Sign in

Cybersecurity Advisors Network (CyAN)

@cybersecurityadvisors.network
51 followers 10 following 416 posts

CyAN is a multidisciplinary, international trust network of highly experienced, well connected professionals. CyAN is a not-for-profit association. Visit us at cybersecurityadvisors.network

PostsRepliesMedia
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 02/10/2026
cybersecurityadvisors.network
Week 40 - Code injection: Sneaking in
28 Sept - 04 Oct 2026 A high-severity vulnerability in Microsoft SharePoint Server has recently drawn attention. CVE-2026-65660 is a CWE-94 code injection vulnerability that can allow an authenticated attacker...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 01/10/2026
cybersecurityadvisors.network
Cyber (In)Security - Issue #210
Cyber (In)Security #210 is out. In this issue: Kamran Israr Mirza (Kim) briefs boards on Dubai's virtual assets regulator VARA we welcome eleven mentees to the autumn 2026 Mentorship Programme...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 25/09/2026
cybersecurityadvisors.network
Week 39 - Check Point Under Attack: Critical Zero-Day Exploited in the Wild
21 - 27 Sept 2026 What happens when the security infrastructure itself becomes the target? This week’s CVE of The Week covers CVE-2026-93616, a critical Check Point zero-day vulnerability with...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/09/2026
cybersecurityadvisors.network
VARA: Dubai's Virtual Assets Regulatory Authority
A Board Briefing on Mandate, Licensing, Controls and Enforcement Prepared by Kim | CISO | linkedin.com/in/kimabdalian | September 2026 | Target audience: Executiveand Senior Management Dubai's Virtual Assets Regulatory Authority...
001
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/09/2026
cybersecurityadvisors.network
Week 38 - GitLab Under Attack: Critical Arbitrary File Read Vulnerability
14 - 20 Sept 2026 What if an unauthenticated user could read your sensitive data from the GitLab server? This week’s CVE of the Week highlights CVE-2026-85706 in GitLab -...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 11/09/2026
cybersecurityadvisors.network
Week 37 - SAP Attack: When the Buffer Says “No More”
07 - 12 Sept 2026 A critical CVSS 10.0 vulnerability puts thousands of Internet-facing SAP systems potentially at risk. Our latest CVE of the Week covers CVE-2026-44756, a buffer overflow...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 09/09/2026
cybersecurityadvisors.network
Cyber (In)Security – Issue #209
Cyber (In)Security issue 209 is out — our mentorship programme returns for autumn 2026 with ten member mentors, our Community Partner role at the Trust & Safety Festival Sydney, three...
010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 08/09/2026
cybersecurityadvisors.network
The CyAN Mentorship Programme Returns for Autumn 2026
CyAN's mentorship programme is back for its autumn 2026 cohort. Over the next three months, ten of our members are giving their time to mentor people building careers in cybersecurity...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/09/2026
cybersecurityadvisors.network
Week 36 - Critical Metabase SQL Injection Scores a Perfect 10
31 Aug - 06 Sept 2026 A critical CVSS 10.0 vulnerability puts the spotlight on one of the oldest tricks in the hacker’s toolbox: SQL injection. This week’s CVE of...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 28/08/2026
cybersecurityadvisors.network
Week 35 - CoSnitch: When Copilot Starts Snitching
24 - 30 Aug 2026 What if your AI assistant could be tricked into handing your data to an attacker? This week’s CVE of the Week looks at CVE-2026-24301 (CoSnitch),...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 25/08/2026
cybersecurityadvisors.network
Pakistan's New Compliance Stack: A CISO Advisory Perspective for Financial Institutions
Pakistani financial institutions are absorbing five regulatory reforms inside roughly a nineteen-month window: The State Bank of Pakistan's Cyber Shield resilience strategy, National CERT's newly cabinet-approved Pakistan Information Security Framework...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 24/08/2026
cybersecurityadvisors.network
Week 34 - From Auto-Login to Full RCE: Inside the IBM Langflow CVE
17 - 23 Aug 2026 AI platforms are increasingly becoming attractive targets for attackers. CVE-2026-9198 affects IBM Langflow OSS and chains security flaws that can lead to unauthenticated Remote Code...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/08/2026
cybersecurityadvisors.network
Cyber (In)Security #208
The fortnightly newsletter of the Cybersecurity Advisors Network (CyAN) — Issue #208, 17 August 2026. This issue leads with crypto custody governance and our autumn mentorship intake, plus two serious...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 14/08/2026
cybersecurityadvisors.network
Week 33 - TeamCity Under Construction: Critical RCE Flaw
10 - 16 Aug 2026 A critical unauthenticated remote code execution (RCE) vulnerability has been disclosed in JetBrains TeamCity On-Premises. Tracked as CVE-2026-63077 with a CVSS score of 9.8, the...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 13/08/2026
cybersecurityadvisors.network
Stablecoin and Crypto Asset Wallet Types: Custody and Security Requirements
Another great publication from CyAN member Kamran Israr Mirza (Kim), find him on LinkedIn at https://www.linkedin.com/in/kimabdalian/ Stablecoins have moved from experimental instruments to core payment infrastructure, and with that shift,...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 07/08/2026
cybersecurityadvisors.network
Week 32 - N-able N-central - Take Control Taken Over
03-09 Aug 2026 CVE-2026-18577 is a critical authentication bypass vulnerability affecting N-able N-central. Due to an incomplete patch, attackers can gain administrative access, abuse the built-in Take Control feature, and...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/08/2026
cybersecurityadvisors.network
Applications open: CyAN Mentorship Programme, Autumn 2026
CyAN's mentorship programme is back for its autumn 2026 cohort, running from mid-September to mid-December. The programme is free and volunteer-led. It pairs people building a career in cybersecurity, or...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/08/2026
cybersecurityadvisors.network
Cyber (In)Security — Issue #207
The fortnightly newsletter of the Cybersecurity Advisors Network (CyAN) — Issue #207, 4 August 2026. This issue leads with governance and civil-society resilience, plus the latest from our members and...
