Human Security SPF, DKIM and DMARC: how to secure your company email
Without SPF, DKIM and DMARC anyone can send emails impersonating your domain. We explain these three mechanisms simply and show how to deploy them.
Daily news, analysis and practical guides explaining what happened, who is affected and what to do next. We also turn this knowledge into practical training for organisations.
Human Security Without SPF, DKIM and DMARC anyone can send emails impersonating your domain. We explain these three mechanisms simply and show how to deploy them.
Vulnerabilities and CVEs Critical CVSS 9.8 Cisco SSM On-Prem flaw: exposed internal service, unauthenticated commands as root, affected versions, detection and upgrade plan.
AI Security An absurd space farce about an AI agent, a suspicious USB drive and a crew that confused automation with abdication. Funny—until the oxygen goes offline.
Vulnerabilities and CVEs Google confirmed active exploitation of an out-of-bounds write in Skia and a use-after-free in Dawn. Fixed releases and an enterprise response runbook.
AI Security Meta SAM 3.1 doubles throughput to 32 FPS through object multiplexing and global reasoning. Technical deployment, evaluation and surveillance risks.
Cybersecurity History Trace modern cryptography from DES, Diffie–Hellman and RSA through AES and TLS 1.3 to NIST post-quantum standards, with practical security lessons.
Cybersecurity History Learn how vulnerability disclosure evolved into CVE, NVD, CVSS and CISA KEV, how each layer works and how defenders should prioritise remediation.
Vulnerabilities and CVEs Jenkins handled tar symlinks unsafely. We explain the code-execution path, exploit conditions, affected releases and the 2.555/LTS 2.541.3 fix.
Cybersecurity History From Creeper and Fred Cohen through the Morris worm, ILOVEYOU, Mirai and ransomware. Learn how malware evolved and which defensive lessons endured.
Cybersecurity History From shared computers, Creeper and the Morris worm to ransomware, zero trust and cloud security. Explore the incidents and standards that shaped defence.
Vulnerabilities and CVEs A critical ddp-streamer authentication bypass came from a missing await. Combined with CVE-2026-30833, it enabled account takeover without a full username.
Vulnerabilities and CVEs Technical guide to CVE-2026-21669–21709 in Veeam VBR 13: domain-user RCE, Backup Viewer, SSH credentials, HA, patching and investigation.
Cybersecurity History Follow generative AI from language models and VAEs through GANs, Transformers and diffusion. Learn how each architecture works and where its risks begin.
AI Security Meta disclosed MTIA 300, 400, 450 and 500. We analyse chiplets, a 72-accelerator domain, HBM, MX4/MX8, the software stack and benchmark caveats.
Vulnerabilities and CVEs FortiWeb allowed unauthenticated requests to bypass login rate limiting. Complete 8.0/7.6/7.4/7.2/7.0 fixed-version matrix and defence plan.
Once a month, a concise summary of the vulnerabilities and threats that matter. No spam, unsubscribe anytime.