CyberNews 2026-03-24

Cybersecurity Headlines — March 24, 2026 Flashpoint unveils new threat intelligence suite to link cyber risks to business impact — SiliconANGLE News ⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & More — Internet Dataminr for Cyber Defense adds agentic AI and ThreatConnect integration — SiliconANGLE News The hidden cost of AI speed: Unmanaged cyber risk — Tenable.com Iran built a vast camera network to control dissent. Israel turned it into a targeting tool — Abcnews.com What the Evolution of the Threat Landscape Tells Us About the Gaps in Europe’s Cyber Policy — Cisco.com Why CISOs must link cyber to an organization’s profit and loss — TechRadar CISA Orders US Government to Patch Maximum Severity Cisco Flaw — Infosecurity Magazine RSA Launches ID Plus Sovereign Deployment: The Next Level of High Assurance Identity Security — Financial Post From the Trenches The weekly recap from The Hacker News is worth a full read this week — a CI/CD backdoor, the FBI quietly purchasing location data, and WhatsApp dropping phone numbers as identifiers all in the same week is a lot to absorb. The CI/CD backdoor in particular should be on every blue teamer’s radar; supply chain attacks through build pipelines are becoming a preferred entry point and most orgs still have minimal visibility there. ...

March 24, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-03-23

Cybersecurity Headlines — March 23, 2026 U.S. CISA adds Apple, Laravel Livewire and Craft CMS flaws to its Known Exploited Vulnerabilities catalog — Securityaffairs.com Week in review: ScreenConnect servers open to attack, exploited Microsoft SharePoint flaw — Help Net Security RSAC 2026 preview: AI hype meets operating model reality — SiliconANGLE News FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks — Internet CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026 — Internet Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of Disclosure — Internet CISA orders feds to patch max-severity Cisco flaw by Sunday — BleepingComputer Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) — Help Net Security DORA is reshaping how Europe’s financial sector thinks about compliance, and most firms still aren’t ready — The Next Web MCMC urges iPhone users to update iOS immediately following “Darksword” exploit — SoyaCincau.com From the Trenches Two things stand out today. First, the Langflow RCE (CVE-2026-33017) — attacks started within 20 hours of disclosure. That turnaround time is becoming the norm for high-value targets, and it means your patch window is measured in hours, not days. If you’re running any AI pipeline tooling, it deserves the same patching urgency as your perimeter gear. ...

March 23, 2026 · 2 min · Jason, Cyber Professional