#vulnerability
-
CVSS 10.0 SD-WAN Bypass: What Emergency Directive 26-03 Signals
CVE-2026-20182 is a maximum-severity authentication bypass in Cisco Catalyst SD-WAN, added to CISA's KEV catalog on May 14 amid active exploitation.
-
This Month in Security: May 2026's Edge-Device Reckoning
May 2026 in review: a CVSS 10.0 Cisco SD-WAN bypass under active exploitation, an exploited Exchange XSS flaw, a critical Exim bug, and a quiet Patch Tuesday.
-
LLM Security Risks: The OWASP Top 10 and How to Defend
A practitioner breakdown of the OWASP Top 10 for LLM applications, from prompt injection to excessive agency, and the controls that reduce real exposure.
-
ChatGPT Security: Key Risks, Vulnerabilities, Enterprise Controls
DNS-based exfiltration, Codex command injection, credential theft, and prompt injection: the ChatGPT risks and the enterprise controls that reduce them.