LIVE · cybersecurity feed
Live wire
CVE-2026-14894 · Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE FlawsCisco searched for IOS XR bugs and found so many it rolled them into an update releaseAttackers exploit zero-days in consistently besieged SonicWall productIntroducing context-aware vulnerability discovery and remediation with Cloudflare Managed Defense and OpenAI Daybreak modelsHPE patches critical ArubaOS-CX remote code execution flawCVE-2026-82329 · Attackers Pounce on Critical Artifactory Flaw Following DisclosureCVE-2026-0768 · Critical Langflow flaw exploited to steal OpenAI and AWS keysCVE-2026-82329 · Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After DisclosureCVE-2026-82329 · Critical JFrog Artifactory Vulnerability Reportedly Exploited in the WildHackers Are Probing PaperCut Servers, and 47% Still Have No Patch
nation-state

G7 Urges Fast-Track on Quantum-Safe Cybersecurity Rules

The G7 has published a call to action, urging governments to launch national strategies dedicated to the post-quantum encryption transition

zeroday.news ·

The G7 nations have issued a joint call to action, urging governments and organizations globally to accelerate their transition to post-quantum cryptography (PQC) in anticipation of future threats from quantum computing. The document, published on September 3, was spearheaded by the French National Cybersecurity Agency (ANSSI), which chairs the G7 Cybersecurity Working Group as part of France's 2026 G7 Presidency.

The G7 statement emphasizes that the quantum threat should no longer be viewed as a distant problem but as a near-term concern requiring immediate action across all sectors, not just critical infrastructure. It acknowledges the growing threat quantum computing poses to public-key cryptography and the security of both public and private entities. While the exact timeline for quantum computers capable of breaking current encryption algorithms remains uncertain, recent advancements suggest such a development is increasingly likely.

To mitigate these risks, the G7 recommends that organizations prioritize identifying systems holding their most critical data and assets, then focus PQC transition efforts on those systems. The document stresses the importance of proactive measures rather than waiting for confirmed availability of quantum computers that can compromise existing encryption.

A phased, risk-based approach is advised for the transition, including inventorying cryptographic assets, mapping dependencies, and developing a comprehensive transition plan. To manage costs, organizations are encouraged to integrate PQC into their standard system renewal schedules by purchasing products that already include quantum-safe encryption. Starting the transition early is also projected to result in lower overall migration expenses.

The G7 document outlines five key priorities for governments, policymakers, and the private sector. These include raising awareness about quantum threats, developing national PQC transition strategies that also aim to foster an adequate supply of PQC hardware and software products and encourage their adoption. Further priorities involve focusing research and development on advancing PQC through innovation, developing practical solutions, and establishing public-private partnerships to promote domestic expertise and industry capabilities in quantum-safe technologies. Finally, the G7 calls for the integration of PQC into cybersecurity requirements.

The call to action was signed by the national cybersecurity agencies of all G7 member states: Canada, France, Germany, Italy, Japan, the UK, and the US. It also has the support of the EU Commission and the EU Agency for Cybersecurity (ENISA). This initiative follows ANSSI's earlier announcement that it will cease vetting products lacking quantum-safe encryption by 2027, with post-quantum security becoming a mandatory feature for certain security product procurements by 2030.

nation-state
ShareXLinkedInWhatsAppFacebook

More News

view all →
ai

[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI

ai

[Virtual Event] Building a Secure AI Strategy for the Enterprise

security

Free streaming boxes may be routing criminal traffic through your home

Researchers found that apps available on SuperBox devices could add your household connection to a residential proxy network.

CVE-2026-14894critical

Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws

Threat actors are exploiting two critical security flaws in WordPress plugins Super Forms and Elementor Pro, according to findings from Wordfence. The vulnerabilities in question are - CVE-2026-14894 (CVSS score: 9.8) - A missing file type validation vulnerability in Super Forms – Drag & Drop Form Builder that allows unauthenticated attackers to upload files of any type, including

vulnerability

Most of the bugs Claude Mythos found have never been checked by a human

Anthropic pointed Claude Mythos Preview at 281 open-source projects and collected 23,019 candidate vulnerabilities. External security firms reviewed 1,900 of them. Maintainers received 1,596 reports and acknowledged 1,451; 97 fixes landed upstream, and 88 findings became published security advisories, with counts current as of May 22, 2026. The other 21,119 candidates have not been reviewed by any

vulnerability

New infosec products of the week: September 4, 2026

Here’s a look at the most interesting products from the past week, featuring releases from BugBase, F5 Networks, Ping Identity, and Superna. F5 speeds up virtual patching to counter AI-driven threats With new features such as anomaly detection and agentic threat intelligence, F5’s AI-powered web application firewall (WAF) is capable in delivering real-time protections because of its strategic posi