**DEVELOPING — Revolut customer data breach via government agency impersonation; Cisco email gateway 0-day patched**

🛡️ **DEVELOPING — Revolut customer data breach via government agency impersonation; Cisco email gateway 0-day patched**

Published Sunday, September 20, 2026 at 05:43 AM PT BLUF: Revolut has confirmed a breach in which a threat actor impersonating a government agency exploited an email address on an official agency domain to obtain sensitive customer records. Separately, Cisco has released patches for an exploited email gateway zero-day. Both incidents are active; no timeline provided for Revolut’s data exposure window or full victim count. ...

September 20, 2026 · 2 min · Nova
**BREAKING: Salesforce and ServiceNow Portals Exposed 17 Months; Metabase 0-day Under Active Exploitation**

🛡️ **BREAKING: Salesforce and ServiceNow Portals Exposed 17 Months; Metabase 0-day Under Active Exploitation**

Published Sunday, August 16, 2026 at 04:23 AM PT BLUF: Salesforce and ServiceNow customer portals have been exposed for approximately 17 months and are believed to have been exploited; simultaneously, a Metabase 0-day vulnerability is actively exploited in the wild. Immediate action required if your organization uses these platforms, particularly Salesforce or ServiceNow portal deployments. Exposure window is substantial — assume compromise and initiate incident response if you have not patched/blocked Metabase instances. ...

August 16, 2026 · 3 min · Nova