August 29, 2026
Hello all, Three headline news items merit immediate attention if you have any of the products under your care; more on that in a moment. There is a lot of good news about takedowns and arrests, and unfortunately some serious…
Hello all, Three headline news items merit immediate attention if you have any of the products under your care; more on that in a moment. There is a lot of good news about takedowns and arrests, and unfortunately some serious…
Hello all, The week started out with the normal level of chaos, plotting, exploitation, threats, and mayhem in Pandemonium (kingdom of demons), and then Oracle unleashed their second monthly vulnerability notices and things got a bit more exciting. Mind you,…
Hello all, For the past week, the only time I’ve used my electronic work-related tools has been to peruse news reports for inclusion into this report, to curate the links, and to write this summary. That’s not to say that…
Hello all, FortiBleed is still leaking electrons all over the place necessitating a monumental cleanup by organizations worldwide as they race to lock down their Fortinet firewalls before threat actors do more than just steal and harvest credentials. There were…
Hello all, This week has brought a patchacopalipse with a surprisingly large number of vendors releasing critical or high severity patches to plug holes and defects. Microsoft was one of the top gift-givers with 200 or more patches for Patch…
Hello all, Microsoft held their Build 2026 conference this week, and there were all sorts of announcements, many revolving around Artificial Intelligence of course, with a few other interesting and surprising items such as a new category of wearable items…
Hello all, It has been another busy week. The biggest headline news item is that my birthday is on Sunday. No, actually it is the Instructure Canvas hack by Shiny Hunters. These dirtbags managed to download a massive trove…
Hello all, Another week, and another report replete with vulnerabilities, bugs, fails, defects, holes, exfiltration, compromises, phishing, breaches, hacking and exploitation. Of course there are also plenty of links to articles about patches, fixes, takedowns, arrests, sentencing, and legislation, all…
Hello all, While there were plenty of cyber related news articles to read this week, there weren’t many new major vulnerability announcements. But there were a few. Google patched for two high-risk defects, Microsoft had to release an emergency update…
Hello all, The Iran war is still dominating the news, but surprisingly, after the successful attack on Stryker Corporation, there have been no reports of other large-scale successful cyber-attacks attributed to Iranian threat actors. That’s not to say they haven’t…
Hello all, Last week I’d noted that I was surprised that there had been no evident cyber-retaliatory attacks by Iranian threat actors. Welp, on Wednesday a threat group named Handala claimed a successful attack on Stryker, a USA based global…
Hello all, What a difference one week can make! Top of mind for many is the Iran conflict and the implications as it relates to cyber warfare. In a surprising first, Chairman of the Joint Chiefs of Staff, General…