BLOG

Multiple Vulnerabilities in NetScaler ADC and NetScaler Gateway Could Allow for Remote Code Execution – PATCH: NOW

Multiple vulnerabilities have been discovered in NetScaler ADC and NetScaler Gateway, the most severe of which could allow for remote code execution. NetScaler ADC is a networking product that functions as an Application Delivery Controller (ADC), optimizing, securing, and ensuring reliable availability of applications for businesses. NetScaler Gateway is a secure remote access solution that … Continue reading Multiple Vulnerabilities in NetScaler ADC and NetScaler Gateway Could Allow for Remote Code Execution – PATCH: NOW
Tue, 29 Sep 2026 22:59:41 +0000

A Vulnerability in Apple Products Could Allow for Arbitrary Code Execution – PATCH: NOW

A vulnerability has been discovered in Apple products that could allow for arbitrary code execution. Successful exploitation of the vulnerability could allow for arbitrary code execution. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose … Continue reading A Vulnerability in Apple Products Could Allow for Arbitrary Code Execution – PATCH: NOW
Tue, 29 Sep 2026 22:59:03 +0000

NIST NEW BLOG | Stronger Cybersecurity Programs Start with People

Cybersecurity works best when it works with people, not against them — and that’s exactly what human-centered cybersecurity (HCC) is all about. The Human-Centered Technologies team at NIST is releasing a concept paper on HCC, and we want your input. Our goal is to build a shared understanding of what HCC really means, then chart a … Continue reading NIST NEW BLOG | Stronger Cybersecurity Programs Start with People
Tue, 29 Sep 2026 22:57:33 +0000

Workshop Report on Rolling Next-Generation Secure Hardware into Standards | NIST IR 8615 Available

NIST announces the publication of NIST Internal Report (IR) 8615, Workshop on Rolling Next-Generation Secure Hardware into Standards, which documents the outcomes from the Sustainable Hardware Security (SUSHI@NIST) Workshop held on January 26, 2026. The workshop brought together stakeholders from industry, academia, and government to identify priorities and actionable approaches to strengthen hardware security across … Continue reading Workshop Report on Rolling Next-Generation Secure Hardware into Standards | NIST IR 8615 Available
Tue, 29 Sep 2026 22:56:00 +0000

Guide to Operational Technology (OT) Security: NIST Requests Comments on Draft SP 800-82r4

NIST has released the initial public draft of Special Publication (SP) 800-82r4 (Revision 4), Guide to Operational Technology (OT) Security, which provides guidelines for improving the security of OT systems while addressing their unique performance, reliability, and safety requirements. OT encompasses a broad range of programmable systems or devices that interact with the physical environment … Continue reading Guide to Operational Technology (OT) Security: NIST Requests Comments on Draft SP 800-82r4
Tue, 29 Sep 2026 22:55:15 +0000

MS-ISAC CYBERSECURITY ADVISORY – Multiple Vulnerabilities in Oracle Products Could Allow for Arbitrary Code Execution – PATCH NOW

Multiple vulnerabilities have been discovered in Oracle products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could result in an attacker gaining the same privileges as the logged-on user. Depending on the privileges associated with the user, an attacker could then install programs; … Continue reading MS-ISAC CYBERSECURITY ADVISORY – Multiple Vulnerabilities in Oracle Products Could Allow for Arbitrary Code Execution – PATCH NOW
Sat, 19 Sep 2026 15:40:56 +0000

Using AI for CSF 2.0 Analysis and Reporting—New NIST CSF Quick-Start Guide

NIST announces the release of Special Publication (SP) 1353 ipd (Initial Public Draft), QuickStart Guide for Using Artificial Intelligence (AI) for Cybersecurity Framework (CSF) Analysis and Reporting. This new quick-start guide illustrates practical and actionable ways AI could be used for analyzing, planning, implementing, and monitoring an organization’s progress toward achieving CSF 2.0 outcomes.   The document’s purpose is to:  While the focus was not to write about … Continue reading Using AI for CSF 2.0 Analysis and Reporting—New NIST CSF Quick-Start Guide
Sat, 19 Sep 2026 15:28:36 +0000

Multi-Cloud Architecture Challenges: Draft IR 8613 Available for Public Comment

NIST Internal Report (IR) 8613 ipd (initial public draft), Multi-Cloud Architecture Challenges, identifies, categorizes, and analyzes the security and compliance challenges that are unique to or significantly amplified by multi-cloud architectures. This analysis by the NIST Multi-Cloud Security Public Working Group (MCSPWG) addresses security and Authorization to Operate (ATO) challenges and highlights areas where additional community … Continue reading Multi-Cloud Architecture Challenges: Draft IR 8613 Available for Public Comment
Sat, 19 Sep 2026 15:28:00 +0000

Comment Now: Initial Non-Access Stratum Message Security White Paper

The NIST National Cybersecurity Center of Excellence (NCCoE) released the initial public draft Cybersecurity White Paper (CSWP) 36F, Initial Non-Access Stratum (NAS) Message Security, which describes a 5G security feature that protects sensitive information in the Initial Non-Access Stratum (NAS) Message and explains how organizations can verify these protections in deployed 5G networks. You still … Continue reading Comment Now: Initial Non-Access Stratum Message Security White Paper
Sat, 19 Sep 2026 15:27:00 +0000

Using Informative References for Cybersecurity Risk Management

The final version of NIST Special Publication (SP) 1347, Cybersecurity Framework (CSF) 2.0 Informative References Quick-Start Guide, has published. Thank you to all who provided comments during the public comment period.   This publication explains what informative references are and how they support achieving the outcomes of the CSF 2.0. The guide introduces readers to NIST tools available for accessing, viewing, and using informative … Continue reading Using Informative References for Cybersecurity Risk Management
Sat, 19 Sep 2026 15:23:50 +0000