News
Short updates on security, GRC, and AI developments, with enough context to be worth reading.
- Brief
#StopRansomware: Gunra Ransomware
Summary: Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by …Read brief - Brief
CISA, FBI and Partners Warn Organizations of Gunra Ransomware Actors Targeting Multiple Critical ...
Summary: CISA, FBI and Partners Warn Organizations of Gunra Ransomware Actors Targeting Multiple Critical … Why it matters: This matters if it changes how teams think about …Read brief - Brief
Advancing responsible AI across Europe
Summary: OpenAI shares how its safety, security, transparency, and provenance practices support responsible AI governance in Europe. Why it matters: This matters if it changes …Read brief - Brief
Joint letter of the CIS SCG and the CSC to the European Commission
Summary: Joint letter of the CIS SCG and the CSC to the European Commission Why it matters: This matters if it changes how teams think about model governance, safety work, …Read brief - Brief
SEC Announces Continuation of Small Business Advisory Committee Meeting
Summary: The Securities and Exchange Commission announced that the Small Business Capital Formation Advisory Committee meeting held on July 21, 2026, will reconvene August 6, 2026, …Read brief - Brief
CISA Urges Water and Wastewater Systems Sector to Protect OT Against Activity Targeting PLCs
Summary: CISA is currently observing a significant increase in cyber threat actors targeting programmable logic controllers (PLCs) in the Water and Wastewater Systems (WWS) Sector. …Read brief - Brief
Johnson Controls OpenBlue Employee
Summary: View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to upload malicious files, execute stored cross-site scripting attacks, or …Read brief - Brief
MikroTik RouterOS
Summary: View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to extract the router’s WireGuard private key in plaintext using only …Read brief - Brief
Mitsubishi Electric CC-Link IE TSN Communication Protocol
Summary: View CSAF Summary Successful exploitation of this vulnerability could allow an attacker with access to the same network segment to tamper with communication data in the …Read brief - Brief
MZ Automation GmbH libiec61850
Summary: View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition on the device. Why it matters: This …Read brief - Brief
MZ Automation lib60870
Summary: View CSAF Summary Successful exploitation of these vulnerabilities could crash the device being accessed. Why it matters: This matters if it changes how teams think about …Read brief - Brief
NASA Core Flight System (cFS) Health & Safety (HS) Application
Summary: View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition. Why it matters: This matters if it changes …Read brief - Brief
o6 Automation open62541
Summary: View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to disclose sensitive information, cause a denial of service, or potentially …Read brief - Brief
Rockwell Automation CompactLogix 5380 ControlLogix 5580 / 1756-EN4TR Communications Module
Summary: View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition. Why it matters: This matters if it changes …Read brief - Brief
Schneider Electric IGSS
Summary: View CSAF Summary Schneider Electric is aware of a vulnerability in its IGSS Definition module for the IGSS (Interactive Graphical SCADA System) product. Why it matters: …Read brief