Blog
- Jack Gilmore
- August 5, 2026
For years, social engineering has been one of the most effective techniques in a threat actor's arsenal. Rather than...
- Steve Velcev
- July 30, 2026
Every Windows 10 and 11 machine ships with thousands of Microsoft-signed executables in “C:\Windows\WinSxS” that can be...
- CSA Cyber
- July 21, 2026
CSA Cyber has signed the UK Government's Cyber Resilience Pledge, joining the first wave of organisations supporting a...
- Julian Nguyen
- May 28, 2026
TL;DR CSA Cyber identified a Local File Inclusion (LFI) and arbitrary file creation issue within Responsive FileManager...
- Arron Dowdeswell
- April 15, 2026
What is Claude Mythos? Anthropic announced Claude Mythos and project Glasswing on April 7th 2026.
- Ruben Ferreira
- April 1, 2026
osTicket password reset endpoint timing side‑channel enables user enumeration – CVE‑2026‑26895 Summary: CSA Cyber...
- Jack Gilmore
- March 20, 2026
In this article, I will cover why hybrid identities can lead to fragmented security and reduced visibility when strong...
- David Woodfine
- February 6, 2026
The debate around quantum risk is gathering momentum, and rightly so. Research such as Mastercard’s recent exploration...
- Steve Velcev
- February 2, 2026
In January 2026, Microsoft confirmed active exploitation of a high-severity zero-day, CVE-2026-21509, targeting the...
- CSA Cyber
- January 5, 2026
On 12 November 2025, the Government introduced the Cyber Security and Resilience (Network and Information Systems) Bill...
- CSA Cyber
- October 3, 2025
With cyber threats achieving increasing complexity, organisations can no longer rely solely on IT security to protect...
- CSA Cyber
- September 2, 2025
The NCSC have recently released version 4.0 of the Cyber Assessment Framework (CAF), a common framework to enable...
