News
-
Ransomware groups link supply chain theft
Sophos says Vect and TeamPCP have created an operational pipeline from open-source supply chain compromise to ransomware deployment.
-
JadePuffer makes agentic ransomware concrete
Sysdig says JadePuffer used an LLM-driven agent to conduct database extortion after exploiting Langflow and chaining routine techniques at speed.
-
FortiBleed turns credentials into ransomware risk
Fortinet says the reported FortiBleed activity involves credential reuse and weak authentication, while researchers warn stolen FortiGate access is circulating at scale.
-
NCSC sets out CNI security lessons
The NCSC has published practical lessons from penetration testers on how critical national infrastructure operators can make compromise harder.
-
NHS warns on Ivanti Sentry exploitation
NHS England Digital has warned that exploitation of a critical Ivanti Sentry flaw is being reported in the wild and further exploitation is almost certain.
-
Bank warns on agentic AI risk
Sarah Breeden has warned that agentic AI could reshape cyber, payments, and market resilience, forcing financial institutions to revisit accountability and recovery.
-
European ransomware puts suppliers under pressure
Black Kite says European ransomware incidents rose sharply in early 2026, with supplier compromise becoming a major route into affected organisations.
-
ENISA moves Cybersecurity Reserve into procurement
ENISA’s open call for Cybersecurity Reserve services turns Europe’s emergency cyber response capacity into a concrete procurement and delivery issue.
-
Tchap breach tests French messaging
France says a compromised Tchap account exposed public rooms and account data for fewer than 9% of registered users.
-
CERT-EU advisories expose infrastructure risk
CERT-EU’s 2026 advisory stream shows exploited and high-impact flaws across perimeter appliances, identity infrastructure, firewalls, and enterprise network systems.





