User_Pascal / UnsplashA joint advisory issued on October 6 says the operators sell network access to ransomware groups. No CVE is involved, so a firmware update will not evict them.
Breaches, vulnerabilities and attacks that affect enterprise IT, and the fixes to install first.
User_Pascal / UnsplashA joint advisory issued on October 6 says the operators sell network access to ransomware groups. No CVE is involved, so a firmware update will not evict them.
Jordan Harrison / UnsplashTwo of the September flaws were exploited before a fix existed, and a SAML bug was used against appliances last week. One upgrade now covers all three bulletins.
Shahadat Rahman / UnsplashAttackers are using AI to work faster, not to invent new attacks. That's the consistent finding from threat reports so far, and it shapes where defenders should spend.
FlyD / UnsplashFBI ransomware complaints rose to 3,611 in 2025. The controls that stop most attacks are well known, and most of them are cheap. Here is what to check first.
Taylor Vick / UnsplashMost cloud breaches come from settings the customer controls, not from the provider. The NSA's list of ten mitigations is the clearest guide to which settings matter.
Mohammad Rahmani / UnsplashAn AI system can be attacked through its training data, the models it downloads and the text it reads. Each stage of the pipeline needs its own controls.
Paul Hanaoka / UnsplashEach cloud has its own identity system, logs and defaults. Securing several at once comes down to applying one set of rules everywhere, and the NSA has published a good starting list.
Adi Goldstein / UnsplashSoftware vulnerabilities have overtaken stolen passwords as the top way attackers get in, according to Verizon's 2026 breach report. Ransomware shows up in almost half of breaches.
Homa Appliances / UnsplashIn a factory or utility, the first question in an incident isn't what data was stolen. It's whether the physical process is still safe.
Milan Malkomes / UnsplashAn intrusion detection system watches traffic or hosts for signs of attack. It's an old idea that still catches what endpoint tools miss, especially on devices that can't run an agent.
Benjamin Child / UnsplashSince December 2023, a material cyber incident at a US-listed company has a four-business-day disclosure clock. That has moved security from an IT budget line to a board agenda item.
Chris Ried / UnsplashOWASP's 2025 Top 10 keeps broken access control at number one and moves software supply chain failures to third. Here is the list, and what to do about it.
FlyD / UnsplashMost attacks on mid-size companies use well-known methods. CIS's Implementation Group 1 is a list of 56 safeguards built to stop them.
Dmitrijs Safrans / UnsplashA SIEM is only as good as the logs it gets and the people tuning it. CISA's guidance reads like a list of the reasons so many deployments disappoint.
Juanjo Jaramillo / UnsplashSAST tools scan source code for security flaws before it runs. OWASP's own assessment is that they catch a useful slice of problems, and miss a lot.
Christina @ wocintechchat.com / UnsplashNIST's incident response guide went 13 years without an update. The new version treats response as part of everyday risk management, not a separate plan in a drawer.
Philipp Katzenberger / UnsplashLaptops and servers are better protected than ever. Attackers have moved to the devices around them: phones, edge appliances and machines no one manages.
Dan Nelson / UnsplashMobile apps put company code and data on devices you don't control. OWASP's mobile standard breaks the problem into eight areas to test against.
Yuriy Vertikov / UnsplashSASE combines networking and security into one cloud service. Gartner expects most companies buying SD-WAN to get it as part of a single-vendor platform within a few years.
FlyD / UnsplashMigrations create security gaps: temporary access that becomes permanent, test data copied without controls, and old systems left running. Most of the risk can be planned out.
George Prentzas / UnsplashMost attacks now start with a stolen login. CISA's guidance is blunt: SMS codes and push approvals can be beaten, and only phishing-resistant MFA closes the gap.
1981 Digital / UnsplashA SIEM gathers security logs in one place and looks for signs of attack. Whether you need your own depends on who will watch it.