Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 02/10/2026cybersecurityadvisors.networkWeek 40 - Code injection: Sneaking in28 Sept - 04 Oct 2026 A high-severity vulnerability in Microsoft SharePoint Server has recently drawn attention. CVE-2026-65660 is a CWE-94 code injection vulnerability that can allow an authenticated attacker... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 01/10/2026cybersecurityadvisors.networkCyber (In)Security - Issue #210Cyber (In)Security #210 is out. In this issue: Kamran Israr Mirza (Kim) briefs boards on Dubai's virtual assets regulator VARA we welcome eleven mentees to the autumn 2026 Mentorship Programme... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 25/09/2026cybersecurityadvisors.networkWeek 39 - Check Point Under Attack: Critical Zero-Day Exploited in the Wild21 - 27 Sept 2026 What happens when the security infrastructure itself becomes the target? This week’s CVE of The Week covers CVE-2026-93616, a critical Check Point zero-day vulnerability with... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/09/2026cybersecurityadvisors.networkVARA: Dubai's Virtual Assets Regulatory AuthorityA Board Briefing on Mandate, Licensing, Controls and Enforcement Prepared by Kim | CISO | linkedin.com/in/kimabdalian | September 2026 | Target audience: Executiveand Senior Management Dubai's Virtual Assets Regulatory Authority... 001
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/09/2026cybersecurityadvisors.networkWeek 38 - GitLab Under Attack: Critical Arbitrary File Read Vulnerability14 - 20 Sept 2026 What if an unauthenticated user could read your sensitive data from the GitLab server? This week’s CVE of the Week highlights CVE-2026-85706 in GitLab -... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 11/09/2026cybersecurityadvisors.networkWeek 37 - SAP Attack: When the Buffer Says “No More”07 - 12 Sept 2026 A critical CVSS 10.0 vulnerability puts thousands of Internet-facing SAP systems potentially at risk. Our latest CVE of the Week covers CVE-2026-44756, a buffer overflow... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 09/09/2026cybersecurityadvisors.networkCyber (In)Security – Issue #209Cyber (In)Security issue 209 is out — our mentorship programme returns for autumn 2026 with ten member mentors, our Community Partner role at the Trust & Safety Festival Sydney, three... 010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 08/09/2026cybersecurityadvisors.networkThe CyAN Mentorship Programme Returns for Autumn 2026CyAN's mentorship programme is back for its autumn 2026 cohort. Over the next three months, ten of our members are giving their time to mentor people building careers in cybersecurity... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/09/2026cybersecurityadvisors.networkWeek 36 - Critical Metabase SQL Injection Scores a Perfect 1031 Aug - 06 Sept 2026 A critical CVSS 10.0 vulnerability puts the spotlight on one of the oldest tricks in the hacker’s toolbox: SQL injection. This week’s CVE of... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 28/08/2026cybersecurityadvisors.networkWeek 35 - CoSnitch: When Copilot Starts Snitching24 - 30 Aug 2026 What if your AI assistant could be tricked into handing your data to an attacker? This week’s CVE of the Week looks at CVE-2026-24301 (CoSnitch),... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 25/08/2026cybersecurityadvisors.networkPakistan's New Compliance Stack: A CISO Advisory Perspective for Financial InstitutionsPakistani financial institutions are absorbing five regulatory reforms inside roughly a nineteen-month window: The State Bank of Pakistan's Cyber Shield resilience strategy, National CERT's newly cabinet-approved Pakistan Information Security Framework... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 24/08/2026cybersecurityadvisors.networkWeek 34 - From Auto-Login to Full RCE: Inside the IBM Langflow CVE17 - 23 Aug 2026 AI platforms are increasingly becoming attractive targets for attackers. CVE-2026-9198 affects IBM Langflow OSS and chains security flaws that can lead to unauthenticated Remote Code... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/08/2026cybersecurityadvisors.networkCyber (In)Security #208The fortnightly newsletter of the Cybersecurity Advisors Network (CyAN) — Issue #208, 17 August 2026. This issue leads with crypto custody governance and our autumn mentorship intake, plus two serious... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 14/08/2026cybersecurityadvisors.networkWeek 33 - TeamCity Under Construction: Critical RCE Flaw10 - 16 Aug 2026 A critical unauthenticated remote code execution (RCE) vulnerability has been disclosed in JetBrains TeamCity On-Premises. Tracked as CVE-2026-63077 with a CVSS score of 9.8, the... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 13/08/2026cybersecurityadvisors.networkStablecoin and Crypto Asset Wallet Types: Custody and Security RequirementsAnother great publication from CyAN member Kamran Israr Mirza (Kim), find him on LinkedIn at https://www.linkedin.com/in/kimabdalian/ Stablecoins have moved from experimental instruments to core payment infrastructure, and with that shift,... