Our Blog - page 1

Top 5 Cybersecurity News Stories September 11, 2026

Cybersecurity News Stories September 11, 2026: record Patch Tuesday, Magento CVSS 10 RCE, TerminalFix Berlin, MikroTrick router hijack, BlueMoon Chrome APT kit.

This week’s Cybersecurity News Stories September 11, 2026 expose five distinct layers of the assumed-safe environment, each under active pressure. Microsoft’s September Patch Tuesday arrived with 974 CVEs — the largest single monthly release on record — including two zero-days already exploited in the wild and 20 vulnerabilities that researchers assessed as potentially wormable. A…

Read More

August 2026 Cybersecurity Roundup

August 2026 Cybersecurity Roundup: breaches at SafePal, CEVA Logistics, France's tax authority, Latvia's CSDD, and Manchester Airports, plus 5 critical CVEs.

This August 2026 Cybersecurity Roundup lands in a month when several of the biggest breaches traced back to familiar weaknesses: a compromised employee credential, an overlooked customer-facing plugin, and infrastructure monitoring that watched the wrong signals. Here’s a look at the month’s key cyberattacks and CVEs, along with our take on what they mean for…

Read More

Top 5 Cybersecurity News Stories September 4, 2026

This week’s Cybersecurity News Stories September 4, 2026 illustrate a consistent challenge: the gap between a protective measure and what that measure actually closes. SonicWall enterprise remote-access appliances confirmed actively exploited via a zero-day chain requiring no credentials and no user interaction. Microsoft Exchange Server 2016 deployments without Extended Security Update eligibility facing an authentication…

Read More

Device Code Phishing: What SMEs Need to Know

Device code phishing abuses real Microsoft logins and working MFA, leaving few warning signs. Here's what SMEs need to know in 2026.

Cybercriminals have started exploiting a login shortcut millions of people already trust. Rather than sending victims to a fake login page or trying to steal a password outright, they persuade employees to authorise an attacker-controlled device through a completely legitimate identity provider — Microsoft, most often. The result is a fast-growing form of social engineering…

Read More

Top 5 Cybersecurity News Stories August 28, 2026

Cybersecurity News Stories August 28, 2026 image showing five exploited trust layers in one week across identity, OT, developer infrastructure, communications, and endpoint security`

This week’s Cybersecurity News Stories August 28, 2026 arrives with a pattern that cuts across every story: the infrastructure that organisations designate as trusted — the identity service that decides who gets access, the security tool that watches for threats, the developer pipeline that builds and deploys code, the video conferencing platform that carries internal…

Read More