Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA

Critical Infrastructure Under Siege as Gunra Ransomware Gang Exploits Fortinet Flaws A sophisticated ransomware-as-a-service (RaaS) operation is wreaking havoc on critical infrastructure targets worldwide, exploiting known vulnerabilities in firewalls and VPN appliances to bypass even the most robust defenses. The Gunra gang, which emerged in spring 2025, has been using leaked Conti code and outdated … Read more

Microsoft’s Patch Tuesday Deluge Continues With August Updates

Microsoft’s August Patch Tuesday Release Brings 421 Critical Vulnerabilities, but Prioritization is Key Microsoft has released its latest batch of security updates, addressing a staggering 421 unique Common Vulnerability and Exposure (CVE) issues. This massive patch release marks the second consecutive month where Microsoft’s fixes have far exceeded the typical volume of security updates. Of … Read more

Walmart Leaders Transform Security Operations Without Going Bananas

Walmart Transforms Security Operations with Trust, Innovation, and a Dash of Humor In a major shift in approach, Walmart has successfully scaled up its cybersecurity defenses without stifling innovation or slowing down business operations. The retail giant’s leadership team has adopted an innovative strategy that balances security value with operational efficiency, fostering trust and collaboration … Read more

Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition

A devastating ransomware attack has hit Colombia’s Ministry of Justice just five days before the country’s presidential transition. The assault, which compromised part of its technology infrastructure, disrupted several public-facing services and raised concerns about the safety of sensitive information. The attack occurred on August 2, with hackers encrypting some files and rendering them inaccessible … Read more

SharePoint Vulnerability Exploited Shortly After PoC Release

A recently patched SharePoint vulnerability is being actively exploited by attackers, just weeks after a proof-of-concept (PoC) exploit was released. The weakness, tracked as CVE-2026-55040, allows an unauthenticated attacker to bypass security features and gain access to sensitive data on vulnerable servers. Microsoft had already addressed the issue with its July Patch Tuesday updates, describing … Read more

Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA

Critical Infrastructure Under Siege: Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA A sophisticated ransomware-as-a-service (RaaS) operation is wreaking havoc on critical infrastructure and government organizations worldwide. The Gunra gang, which emerged in 2025, has been exploiting known vulnerabilities in firewall and VPN appliances to gain initial access and evade multifactor authentication (MFA). This brazen … Read more

Microsoft’s Patch Tuesday Deluge Continues With August Updates

A massive wave of security updates from Microsoft is crashing onto the shores of IT departments worldwide, with this week’s Patch Tuesday releasing fixes for 421 unique Common Vulnerabilities and Exposures (CVEs). Among these, two zero-day vulnerabilities have been identified as particularly concerning, and experts warn that prioritization should be the top focus for organizations … Read more

Walmart Leaders Transform Security Operations Without Going Bananas

Walmart’s bold approach to cybersecurity has yielded impressive results, demonstrating that trust, innovation, and effective communication can be potent allies in the fight against cyber threats. As one of the world’s largest retailers, Walmart is no stranger to high-stakes security operations. With a massive network of employees, customers, and supply chains spread across 19 countries, … Read more

Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition

Colombian Justice Ministry Hit by Ransomware Attack Just Days Before Presidential Transition A devastating ransomware attack struck Colombia’s Ministry of Justice on August 2, crippling several public-facing services and raising concerns about the country’s ability to protect its critical infrastructure. The attack, which occurred just five days before the presidential handover, is the latest in … Read more

Walmart’s "Trusted Agent" Approach to Purple Teaming

Walmart Revolutionizes Purple Teaming with “Trusted Agent” Approach In a bold move to shake up traditional cybersecurity practices, Walmart has abandoned the siloed approach of separate red and blue teams, instead embracing a collaborative culture that fosters trust, learning, and mutual growth. By co-locating teams, adopting a “trusted agent” observation model, and prioritizing organizational improvement … Read more