News archive — Page 8
Source-backed reporting on VPNs, privacy, scams, data breaches and online security—plus the practical steps worth taking next.
News archive
Reports 71–80
Clear summaries, visible dates and direct source links—without turning every security story into a VPN sales pitch.

CISA Open-Source Security Guidance: What It Means Before You Trust a VPN App
CISA's new open-source software guidance is aimed at agencies and organisations, but its checklist mindset is useful for ordinary VPN buyers too: do not treat source-code availability as proof of safety.
Read analysis
CISA's 2026 SBOM Update: Why VPN Apps Need an Ingredients List Too
CISA, NSA, FBI and international partners updated SBOM minimum elements, a software-transparency baseline that matters whenever privacy tools depend on third-party code and cloud services.
Read analysis
CISA Water-Utility Warning: Why Exposed PLCs Should Not Sit on the Internet
CISA says attackers are increasingly targeting water and wastewater PLCs, changing passwords, disconnecting devices and forcing some operators into boil-water notices or manual operations.
Read analysis
Amgen Cloud Breach: Patient Health Data Was Stolen, the Company Says
Amgen disclosed a material cybersecurity incident involving third-party cloud environments, saying proprietary data, patient protected health information and other information were exfiltrated.
Read analysis
Brinks Home Breach Warning: Watch for Phishing Before Data Is Confirmed
Brinks Home says an attacker accessed company systems and threatened to release claimed data, while customers are being warned about unsolicited emails, texts and calls.
Read analysis
GlobalProtect VPN Flaw Linked to Qilin Ransomware: Patch, Then Check Sessions
Arctic Wolf says attackers exploited Palo Alto Networks GlobalProtect CVE-2026-0257 as an initial access route in multiple Qilin ransomware intrusions.
Read analysis
Cisco Firewall Management Flaw Added to CISA KEV: What Admins Should Do Now
CISA says Cisco Secure Firewall Management Center CVE-2026-20316 is being exploited, and Cisco says there is no workaround beyond fixed software and hot fixes.
Read analysis
Medtronic Breach Notices: What Medical-Device Patients Should Check
The Record reports that nearly 4 million people are being notified after data tied to medical-device patients may have been exposed.
Read analysis
Outlook Webmail Half-Click Attacks: Why Opening an Email Can Be Enough
Proofpoint says Laundry Bear used an Outlook Web Access bug to deploy OWAReaper, a browser-based implant designed to steal credentials and keep access inside webmail.
Read analysis
MCBS Healthcare Billing Breach Hits 1.26M People: What Patients Should Check
A medical billing business associate says a 2025 network breach may have exposed personal and health information, with HHS listing more than 1.26 million affected people.
Read analysis