Gate 15
banner
gate15.bsky.social
Gate 15
@gate15.bsky.social
Risk Management: Threat Intel & Analysis, Operations, Preparedness & Critical Infrastructure Security/Cybersecurity & Resilience
Today in the SUN we feature an article from Abstract on some critical Ivanti EPMM vulnerabilities: CVE-2026-1281 & CVE-2026-1340.

Read more below:
www.abstract.security/blog/critica...

#cybersecurity
@andyjabbour.bsky.social
Critical Ivanti EPMM Vulnerabilities: CVE-2026-1281 & CVE-2026-1340
CISA has added two critical Ivanti EPMM vulnerabilities to the KEV catalog. Learn how CVE-2026-1281 and CVE-2026-1340 are exploited, how to detect attacks via Apache logs, and what to do now.
www.abstract.security
January 30, 2026 at 5:49 PM
The FBI announced Operation Winter SHIELD, distilling the FBI’s 10 most impactful actions organizations can take to improve resilience against cyber intrusions.

Read more below:
www.fbi.gov/investigate/...

#cybersecurity
@andyjabbour.bsky.social
Operation Winter SHIELD | Federal Bureau of Investigation
Operation Winter SHIELD (Securing Homeland Infrastructure by Enhancing Layered Defense) distills the FBI’s 10 most impactful actions organizations can take to improve resilience against cyber intrusio...
www.fbi.gov
January 30, 2026 at 5:47 PM
The Canadian Centre for Cyber Security released their ransomware threat outlook 2025-2027, intended to provide an update on ransomware’s impact on Canada and Canadian organizations.

Read more below:
www.cyber.gc.ca/en/guidance/...

#cybersecurity
@andyjabbour.bsky.social
@campuscodi.risky.biz
Ransomware Threat Outlook 2025-2027 - Canadian Centre for Cyber Security
Ransomware Threat Outlook 2025-2027
www.cyber.gc.ca
January 29, 2026 at 5:20 PM
The Canadian Centre for Cyber Security released their Ransomware Playbook, introducing measures to prevent ransomware attacks and protect your organization.

Read more below:
www.cyber.gc.ca/en/guidance/...

#cybersecurity
@andyjabbour.bsky.social
@campuscodi.risky.biz
Ransomware playbook (ITSM.00.099) - Canadian Centre for Cyber Security
The information provided in this publication is intended to inform organizations and help them reduce the risks of ransomware attacks, lessen the impact of these attacks, and take preventative actions...
www.cyber.gc.ca
January 29, 2026 at 5:18 PM
The Canadian Centre for Cyber Security released new guidance, "Ransomware: How to prevent and recover," providing tips to help your organization prepare for and recover from ransomware.

Read more below:
www.cyber.gc.ca/en/guidance/...

#cybersecurity
@andyjabbour.bsky.social
@campuscodi.risky.biz
Ransomware: How to prevent and recover (ITSAP.00.099) - Canadian Centre for Cyber Security
This publication provides tips to help your organization prepare for and recover from ransomware attacks.
www.cyber.gc.ca
January 29, 2026 at 5:16 PM
The WaterISAC is excited to announce the release of a new product, “Keys & Locks: The Overlooked Security Risk – Fact Sheet.”

Read more below:
www.waterisac.org/tlpclear-wat...

#cybersecurity
@andyjabbour.bsky.social
January 29, 2026 at 5:14 PM
Today in the SUN we feature an article from Forescout Technologies Inc. on their 2025 threat report, highlighting the growth of exploitation across IT, IoT, and OT.

Read more below:
www.forescout.com/blog/2025-th...

