Talk With an Expert

NewsBites Cyber Security News

SANS NewsBites is a semiweekly executive summary of the most important cyber security news articles published recently. Each news item is annotated with important context provided by respected subject matter experts within the SANS community.

Filter by:

Little-Known Microsoft "Escorts" Handle Sensitive DOD Data; Salt Typhoon Compromised US Army National Guard Network; Stuxnet Anniversary Congressional Hearing on Cyber Threats to Critical Infrastructure

NewsletterNewsbites
  • 18 Jul 2025
  • Volume #XXVII
  • Issue #52

Actively Exploited Flaws to Patch Now: CitrixBleed 2 Memory Safety, Wing FTP Server RCE; Former Employee Steals & Shares Semiconductor IP, Lands 3-Year Prison Sentence

NewsletterNewsbites
  • 15 Jul 2025
  • Volume #XXVII
  • Issue #51

UK Arrests Four Over Retailer Cyberattacks; CitrixBleed2 and Four Older Flaws Added to KEV; Patch Tuesday: Microsoft and Adobe

NewsletterNewsbites
  • 11 Jul 2025
  • Volume #XXVII
  • Issue #50

Norwegian Dam’s OT Breached via Weak Password; OpenVSX was Critically Vulnerable to Supply Chain Attack; Scam Texts Arrive After Glasgow City Council Takes Services Offline

NewsletterNewsbites
  • 01 Jul 2025
  • Volume #XXVII
  • Issue #49

Another NetScaler Flaw; Multiple Vulnerabilities in Multifunction Printers; Cisco Fixes Critical Flaws in ISE

NewsletterNewsbites
  • 27 Jun 2025
  • Volume #XXVII
  • Issue #48

Experimental MCP Server Exposed Asana Data; WordPress Motors Theme Exploited for Privilege Escalation; Linux Kernel Flaw Added to KEV

NewsletterNewsbites
  • 24 Jun 2025
  • Volume #XXVII
  • Issue #47

EU: DNS4EU Public Resolver Aids GDPR Compliance, Cyber Blueprint Clarifies Crisis Management; US: FAA Urges 21st-Century Air Traffic Control System

NewsletterNewsbites
  • 10 Jun 2025
  • Volume #XXVII
  • Issue #44

US Water Systems' HMIs Exposed; Salesforce Social Engineering Extortion Campaign; Cisco Fixes Hardcoded Credential in Identity Services Engine

NewsletterNewsbites
  • 06 Jun 2025
  • Volume #XXVII
  • Issue #43

Patch Cisco IOS XE Wireless Controllers Now; Microsoft Authenticator Deprecating Autofill; Chrome Rescinds Trust in Certificates from Chungwha Telecom and Netlock

NewsletterNewsbites
  • 03 Jun 2025
  • Volume #XXVII
  • Issue #42

Microsoft Previews Centralized Windows Update Platform; OneDrive Files Exposed by File Picker Flaw; Reset ASUS Routers to Fix Persistent Backdoor

NewsletterNewsbites
  • 30 May 2025
  • Volume #XXVII
  • Issue #41

Windows Server 2025 Vulnerable in Active Directory; "Likely Exploited Vulnerabilities" Augments EPSS and KEV; Marks & Spencer Breach May Cost £300M in Profits

NewsletterNewsbites
  • 23 May 2025
  • Volume #XXVII
  • Issue #40

FBI Warns Against Deepfakes Mimicking Gov't. Officials; Japan Passes Active Cyber Defense Law; UK Legal Aid Applicant's Data Stolen

NewsletterNewsbites
  • 20 May 2025
  • Volume #XXVII
  • Issue #39