What's happening in security
Breaches, credential dumps, actively exploited bugs and AI incidents — pulled from 2,922 items across public feeds, Have I Been Pwned and CISA KEV.
Biggest this week
- Unauthenticated attackers are bypassing Cisco ISE’s management interface (CVE-2026-76460) — Help Net Security, 3h ago
- Google fixes actively exploited Android zero-day on Pixel devices — BleepingComputer, 1d ago
- Cisco warns customers of actively exploited zero-day in email gateways — CyberScoop, 1d ago
- Cisco patches actively exploited email gateway zero-day (CVE-2026-76461) — Help Net Security, 2d ago
- Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day — SecurityWeek, 7h ago
-
CISA Issues Fresh SBOM Guidance. Did They Get It Right?
A couple dozen changes to SBOM fields will make them more comprehensive, but some argue that the framework lacks real risk-management improvements.
-
Rapid7 at Black Hat USA 2026: See preemptive security in action
Black Hat USA returns to Mandalay Bay in Las Vegas this August, bringing together security practitioners, researchers, and leaders from around the world. Rapid7 will be there in the Business Hall, with new capabilities, live demon…
-
Rapid7 Cyber GRC is now available: Turn security action into compliance proof
Compliance has become one of the biggest operational drains on modern security teams. CISOs are being asked to manage a growing sprawl of frameworks, prove control effectiveness more often, respond to more customer assurance reque…
-
Security Roundup July 2026
Curated advice, guidance, learning and trends in cybersecurity and privacy, as chosen by our consultants. NIS2 not yet law in Ireland, but nonetheless in force The European Commission is taking four member states to court for fail…
-
Weekly Update 514: This Week in Data Breaches
The Origin Energy breach down here in Aus is all over the news this week, and as with many breaches, it s multi-faceted. You ve got them leading with don t worry, your credit card is fine , the hacker leading with they didn&
-
CMMC Updates: DoW Pause and Huntress Hits 50% of Requirements
DoW paused the CMMC Phase II deadline in July, but the underlying compliance obligations didn't move. Meanwhile, Huntress Managed ISPM pushes our NIST SP 800-171 coverage to 55 of 110 requirements. Here's what changed, what didn't…
-
The US government warns that Russia state hackers are coming after your router
With residential proxies all the rage, CISA urges router users to be vigilant.
-
EFF and Allies: X’s FTC Petition to Waive Privacy Violation Order Should be Rejected
X Corp. should not be able to escape privacy compliance because it changed its name. On May 15, X Corp. filed a petition before the Federal Trade Commission (FTC) to set aside or modify an order issued in 2022 requiring the compan…
-
Navigating NIS2 as Ireland’s Cyber Security Bill comes into view
Cybersecurity regulatory expectations have shifted significantly: what used to be primarily an IT concern has evolved into a board-level governance obligation. Directors now need to actively oversee cyber resilience, risk manageme…
-
EU Cybersecurity Act 2.0: When good regulation goes bad
In a new opinion piece published on Help Net Security, BH Consulting CEO Brian Honan examines why the proposed EU Cybersecurity Act 2.0 risks doing more harm than good, warning that designating vendors as high-risk based on geopol…
-
Why Huntress Doesn’t Need FedRAMP
Defense contractors can achieve CMMC compliance without the expense or delays of FedRAMP-authorized cloud services. Discover how Huntress uses Sensitive Data Mode for logical separation and cost-effective security.
-
Healthcare Compliance, Automated: Onyxia’s New Pre-Built HITRUST Custom Framework
Onyxia’s platform now includes a pre-built HITRUST template within our Custom Compliance Frameworks module. By bridging the gap between high-level compliance and real-time security data, Onyxia empowers healthcare organizations to…
-
Tom Kean Jr.'s X account is still posting. He hasn't been seen since March.
He last cast a vote on March 5. He has missed nearly a hundred since. His party says he sounds fine on the phone. Neighbors haven't seen him in months. Neither has any reporter.
Last fetch 1m ago · 11 new · 2 source error(s)