CISA Flags Actively Exploited N-able N-central Flaw: What MSPs and RMM Users Need to Know

CISA has added CVE-2026-18577, an actively exploited auth bypass in N-able N-central, to its Known Exploited Vulnerabilities catalog. Here's what happened and why it matters even if you don't use N-central.

August 6, 2026

Blog
CISA Flags Actively Exploited N-able N-central Flaw: What MSPs and RMM Users Need to Know
Beacon CRM Breach: What UK Charities (and Any Organisation Using a Third-Party CRM) Need to Do Now

Beacon CRM, used by over 1,500 UK charities, has confirmed a breach where database backups were likely downloaded by an unauthorised third party. Here's what happened and how to defend against this kind of supply-chain attack.

August 5, 2026

Blog
Beacon CRM Breach: What UK Charities (and Any Organisation Using a Third-Party CRM) Need to Do Now
AI Scams: Deepfakes, Voice Clones and Smarter Phishing

For years, the standard advice for spotting a scam was to look for the tell-tale signs: clumsy grammar, an odd email address,...

August 4, 2026

Security Updates & Threats
AI Scams: Deepfakes, Voice Clones and Smarter Phishing
NCSC Alert: State Hackers Stealing Email Without Any Clicks

The NCSC has joined agencies from 14 partner nations to warn of a Russian state-backed group called LAUNDRY BEAR, which steals business emails using a zero-click attack in Zimbra webmail. Here is what UK businesses need to know and do.

August 2, 2026

Security Updates & Threats
NCSC Alert: State Hackers Stealing Email Without Any Clicks
July Patch Tuesday: 570 Fixes and Two Zero-Days

Microsoft's July 2026 Patch Tuesday is the largest security update in the company's history, fixing more than 570 vulnerabilities including two actively exploited zero-days affecting Windows systems used across the UK.

August 1, 2026

Security Updates & Threats
July Patch Tuesday: 570 Fixes and Two Zero-Days
Shadow AI: The Hidden Data Risk in Your Business

There is a good chance your staff are already using artificial intelligence at work. Not the tools you chose and rolled out,...

July 30, 2026

Security Updates & Threats
Shadow AI: The Hidden Data Risk in Your Business
The M&S Cyber Attack Started With a Phone Call

The cyber attack on M&S cost over £100 million and started with a phone call, not a technical exploit. Here is what UK small businesses need to know about social engineering attacks, and what to do to protect yours.

July 29, 2026

Security Updates & Threats
The M&S Cyber Attack Started With a Phone Call
AI-Powered Cyber Attacks: The Dark Side of AI

Every so often a technology story sounds like science fiction. This week’s is a good example: one of the world’s biggest AI...

July 28, 2026

Security Updates & Threats
AI-Powered Cyber Attacks: The Dark Side of AI