CISA Put an AI Compute Framework in the KEV Catalog and Gave Agencies Three Days
On 17 August CISA added CVE-2025-62593 โ a code injection flaw in Ray, the distributed AI compute engine โ to the Known Exploited Vulnerabilities cata...
9 articles on supply-chain โ privacy laws, security frameworks, and regulatory compliance.
On 17 August CISA added CVE-2025-62593 โ a code injection flaw in Ray, the distributed AI compute engine โ to the Known Exploited Vulnerabilities cata...
Attackers entered through a FortiGate VPN at a wind farm with no MFA, crossed a private cellular network into an unrelated district heating plant, spe...
A cyberattack on eight European warehouses run by Ceva Logistics has produced breach reports to the Dutch data protection authority from at least ten ...
CISA added CVE-2026-9198 to the KEV catalog on 4 August 2026 with a 7 August federal deadline. A CVSS 9.8 unauthenticated RCE in IBM Langflow, exploit...
Attackers found a bypass for the fix to CVE-2026-18556 and began exploiting it in late July 2026. N-able confirmed exploitation on 2 August; CISA adde...
Attackers used compromised credentials to reach a data-exchange platform shared between Stadler Rail and one of its suppliers. Everest demanded $12.3 ...
A 13 July 2026 ransomware attack on Nichirei disrupted roughly 140 distribution centres across Japan, affecting food manufacturers, supermarkets, and ...
On June 22, 2026, the White House issued an executive order directing a whole-of-government push on quantum information science โ an updated National ...
In April 2026, ShinyHunters executed two related but technically distinct supply chain attacks: a Salesforce Experience Cloud misconfiguration at McGr...