
Know a small business winging it on security?
No IT department, no security budget, real exposure. Nubivance builds right-sized security foundations for small companies. Send them this.
Send it along
Microsoft overlooks an 8-year-old shortcut exploit, raising concerns as it remains a tool for espionage in cyberattacks.

Critical AMI BMC vulnerability enables remote server takeover, risking complete system bricking. Immediate action required to mitigate threats.

Eleven state-sponsored groups have exploited an unpatched Windows zero-day vulnerability since 2017, posing significant security risks globally.

“Discover the ‘dead simple’ hijacking hole in Apache Tomcat, now actively exploited in the wild, posing serious security risks to web applications.”

Apache Tomcat vulnerability exploited within 30 hours of its public announcement, highlighting urgent security risks for web applications.

Enhance your cyber response with OnDemand’s continuous security testing activation, ensuring proactive protection against evolving threats.

Discover how monthly certificate-related outages impact 67% of organizations, highlighting the need for better management and proactive solutions.

Microsoft’s March Windows updates inadvertently removed Copilot, causing user frustration and prompting discussions on software reliability and update management.

No IT department, no security budget, real exposure. Nubivance builds right-sized security foundations for small companies. Send them this.
Send it along
Urgent alert: Critical RCE vulnerability in Apache Tomcat is actively being exploited. Immediate action required to secure your systems.

Stay informed with THN Weekly Update: explore router vulnerabilities, PyPI security breaches, new ransomware solutions, and more essential cybersecurity news.

Microsoft requires video for bug reports; a researcher responds with malicious compliance, delivering a humorous yet insightful take on the demand.

Learn how to compromise your computer in three easy steps with ClickFix. A straightforward guide for understanding security vulnerabilities.

Ransomware group creates a tool for automated VPN brute-force attacks, enhancing their capabilities to exploit vulnerabilities and breach networks.

Three Ivanti vulnerabilities have been added to CISA’s catalogue, highlighting critical security risks that require immediate attention and remediation.

SuperBlack Ransomware exploits Fortinet authentication vulnerabilities, posing significant risks to cybersecurity and demanding urgent protective measures.

Explore the Ivanti Patch Treadmill, a detailed analysis of vulnerabilities, breaches, and strategies for effective patch management and cybersecurity.

Nubivance is a Rapid7 Registered Partner delivering vulnerability management as a service - scanning, risk-based prioritization, and remediation follow-through across IT and OT.
Fix the backlog
Microsoft confirms a problem with the Classic Outlook restore button, affecting user experience. A fix is in progress to resolve the issue.

Juniper addresses a critical vulnerability exploited by Chinese cyber spies, enhancing router security and protecting sensitive data from unauthorized access.

GitLab fixes critical authentication bypass vulnerabilities, enhancing security and protecting user data from potential breaches. Update now!

GitHub uncovers new ruby-saml vulnerabilities that pose significant account takeover risks, urging developers to update their security measures immediately.

Rising tech complexity in the UK poses significant cybersecurity threats, increasing vulnerabilities and challenges for businesses and individuals alike.

Urgent: A root certificate expiration may impact Firefox add-ons and security features. Update your browser to ensure continued functionality.

Stay informed on the active exploitation risk of FreeType vulnerability (CVE-2025-27363) with Meta Alerts for timely security updates.

Upgrade your Firefox by Friday to avoid potential security risks and performance issues, warns Mozilla. Stay safe and up-to-date!