Multiple Vulnerabilities in NetScaler ADC and NetScaler Gateway Could Allow for Remote Code Execution – PATCH: NOW
Multiple vulnerabilities have been discovered in NetScaler ADC and NetScaler Gateway, the most severe of which could allow for remote code execution. NetScaler ADC is a networking product that functions as an Application Delivery Controller (ADC), optimizing, securing, and ensuring reliable availability of applications for businesses. NetScaler Gateway is a secure remote access solution that …
Continue reading Multiple Vulnerabilities in NetScaler ADC and NetScaler Gateway Could Allow for Remote Code Execution – PATCH: NOWTue, 29 Sep 2026 22:59:41 +0000
A Vulnerability in Apple Products Could Allow for Arbitrary Code Execution – PATCH: NOW
A vulnerability has been discovered in Apple products that could allow for arbitrary code execution. Successful exploitation of the vulnerability could allow for arbitrary code execution. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose …
Continue reading A Vulnerability in Apple Products Could Allow for Arbitrary Code Execution – PATCH: NOWTue, 29 Sep 2026 22:59:03 +0000
NIST NEW BLOG | Stronger Cybersecurity Programs Start with People
Cybersecurity works best when it works with people, not against them — and that’s exactly what human-centered cybersecurity (HCC) is all about. The Human-Centered Technologies team at NIST is releasing a concept paper on HCC, and we want your input. Our goal is to build a shared understanding of what HCC really means, then chart a …
Continue reading NIST NEW BLOG | Stronger Cybersecurity Programs Start with PeopleTue, 29 Sep 2026 22:57:33 +0000
Workshop Report on Rolling Next-Generation Secure Hardware into Standards | NIST IR 8615 Available
NIST announces the publication of NIST Internal Report (IR) 8615, Workshop on Rolling Next-Generation Secure Hardware into Standards, which documents the outcomes from the Sustainable Hardware Security (SUSHI@NIST) Workshop held on January 26, 2026. The workshop brought together stakeholders from industry, academia, and government to identify priorities and actionable approaches to strengthen hardware security across …
Continue reading Workshop Report on Rolling Next-Generation Secure Hardware into Standards | NIST IR 8615 AvailableTue, 29 Sep 2026 22:56:00 +0000
Guide to Operational Technology (OT) Security: NIST Requests Comments on Draft SP 800-82r4
NIST has released the initial public draft of Special Publication (SP) 800-82r4 (Revision 4), Guide to Operational Technology (OT) Security, which provides guidelines for improving the security of OT systems while addressing their unique performance, reliability, and safety requirements. OT encompasses a broad range of programmable systems or devices that interact with the physical environment …
Continue reading Guide to Operational Technology (OT) Security: NIST Requests Comments on Draft SP 800-82r4Tue, 29 Sep 2026 22:55:15 +0000
MS-ISAC CYBERSECURITY ADVISORY – Multiple Vulnerabilities in Oracle Products Could Allow for Arbitrary Code Execution – PATCH NOW
Multiple vulnerabilities have been discovered in Oracle products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could result in an attacker gaining the same privileges as the logged-on user. Depending on the privileges associated with the user, an attacker could then install programs; …
Continue reading MS-ISAC CYBERSECURITY ADVISORY – Multiple Vulnerabilities in Oracle Products Could Allow for Arbitrary Code Execution – PATCH NOWSat, 19 Sep 2026 15:40:56 +0000
Using AI for CSF 2.0 Analysis and Reporting—New NIST CSF Quick-Start Guide
NIST announces the release of Special Publication (SP) 1353 ipd (Initial Public Draft), QuickStart Guide for Using Artificial Intelligence (AI) for Cybersecurity Framework (CSF) Analysis and Reporting. This new quick-start guide illustrates practical and actionable ways AI could be used for analyzing, planning, implementing, and monitoring an organization’s progress toward achieving CSF 2.0 outcomes. The document’s purpose is to: While the focus was not to write about …
Continue reading Using AI for CSF 2.0 Analysis and Reporting—New NIST CSF Quick-Start GuideSat, 19 Sep 2026 15:28:36 +0000
Multi-Cloud Architecture Challenges: Draft IR 8613 Available for Public Comment
NIST Internal Report (IR) 8613 ipd (initial public draft), Multi-Cloud Architecture Challenges, identifies, categorizes, and analyzes the security and compliance challenges that are unique to or significantly amplified by multi-cloud architectures. This analysis by the NIST Multi-Cloud Security Public Working Group (MCSPWG) addresses security and Authorization to Operate (ATO) challenges and highlights areas where additional community …
Continue reading Multi-Cloud Architecture Challenges: Draft IR 8613 Available for Public CommentSat, 19 Sep 2026 15:28:00 +0000
Comment Now: Initial Non-Access Stratum Message Security White Paper
The NIST National Cybersecurity Center of Excellence (NCCoE) released the initial public draft Cybersecurity White Paper (CSWP) 36F, Initial Non-Access Stratum (NAS) Message Security, which describes a 5G security feature that protects sensitive information in the Initial Non-Access Stratum (NAS) Message and explains how organizations can verify these protections in deployed 5G networks. You still …
Continue reading Comment Now: Initial Non-Access Stratum Message Security White PaperSat, 19 Sep 2026 15:27:00 +0000
Using Informative References for Cybersecurity Risk Management
The final version of NIST Special Publication (SP) 1347, Cybersecurity Framework (CSF) 2.0 Informative References Quick-Start Guide, has published. Thank you to all who provided comments during the public comment period. This publication explains what informative references are and how they support achieving the outcomes of the CSF 2.0. The guide introduces readers to NIST tools available for accessing, viewing, and using informative …
Continue reading Using Informative References for Cybersecurity Risk ManagementSat, 19 Sep 2026 15:23:50 +0000