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 07/08/2026cybersecurityadvisors.networkWeek 32 - N-able N-central - Take Control Taken Over03-09 Aug 2026 CVE-2026-18577 is a critical authentication bypass vulnerability affecting N-able N-central. Due to an incomplete patch, attackers can gain administrative access, abuse the built-in Take Control feature, and... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/08/2026cybersecurityadvisors.networkApplications open: CyAN Mentorship Programme, Autumn 2026CyAN's mentorship programme is back for its autumn 2026 cohort, running from mid-September to mid-December. The programme is free and volunteer-led. It pairs people building a career in cybersecurity, or... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/08/2026cybersecurityadvisors.networkCyber (In)Security — Issue #207The fortnightly newsletter of the Cybersecurity Advisors Network (CyAN) — Issue #207, 4 August 2026. This issue leads with governance and civil-society resilience, plus the latest from our members and... 010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/08/2026cybersecurityadvisors.networkCyAN Signs Protect.ngo / ICSc Call to Protect Civil Society OrganisationsCyAN's mission is to strengthen and protect global digital society and the online economy, and to work against the digital threats facing individuals, democracy and trade. Organisations that feed people,... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 31/07/2026cybersecurityadvisors.networkWeek 31 - CertiGhost: The Certificate That Shouldn't Exist27 July - 02 Aug 2026 This week's CVE of the Week is CVE-2026-54121, also known as CertiGhost, a critical vulnerability affecting Microsoft Active Directory Certificate Services (AD CS). The... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 27/07/2026cybersecurityadvisors.networkGoverning Security When the CISO Advises but Doesn't Command - by Kamran Israr Mirza (Kim)A significant share of organizations still place the Security Operations Center (SOC) organizationally under the Chief Technology Officer, while the Chief Information Security Officer and a small security function operate... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 24/07/2026cybersecurityadvisors.networkWeek 30 - A PDF Extension with a WhatsApp Obsession20 -26 July 2026 In this week's CVE of the Week, we're examining a recently patched vulnerability chain in the Adobe Acrobat PDF Chrome extension, which is used by more... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/07/2026cybersecurityadvisors.networkCyber (In)Security — Issue #206In this issue: From the community — David Gaul on Australia's Horizon Cyber Security Initiative and what it means for industry; Sanchay Joshi on whether boards are ready to govern... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/07/2026cybersecurityadvisors.networkAustralia’s Horizon Cyber Security Initiative: What it Means for Industry - by David GaulCyAN mentorship programme participant David Gaul writes about Australia's "Horizon" initiative - what can industry members expect ahead of changes in legislation? What are the implications for Australian businesses? Australia... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 21/07/2026cybersecurityadvisors.networkCyber Risk Is in the Boardroom. Are Boards Ready to Govern It? - By Sanchay JoshiCybersecurity is now firmly in the boardroom, but board attention alone does not equal effective oversight. This article traces how cyber risk evolved from an IT operational concern into a... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 17/07/2026cybersecurityadvisors.networkWeek 29 - Next Stop: SYSTEM13 -19 July 2026 This week our CVE of the Week is CVE-2026-56164, a zero-day Elevation of Privilege vulnerability affecting Microsoft SharePoint Server that Microsoft confirmed is being actively exploited... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 14/07/2026cybersecurityadvisors.networkMy Journey into Governance, Risk and Compliance (GRC) by Sahiba Saggar[dflip id="102443"][/dflip] 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 10/07/2026cybersecurityadvisors.networkWeek 28 - A perfect 10 in UniFi Connect06 -12 July 2026 In this week's CVE of the Week, we're looking at CVE-2026-50746, a critical vulnerability affecting the Ubiquiti UniFi Connect Application, with a CVSS score of 10.0.... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 03/07/2026cybersecurityadvisors.networkWeek 27 - Impact Zone: RoguePlanet Crashes into Microsoft Defender29 June - 05 July 2026 One of the most discussed security issues in weeks is CVE-2026-50656, also known as RoguePlanet, an Elevation of Privilege (EoP) vulnerability affecting the Microsoft... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 01/07/2026cybersecurityadvisors.networkCyber (In)Securities – Issue 205[dflip id="102428"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 01/07/2026cybersecurityadvisors.networkPlease welcome our newest member from Bahrain, Kamran Israr Mirza (Kim)Kim is a senior cybersecurity and technology risk executive with 28+ years of experience leading security strategy, enterprise architecture, governance, and incident response across financial services, government, multinational enterprises, and telecom sectors.... