Access publications and alerts / Alerts and advisories / New steps for organisations running Cisco Firepower and Secure Firewall products New steps for organisations running Cisco Firepower and Secure Firewall products 24 Apr 2026 Alert ASD partners CISA and NCSC have identified new malware affecting Cisco Firepower and Secure Firewall products.
Access publications and alerts / Alerts and advisories / Russian GRU targeting Western logistics entities and technology companies Russian GRU targeting Western logistics entities and technology companies 22 May 2025 Advisory Learn how Russian GRU-linked malicious actors target logistics and technology organisations, and what you can do to reduce risk and protect your systems.
Access publications and alerts / Alerts and advisories / Ongoing targeting of online code repositories Ongoing targeting of online code repositories 19 Sep 2025 Alert The Australian Signals Directorate’s Australian Cyber Security Centre (ASD's ACSC) is aware of increased targeting of online code repositories, with threat actors employing various tactics to scan for and extract secrets, access private code bases, and modify packages to infect users. The ASD’s ACSC does not have information to indicate that a specific industry or sector is being targeted, with this advisory providing general awareness of an observed increase in activity.
Access publications and alerts / Alerts and advisories / Exploitation of Cisco SD-WAN appliances Exploitation of Cisco SD-WAN appliances 26 Feb 2026 Alert Malicious cyber threat actors are targeting SD-WANs of organisations, globally. The purpose of this Alert is to provide mitigations for the ongoing exploitation of Cisco Software-Defined Wide Area Network (SD-WAN) technology, including via CVE-2026-20127, CVE-206-20128 and CVE-2026-20122.
Access publications and alerts / Alerts and advisories / INC Ransom Affiliate Model Enabling Targeting of Critical Networks INC Ransom Affiliate Model Enabling Targeting of Critical Networks 06 Mar 2026 Advisory Understand how the INC Ransom affiliate model operates to target critical networks and learn practical steps to reduce the risk to your organisation.
Access publications and alerts / Alerts and advisories / Critical Unauthenticated Remote Code Execution vulnerability in n8n workflow automation platform Critical Unauthenticated Remote Code Execution vulnerability in n8n workflow automation platform 08 Jan 2026 Alert Alert on a critical unauthenticated remote code execution vulnerability (CVE-2026-21858) affecting the n8n workflow automation platform.