
Sypha Security Threat Feed 
[boldgrid_component type=”wp_rss” opts=”%7B%22widget-rss%5B%5D%5Burl%5D%22%3A%22https%3A%2F%2Fwww.cisecurity.org%2Ffeed%2Falert%22%2C%22widget-rss%5B%5D%5Btitle%5D%22%3A%22CIS%20Cyber%20Threat%20Level%3A%22%2C%22widget-rss%5B%5D%5Bitems%5D%22%3A%2210%22%2C%22widget-rss%5B%5D%5Bshow_date%5D%22%3A1%2C%22widget-rss%5B%5D%5Bshow_summary%5D%22%3A0%2C%22widget-rss%5B%5D%5Bshow_author%5D%22%3A0%7D”]
- Your Period Tracker Is (Probably) Spying on You
- Prompt Injection Attacks Are Thwarting AI Hacking Agents
- Google’s Gemini lets strangers send messages from your locked Android phone
- New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code
- Friday Squid Blogging: Squid Washing Up on Cape Cod Beach
- OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests
- Inc Ransomware Exploits SonicWall SMA Zero-Days
- Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT
- Microsoft Edge security advisory (AV26-714)
- New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens
- The Real AI Threat Is Blind Trust
- GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft
- Google Chrome security advisory (AV26-713)
- Broadcom VMware security advisory (AV26-712)
- Government Agencies Falling Victim to Ransomware Daily, Warns Study
- 23andMe Faces New Security Mandates in $18m Data Breach Settlement
- FreePBX security advisory (AV26–711)
- Gold Eagle Clearinghouse Targets Security Gap, But How Is Unclear
- Google Bets 'Agentic Defense' Strategy Can Outpace Attackers
- Details of Alan Turing’s Voice Encryption System
- Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy
- San Francisco Demands Apple and Google Delete AI ‘Nudify’ Apps From App Stores
- CISA Mandates Urgent Patch for Actively Exploited Critical Fortinet Vulnerabilities
- The Gentlemen Overtakes Qilin as Most Prolific Ransomware Threat
- AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report
- Anubis ransomware: what you need to know
- Agentic AI Is Untamable: Ask the Right Security Questions
- Fortinet security advisory (AV26-351) – Update 2
- Phishing Campaign Hides Lua Loader as TrueType Font File
- Protecting Privacy in an AI Era
- Demystifying AI Exploits: A Blueprint for AI-Assisted Vulnerability Management
- The TTF Trap: A Global Campaign of a Low-Detection Lua Loader
- CVE-2026-32201, CVE-2026-45659, CVE-2026-56164: Frequently Asked Questions About Active Exploitation of Microsoft SharePoint Server Vulnerabilities
- Smashing Security podcast #476: Remote-control rickshaws and rogue book marketers
- The npm Threat Landscape: Attack Surface and Mitigations (Updated July 15)
- Here’s the Truth About Whether Meta’s NameTag Face Recognition Tech ‘Exists’
- The Risk of Exposed Cloud Functions and How to Harden
- CVE-2026-15409, CVE-2026-15410: SonicWall SMA 1000 zero-day vulnerabilities exploited in the wild
- A Video Screen That Is Also a Camera
- TuxBot v3: Inside an IoT Botnet Framework With LLM-Assisted Development
- Critical Patches Issued for Microsoft Products, July 14, 2026
- Upcoming Speaking Engagements
- Microsoft’s July 2026 Patch Tuesday Addresses 569 CVEs (CVE-2026-56155, CVE-2026-56164)
10th September 2025

Defence Industry Security Program (DISP)
Sypha Defence Advisory is in the process of becoming a DISP member. Check back to review our progress and status update.
Visit DISP
25th October 2023

Sherwood Applied Business Security Architecture
SABSA is a proven methodology for developing business-driven, risk and opportunity focused Security Architectures at both enterprise and solutions level that traceably support business objectives.
It is also widely used for Information Assurance Architectures, Risk Management Frameworks, and to align and seamlessly integrate security and risk management into IT Architecture methods and frameworks.
The SABSA framework and methodology is used successfully around the globe to meet a wide variety of Enterprise needs including Risk Management, Information Assurance, Governance, and Continuity Management. SABSA has evolved since 1995 to be the ‘approach of choice’ for organisations in 50 countries and in sectors as diverse as Banking, Homeless Management, Nuclear Power, Information Services, Communications Technology, Manufacturing and Government.
Sypha Defence Advisory became a SABSA member on the 25th October 2023.
Visit SABSA
1st June 2021

Australian Government Security Vetting Agency
The Australian Government Security Vetting Agency (AGSVA) is the central vetting agency for the Australian Government and conducts security clearance assessments for federal, state and territory agencies.
Sypha Defence Advisory employees must pass federal government security clearance vetting before an offer of employment is provided. This is a mandated requirement for most Federal Government Agencies but also provides additional reassurance to our clients that our employees have had an extensive background check completed and are deemed suitable to work within the information security industry.
Visit AGSVA Assessment
1st November 2020

Information Systems Audit and Control Association (ISACA) Membership
ISACA was founded in 1967 as a centralised source of information for computer systems audit control. It has since evolved into an international organisation providing education, certification training, Risk IT Framework, COBIT (Control Objective for the Information and related Technologies) Framework to help organisations elevate their cybersecurity maturity, with their primary purpose to “help business technology professionals and their enterprises around the world realize the positive potential of technology”.
Sypha Defence Advisory employees are sponsored professional members of ISACA and actively work towards ISACA cybersecurity certifications, which showcase our expertise and commitment to providing international best practice cybersecurity defence strategies and solutions to our clients.
Visit isaca.org
23rd October 2020

Australian Information Security Association (AISA) Membership
To gain an overall perspective of cybersecurity across the Australian business landscape we need partnerships with organisations that represent all Australians across all sectors: private, public, government and individuals.
The AISA is a not for profit entity committed to ” … the development of a robust information security sector by building the capacity of professionals in Australia and advancing the cyber security and safety of the Australian public as well as businesses and governments in Australia.”
This is why Sypha Defence Advisory is a member of AISA, so we can leverage their knowledge, network and resources to balance the needs of the public, private and government sectors when it comes to planning the appropriate strategies and developing the controls needed to mitigate the risk of a cybersecurity incident for all Australian organisations and businesses.
22nd July 2020
Australian Cyber Security Centre (ACSC) Partnership
Part of our ongoing commitment to our clients is to ensure that we are well informed and can provide accurate and timely cybersecurity information that will help executive management teams make the right decisions when assessing risk. Helping management determine where to invest time and money in order to protect critical assets is at the forefront of everything we do. Having the right partnerships with the most well-informed organisations is critical in being able to provide this advice.
We are pleased to announce a partnership with the Australian Cyber Security Centre where we will be working with them to ensure that Australian businesses are adequately protected from the latest sophisticated cyber threats.
