1. 🔴 Google Chrome Zero-Days Patched Under Active Exploitation Google released emergency security updates to fix two high-severity Chrome vulnerabilities — CVE-2026-3909 (an out-of-bounds write in the Skia graphics library) and CVE-2026-3910 (an inappropriate implementation in the V8 JavaScript engine). Both were discovered by Google itself on March 10, 2026, and are being actively exploited […]
The Accidental Insider: How Employees Unknowingly Put Your Organization at Risk
A guide for every employee. No technical background required When most people imagine a data breach, they picture a shadowy hacker in a dark room breaking through layers of high-tech defenses, not an insider. The reality is far less dramatic and far closer to home. According to cyber security researchers, most data incidents don’t begin […]
Cyber Security Weekly: Top stories from Last Week (March 1– March 7, 2026)
Closest call / honorable mention: LexisNexis confirmed a breach after a threat actor leaked data allegedly taken from a limited number of servers containing mostly legacy data from before 2020. It did not make my top five only because the company said the matter was contained and there was no evidence of impact to products […]
Identity Abuse The New Face of Fraud
Identity abuse is the deliberate misuse of someone’s personal or organizational identity to gain access, steal money, or manipulate systems. In cyber security terms, it’s what happens when an attacker successfully impersonates a real person (an employee, a vendor, a customer, even a board member) and uses that stolen or spoofed identity to bypass defenses […]
Cyber Security Weekly: Top stories from Last Week (Feb 22–Feb 28, 2026)
Cisco Catalyst SD-WAN auth bypass — CVE-2026-20127 (actively exploited, CVSS 10)Why it’s top: Internet-exposed SD-WAN control-plane components are high-impact; exploitation has been publicly reported, and agencies have issued urgent guidance. Ivanti Endpoint Manager Mobile (EPMM) — CVE-2026-1281 / CVE-2026-1340 (widespread automated exploitation attempts)Fix-first: Patch/mitigate any internet-facing EPMM immediately; treat as mass-scanned. BeyondTrust Remote Support / […]
Part Three “A Cyber Security Parable: The Turn Toward Safety”
Who thought a cyber security breach could affect your perception of time? The days and weeks after the loss felt longer than the years before it. Lindon County kept running because it had to. The jail still opened its doors every morning. The court still processed filings. Roads still need repair. Budgets still had to […]






