EU Cybersecurity Incident Response Gaps Exposed

EU Cybersecurity Incident Response Gaps Exposed

A new European Court of Auditors report finds serious EU cybersecurity incident response gaps at the very top of the escalation ladder: no EU member state has ever formally classified a cyber incident as “large-scale,” the tier that triggers cross-border EU crisis coordination, since that classification system existed from 2016. Not WannaCry. Not NotPetya. Not…

Read More

F5 BIG-IP APM RCE Vulnerability Exploited

F5 BIG-IP APM RCE vulnerability

F5 has confirmed active, unauthenticated exploitation of a critical F5 BIG-IP APM RCE vulnerability, tracked as CVE-2026-94127 (CVSS 9.8), affecting Access Policy Manager instances configured as OAuth Authorization Servers. CISA added the flaw to its Known Exploited Vulnerabilities catalog the same day F5 disclosed it, September 22, and gave federal agencies until Friday, September 25…

Read More

Revolut Data Breach: Trusted Channel Abuse

Revolut data breach report showing customer information exposed through fraudulent government requests

A recent Revolut data breach shows how attackers can exploit trust without breaking into a bank’s core infrastructure. By using a compromised Italian government email account to submit fraudulent customer-data requests, attackers reportedly persuaded Revolut staff to disclose sensitive information linked to roughly 680 customers across several European countries. The incident exposed a second problem:…

Read More

WatchGuard Firebox Ransomware Exploitation

WatchGuard Firebox ransomware exploitation is now confirmed by CISA. A December patch still leaves ~125,000 devices exposed. Patch and rotate now.

WatchGuard Firebox ransomware exploitation is now officially confirmed. CISA updated its Known Exploited Vulnerabilities catalog entry for CVE-2025-14733 on September 10, 2026, to reflect that ransomware gangs, not just opportunistic access brokers, are actively weaponizing a firewall flaw that has had a public patch available since December 2025. What Happened CVE-2025-14733 is an out-of-bounds write…

Read More

Cisco ISE Authentication Bypass Vulnerability Hits Root

A Cisco ISE authentication bypass vulnerability (CVSS 10.0) lets attackers reach root with no credentials. Active exploitation confirmed. Patch now.

A Cisco ISE authentication bypass vulnerability tracked as CVE-2026-76460 carries a perfect CVSS score of 10.0 and is already under active exploitation. An unauthenticated attacker can bypass Cisco Identity Services Engine’s web-based management interface entirely and, per Cisco’s own advisory, reach command execution as root. That is the one system in your network built to…

Read More