<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CyberNest Secure — Security Bulletins</title>
  <link>https://www.cybernestsec.com/bulletins</link>
  <atom:link href="https://www.cybernestsec.com/bulletins/feed.xml" rel="self" type="application/rss+xml"/>
  <description>Plain-language alerts on major incidents and actively exploited vulnerabilities for Puerto Rico organizations.</description>
  <language>en-US</language>
  <item>
    <title>Attackers Are Logging In as Admin on Cisco SD-WAN Manager Without a Password</title>
    <link>https://www.cybernestsec.com/bulletins/2026-10-03-cisco-sdwan-manager-cve-2026-76504</link>
    <guid isPermaLink="true">https://www.cybernestsec.com/bulletins/2026-10-03-cisco-sdwan-manager-cve-2026-76504</guid>
    <pubDate>Sat, 03 Oct 2026 12:00:00 GMT</pubDate>
    <description>A crafted request bypasses login on Cisco Catalyst SD-WAN Manager and grants admin API access. Cisco confirms exploitation; fixed releases are out.</description>
  </item>
  <item>
    <title>FortiMail Email Gateways Are Being Attacked Through a Flaw With No Patch Yet — Use the Workaround Now</title>
    <link>https://www.cybernestsec.com/bulletins/2026-10-03-fortimail-cve-2026-104286</link>
    <guid isPermaLink="true">https://www.cybernestsec.com/bulletins/2026-10-03-fortimail-cve-2026-104286</guid>
    <pubDate>Sat, 03 Oct 2026 12:00:00 GMT</pubDate>
    <description>An unauthenticated attacker can write files on FortiMail. Fortinet confirms exploitation, fixed releases are still upcoming, and CISA added it to KEV.</description>
  </item>
  <item>
    <title>A Vendor You May Never Have Heard Of Just Reported 9.5 Million Patients Breached</title>
    <link>https://www.cybernestsec.com/bulletins/2026-09-01-aesto-health-breach</link>
    <guid isPermaLink="true">https://www.cybernestsec.com/bulletins/2026-09-01-aesto-health-breach</guid>
    <pubDate>Tue, 01 Sep 2026 12:00:00 GMT</pubDate>
    <description>Aesto Health reported a breach affecting 9.5 million patients to HHS — check whether your organization uses it.</description>
  </item>
  <item>
    <title>Nearly 22,000 Exchange Servers Are Still Open to a Flaw That Hands Over Every Mailbox</title>
    <link>https://www.cybernestsec.com/bulletins/2026-09-01-exchange-cve-2026-62911</link>
    <guid isPermaLink="true">https://www.cybernestsec.com/bulletins/2026-09-01-exchange-cve-2026-62911</guid>
    <pubDate>Tue, 01 Sep 2026 12:00:00 GMT</pubDate>
    <description>CVE-2026-62911 lets an attacker take over Exchange mailboxes. Microsoft has patched it, but about 22,000 servers remain exposed.</description>
  </item>
  <item>
    <title>A 9.8 in JFrog Artifactory Went From Patch to Real Attacks in Four Days</title>
    <link>https://www.cybernestsec.com/bulletins/2026-09-01-jfrog-artifactory-cve-2026-82329</link>
    <guid isPermaLink="true">https://www.cybernestsec.com/bulletins/2026-09-01-jfrog-artifactory-cve-2026-82329</guid>
    <pubDate>Tue, 01 Sep 2026 12:00:00 GMT</pubDate>
    <description>CVE-2026-82329 (CVSS 9.8) gives an unauthenticated attacker admin access to JFrog Artifactory. Exploited four days after the patch.</description>
  </item>
  <item>
    <title>The AI Tool Someone Installed Is Holding Your Cloud Keys — and It Is Under Attack</title>
    <link>https://www.cybernestsec.com/bulletins/2026-09-01-langflow-cve-2026-0768</link>
    <guid isPermaLink="true">https://www.cybernestsec.com/bulletins/2026-09-01-langflow-cve-2026-0768</guid>
    <pubDate>Tue, 01 Sep 2026 12:00:00 GMT</pubDate>
    <description>CVE-2026-0768 (CVSS 9.8) allows remote code execution in Langflow, an AI app builder, and is being used to steal cloud and API keys.</description>
  </item>
  <item>
    <title>PaperCut Is Now on CISA's Known Exploited List — the Federal Deadline Is September 14</title>
    <link>https://www.cybernestsec.com/bulletins/2026-08-31-papercut-cisa-kev</link>
    <guid isPermaLink="true">https://www.cybernestsec.com/bulletins/2026-08-31-papercut-cisa-kev</guid>
    <pubDate>Mon, 31 Aug 2026 12:00:00 GMT</pubDate>
    <description>CISA added two PaperCut print-management flaws to its Known Exploited Vulnerabilities catalog on August 31, 2026.</description>
  </item>
</channel>
</rss>
