Recent Posts
Week 32 – N-able N-central – Take Control Taken Over
03-09 Aug 2026 CVE-2026-18577 is a critical authentication bypass vulnerability affecting N-able N-central. Due to an incomplete patch, attackers can gain administrative access, abuse the built-in Take Control feature, and pivot to managed endpoints. Read White Hat IT Security’s analysis to understand the attack chain, …
Applications open: CyAN Mentorship Programme, Autumn 2026
CyAN’s mentorship programme is back for its autumn 2026 cohort, running from mid-September to mid-December. The programme is free and volunteer-led. It pairs people building a career in cybersecurity, or a related field, with experienced CyAN members for three months of one-to-one guidance. Mentees finish …
Cyber (In)Security — Issue #207
The fortnightly newsletter of the Cybersecurity Advisors Network (CyAN) — Issue #207, 4 August 2026. This issue leads with governance and civil-society resilience, plus the latest from our members and partners. Downloadable full PDF at the bottom of this post. In this issue Are you …
Week 31 – CertiGhost: The Certificate That Shouldn’t Exist
27 July – 02 Aug 2026 This week’s CVE of the Week is CVE-2026-54121, also known as CertiGhost, a critical vulnerability affecting Microsoft Active Directory Certificate Services (AD CS). The flaw allows a low-privileged authenticated domain user to obtain a certificate for a Domain Controller, …
Week 30 – A PDF Extension with a WhatsApp Obsession
20 -26 July 2026 In this week’s CVE of the Week, we’re examining a recently patched vulnerability chain in the Adobe Acrobat PDF Chrome extension, which is used by more than 314 million users worldwide. Tracked as CVE-2026-48294 (CVSS score: 8.2) and dubbed HermeticReader by …




