Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

How Cloudflare addressed a cross-tenant data exposure vulnerability in Containers

On September 4, 2026, Oren Yomtov, a security researcher from Accomplish, responsibly reported a vulnerability affecting Cloudflare Containers and Cloudflare Sandboxes (which is built on Containers), through Cloudflare’s bug bounty program. Cloudflare has fully remediated the vulnerability, and we have no evidence that customer data has been compromised.

LevelBlue Australian SOC Launch: A Commitment to Regional Resilience

Australia is my home now. Safeguarding it is no longer a job. It is a mission. I am on a flight heading north from Melbourne to Sydney as I write this. The significance of that journey is not lost on me. In a few hours, I will stand in front of the Security Operations Centre that our team has built. It represents something far larger than infrastructure or technology. It represents a choice. LevelBlue's choice. Our choice. Australia's choice. For years, Australian organizations faced a narrow choice.

How to Make a New Email Address for Secure, Encrypted Messages

Making a new email address only takes a few minutes. But when creating a new email account, it's worth considering more than just how easy it is to sign up. Your email provider can determine how your messages, attachments, and personal information are protected. This is why Internxt has added Internxt Mail to join its private cloud storage solution, VPN, and other products to guarantee your privacy online with end-to-end encryption.

Automate Vulnerability Reporting for Auditors Without Creating More Work

Anyone who has participated in a cybersecurity audit knows the drill and has likely asked the same question. “Is there a way to automate any of this?” When an auditor requests evidence that vulnerabilities are being identified, prioritized, remediated, and tracked according to policy, the automation question is a fair one.

Agentic AI-Assisted Penetration Testing: AI Scale. Human Precision

When Mythos launched, headlines warning of its potential dangers were prolific. For security risk leaders, it felt like a watershed moment, one that signaled that AI had arrived, but simultaneously raised widespread concern about risk. Many wanted to understand how real the risk was for their organization and what should be done about it.

What CVE-2026-20079 Means for Every Network Team

On September 9, Cisco confirmed what earlier warning signs had already hinted at: a security flaw in its Secure Firewall Management Center (Secure FMC) software, the tool that configures and controls Cisco firewalls across a network, is being actively exploited. The flaw, tracked as CVE-2026-20079, received a maximum severity score of 10.0 on the CVSS scale, the industry-standard scale used to rate how serious a vulnerability is.

Your Vulnerability Backlog Is No Longer Technical Debt, It's an Attack Surface

Every security program has one: a queue of a few thousand findings, or a few hundred thousand, that nobody has worked through and nobody expects to. Most teams file it under technical debt, a cost carried on purpose, paid down when there is room, and tolerable because the interest rate stays low. That accounting held for a long time, because it rested on a single assumption: almost nothing in the queue would ever be reached, or exploited, by anyone.

Why Carbon Data Needs the Same Controls as Financial Records

Most security teams know exactly where their financial records live, who can edit them and how every change gets logged. Ask the same questions about the company's emissions data and the answers often get vague. That gap matters more each year. Greenhouse gas figures now end up in regulatory filings, investor reports and assurance reviews, which means they carry the same risks as any other disclosed number.