010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 04/08/2026
cybersecurityadvisors.network
CyAN Signs Protect.ngo / ICSc Call to Protect Civil Society Organisations
CyAN's mission is to strengthen and protect global digital society and the online economy, and to work against the digital threats facing individuals, democracy and trade.  Organisations that feed people,...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 31/07/2026
cybersecurityadvisors.network
Week 31 - CertiGhost: The Certificate That Shouldn't Exist
27 July - 02 Aug 2026 This week's CVE of the Week is CVE-2026-54121, also known as CertiGhost, a critical vulnerability affecting Microsoft Active Directory Certificate Services (AD CS). The...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 27/07/2026
cybersecurityadvisors.network
Governing Security When the CISO Advises but Doesn't Command - by Kamran Israr Mirza (Kim)
A significant share of organizations still place the Security Operations Center (SOC) organizationally under the Chief Technology Officer, while the Chief Information Security Officer and a small security function operate...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 24/07/2026
cybersecurityadvisors.network
Week 30 - A PDF Extension with a WhatsApp Obsession
20 -26 July 2026 In this week's CVE of the Week, we're examining a recently patched vulnerability chain in the Adobe Acrobat PDF Chrome extension, which is used by more...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/07/2026
cybersecurityadvisors.network
Cyber (In)Security — Issue #206
In this issue: From the community — David Gaul on Australia's Horizon Cyber Security Initiative and what it means for industry; Sanchay Joshi on whether boards are ready to govern...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/07/2026
cybersecurityadvisors.network
Australia’s Horizon Cyber Security Initiative: What it Means for Industry - by David Gaul
CyAN mentorship programme participant David Gaul writes about Australia's "Horizon" initiative - what can industry members expect ahead of changes in legislation? What are the implications for Australian businesses? Australia...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 21/07/2026
cybersecurityadvisors.network
Cyber Risk Is in the Boardroom. Are Boards Ready to Govern It? - By Sanchay Joshi
Cybersecurity is now firmly in the boardroom, but board attention alone does not equal effective oversight. This article traces how cyber risk evolved from an IT operational concern into a...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 17/07/2026
cybersecurityadvisors.network
Week 29 - Next Stop: SYSTEM
13 -19 July 2026 This week our CVE of the Week is CVE-2026-56164, a zero-day Elevation of Privilege vulnerability affecting Microsoft SharePoint Server that Microsoft confirmed is being actively exploited...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 14/07/2026
cybersecurityadvisors.network
My Journey into Governance, Risk and Compliance (GRC) by Sahiba Saggar
[dflip id="102443"][/dflip]
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 10/07/2026
cybersecurityadvisors.network
Week 28 - A perfect 10 in UniFi Connect
06 -12 July 2026 In this week's CVE of the Week, we're looking at CVE-2026-50746, a critical vulnerability affecting the Ubiquiti UniFi Connect Application, with a CVSS score of 10.0....
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 03/07/2026
cybersecurityadvisors.network
Week 27 - Impact Zone: RoguePlanet Crashes into Microsoft Defender
29 June - 05 July 2026 One of the most discussed security issues in weeks is CVE-2026-50656, also known as RoguePlanet, an Elevation of Privilege (EoP) vulnerability affecting the Microsoft...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 01/07/2026
cybersecurityadvisors.network
Cyber (In)Securities – Issue 205
[dflip id="102428"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 01/07/2026
cybersecurityadvisors.network
Please welcome our newest member from Bahrain, Kamran Israr Mirza (Kim)
Kim is a senior cybersecurity and technology risk executive with 28+ years of experience leading security strategy, enterprise architecture, governance, and incident response across financial services, government, multinational enterprises, and telecom sectors....
