Cybersecurity Blog

Stay informed about the latest cybersecurity threats, tech news, and tips to keep your devices safe.

Cybersecurity New

Drupal CVE-2026-9082 Is Now on CISA's Watch List — 15,000 Attacks Already Detected and the Window to Patch Is Closing

A critical SQL injection flaw in Drupal Core is under active attack just 48 hours after patching. CISA added it to its Known Exploited Vulnerabilities catalog, and over 15,000 attacks have already been observed. If your website runs Drupal on PostgreSQL, here's what you need to know right now.

Cybersecurity

Microsoft Exchange Server Zero-Day CVE-2026-42897 Is Being Actively Exploited — Here's What Small Businesses Need to Do Right Now

Microsoft has confirmed active exploitation of a new Exchange Server zero-day (CVE-2026-42897) that lets attackers run malicious JavaScript just by getting a user to open a crafted email in Outlook Web Access. No permanent patch exists yet — but mitigations are available now. Here's a step-by-step guide for small businesses.

Page 1 of 4 Next →