By industry

Government security news

All industries →

Yesterday · Tue, 15 Sept 2026

  1. China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE

    A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE. Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple non-governmental organizations (NGOs) on September 1, 2026. "The

    The Hacker NewsGoogle, Microsoft, Windows
  2. Supreme Court denies Trump request to allow USPS mail ballot changes

    One justice said the attempt to change the rules ahead of the 2026 elections would be "arbitrary and capricious” and violated the Administrative Procedures Act.

    CyberScoop

Mon, 14 Sept 2026

  1. Japan's Digital Agency says VPN flaw exposed 246,000 personnel records

    Japan's Digital Agency has discovered a data breach that may have exposed around 246,000 record rows containing personal information of government employees.

    BleepingComputer
  2. Cisco security advisory (AV26-921)

    Serial Number: AV26-921 Date: September 14, 2026 As of September 14, 2026, Cisco is affected by vulnerabilities in the following products: Cisco AsyncOS for Cisco Secure Email Gateway Prior to 15.5.5-014 Prior to 16.0.4-302 Prior to 16.5.0-780 Cisco Secure Email Gateway Prior to 15.5.5-014 Prior to 16.5.0-780 Cisco Secure Email and Web Manager Prior to 15.5.5-006 Prior to 16.5.0-429 On September 14, 2026, Cisco stated that CVE-2026-76461 is being actively exploited. On September 14, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-76461 to their Known Exploited Vulnerabilities (KEV) Database. The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Cisco Secure Email Gateway SQL Injection Vulnerability Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026 Cisco Security Advisories CISA KEV: CVE-2026-76461

    CriticalUsed in attacksCanadian Centre for Cyber SecurityCisco
  3. Hundreds of fake government websites target users in Central Asia

    The sites are designed to collect victims’ contact details, which scammers then use to target them through phone or email to steal money, personal information or gain access to their devices.

    The Record
  4. Malicious actors already using critical GitLab flaw, CISA and others warn

    The vulnerability could let unauthenticated users access sensitive files from software-development environments.

    Cybersecurity DiveGitLab
  5. Perfect-10 GitLab bug under attack days after patch lands

    CISA confirms active exploitation as watchTowr spots miscreants probing internet-facing servers

    The RegisterGitLab
  6. Beijing Hits Back at Anthropic CEO’s Call to Curb China’s AI Development

    China’s Ministry of Foreign Affairs responded to a question about Amodei’s essay by saying that all parties should work together on AI.

    SecurityWeek
  7. Personal, Financial Info Exposed in Revolut Data Breach

    The company unintentionally disclosed users’ information to a third party impersonating a government agency.

    SecurityWeek
  8. Defense Cyber Spending Set to Surge Amid Rising Attacks on Military Systems

    MarketsandMarkets has projected the cyber warfare market to double by 2031, amid growing demand for defensive and offensive cyber capabilities in the military

    Infosecurity Magazine

Latest government briefing

Government Cybersecurity Weekly Intelligence Brief — week ending 2026-09-14

40 stories affecting government tracked in the last seven days, 5 rated critical, 2 vulnerabilities added to the CISA Known Exploited catalogue.

About government news

135
Stories
57
In the last 7 days
7
Critical in the last 7 days