Contact Sales
Contact Sales

NewsBites Cyber Security News

SANS NewsBites is a semiweekly executive summary of the most important cyber security news articles published recently. Each news item is annotated with important context provided by respected subject matter experts within the SANS community.

Filter by:

Vercel Breached via Context.ai; Apache ActiveMQ Flaw Added to KEV; MS Defender Zero-days Exploited

NewsletterNewsbites
  • 21 Apr 2026
  • Volume #XXVIII
  • Issue #30

Patch Tuesday: Microsoft, Adobe, SAP, Fortinet, and Cisco

NewsletterNewsbites
  • 17 Apr 2026
  • Volume #XXVIII
  • Issue #29

Scaling Cybersecurity: CISO Briefing for "Mythos-ready" Program; Qualys Finds Human Remediation "Ceiling"

NewsletterNewsbites
  • 14 Apr 2026
  • Volume #XXVIII
  • Issue #28

Anthropic Previews Mythos Model; Passports Exposed in Eurail Breach; LAPD Files Exposed in City Attorney's Office Breach

NewsletterNewsbites
  • 10 Apr 2026
  • Volume #XXVIII
  • Issue #27

CISA: US Critical Infrastructure PLCs Actively Disrupted; OpenClaw Vulnerabilities are "Staggering"; React2Shell Exploited in Credential Harvesting

NewsletterNewsbites
  • 07 Apr 2026
  • Volume #XXVIII
  • Issue #26

Axios NPM Supply Chain Compromise; Apple Backports Critical Patches for iOS 18; Claude Code Source Code Exposed

NewsletterNewsbites
  • 03 Apr 2026
  • Volume #XXVIII
  • Issue #25

SANS Emergency Livestream: Axios NPM Supply Chain Compromise; 72-Hour Deadline to Patch Exploited Citrix Netscaler, F5 BIG-IP Flaws Added to CISA KEV; PTC Windchill and FlexPLM Critical Flaws Can be Mitigated

NewsletterNewsbites
  • 31 Mar 2026
  • Volume #XXVIII
  • Issue #24

Trivy Breach Spreads Into CI/CD Pipelines; FCC Bans Routers Made Abroad; Spanish Port Disrupted by Ransomware

NewsletterNewsbites
  • 27 Mar 2026
  • Volume #XXVIII
  • Issue #23

DNS Security Guidance Update From NIST; Trivy Supply Chain Compromises Continue; Update Oracle Identity Manager and Web Services Manager to Fix Critical Flaw

NewsletterNewsbites
  • 24 Mar 2026
  • Volume #XXVIII
  • Issue #22

Secure MS Intune, Warns CISA After Stryker Wipe; Apple Background Security Improvements Launch; DarkSword iOS Exploit Kit

NewsletterNewsbites
  • 20 Mar 2026
  • Volume #XXVIII
  • Issue #21

TLS Certificate Lifecycle Shortened to 200 Days; GlassWorm in Python Packages on GitHub; Two Chrome Zero-Days Fixed

NewsletterNewsbites
  • 17 Mar 2026
  • Volume #XXVIII
  • Issue #20

Stryker Devices Wiped in Attack Abusing MS Intune: Apple Patches EOL Devices Against Coruna Flaws; SocksEscort Disrupted by Internat'l Operation

NewsletterNewsbites
  • 13 Mar 2026
  • Volume #XXVIII
  • Issue #19