Persistent Cybersecurity Vulnerabilities Continue To Target Critical Infrastructure, Businesses, And Schools

Huntress reported that remote-monitoring-and-management abuse appeared in 45% of endpoint incidents it investigated in the first quarter of 2026. Mailbox manipulation accounted for 24.6% of identity-threat signals it had seen in 2026, while adversary-in-the-middle attacks made up 18.9% of identity-based threats tracked in 2025.
The university review found that teaching presence was the educational dimension most often affected by cyber incidents, appearing in 62.5% of coded studies. Only 16.7% of studies explicitly examined differential equity impacts, and 12.5% addressed risks tied to AI and learning analytics.
For account protection, the personal-security advice recommends phishing-resistant options such as passkeys or security keys, which are harder to bypass than basic text-message codes. It also suggests password managers that autofill credentials only on legitimate websites.
Rich Kolko said the QTFY campaign had likely been active since 2018 and sought to infiltrate computer systems across multiple important government agencies. He also argued that government lacks the resources to find and defeat every threat, making cybersecurity a responsibility for private companies and device users as well.
Cyber threats are hitting governments, schools, and businesses harder than ever. According to Huntress, a security firm, remote-management-software abuse showed up in 45% of business incidents in early 2026. Meanwhile, attacks that manipulate email accounts now account for nearly a quarter of identity threats. Rich Kolko noted that a hacking campaign called QTFY has likely been active since 2018, targeting multiple U.S. government agencies without pause.
The threat landscape extends to schools and personal accounts. Universities report that cyber incidents disrupt teaching in more than six out of every ten cases. Yet most research on these attacks ignores how they hurt disadvantaged students or risks from AI-powered learning tools. For individuals, basic defenses remain powerful: unique passwords, two-factor authentication, and pausing before clicking suspicious links.
Huntress identified two primary tactics businesses face today. Remote-monitoring-and-management software abuse—tools companies use to manage computers from afar—appeared in 45% of endpoint security incidents in Q1 2026. Attackers exploit these legitimate tools to gain access and move through networks undetected. This method is attractive to hackers because it blends in with normal IT operations.
Email manipulation poses the second major threat. Huntress found mailbox manipulation accounted for 24.6% of identity-threat signals in 2026. Attackers compromise email accounts to intercept messages, reset passwords, or impersonate executives to trick employees into sending money or data. Adversary-in-the-middle attacks—where hackers secretly intercept communications—made up 18.9% of identity-based threats tracked in 2025.
Universities face growing cyber risks, yet research on these attacks remains limited. A comprehensive review found that cyber incidents most often disrupted teaching presence—the ability of instructors to engage students—in 62.5% of documented cases. When networks go down, classes move online or cancel, derailing learning for weeks or months.
Research gaps leave important questions unanswered. Only 16.7% of studies examined how attacks affect low-income or minority students differently. Just 12.5% addressed risks from artificial intelligence and learning analytics tools now entering classrooms. Schools need better data on these disparities to protect all students equally.
AI poses a double-edged threat to cybersecurity. Attackers can use machine learning to find software flaws faster and scale attacks across more systems. But defenders can also use AI to discover vulnerabilities before hackers do and patch aging systems automatically. The race between offense and defense is especially critical for infrastructure—power grids, water systems, hospitals—that often lack funding for modern security.
Zscaler CEO Jay Chaudhry warns that companies are placing too much trust in AI agents without proper safeguards. Letting unsupervised AI loose on corporate networks creates new attack surfaces. The cybersecurity industry continues to debate how to harness AI's benefits while limiting its risks.
Individual defenses matter because personal accounts serve as entry points to larger networks. Use unique passwords for every account—never reuse passwords across sites. Add two-factor authentication, especially phishing-resistant options like security keys or passkeys. These tools block attackers even if they steal your password. Text-message codes are weaker because hackers can intercept them.
Password managers that auto-fill credentials only on real websites prevent phishing attacks. Before clicking links or downloading files from unexpected messages, pause and verify through a trusted channel—call the company directly using a number from their official website. Rich Kolko argues that cybersecurity cannot fall only to government. Businesses and individuals must take responsibility for their own defenses against persistent threats.
Publishers
17
Articles
17
Reach
34