
Rapid7 deployed right the first time.
Full-platform Rapid7 rollouts - InsightVM, InsightIDR, event sources, agents, tuning - by a Registered Partner who has done it at state-agency scale, including OT/SCADA.
Talk deploymentCybersecurity intelligence, threat analysis, and national security reporting.

Most organizations are launching AI tools without properly assessing the risks, leaving them exposed to potential security breaches. A recent survey found that while 76% of organizations have deployed AI tools, only 43% have completed a thorough review of permissions.

Cisco is urging customers to apply hotfixes immediately to protect against ransomware and credential theft attacks exploiting vulnerabilities in its Secure Firewall Management Center (FMC) software. The company has already released patches for the affected versions and plans to roll out additional security updates soon.

PaperCut has released new security updates to fix two actively exploited flaws that allowed hackers to bypass authentication and execute malicious code, with over 395 organizations in 48 countries affected. The company has issued maintenance releases, including versions 26.0.5, 25.0.13, and 24.1.10, to patch the vulnerabilities and protect users.

A single malicious link was all it took for China-linked hackers to gain control over millions of users of the popular Sogou Input Method, a vulnerability that highlights the power of a tiny flaw in a widely-used tool. The attack, attributed to UNC3569, used a specially crafted link to deploy the GRAYRABBIT backdoor, putting hundreds of millions of users at risk.

Cyber attackers have found a way to chain two JFrog Artifactory flaws, CVE-2026-42018 and CVE-2026-42016, to gain administrator control of self-hosted instances, putting your sensitive data at risk. This alarming exploit was recently reported by cloud security company Wiz.

Phishing attacks have hit 347,000 Trezor users after a security breach at Brevo, the marketing platform used by Trezor for its newsletter campaigns, exposed sensitive email addresses. Trezor quickly sprang into action, suspending its Brevo account and taking down the malicious domain within 20 minutes to limit the damage.

The Oregon Air National Guard's 142nd Wing just made history with the F-15EX Eagle II, successfully conducting the first live bomb drops during a training deployment to Nellis Air Force Base. This milestone achievement unlocks a world of possibilities for the aircraft's future capabilities.

US military leaders are facing a daunting challenge: securing a $1.5 trillion budget to sustain their priorities, but Congress has thrown a wrench into the works with a steep reduction in reconciliation funding, slashing the administration's $350 billion request to just $60 billion for Iran war operations.

Full-platform Rapid7 rollouts - InsightVM, InsightIDR, event sources, agents, tuning - by a Registered Partner who has done it at state-agency scale, including OT/SCADA.
Talk deployment
Meet JackPoterz, a small but sophisticated actor who leveraged AI to launch a hacking campaign that mirrored Russian state espionage tactics, and six other malicious groups who similarly misused AI models for cyber operations, influence campaigns, and more. Anthropic's investigators successfully disrupted each operation, but the incident highlights the growing threat of AI-enabled hacking.

The 9/11 attacks sparked a seismic shift in security policy, prompting the US to launch the Global War on Terror and Australia to stand shoulder-to-shoulder in the fight against terrorism, forever changing the domestic reality for both nations.

The Israel Defense Forces is revolutionizing its approach to modern warfare with the launch of a new branch dedicated to unmanned systems and artificial intelligence, a move that promises to propel the military into a new era of innovation. By early December, this cutting-edge branch will be fully operational, harnessing the power of AI to stay ahead of the rapidly evolving battlefield.

Meet Shershen, a game-changing surface-to-air missile system that's pushing the boundaries of detection and defense with its cutting-edge Athena radar, capable of spotting targets up to 85 kilometers away. Its modular design allows for interchangeable air-to-air missiles, making it a highly adaptable and formidable force on the battlefield.

The Pentagon is shaking up its cybersecurity strategy, recognizing that technology - not just personnel - holds the key to defending its vast digital landscape. Department of Defense CIO Kirsten Davies calls it a complex puzzle that requires a tech-savvy solution, leveraging cutting-edge tools like automation, machine learning, and AI.

Senator Josh Hawley is demanding answers from OpenAI after a breach at Hugging Face raised serious concerns about AI safety, and he's launched a formal review to get to the bottom of it. The senator wants detailed information on the incident, including internal communications and technical details, by October 1.

China is taking a bold step in sharing its cutting-edge AI technology with the world, as 29 countries signed the founding agreement of the World Artificial Intelligence Cooperation Organization in Shanghai, paving the way for a new era of global collaboration. With China's open AI models on the table, the question is: what does this mean for the future of AI worldwide?

The Houthi rebels have captured the strategic coastal city of Mokha, seizing control of its port and airport in a significant breakthrough under heavy fire. Footage shows Houthi fighters patrolling the city's seaport and airport runway, with videos and images of seized equipment and celebratory footage spreading across social media.

Evidence in spreadsheets, controls drifting between audits, frameworks multiplying on flat headcount. Nubivance runs continuous compliance on Rapid7 Cyber GRC - SOC 2, HIPAA, ISO 27001, PCI, CMMC.
End the scramble
As the US sits out crucial talks on protecting civilians in combat, a pressing question lingers: are we ready to tackle this problem and make a real difference? The absence of the US from a NATO meeting in Brussels has left many wondering when those who care about mitigating civilian harm can come together to find a solution.

The Army has selected Lockheed Martin and a Boeing-Anduril team to move forward in the Indirect Fire Protection Capability (IFPC) Increment 2 interceptor prototype program, advancing to the demonstration phase. This significant step eliminates Rafael's US subsidiary from the competition, setting the stage for the next phase of development.

A Ukrainian national has been sentenced to four years in prison for his role in the notorious Conti ransomware campaign, a significant blow to cybercrime after a cross-border prosecution effort. He was caught in Ireland in 2023 with a laptop running Cobalt Strike, and later extradited to the US to face charges.

The US is ramping up its military might with cutting-edge bunker-busting tech, even as President Trump hints at a potential strike, saying "we may hit Pickaxe Mountain very soon." This development comes alongside a secret contract awarded to Pate Construction for a top-secret project at the White Sands Missile Range.

The Pentagon is ramping up its leak investigation tactics, using polygraph tests on dozens of military officers and civilian employees in a massive probe into press leaks about the Iran war and depleted US munitions. Roughly 50 personnel on the Joint Staff were subjected to the tests in August in an unprecedented move.

China is pulling ahead in the quantum research race, leading in 69 of 74 technologies reviewed, and producing the most high-impact research in quantum communication and post-quantum cryptography. The US still leads in quantum computing, but China's rapidly catching up.

The Pentagon has chosen Crane Naval Surface Warfare Center in Indiana to host a cutting-edge nuclear microreactor, a decision driven by the need to meet a tight 2028 deadline to deploy the first military reactor. This strategic move aims to accelerate the development of this game-changing technology.

In a major win for cybersecurity, a Ukrainian national has been sentenced to four years in prison for his role in the notorious Conti ransomware attacks that hit 47 states and 31 countries, causing over $150 million in estimated damages. Oleksii Lytvynenko, 44, pleaded guilty to conspiracy to commit wire fraud and was extradited to the US to face justice.