CISA stories
FIRST conference highlights AI & CVE disclosure push
Today
#
iot security
#
application security
#
supply chain
FIRST conference in Scottsdale draws 500-plus as security leaders and AI firms debate vulnerability disclosure, CWE's role and CVE's future.
Capsule Security raises $7 million to guard AI agents
2 days ago
#
pam
#
cloud security
#
application security
Capsule Security emerges from stealth with $7 million backing to police AI agents at runtime as enterprises widen their use.
Qualys warns exploitation is outpacing manual patching
Last week
#
firewalls
#
vpns
#
network infrastructure
Qualys study says attackers are exploiting flaws before patches exist, as manual remediation lags and edge systems emerge as the highest risk.
Rapid7 warns exploited software flaws more than double
Last month
#
firewalls
#
ransomware
#
network security
Rapid7 warns exploited high and critical software flaws more than doubled in 2025, as attackers compress disclosure-to-attack windows.
FIRST announces 2026 cyber security conference trio
Last month
#
application security
#
advanced persistent threat protection
#
socs
FIRST to host three cybersecurity conferences in 2026 as it predicts annual CVE disclosures will surpass 50,000 for the first time.
Microsoft patches major SQL Server flaw in March update
Last month
#
firewalls
#
network security
#
mfa
Microsoft's March Patch Tuesday fixes 77 flaws, including a severe SQL Server bug that could grant attackers sysadmin rights remotely.
Cayosoft posts 76% ARR surge on identity recovery boom
Fri, 20th Feb 2026
#
saas
#
dr
#
hybrid cloud
Cayosoft posts 76% ARR jump for 2025 as identity recovery demand soars and it wins major public sector and enterprise customers.
SmarterMail flaw exploited in China-linked ransomware push
Thu, 12th Feb 2026
#
firewalls
#
vpns
#
ransomware
China-linked Warlock ransomware group exploits SmarterMail flaw for admin takeovers, chaining features to gain full Windows control.
Screensaver phishing installs remote access tools covertly
Thu, 5th Feb 2026
#
storage
#
firewalls
#
ransomware
Attackers are abusing Windows screensaver files in a spearphishing campaign to stealthily install remote access tools on business systems.
Hybrid mesh security emerges to counter AI cyber risks
Tue, 27th Jan 2026
#
firewalls
#
ransomware
#
hybrid cloud
As hybrid IT sprawl fuels blind spots and AI-driven attacks, experts say only a zero trust, hybrid mesh rethink can secure modern networks.
Retail & wholesale hit by exposed shared credentials
Fri, 23rd Jan 2026
#
ransomware
#
supply chain
#
risk & compliance
Over 70% of major retailers and nearly 60% of wholesalers have exposed credentials, leaving shared supply chains ripe for attack.
KYND: big firms leave critical cyber flaws unpatched
Thu, 22nd Jan 2026
#
malware
#
application security
#
cybersecurity
Major firms are leaving known, actively exploited cyber flaws unpatched for six months or more, sharply heightening breach risks.
Black Hat to debut cyber war room documentary in Vegas
Thu, 15th Jan 2026
#
ransomware
#
advanced persistent threat protection
#
socs
Black Hat will premiere Semperis documentary Midnight in the War Room in Las Vegas, spotlighting the human cost of cyber conflict.
Silver Fox APT & PowerG flaws expose key security risks
Tue, 13th Jan 2026
#
uc
#
encryption
#
iot security
NCC Group links Silver Fox's false-flag malware campaigns to ValleyRAT and uncovers critical PowerG flaws that can fully compromise alarms.
Why auto update is the most underrated security feature on your firewall
Mon, 12th Jan 2026
#
firewalls
#
digital transformation
#
network security
Auto-update turns your firewall into a living defence, slashing patch delays and shutting attackers' favourite door: unpatched systems.
FIRST marks record growth in global cyber defence
Fri, 9th Jan 2026
#
firewalls
#
ransomware
#
advanced persistent threat protection
Global cyber defence group FIRST reports record 2025 growth, topping 820 member teams and expanding technical, training and capacity work.
SaaS attacks surge as boards turn to AI for defence
Thu, 25th Dec 2025
#
saas
#
crm
#
firewalls
Cyber attacks on SaaS platforms are soaring, pushing boards to make AI‑driven security a core strategy as misconfigurations fuel mass breaches.
AI-fuelled cyber onslaught to hit critical systems by 2026
Tue, 23rd Dec 2025
#
firewalls
#
ransomware
#
digital transformation
AI-driven hackers are tipped to ramp up attacks on critical infrastructure and governments by 2026, exploiting ageing industrial systems.
Advancing our secure by design pledge: What's new in SonicOS 7.3 and NSM 3.1
Thu, 11th Dec 2025
#
firewalls
#
network infrastructure
#
encryption
SonicWall's SonicOS 7.3 and NSM 3.1 harden networks with secure-by-default passwords, auto patching and stronger encrypted management.
AI risks intensify cyber threats to critical infrastructure OT
Fri, 5th Dec 2025
#
iot security
#
api
#
llms
AI deployment in critical infrastructure raises cyber security risks as attackers exploit operational technology networks with advanced AI-driven tactics.