#cybersecurity
@andyjabbour.bsky.social
2025 Threat Report: Exploitation Grows Across IT, IoT, and OT
Forescout Research – Vedere Labs analyzes cybersecurity threats from 2025 in this annual global roundup report of attacks and threat actors.
www.forescout.com
January 29, 2026 at 5:08 PM
Reposted by Gate 15
#TDR analysts deep dived into a widespread malicious JavaScript framework injected into 3,800+ WordPress sites to distribute #NetSupport RAT via the #ClickFix social engineering tactic.

blog.sekoia.io/meet-iclickf...
January 29, 2026 at 9:10 AM
Reposted by Gate 15
Ransomware crims forced to take off-RAMP as FBI seizes forum • The Register

Ransomware crims have just lost one of their best business platforms. US law enforcement has seized the notorious

Read more: https://www.theregister.com/2026/01/28/fbi_seizes_ramp_forum/
January 29, 2026 at 7:39 AM
The Tribal-ISAC announced the appointment of Toni Pepper as its first Executive Director, effective February 1, 2026.

Read more below:
tribalisac.org/wp-content/u...

#cybersecurity
@andyjabbour.bsky.social
tribalisac.org
January 28, 2026 at 5:24 PM
@1password.bsky.social released an article on MoltBot, the locally running, open-source AI agent that has rocked an AI community that, just weeks ago, was in love with its own hype.

Read more below:
1password.com/blog/its-mol...

#cybersecurity
@andyjabbour.bsky.social
It’s incredible. It’s terrifying. It’s MoltBot. | 1Password
MoltBot shows how powerful local AI agents can be. But if your agent stores in plain-text API keys, webhook tokens, transcripts, and long-term memory in known locations, an infostealer can grab the wh...
1password.com
January 28, 2026 at 5:20 PM
The @rhisac.org unveiled their 2025 Year in Review, highlighting record membership growth and the launch of vital fraud initiatives to help fortify cybersecurity.

Read more below:
rhisac.org/press-releas...

#cybersecurity
@andyjabbour.bsky.social
@campuscodi.risky.biz
RH-ISAC Unveils 2025 Year in Review - RH-ISAC
VIENNA, VA (27 January 2026) —The Retail & Hospitality Information Sharing and Analysis Center (RH-ISAC) today announced the release of its 2025 Year in
rhisac.org
January 28, 2026 at 5:15 PM
Today in the SUN we feature an article from Risky Business Media on a cyberattack crippling cars across Russia.

Read more below:
news.risky.biz/risky-bullet...

#cybersecurity
@andyjabbour.bsky.social
Risky Bulletin: Cyberattack cripples cars across Russia
In other news: Microsoft patches an Office zero-day; WhatsApp rolls out account lockdown feature; Chrome extensions steal ChatGPT auth tokens.
news.risky.biz
January 28, 2026 at 4:41 PM
Reposted by Gate 15
Broken decryptor leaves Sicarii ransomware victims adrift | Computer Weekly

A coding error, possibly introduced thanks to over-reliance on artificial intelligence (AI)

Read more: https://www.computerweekly.com/news/366637711/Broken-decryptor-leaves-Sicarii-ransomware-victims-adrift
January 28, 2026 at 11:00 AM
Reposted by Gate 15
"The Cybersecurity Risks of Agentic #AI: What Security Teams Need to Know" by Apurva Davé from Aembit. go.aembit.io/s/the-cybers...
The Cybersecurity Risks of Agentic AI: What Security Teams Need to Know Agentic AI Cybersecurity Risks: Guide for Security Teams
Autonomous AI agents create unique cybersecurity risks beyond traditional LLMs. Learn about identity blind spots, tool chain vulnerabilities, cascading compromises, and how to secure agent deployments....
go.aembit.io
January 28, 2026 at 4:55 AM
Reposted by Gate 15
New from the UK's NCSC: How to prepare for and plan your organisation's response to severe cyber threat: a guide for CNI www.ncsc.gov.uk/collection/h... cc @gate15.bsky.social @campuscodi.risky.biz #cybersecurity #resilience
How to prepare for and plan your organisation's response to severe cyber threat: a guide for CNI
Act now to be ready to withstand and recover from severe cyber attacks.
www.ncsc.gov.uk
January 28, 2026 at 12:42 PM
Today in the SUN we feature an article from Radio Free Europe/Radio Liberty on the United States' military buildup in the Middle East.

