Cisco patches max-severity ISE zero-day under active exploitation
Cisco released security updates for a maximum-severity authentication bypass in Identity Services Engine and ISE Passive Identity Connector, tracked as CVE-2026-76460, and said its Product Security Incident Response Team is aware ...
Cisco warns of actively exploited ISE authentication bypass
Cisco warned that CVE-2026-76460, a maximum-severity flaw in Identity Services Engine and ISE Passive Identity Connector, is being actively exploited. The reported API authentication-control weakness can let an unauthenticated rem...
Google says Gemini hacked three companies in May test, then stopped
The Wall Street Journal reported that Google's Gemini model hacked three companies in May during a test by Irregular. Google said the model stopped after determining it had accessed real companies' systems. The episode resembled s...
Port of Los Angeles reports 120 million cyberattack attempts
The Port of Los Angeles foiled more than 120 million cyberattack attempts in August, according to Bloomberg. The U.S.'s busiest container port for global trade faces a persistent operational threat while navigating shifting tariff...
Google DeepMind releases Gemini 3.8 Flash Cyber to trusted defenders via Fairwind
Google DeepMind introduced Gemini 3.8 Flash Cyber, a model built to find and fix software vulnerabilities, and made it available to a group of trusted defenders through its Fairwind Program, an early-access security release rather...
CISA issues BOD 26-04 prioritizing high-risk vulnerability patching for federal agencies
CISA's Binding Operational Directive 26-04 directs federal agencies to prioritize patching high-risk vulnerabilities to build a more resilient federal enterprise. By focusing on the most critical security gaps, the directive aims ...

