Security News

Curated cybersecurity news and emerging threats relevant to startups, SMBs, and growing teams.

Industry news, vulnerability disclosures, compliance updates, and threat intelligence—handpicked for relevance to your environment.

Each item includes our perspective on why it matters to your security posture.

Cybersecurity News Digest — September 12, 2026

CISA sets a same-day patch deadline for a maximum-severity Cisco firewall manager bug already tied to Sandworm and Qilin, GitLab's CVSS 10 file-read flaw draws active probing, and attackers chain JFrog Artifactory bugs to plant Rust backdoors.

Read source →

Cybersecurity News Digest — September 10, 2026

ShinyHunters breaches Florida's DMV database and proves it with Jeffrey Epstein's own record, CISA adds four actively exploited network-edge flaws to its KEV catalog in one day, and a third Windows Defender zero-day bypass lands right after Patch Tuesday.

Read source →

Cybersecurity News Digest — September 6, 2026

A Chrome V8 zero-day lands on CISA's KEV list days after patching, a public exploit surfaces for a Microsoft Exchange auth-bypass bug still open on 22,000 servers, and a 12-year-old PostgreSQL flaw turns replication access into a server backdoor.

Read source →

Cybersecurity News Digest — September 5, 2026

A dark-web breach exposes 153 million driver's licenses tied to IDScan.net, a critical Citrix NetScaler auth bypass moves from patch advisory to active exploitation, and a phishing campaign hides lure words inside invisible Unicode.

Read source →

Cybersecurity News Digest — September 4, 2026

An unauthenticated root RCE hits Cisco Nexus 9000 switches, Thomson Reuters discloses a five-month-old breach that exposed sealed court records across a dozen jurisdictions, and a Microsoft Teams vishing campaign nets 150+ victims.

Read source →