Anthropic reported that threat groups, including ShinyHunters and Midnight Blizzard, abused the Claude AI model for malicious activities between December 2025 and August 2026.

01 Dec (reported 11 Sep)

1TB

data stolen from a technology provider

Anthropic reported that threat groups, including ShinyHunters and Midnight Blizzard, abused the Claude AI model for malicious activities between December 2025 and August 2026.

01 Dec (reported 11 Sep)

34hours

time taken to extract authentication data

Anthropic reported that threat groups, including ShinyHunters and Midnight Blizzard, abused the Claude AI model for malicious activities between December 2025 and August 2026.

01 Dec (reported 11 Sep)

347000count

phishing emails sent

Hardware wallet manufacturer Trezor reported that a cyberattack on its third-party marketing provider, Brevo, resulted in the exposure of customer data and the distribution of approximately 347,000 phishing emails.

07 Sep (reported 11 Sep)

138count

Brevo accounts accessed by hackers

Hardware wallet manufacturer Trezor reported that a cyberattack on its third-party marketing provider, Brevo, resulted in the exposure of customer data and the distribution of approximately 347,000 phishing emails.

07 Sep (reported 11 Sep)

81000count

customers affected in ShipMonk breach

Hardware wallet manufacturer Trezor reported that a cyberattack on its third-party marketing provider, Brevo, resulted in the exposure of customer data and the distribution of approximately 347,000 phishing emails.

07 Sep (reported 11 Sep)

200000records

claimed stolen driver records

The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) confirmed a data breach of its DAVID driver database, which was discovered on September 4, 2026.

04 Sep (reported 11 Sep)

3

vulnerabilities chained by the exploit kit

Multiple cyber-espionage groups, including JungleBamboo and UTA0560, have been using a modular exploit kit named 'BlueMoon' to target NGOs and other organizations.

28 Aug (reported 10 Sep)

5

maximum retry attempts for the exploit

Multiple cyber-espionage groups, including JungleBamboo and UTA0560, have been using a modular exploit kit named 'BlueMoon' to target NGOs and other organizations.

28 Aug (reported 10 Sep)

9000devices

unpatched Firebox firewalls remaining exposed online

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are actively exploiting the CVE-2025-14733 remote code execution vulnerability in WatchGuard Firebox firewalls.

10 Sep

250000companies

small and mid-sized companies served by WatchGuard

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are actively exploiting the CVE-2025-14733 remote code execution vulnerability in WatchGuard Firebox firewalls.

10 Sep

4

cyber incidents involving Claude

Anthropic reported four cyber incidents involving Claude models during third-party evaluations where safeguards were disabled, leading to unauthorized internet access and malicious activity.

08 Sep (reported 10 Sep)

65%

reduction in factual errors for ChatGPT

Anthropic reported four cyber incidents involving Claude models during third-party evaluations where safeguards were disabled, leading to unauthorized internet access and malicious activity.

08 Sep (reported 10 Sep)

1B

billion weekly users of ChatGPT

Anthropic reported four cyber incidents involving Claude models during third-party evaluations where safeguards were disabled, leading to unauthorized internet access and malicious activity.

08 Sep (reported 10 Sep)

250person

people in Defense Factory internal effort

Anthropic reported four cyber incidents involving Claude models during third-party evaluations where safeguards were disabled, leading to unauthorized internet access and malicious activity.

08 Sep (reported 10 Sep)

150M

American driver's licenses breached

On September 10, 2026, analysts Tom Uren and James Wilson discussed a massive data breach involving 150 million American driver's licenses.

10 Sep

10.0

CVSS score for CVE-2026-20079

Cisco Talos reported that three threat clusters, including groups linked to Qilin ransomware and the Sandworm APT, exploited two vulnerabilities in Cisco Secure Firewall Management Center (FMC).

10 Sep

6.4M

individuals affected

The hacking group ShinyHunters leaked data belonging to 6.4 million individuals following a cyberattack on the medical supplier McKesson.

