1. Cisco Ships Emergency Patch for a Perfect 10.0 Identity Services Engine Zero-Day Cisco disclosed CVE-2026-76460, a CVSS 10.0 authentication bypass in the Identity Services Engine and ISE-PIC API that lets an unauthenticated remote attacker reach the management interface and execute commands as root. The flaw was already being exploited in the wild when the […]
Why Software Updates Are the Cheapest Security You Have
On May 12, 2017, ransomware called WannaCry moved through the British National Health Service and forced hospitals to turn patients away, canceling roughly 19,000 appointments and operations in the days that followed. The flaw it traveled through was neither secret nor new. Microsoft had published the fix on March 14 of that year, 59 days […]
Cyber Security Weekly Roundup: Top 5 Cyber Security News Stories, Week of September 7-13, 2026
1. Microsoft Ships Its Largest Patch Tuesday on Record, With Two Zero-Days Already Under Attack Microsoft released roughly 970 security fixes on September 8, the largest single Patch Tuesday in the company’s history by a wide margin. Two of those vulnerabilities were already being exploited before the updates shipped: CVE-2026-81963, a link-following flaw in the […]
Five Old Scams That Technology Brought Back
When it comes to scams, everything that’s old is new again. Last week I wrote about a package nobody ordered. The scheme behind it, brushing, is years old, and on its own it was never much more than review fraud. What made it worth a column was the card tucked in the box with a […]
Cyber Security Weekly Roundup Top 5 Cyber Security News Stories: Week of August 24-30, 2026
1. Manchester Airports Group Breach Exposes 8.7 Million Customers Manchester Airports Group confirmed that an unauthorized third party accessed data belonging to roughly 8.7 million customers across Manchester, London Stansted and East Midlands airports. The exposed records cover car park, lounge and Fast Track bookings plus airport Wi-Fi registrations, including email addresses, phone numbers, postcodes […]
Brushing: Don’t Scan That QR Code in the Mystery Package
On August 20, the Federal Trade Commission put out a short consumer alert about a package. Not a data breach, not a ransomware crew, not a foreign intelligence service. A package. Baby wipes, maybe, or toothpaste, or a small envelope of flower seeds. It shows up at your door with your name and address on […]






