-
A Tale of Two SOCs: Insights From Two Red Team Assessments
Advisory at a Glance Title A Tale of Two SOCs: Insights From Two Red Team Assessments Original Publication August 25, 2026 Executive Summary The Cybersecurity and Infrastructure Security Agency (CISA)…
-
Defending Against an Active Threat to Siemens S7 Series PLCs
Executive summary Note: This advisory relates to an active threat to Siemens S7 Series programmable logic controllers (PLCs). However, ongoing PLC targeting activity is broader than Siemens PLCs. All PLC…
-
#StopRansomware: Gunra Ransomware | CISA
Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other…
-
Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite
Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite Executive summary A group of Russian state-supported cyber actors has been targeting and compromising various Western government…
-
Vulnerability Chain in WordPress Core Could Allow Remote Code Execution
MS-ISAC NOTICE NUMBER: 2026-070 ISSUE DATE(S): 07/18/2026 PREVIEW: A vulnerability chain has been discovered in WordPress Core that could allow remote code execution. WordPress is an open source content management…
-
CISA adds three known exploited vulnerabilities to its catalog
CISA has added three new vulnerabilities to its Catalog of Known Exploited Vulnerabilities (KEV), based on evidence of active exploitation. CVE-2026-25089 Fortinet FortiSandbox OS Command Injection Vulnerability CVE-2026-39808 Fortinet FortiSandbox…
-
Several vulnerabilities in Adobe products could allow execution of arbitrary code
Several vulnerabilities have been discovered in Adobe products, the most serious of which could allow the execution of arbitrary code. The details of these vulnerabilities are as follows: Tactical: Execution…
-
Improve Router Hygiene to Protect Against Russian State-Sponsored Targeting
Russian Government-Sponsored Activity Targets Poorly Configured and Vulnerable Devices Across Critical Sectors Executive summary Russian Federal Security Service (FSB) Center 16 cyber actors continue to exploit poorly configured and vulnerable…
-
Several vulnerabilities in Adobe products could allow execution of arbitrary code
MS-ISAC NOTICE NUMBER: 2026-066 ISSUE DATE(S): 01/07/2026 PREVIEW: Several vulnerabilities have been discovered in Adobe products, the most serious of which could allow the execution of arbitrary code. Adobe Campaign…