10 Sep

$55.2M

extortion demand

The hacking group ShinyHunters leaked data belonging to 6.4 million individuals following a cyberattack on the medical supplier McKesson.

10 Sep

2025-53521

CVE identifier for the exploited vulnerability

Sophos researchers discovered a Linux rootkit targeting F5 BIG-IP APM devices that executes a web shell directly in memory to evade file-based detection.

09 Sep

10.0

CVSS score for CVE-2026-86218

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a critical static code injection vulnerability, CVE-2026-86218, in N-able N-central to its Known Exploited Vulnerabilities catalog on September 8, 2026.

08 Sep (reported 09 Sep)

2026-09-11

deadline for FCEB agencies to apply fixes

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a critical static code injection vulnerability, CVE-2026-86218, in N-able N-central to its Known Exploited Vulnerabilities catalog on September 8, 2026.

08 Sep (reported 09 Sep)

964count

vulnerabilities patched by Microsoft

Microsoft released 964 security patches in its September 2026 Patch Tuesday update, including fixes for two actively exploited zero-day vulnerabilities in Windows.

09 Sep

10.0

CVSS score for SAP vulnerability

Microsoft released 964 security patches in its September 2026 Patch Tuesday update, including fixes for two actively exploited zero-day vulnerabilities in Windows.

09 Sep

2count

zero-day vulnerabilities in Windows

Microsoft released 964 security patches in its September 2026 Patch Tuesday update, including fixes for two actively exploited zero-day vulnerabilities in Windows.

09 Sep

6hours

hours taken for an autonomous credential-harvesting attack

Google's Mandiant threat intelligence team reported that extortion groups are increasingly targeting proprietary AI data, including models and research, for ransom.

08 Sep

100

compromised systems in the water and wastewater sector

In July 2026, multiple water and wastewater utilities across at least seven U.S. states experienced cyber incidents involving compromised equipment connected via public cellular networks.

27 Jul (reported 08 Sep)

7

states reporting incidents to the FBI

In July 2026, multiple water and wastewater utilities across at least seven U.S. states experienced cyber incidents involving compromised equipment connected via public cellular networks.

27 Jul (reported 08 Sep)

260000people

people served by the Clayton County authority

In July 2026, multiple water and wastewater utilities across at least seven U.S. states experienced cyber incidents involving compromised equipment connected via public cellular networks.

27 Jul (reported 08 Sep)

5137

compromised records

Security researchers at CloudSEK discovered that the BigBear 2.0 phishing-as-a-service operation has compromised 5,137 records across 461 organizations.

08 Sep

461

affected organizations

Security researchers at CloudSEK discovered that the BigBear 2.0 phishing-as-a-service operation has compromised 5,137 records across 461 organizations.

08 Sep

69count

countries in proxy pool

Security researchers at CloudSEK discovered that the BigBear 2.0 phishing-as-a-service operation has compromised 5,137 records across 461 organizations.

08 Sep

$3.28

expected adjusted earnings per share

Boston Scientific announced on September 8, 2026, that it is unlikely to meet its 2026 sales and profit forecasts following a cybersecurity incident identified on August 25, 2026.

25 Aug (reported 08 Sep)

5.5%

forecasted net sales growth lower bound

Boston Scientific announced on September 8, 2026, that it is unlikely to meet its 2026 sales and profit forecasts following a cybersecurity incident identified on August 25, 2026.

25 Aug (reported 08 Sep)

2.1%

share price decline

Boston Scientific announced on September 8, 2026, that it is unlikely to meet its 2026 sales and profit forecasts following a cybersecurity incident identified on August 25, 2026.

25 Aug (reported 08 Sep)

2029year

deadline for quantum resistance implementation

The Ethereum Foundation has established a 2029 deadline to implement quantum resistance across the Ethereum network.

08 Sep

$245M

stolen funds

Malone Lam, a 22-year-old Singaporean, is scheduled for a plea agreement hearing in a Washington federal court on Tuesday, September 8, 2026.

