Policy & Advisories Senator Presses NSA to Update VPN Guidance as Single-Hop Architecture Draws Scrutiny September 2, 2026 Ron Wyden has written to the NSA Director asking for clearer public advice on commercial… Read More
Policy & Advisories CISA Adds Six Actively Exploited Vulnerabilities Spanning Microsoft, Linux, Red Hat and Citrix August 27, 2026 The US cybersecurity agency's Known Exploited Vulnerabilities catalogue grew by six entries on 26 August,… Read More
Policy & Advisories CISA mandates three-day patch window for actively exploited Zimbra vulnerability August 24, 2026 A known flaw in Zimbra Collaboration Suite is under active exploitation, prompting CISA to issue… Read More
Policy & Advisories CISA Confirms Active Exploitation of Critical Windows IKE Remote Code Execution Flaw August 19, 2026 A critical-severity RCE vulnerability in the Windows Internet Key Exchange Service Extensions component is being… Read More
Policy & Advisories Unisoc VoLTE Exploit Chain Delivers Full Android Kernel Access With No Vendor Fix August 17, 2026 A two-stage exploit published by SSD Secure Disclosure achieves kernel-level compromise on Unisoc-powered Android devices… Read More
Policy & Advisories CISA Confirms Active Exploitation of Critical Progress Kemp LoadMaster Vulnerability August 10, 2026 A command injection flaw in a widely deployed load balancer has moved from disclosed to… Read More
Policy & Advisories CISA Orders Federal Agencies to Patch Langflow, N-central and Apache Tomcat Within Three Days August 6, 2026 Three actively exploited vulnerabilities across widely deployed platforms are now on CISA's Known Exploited Vulnerabilities… Read More
Policy & Advisories CISA Issues Fresh SBOM Guidance. Did They Get It Right? August 1, 2026 What security leaders need to know about the affected systems. Read More
Policy & Advisories Senator Calls on Federal Agencies to Retire Legacy Public-Facing VPNs July 27, 2026 A formal letter to OMB, CISA and NIST urges binding directives, procurement rule changes and… Read More
Policy & Advisories Russian Espionage Group Exploited Zimbra Zero-Day to Harvest Email and Recovery Codes July 23, 2026July 23, 2026 A state-linked Russian group spent months silently reading Western inboxes by exploiting an unknown vulnerability… Read More