CyberNews 2026-03-25

Cybersecurity Headlines — March 25, 2026 This founder’s company was breached by Iranian hackers. His new startup raised $11 million to stop it happening again. — Business Insider Modernizing U.S. Critical Infrastructure for the AI Era: Strengthening Security In an Evolving Threat Landscape — Cisco.com RSA ID Plus Sovereign Deployment delivers full-stack identity for high-risk environments — Help Net Security Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data Leaks — Internet Cybersecurity jobs available right now: March 24, 2026 — Help Net Security What does “AI security” mean and why does it matter to your business? — Redhat.com AI boom reveals weak cyber defences across countries — The Punch Critical Remote Code Execution Vulnerability in Cisco Secure Firewall Management Center (CVE-2026-20131) — Zscaler.com Iran built a vast camera network to control dissent. Israel used it to track targets, AP sources say — PBS Iran built a vast camera network to control dissent. Israel turned it into a targeting tool — The Times of India From the Trenches The Cisco FMC RCE (CVE-2026-20131) is the story that matters most today. Interlock ransomware was already exploiting it weeks before the patch dropped — that gap between discovery and disclosure is exactly the window threat actors live in. If you’re running Firewall Management Center and haven’t patched yet, treat it as a priority one. ...

March 25, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-03-24

Cybersecurity Headlines — March 24, 2026 Flashpoint unveils new threat intelligence suite to link cyber risks to business impact — SiliconANGLE News ⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & More — Internet Dataminr for Cyber Defense adds agentic AI and ThreatConnect integration — SiliconANGLE News The hidden cost of AI speed: Unmanaged cyber risk — Tenable.com Iran built a vast camera network to control dissent. Israel turned it into a targeting tool — Abcnews.com What the Evolution of the Threat Landscape Tells Us About the Gaps in Europe’s Cyber Policy — Cisco.com Why CISOs must link cyber to an organization’s profit and loss — TechRadar CISA Orders US Government to Patch Maximum Severity Cisco Flaw — Infosecurity Magazine RSA Launches ID Plus Sovereign Deployment: The Next Level of High Assurance Identity Security — Financial Post From the Trenches The weekly recap from The Hacker News is worth a full read this week — a CI/CD backdoor, the FBI quietly purchasing location data, and WhatsApp dropping phone numbers as identifiers all in the same week is a lot to absorb. The CI/CD backdoor in particular should be on every blue teamer’s radar; supply chain attacks through build pipelines are becoming a preferred entry point and most orgs still have minimal visibility there. ...

March 24, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-03-23

Cybersecurity Headlines — March 23, 2026 U.S. CISA adds Apple, Laravel Livewire and Craft CMS flaws to its Known Exploited Vulnerabilities catalog — Securityaffairs.com Week in review: ScreenConnect servers open to attack, exploited Microsoft SharePoint flaw — Help Net Security RSAC 2026 preview: AI hype meets operating model reality — SiliconANGLE News FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks — Internet CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026 — Internet Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of Disclosure — Internet CISA orders feds to patch max-severity Cisco flaw by Sunday — BleepingComputer Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) — Help Net Security DORA is reshaping how Europe’s financial sector thinks about compliance, and most firms still aren’t ready — The Next Web MCMC urges iPhone users to update iOS immediately following “Darksword” exploit — SoyaCincau.com From the Trenches Two things stand out today. First, the Langflow RCE (CVE-2026-33017) — attacks started within 20 hours of disclosure. That turnaround time is becoming the norm for high-value targets, and it means your patch window is measured in hours, not days. If you’re running any AI pipeline tooling, it deserves the same patching urgency as your perimeter gear. ...

March 23, 2026 · 2 min · Jason, Cyber Professional