The United States is pressing G20 partners to reserve new AI rules for genuinely novel risks, a move that turns global AI governance into a contest over competitiveness, alliances and technological influence.
Washington is building a two-track AI order: confidential security reviews for powerful closed models, regulatory relief for open-weight systems, and a G20 campaign for light-touch rules. The strategy may accelerate US innovation, but leaves a critical security gamble unresolved for global markets.
NVIDIA’s US$96.2 billion quarter and 117% growth in data-centre revenue show AI compute becoming a global industrial market, while memory constraints and China uncertainty become harder commercial limits.
12th January 2026 Cyber Update: Instagram Denies Breach Amid Data Leak & Password Reset Chaos
Instagram is denying a system breach after data from 17.5 million accounts was leaked online and users were hit with a wave of password reset emails. Meta says it fixed a bug causing the email spam, but the leaked data, though likely old, still poses a significant phishing risk to users.
Cyber News Centre's cyber update for 12th January 2026: Widespread confusion has hit Instagram users globally as a password reset bug coincided with the leak of data from a reported 17.5 million accounts, forcing parent company Meta to deny its systems were breached while urging users to remain vigilant.
The Update and Why It Matters
Update: Over the past 48 hours, Instagram users, have been targeted by a confusing series of events. A wave of unsolicited but legitimate password reset emails flooded inboxes, sparking fears of a mass account compromise. Simultaneously, a dataset containing 17.5 million Instagram profiles was released for free on hacking forums. The leaked data includes usernames, names, emails, phone numbers, and physical addresses.
In response, Meta issued a statement clarifying that there was "no breach of our systems." The company stated it had fixed a bug that "allowed an external party to request password reset emails for some Instagram users" and advised users to disregard the emails.
We fixed an issue that let an external party request password reset emails for some people. There was no breach of our systems and your Instagram accounts are secure.
You can ignore those emails — sorry for any confusion.
While Meta denies a new breach, the source of the leaked data remains contentious. The leaker claims it was scraped via a 2024 API leak, but security researchers suggest it is more likely a compilation of older data, possibly from a known 2022 scraping incident or even a 2017 API bug. Crucially, the leaked data does not contain passwords.
Why it Matters: This incident, despite Meta's denial of a "breach," is a security issue with significant implications for users. The combination of the password reset scare and the data leak creates a perfect storm for phishing attacks. Even if the leaked data is old, it is now freely available and can be used by criminals to craft highly convincing and targeted phishing emails or text messages. An attacker, armed with a user's real name, email, and phone number, could easily trick them into revealing their password or other sensitive information.
The incident highlights that the definition of a "breach" is often debated; while systems may not have been infiltrated in a traditional sense, the mass scraping and release of user data is a severe privacy violation. It serves as a critical reminder for all social media users to enable two-factor authentication, which provides a vital layer of security even if a password is stolen, and to be extremely cautious of any unsolicited communications, even if they appear to come from a trusted source like Instagram.
Get the stories that matter to you. Subscribe to Cyber News Centre and update your preferences to follow our Daily 4min Cyber Update, Innovative AI Startups, The AI Diplomat series, or the main Cyber News Centre newsletter — featuring in-depth analysis on major cyber incidents, tech breakthroughs, global policy, and AI developments.
Sign up for Cyber News Centre
Where cybersecurity meets innovation, the CNC team delivers AI and tech breakthroughs for our digital future. We analyze incidents, data, and insights to keep you informed, secure, and ahead.
US authorities have dismantled QTFY’s QScan and QTRouter platforms, exposing a China-linked service model that blended exploit trading, automated scanning and hijacked IoT devices to reach critical infrastructure while concealing where attacks began.
Australia’s cyber agency is warning that attackers are exploiting two N-able N-central authentication bypass flaws locally. For MSPs and enterprise IT teams, a trusted management console can become a route across hundreds of customer endpoints.
A record close on Wall Street and the AI names that were meant to lead it taken apart in the same session. Beijing is now drafting export controls on its own models. The labs keep finding their systems outside the box. Read one at a time, it is a normal week. Read together, something else entirely.
As artificial intelligence automates both attack and defence, the window to patch critical vulnerabilities is vanishing. Black Hat 2026 research confirms autonomous systems are discovering thousands of previously unreported flaws.
Where cybersecurity meets innovation, the CNC team delivers AI and tech breakthroughs for our digital future. We analyze incidents, data, and insights to keep you informed, secure, and ahead. Sign up for free!