Recent Posts

Not a Good Look, AI: What Happens to Privacy When Glasses Get Smart?

Not a Good Look, AI: What Happens to Privacy When Glasses Get Smart?

In recent months the public has begun to wake up to a new kind of privacy threat: wearables that record without your knowledge, increasingly subtly. One especially stark example is the revelations around the Ray‑Ban smart-glasses line developed in partnership with Meta Platforms, where the 

Please welcome our newest member from India, Prof. (Dr.) Shilohu Rao!

Please welcome our newest member from India, Prof. (Dr.) Shilohu Rao!

Prof. (Dr.) Shilohu Rao is a Professor of Law and Technology and Research Director of the Centre of Excellence at National Law University, Jodhpur, with over 25 years of interdisciplinary expertise in AI governance, data protection, and digital public policy. Holding a PhD in Data 

Week 44 – Open Sesame: UniFi Access Vulnerability Exposes Door Control Systems

27 Oct – 02 Nov 2025 Critical flaw has been found in UniFi® Access application, which leaves its management API exposed with no authentication required. The UniFi® Access Application is part of Ubiquiti’s platform designed for modern, managed door access control. It is used in 

Cyber (In)Securities – Issue 177

Cyber (In)Securities – Issue 177

Explore the latest in cybersecurity, AI accountability, and digital trust from massive data leaks and ransomware hybrids to new regulations under DORA and NIS2. Featuring insights from CyAN members on supply chain security, responsible AI, resilience, and leadership. You can download this edition by clicking 

Please welcome our newest member from the United States, Sandeep Desai

Please welcome our newest member from the United States, Sandeep Desai

Sandeep Desai is a board-engaged cybersecurity and technologyexecutive with 20+ years of experience aligning cybersecurity, ITstrategy, and enterprise risk management with revenue growth,operational resilience, and regulatory compliance goals across publicand private enterprises. Known for translating compliance mandatesinto operational excellence, Sandeep specializes in modernizinggovernance, scaling secure 

Week 43 – Old Trick, New Target: NTLM Reflection Returns via SMB

20 – 26 Oct 2025 The next star of our #CVE of the Week series is CVE-2025-33073, an improper authorization flaw in Microsoft’s SMB implementation. As you might have noticed from its ID number, this is not a freshly discovered one, but it still deserves 

Cyber (In)Securities – Issue 176

Cyber (In)Securities – Issue 176

This week’s edition uncovers global fraud takedowns, AI-driven exploits, and state-backed cyber activity targeting governments and defence firms. Cloud outages, identity abuse, and social-platform malware highlight how fragility now scales worldwide. You can download this edition by clicking the three dots icon on the far 

Welcome Our Newest Member: Karthikeyan Ramdass from the USA

Welcome Our Newest Member: Karthikeyan Ramdass from the USA

CyAN is delighted to welcome Karthikeyan Ramdass, an accomplished cybersecurity leader with over 18 years of experience protecting global enterprises in the technology, aviation, financial, and insurance sectors. Karthikeyan currently serves as Lead Member of Technical Staff at Salesforce, where he leads initiatives in Application 

Week 42 – Update and Destruct: WSUS Hit by Deserialization Flaw

13 – 19 Oct 2025 This week’s CVE of The Week is about a remote code vulnerability in Windows Server Update Service (WSUS): CVE-2025-59287. The Windows Server Update Service provides a way for IT administrators to deploy the latest Microsoft product updates. They can use 

Cyber (In)Securities – Issue 175

Cyber (In)Securities – Issue 175

Global Data Breaches, AI Missteps, and the New Frontiers of Trust This week’s issue tracks large-scale data leaks, AI accountability failures, and new challenges shaping digital trust. From the $5.8 million fine against Australian Clinical Labs to China’s stealth operations and Europe’s privacy wins, cybersecurity