Tag: CISA

OpenAI has reduced GPT 5.6 Sol API pricing for three months, lowering input costs by 20 percent and output costs by about 33 percent for developers.
Anthropic has revealed its unreleased Model 2 AI system, which outperforms Claude Mythos 5 on internal benchmarks but has no planned public release.

Microsoft Defender ShieldBreak Zero Day Demonstrates RoguePlanet Patch Bypass

A security researcher has released a proof of concept for ShieldBreak, a new Microsoft Defender zero day that reportedly bypasses the RoguePlanet patch and enables SYSTEM level privilege escalation.

Gunra Ransomware Targets Critical Infrastructure Through Fortinet And Schneider Electric Flaws

Cybersecurity agencies from South Korea and the United States have warned that Gunra ransomware operators are exploiting Fortinet and Schneider Electric vulnerabilities to compromise critical infrastructure organizations worldwide.

CISA Updates KEV Catalog With N-able N-central Authentication Bypass Vulnerability

CISA has added the actively exploited N-able N-central authentication bypass vulnerability CVE 2026 18577 to its KEV catalog following customer compromises and reports of ongoing attacks.

Check Point Patches SmartConsole Authentication Bypass Flaw Allowing Full Admin Access

Check Point has released security updates for three high severity vulnerabilities, including an actively exploited SmartConsole authentication bypass flaw that grants full administrative access.

CISA Adds Exploited Microsoft SharePoint CVE 2026 58644 Zero Day To Known Exploited Vulnerabilities Catalog

CISA has added the actively exploited Microsoft SharePoint vulnerability CVE 2026 58644 to its Known Exploited Vulnerabilities catalog and urged organizations to apply security updates immediately.

CISA Warns Of Active Exploitation Targeting Critical Lantronix EDS5000 Vulnerability

CISA has warned that attackers are actively exploiting the critical Lantronix EDS5000 vulnerability CVE 2025 67038 while researchers also report ongoing attacks targeting OpenWRT LuCI devices and UniFi OS flaws.

Trump Executive Order Sets 2030 Deadline For Federal Post Quantum Cryptography Migration

President Trump has signed an executive order requiring U.S. federal agencies to migrate high value assets and critical systems to post quantum cryptography by 2030 and 2031, accelerating cybersecurity efforts against future quantum threats.

CISA Adds Critical Joomla JCE Vulnerability To KEV Catalog Amid Active Exploitation Campaigns

CISA has added the critical Joomla JCE vulnerability CVE 2026 48907 to its Known Exploited Vulnerabilities catalog following reports of active exploitation, while researchers also uncover large scale attacks targeting WordPress websites through supply chain compromises and malicious plugins.

CISA Adds LiteSpeed CPanel Plugin Vulnerability To Known Exploited Vulnerabilities Catalog

CISA adds CVE 2026 54420 affecting LiteSpeed cPanel Plugin to its Known Exploited Vulnerabilities catalog, warning of root privilege escalation risks on shared hosting servers.

ISACA Karachi Welcomes Naushad Siddiqi To Its Board Of Directors

ISACA Karachi has welcomed Naushad Siddiqi to its Board of Directors, bringing extensive expertise in IT audit, cybersecurity, governance, and digital transformation.

ISACA Karachi Chapter Announces New Board Of Directors For 2026 To 2028 Term

ISACA Karachi Chapter has announced its Board of Directors for 2026 to 2028 term, elected at the Annual General Meeting, highlighting leadership roles across governance, membership, IT governance, marketing, and academic relations.

CISA Adds Four Exploited Vulnerabilities To KEV Catalog Sets May 2026 Deadline For Federal Agencies

CISA has added four actively exploited vulnerabilities affecting SimpleHelp, Samsung MagicINFO 9 Server, and D-Link routers to its KEV catalog, setting a May 2026 deadline for federal agencies to act.

Recent articles

spot_img