H-ISAC: White Reports
A security flaw in Cisco Nexus 9000 Series Switches that use Silicon One ASICs allows unauthenticated, remote attackers to run code with root privileges or trigger device reloads.
PaperCut Software has issued an urgent security advisory confirming that its security response teams are actively investigating in-the-wild exploitation of a vulnerability affecting PaperCut NG and PaperCut MF Application Servers.
On August 22, 2026, threat actors linked to the extortion group ShinyHunters executed a targeted social engineering campaign against ReliaQuest using voice phishing and lookalike single sign-on (SSO) infrastructure.
On August 22, 2026, threat actors linked to the extortion group ShinyHunters executed a targeted social engineering campaign against ReliaQuest using voice phishing and lookalike single sign-on (SSO) infrastructure.
Cisco has released security updates addressing several high-severity vulnerabilities discovered during internal testing across its Crosswork and Secure Workload platforms.
On August 14, 2026, researchers at watchTowr published a technical write-up and working proof-of-concept exploit for CVE-2026-8452 (CVSS 8.8), a pre-authentication vulnerability in Citrix NetScaler ADC and Gateway.
Fortinet has released security advisories patching multiple vulnerabilities across its product suite, including high-severity authentication flaws in FortiWeb, FortiManager, and FortiClient for Windows.
This report, published once a month, is an in-depth analysis of a geopolitical trend whose cascading consequences adversely impact the healthcare sector.
On June 29, 2026, eSentire’s Threat Response Unit (TRU) identified active, in-the-wild exploitation attempts targeting a critical flaw in Progress Kemp LoadMaster appliances, tracked as CVE-2026-8037.
On May 12, 2026, Ivanti disclosed a critical vulnerability, tracked as CVE-2026-8043, in its Xtraction platform, carrying a near-maximum CVSS score of 9.6.