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 26/06/2026cybersecurityadvisors.networkWeek 26 - Today's offer: SSRF with root access22 - 28 June 2026 In this week's CVE of The Week, we'll be looking at a newly exploited, high-severity server-side request forgery (SSRF) vulnerability, in Cisco Unified Communications Manager... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 25/06/2026cybersecurityadvisors.networkStrengthening Patient Safety Through Cybersecurity in Healthcare by Elisabeth RivièreHealthcare [dflip id="102414"][/dflip] 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 24/06/2026cybersecurityadvisors.networkCyber (In)Securities – Issue 204[dflip id="102408"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 23/06/2026cybersecurityadvisors.networkThe Firewall Is No Longer the Security Boundary by Michael T. McDonaldRecent reporting from Hudson Rock claims that more than 75,000 Fortinet firewalls may remain compromised despite organisations applying patches intended to address known vulnerabilities. If accurate, the finding is concerning.... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 19/06/2026cybersecurityadvisors.networkWeek 25 - Caught in the Web: ShinyHunters Spins a MeshCentral Trap for PeopleSoft15 - 21 June 2026 Critical vulnerability has been found with the CVSS score of 9.8 in CVE-2026-35273. Our CVE of the Week is about PeopleSoft which is a comprehensive... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 19/06/2026cybersecurityadvisors.networkHow Software Supply Chains Became a Cybersecurity Weak Point by James Worley[dflip id="102386"][/dflip] 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/06/2026cybersecurityadvisors.networkNeuralink: Technology, Neurotechnology & Cybersecurity by Agrita AnandWhat happens when your brain becomes a connected device?Introduction The release of ChatGPT marked a turning point in public awareness of artificial intelligence. Suddenly, everyone was talking about machines that... 010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/06/2026cybersecurityadvisors.networkCyber (In)Securities – Issue 203[dflip id="102374"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 12/06/2026cybersecurityadvisors.networkWeek 24 - The Gateway That Let Attackers In08 - 14 June 2026 This week's CVE of the Week highlights an unauthenticated remote code execution vulnerability in Ivanti Sentry, CVE-2026-10520. Ivanti Sentry is an in-line gateway that manages,... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 05/06/2026cybersecurityadvisors.networkWeek 23 - Exchange Servers at Risk: Active Exploitation01 - 07 June 2026 A newly discovered vulnerability in Microsoft Exchange is currently being actively exploited by attackers. The issue, identified as CVE-2026-42897, this week's CVE of the Week,... 010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 29/05/2026cybersecurityadvisors.networkWeek 22 - Click here to fix!25 - 31 May 2026 CVE-2026-26980 is a critical SQL Injection vulnerability affecting Ghost CMS, a popular Node.js-based content management platform. In this week's CVE of the Week we'll be... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 28/05/2026cybersecurityadvisors.networkPlease welcome our newest member from France, Issa DiarraIssa Diarra is a Cybersecurity Engineer and Splunk Expert with more than 10 years of experience in IT, including 5 years dedicated to SOC operations, SIEM engineering, cyber threat detection,... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 27/05/2026cybersecurityadvisors.networkUAE CYBER THREAT REPORT INCIDENTS, RESPONSE AND RESILIENCE – 2026 BY SREELAKSHMI SREEKUMAR[dflip id="102332"][/dflip] 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 27/05/2026cybersecurityadvisors.networkAI Adoption and Cybersecurity in Tunisia: Why Threat Modeling Matters by Nour ElHouda Belhadj Fredj[dflip id="102327"][/dflip] 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 26/05/2026cybersecurityadvisors.networkHarm as Infrastructure: The Systems That Depend on What We Say We Want to RemoveA thought I can’t quite shake I’ve been thinking about poker machines lately, which is not a sentence I expected to write. Not because gambling is new, and not because... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/05/2026cybersecurityadvisors.networkWeek 21 - Cisco SD-WAN: Peers Only… Or Not18 - 24 May 2026 In this week's CVE of the Week, we'll be looking at a vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller. Cisco Catalyst SD-WAN... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 20/05/2026cybersecurityadvisors.networkCyber (In)Securities – Issue 202[dflip id="102311"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 15/05/2026cybersecurityadvisors.networkWeek 20 - Windows Netlogon spill11 - 17 May 2026 This week’s spotlight is on CVE‑2026‑41089, a critical stack‑based buffer overflow in the Windows Netlogon service that allows remote, unauthenticated code execution on domain controllers.... 000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 13/05/2026cybersecurityadvisors.networkCyber (In)Securities – Issue 201[dflip id="102295"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging... 000