Blog (1175)

Microsoft's July 2026 Patch Tuesday is the largest on record: 570 fixes, including an exploited AD FS elevation of privilege flaw (CVE-2026-56155) and an exploited SharePoint Server flaw (CVE-2026-56164). CISA added both to the KEV catalog the same d
Read more…
Progress has confirmed a high severity path traversal zero day in ShareFile Storage Zone Controller 5.x and 6.x, four days after ordering customers to power off the servers over a "credible external security threat". Patched builds 5.12.5 and 6.0.2 a
Read more…
SAP's July 2026 Patch Day: 16 new security notes led by CVE-2026-44747, a CVSS 9.9 memory corruption in NetWeaver AS ABAP, plus critical Approuter request smuggling and Commerce Cloud sample-credential flaws. Notes, affected versions, detections, and
Read more…
19 agencies across 13 countries warn that FSB Center 16 exploits default SNMP strings to steal router configs via TFTP. The attack chain, OIDs to watch, and 8 fixes.
Read more…
Bruce Schneier's roundtable on AI agent governance, distilled into a checklist: scoped identity per agent, tool-layer guardrails, human-in-the-loop gates, and a vendor scorecard mapped to NIST AI RMF and ISO 42001.
Read more…
A named human must review every AI-generated pentest finding before it becomes a ticket. Bruce Schneier on continuous AI pentesting, plus a CISO readiness checklist, vendor questions, and RFP criteria.
Read more…
RSS
Email me when there are new items in this category –

Join The Community Discussion