top of page


A Critical Risk Reminder: OpenAI’s Security Breach and Shadow AI
OpenAI recently confirmed that two employee devices in its corporate environment were impacted as part of the TanStack npm supply chain attack. According to OpenAI, the security breach involved activity consistent with malware behaviour, including unauthorised access and credential-focused exfiltration activity in a limited subset of internal source code repositories accessible to the impacted employees. Importantly, OpenAI stated that it found no evidence that user data was
May 152 min read


🚨 Active Exploitation of cPanel/WHM Vulnerability (CVE‑2026‑41940)
A recently disclosed security vulnerability affecting cPanel and WHM (CVE‑2026‑41940) is currently under active exploitation. Given that cPanel powers a significant portion of global websites, this critical vulnerability presents a significant risk to organisations and businesses that rely on cPanel‑based hosting. If your organisation uses cPanel or WHM, here’s what you need to know — and the steps you should take to protect your environment. What You Should Do Immediately Re
May 41 min read


The Most Pressing Risk for Microsoft 365 Copilot
Microsoft 365 Copilot has quickly moved from curiosity to catalyst. For many organisations, it represents the first time AI is being embedded directly into daily workflows—surfacing information, generating content, and contextualising questions using the organisation’s own data. While there are many well‑documented AI risks discussed today—data leakage, accuracy concerns, and shadow AI among them—within the specific context of Microsoft 365 Copilot adoption, one risk stands o
Apr 293 min read
bottom of page