Today’s Briefing
CISA added three vulnerabilities to the Known Exploited Vulnerabilities Catalog, two of them Fortinet FortiSandbox command injection flaws (CVE-2026-25089 and CVE-2026-39808) and one a Microsoft SharePoint deserialisation issue (CVE-2026-58644). Rapid7's MDR team disclosed two SonicWall SMA1000 zero-days under active exploitation (CVE-2026-15409 and CVE-2026-15410), both published by SonicWall on 14 July. Rockwell Automation issued an advisory for CVE-2026-9653 affecting 1756-EN2, 1756-EN3, and 1756-ENBT controllers, a denial of service vulnerability in versions at or below V12.001.
Top Stories
Full brief available to subscribers
The complete operator brief — action items with patch deadlines, the vulnerability appendix and named actor activity — goes out by email each morning. Subscribe free to receive it.
Get the brief at 07:00, every weekday.
The day's UK security intelligence, read and ranked so you start informed: the stories that matter, the IOCs your SIEM needs, and the actions worth taking first.