News
-
Chrome zero-day intensifies browser patch pressure
Google has fixed a V8 flaw exploited in the wild, making browser update discipline a live enterprise exposure rather than routine endpoint maintenance.
-
Anthropic’s Fable 5 forces AI data governance questions
Anthropic’s guarded frontier model brings advanced software engineering capability to wider use while its retention policy and cyber safeguards create new enterprise governance decisions.
-
Gogs flaw puts self-hosted Git servers at risk
Rapid7 says an authenticated command execution flaw in Gogs can expose private repositories, credentials, and development infrastructure where self-hosted Git is weakly governed.
-
Datacentre equipment flaws expose uptime risk
Claroty research into UPS and HVAC equipment shows how datacentre resilience depends on cyber-physical systems that often sit outside normal security governance.
-
ANSSI puts G7 Evian summit on cyber alert
France’s cyber agency is supporting G7 summit preparations as major diplomatic events remain exposed to espionage, destabilisation, extortion, and denial-of-service activity.
-
Palo Alto and Deutsche Telekom bring sovereign SecOps to Europe
A new managed security operations service places European data control, key governance, support access, and auditability at the centre of regulated-sector cyber procurement.
-
SAP patches critical NetWeaver flaws
SAP’s June security patch day includes critical NetWeaver, Commerce Cloud, and Data Hub flaws, led by a 9.9-rated SAML authentication issue in NetWeaver AS ABAP.
-
Microsoft repos restored after GitHub removals
Microsoft-owned GitHub repositories were temporarily removed while potential malicious content was investigated, disrupting Azure Functions deployment workflows and exposing CI/CD dependency risk.
-
ServiceNow investigates customer data exposure
ServiceNow has reportedly warned affected customers after unauthenticated access through a vulnerable API endpoint allowed attackers to query customer instance data.
-
NHS flags critical Veeam flaw
NHS England has warned that a critical Veeam Backup & Replication vulnerability could allow authenticated domain users to execute remote code on affected backup servers.