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 26/06/2026
cybersecurityadvisors.network
Week 26 - Today's offer: SSRF with root access
22 - 28 June 2026 In this week's CVE of The Week, we'll be looking at a newly exploited, high-severity server-side request forgery (SSRF) vulnerability, in Cisco Unified Communications Manager...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 25/06/2026
cybersecurityadvisors.network
Strengthening Patient Safety Through Cybersecurity in Healthcare by Elisabeth Rivière
Healthcare [dflip id="102414"][/dflip]
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 24/06/2026
cybersecurityadvisors.network
Cyber (In)Securities – Issue 204
[dflip id="102408"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 23/06/2026
cybersecurityadvisors.network
The Firewall Is No Longer the Security Boundary by Michael T. McDonald
Recent reporting from Hudson Rock claims that more than 75,000 Fortinet firewalls may remain compromised despite organisations applying patches intended to address known vulnerabilities. If accurate, the finding is concerning....
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 19/06/2026
cybersecurityadvisors.network
Week 25 - Caught in the Web: ShinyHunters Spins a MeshCentral Trap for PeopleSoft
15 - 21 June 2026 Critical vulnerability has been found with the CVSS score of 9.8 in CVE-2026-35273. Our CVE of the Week is about PeopleSoft which is a comprehensive...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 19/06/2026
cybersecurityadvisors.network
How Software Supply Chains Became a Cybersecurity Weak Point by James Worley
[dflip id="102386"][/dflip]
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/06/2026
cybersecurityadvisors.network
Neuralink: Technology, Neurotechnology & Cybersecurity by Agrita Anand
What happens when your brain becomes a connected device?Introduction The release of ChatGPT marked a turning point in public awareness of artificial intelligence. Suddenly, everyone was talking about machines that...
010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 18/06/2026
cybersecurityadvisors.network
Cyber (In)Securities – Issue 203
[dflip id="102374"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 12/06/2026
cybersecurityadvisors.network
Week 24 - The Gateway That Let Attackers In
08 - 14 June 2026 This week's CVE of the Week highlights an unauthenticated remote code execution vulnerability in Ivanti Sentry, CVE-2026-10520. Ivanti Sentry is an in-line gateway that manages,...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 05/06/2026
cybersecurityadvisors.network
Week 23 - Exchange Servers at Risk: Active Exploitation
01 - 07 June 2026 A newly discovered vulnerability in Microsoft Exchange is currently being actively exploited by attackers. The issue, identified as CVE-2026-42897, this week's CVE of the Week,...
010
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 29/05/2026
cybersecurityadvisors.network
Week 22 - Click here to fix!
25 - 31 May 2026 CVE-2026-26980 is a critical SQL Injection vulnerability affecting Ghost CMS, a popular Node.js-based content management platform. In this week's CVE of the Week we'll be...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 28/05/2026
cybersecurityadvisors.network
Please welcome our newest member from France, Issa Diarra
Issa Diarra is a Cybersecurity Engineer and Splunk Expert with more than 10 years of experience in IT, including 5 years dedicated to SOC operations, SIEM engineering, cyber threat detection,...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 27/05/2026
cybersecurityadvisors.network
UAE CYBER THREAT REPORT INCIDENTS, RESPONSE AND RESILIENCE – 2026 BY SREELAKSHMI SREEKUMAR
[dflip id="102332"][/dflip]
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 27/05/2026
cybersecurityadvisors.network
AI Adoption and Cybersecurity in Tunisia: Why Threat Modeling Matters by Nour ElHouda Belhadj Fredj
[dflip id="102327"][/dflip]
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 26/05/2026
cybersecurityadvisors.network
Harm as Infrastructure: The Systems That Depend on What We Say We Want to Remove
A thought I can’t quite shake I’ve been thinking about poker machines lately, which is not a sentence I expected to write. Not because gambling is new, and not because...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 22/05/2026
cybersecurityadvisors.network
Week 21 - Cisco SD-WAN: Peers Only… Or Not
18 - 24 May 2026 In this week's CVE of the Week, we'll be looking at a vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller. Cisco Catalyst SD-WAN...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 20/05/2026
cybersecurityadvisors.network
Cyber (In)Securities – Issue 202
[dflip id="102311"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging...
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 15/05/2026
cybersecurityadvisors.network
Week 20 - Windows Netlogon spill
11 - 17 May 2026 This week’s spotlight is on CVE‑2026‑41089, a critical stack‑based buffer overflow in the Windows Netlogon service that allows remote, unauthenticated code execution on domain controllers....
000
Cybersecurity Advisors Network (CyAN) @cybersecurityadvisors.network · 13/05/2026
cybersecurityadvisors.network
Cyber (In)Securities – Issue 201
[dflip id="102295"][/dflip] You can download this edition by clicking the three dots icon on the far right and selecting Download PDF File. For the best reading experience, we recommend enlarging...
000