Information and Guidance
- Joint guidance on best practices for service providers when communicating under pressure
- Joint guidance on opportunities for artificial intelligence in cyber defence
- Security considerations for electronic vote tabulators - ITSM.10.102
- How the Canadian Centre for Cyber Security used frontier AI to accelerate detection engineering
- Protect your organization from malware - ITSAP.00.057
- Cyber threat bulletin: Non-state activity targeting Canadian operational technology
- Joint guidance on minimum elements for a software bill of materials
- Joint guidance on isolating vital systems
- Protect your devices from SMS blasters (ITSAP.00.104)
- Joint cyber security advisory on Russian state-sponsored phishing campaign targeting Zimbra webmail
The Hacker News RSS Feed
- Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks
- Shai-Hulud's Reach Just Grew to 469 Credential Locations. Here's What That Means
- Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member's iPhone
- Researcher Releases FalconFlank PoC Showing Privilege Escalation in CrowdStrike Falcon
- CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
- Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
- Fake Software Installers Disable Windows Update and Weaken Microsoft Defender
- Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code
- Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages
- BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access
News
- JFrog security advisory (AV26-867) – Update 1
- SonicWall security advisory (AV26-872) – Update 1
- Progress Software security advisory (AV26-875)
- Google security advisory (AV26-874)
- HPE security advisory (AV26-873)
- [Control systems] Schneider Electric security advisory (AV26-871)
- Erlang security advisory (AV26-870)
- Rockwell Automation security advisory (AV26-869)
- Mozilla security advisory (AV26-868)
- WebPros security advisory (AV26-866)
