Cyber (In)Security — Issue #207
The fortnightly newsletter of the Cybersecurity Advisors Network (CyAN) — Issue #207, 4 August 2026.
This issue leads with governance and civil-society resilience, plus the latest from our members and partners.
Downloadable full PDF at the bottom of this post.

In this issue
- From the CyAN Community: Kamran Israr Mirza (Kim) on Governing Security When the CISO Advises but Doesn’t Command.
- Policy Corner: CyAN signs the Protect.ngo / ICSC call to protect civil society organisations.
- Announcements: Congratulations to partner Black is Ethical, now registered in Côte d’Ivoire (led by board member Inssata Diomande-Ricourt).
- White Hat CVE of the Week: Week 30 — CVE-2026-48294 “HermeticReader” (Adobe Acrobat Chrome extension); Week 31 — CVE-2026-54121 “CertiGhost” (Microsoft AD CS).
- News from Around the World: EU Cybersecurity & AI Action Plan, DORA/NIS2, autonomous AI-agent attacks, and more.
- Tagged by Our Members: Bharat Raigangar, Subela Bhatia, Kim Chandler McDonald, Jean-Christophe Le Toquin.
- Member Spotlight: Ned Farhat — forensic investigator and expert witness, CyberSage.
- Upcoming Events: Trust & Safety Festival Sydney (8–9 Oct 2026); Ai Everything Abu Dhabi (6 Oct 2026, CyAN Knowledge Partner).
Are you a CyAN member? Tag @Cybersecurity Advisors Network (CyAN) in your LinkedIn posts to be featured in the next issue.