Critical systems
-
Private APNs expose an overlooked OT boundary
Poland’s investigation into a destructive energy attack shows how infrastructure outside an operator’s direct control can provide a route between otherwise separate industrial environments.
-
Urgent GeoServer fixes follow exploitation attempts
GeoServer has released urgent security updates for an unauthenticated SQL injection flaw after premature disclosure was followed rapidly by exploitation attempts.
-
78 missing devices, no ICO reports in Scotland
The Scottish Government says encryption and remote-wipe controls meant 78 lost or stolen work devices did not create a personal-data risk requiring notification to the ICO.
-
Supplier breach reaches Scottish prosecutors
Scotland’s prosecution service says employee information was exposed through an external supplier, while its own systems, casework, victims, and witnesses remain unaffected.
-
Netherlands begins NIS2 enforcement
Thousands of Dutch organisations are now subject to NIS2 security, reporting, governance, and resilience duties after two long-awaited laws took effect on 15 August.
-
Intel and AMD issue broad security updates
Intel and AMD have released extensive August security updates spanning processor firmware, wireless software, AI tooling, trusted computing and development environments.
-
Back-to-school identity sprawl raises cyber exposure
Rapid account provisioning, new devices and expanding EdTech integrations are increasing identity-governance pressure across UK education as schools and colleges prepare for the new academic year.
-
Cl0p claims Philips and Shell data theft
Philips has contained an attempted compromise and Shell is investigating a possible incident after Cl0p claimed to have stolen engineering and project information from both companies.
-
Polish health breach exposes millions of records
Polish authorities are investigating a major breach at healthcare software provider MyDr after roughly 19 million records linked to patients and more than 12,000 medical facilities were stolen.
-
NCSC sets out resilient private 5G priorities
The NCSC is seeking industry input on private 5G systems designed to continue operating through infrastructure failures and cyber incidents, with identity, recovery, and monitoring among its priorities.