Read more below:
www.rferl.org/a/iran-us-mi...

#cybersecurity
@andyjabbour.bsky.social
Likelihood Of US Strikes On Iran 'Very High' Amid Military Buildup, Drills
US military deployments across the Middle East are fueling speculation that drills could mask preparations for a strike on Iran. While Washington insists no decision has been made, analysts point to a...
www.rferl.org
January 27, 2026 at 5:06 PM
Reposted by Gate 15
Real talk. Did you know a passkey can help protect you from identity theft?

Passkey logins use a fingerprint, Face ID, or saved PIN to help make your personal info harder for someone to steal. This Identity Theft Awareness Week, set up a passkey to keep your info secure!
January 26, 2026 at 3:58 PM
Reposted by Gate 15
Shadowserver tracks nearly 800,000 IP addresses with Telnet fingerprints amid ongoing attacks exploiting a critical authentication bypass vulnerability in the GNU InetUtils telnetd server.
Nearly 800,000 Telnet servers exposed to remote attacks
Shadowserver tracks nearly 800,000 IP addresses with Telnet fingerprints amid ongoing attacks exploiting a critical authentication bypass vulnerability in the GNU InetUtils telnetd server.
www.bleepingcomputer.com
January 26, 2026 at 3:19 PM
Reposted by Gate 15
My latest for the @cloudflare.social blog, looking at Q4 2025 Internet outages and disruptions as seen through @radar.cloudflare.com data and graphs.
January 26, 2026 at 2:22 PM
A new episode of Nerd Out is out now! In this episode, Dave and Alec discuss terrorism trends and hacktivism in the current geopolitical environment, plus Nerd Movie review! Our podcast is available right now, go check it out!

#cybersecurity
@andyjabbour.bsky.social
gate15.global/nerd-out-66-...
Nerd Out EP 66. Terrorism trends and hacktivism in the current geopolitical environment, plus Nerd Movie review | Gate 15
gate15.global
January 26, 2026 at 4:44 PM
Today in the SUN we feature an article from Straight Arrow News on the massive winter storm that has killed at least 11 people and knocked out power to more than 800,000 customers across the U.S.

Read more below:
san.com/cc/winter-st...

#resilience
@andyjabbour.bsky.social
Winter storm kills 11, leaves 800,000+ without power as cold tightens grip
A massive and already deadly winter storm is slowly making its way across the U.S. as hundreds of thousands remain without power.
san.com
January 26, 2026 at 4:33 PM
The Australian Signals Directorate recently released guidance that provides recommendations on hardening workstations using Enterprise and Education editions of Microsoft Windows 11.

Check it out here:
www.cyber.gov.au/business-gov...

#cybersecurity
@andyjabbour.bsky.social
@campuscodi.risky.biz
www.cyber.gov.au
January 23, 2026 at 5:28 PM
The Canadian Centre for Cyber Security released guidance on what to do when your organization has been compromised by a cyber attack.

Check it out below:
www.cyber.gc.ca/en/guidance/...

#cybersecurity
@andyjabbour.bsky.social
@campuscodi.risky.biz
What to do when your organization has been compromised by a cyber attack (ITSAP.00.009) - Canadian Centre for Cyber Security
This publication provides guidance on the actions you should take in the critical moments after a compromise is detected to lessen the impact on your organization.
www.cyber.gc.ca
January 23, 2026 at 5:26 PM
Today in the SUN we feature an article from @wired.com on AI-powered disinformation swarms coming for democracy.

Read more below:
www.wired.com/story/ai-pow...

#cybersecurity
@andyjabbour.bsky.social
AI-Powered Disinformation Swarms Are Coming for Democracy
Advances in artificial intelligence are creating a perfect storm for those seeking to spread disinformation at unprecedented speed and scale. And it’s virtually impossible to detect.
www.wired.com
January 23, 2026 at 5:23 PM