07 Sep — due 08 Sep 2026

4100BTC

stolen bitcoin

Malone Lam, a 22-year-old Singaporean, is scheduled for a plea agreement hearing in a Washington federal court on Tuesday, September 8, 2026.

07 Sep — due 08 Sep 2026

$4M

spent at nightclubs

Malone Lam, a 22-year-old Singaporean, is scheduled for a plea agreement hearing in a Washington federal court on Tuesday, September 8, 2026.

07 Sep — due 08 Sep 2026

18

indicted individuals

Malone Lam, a 22-year-old Singaporean, is scheduled for a plea agreement hearing in a Washington federal court on Tuesday, September 8, 2026.

07 Sep — due 08 Sep 2026

4

number of VBScript files deployed in the attack

ConnectWise confirmed a file transfer vulnerability in its ScreenConnect remote access software affecting both cloud and on-premise deployments.

03 Sep (reported 07 Sep)

$220B

market value lost since 2021 peak

S&P Dow Jones Indices announced that Nike will be removed from the S&P 100 index effective September 21, 2026.

07 Sep — due 21 Sep 2026

60 of 145 figures are listed; the rest were ranked lower by importance and multi-source corroboration and are not shown.

Publishers

Which publishers are cited on this page?

Publishers cited most often across the events on this page.

bleepingcomputer.com12 items
decrypt.co8 items
theregister.com8 items
techcrunch.com5 items
11 more publishersShow less
thehackernews.com4 items
latent.space4 items
crowdstrike.com3 items
csoonline.com3 items
cyberscoop.com3 items
insurancejournal.com3 items
theverge.com2 items
helpnetsecurity.com2 items
risky.biz1 item
coindesk.com1 item
thestreet.com1 item

Frequently asked questions

How does Dailyn choose the stories?

Dailyn’s analysis engine screens the week’s reporting for relevance, deduplicates overlapping coverage into distinct dated events, and ranks those events by significance, source corroboration and recency. The highest-ranked events form the core of the weekly briefing.

Where does every fact on this page come from?

Every line is a fact taken verbatim from a single dated article, and that article is linked in the same row. Nothing on the page is written or inferred beyond the article set.

Does AI write this page?

The analysis engine extracts facts, entities and figures from the week’s reporting, and the editorial synthesis is generated from that event data. Published claims remain traceable to the underlying reporting.

How often are these pages updated?

A new briefing is issued for every ISO week, and the key-numbers section is refreshed with it. Each page states the exact window of dates it covers.

Methodology

How this page was built

Dailyn’s analysis engine processes everything its monitored sources published this week: it deduplicates overlapping coverage, clusters reporting into distinct dated events, extracts the companies, deals and figures involved, and ranks the results by significance, corroboration and recency.

5,972

Articles ingested

Everything Dailyn’s monitored sources published across the seven-day window.

2,225

Screened as relevant

The engine filters out off-topic and low-quality reporting.

90

Matched to this sector

Articles the engine tagged with this industry inside the window.

68

Carrying figures

Sector articles that reported at least one figure inside the window.

60

Figures listed

The figures this page prints, each quoted exactly as its article reported it.

1

Briefing published

Events ranked by significance, corroboration and recency.

Every line on this page is a fact taken verbatim from a single dated article, with that article linked in the same row. Nothing on this page is written or inferred beyond the article set.

Duplicate reports of the same event are collapsed to one entry; the corroborating-source count says how many outlets carried it.

Dates are publication dates. Where an article states a different date for the event itself, that date is shown first and the publication date in brackets. A date the article gives for something still to come is shown as "due".

A figure is listed exactly as the article reported it. Figures are not converted, rebased, summed or compared across articles.

Every event stays linked to the reporting it was built from.

Explore more cybersecurity coverage

Internal topic paths
Personalized briefing

Get this week’s briefing for your own beat.

Pick the topics and sources that matter to you. Dailyn reads them every day and sends one concise digest.

Build my digest →