Changeflow GovPing Cybersecurity

Recent changes

GovPing monitors sources for this role, covering Guidance, Enforcement, Rule, Notice, and Consultation documents. This role accounts for 41 of the 2503 sources on GovPing, with 281 changes recorded in the last 7 days.

Recent alerts include a Froxlor RCE flaw (CVSS 9.9), a FortiSandbox vulnerability (CVSS 9.8), and SAP's release of 13 critical vulnerabilities (CVSS 9.9). Adobe also patched a ColdFusion code‑execution flaw. All require immediate patching.

Favicon for wid.cert-bund.de

IBM Maximo Asset Management DoS Vulnerability - CVSS 5.3

CERT-Bund published security advisory WID-SEC-2026-0965 disclosing a Denial of Service vulnerability in IBM Maximo Asset Management versions prior to 7.6.1.3 IF037. The vulnerability carries a CVSS Base Score of 5.3 (medium) and a Temporal Score of 4.6. Remote anonymous attackers can exploit this flaw to conduct DoS attacks against affected installations running on Linux, UNIX, or Windows systems.

Priority review Notice Cybersecurity
9d ago DHS Press Releases
Favicon for www.dhs.gov

ICE Arrests Rapists, Pedophiles, and Arsonists

DHS announced that ICE arrested criminal illegal aliens convicted of serious crimes including aggravated sexual assault of a child, sexual battery, lewd and lascivious acts with a child, arson, and robbery. The announcement highlighted that nearly 70% of ICE arrests involve illegal aliens charged or convicted of crimes in the United States.

Routine Notice Immigration
Favicon for changeflow.com

Rakuten Symphony NGDU managing multiple radio carriers O-RAN 847 units

USPTO granted Patent US12598046B2 to Rakuten Symphony, Inc. covering a Near-Real Time Distributed Unit (NGDU) designed to manage multiple radio carriers in Open Radio Access Network (O-RAN) architectures. The patent describes technology for mapping CPRI ports connecting radio units to distributed units, enabling efficient communication management across O-RAN networks.

Routine Notice Telecommunications
Favicon for changeflow.com

Mutable Digital Asset Storage Units for Decentralised Peer-to-Peer Verification

The USPTO granted Patent US12598058B2 to British Telecommunications Public Limited Company covering methods for managing mutable digital asset storage units in a decentralised peer-to-peer storage network using cryptographic verification. The patent includes 19 claims relating to selection criteria rules, cryptographic processing functions, and version management of storage units across peer computing systems.

Routine Notice Intellectual Property
Favicon for changeflow.com

Similarity Calculation System with Homomorphic Encryption

USPTO granted patent US12598057B2 to NEC Corporation on April 7, 2026, covering a similarity calculation system using homomorphic encryption. The system enables secure distance calculations between vectors where one vector remains encrypted on a similarity calculation apparatus while the other is input from a terminal. The invention uses weighted distance tables and additive homomorphic encryption to compute ciphertext sums of element distances.

Routine Rule Intellectual Property
9d ago DHS Press Releases
Favicon for www.dhs.gov

DHS Requests Kentucky Not to Release Criminal Illegal Alien Detained for Sexual Assault

ICE has lodged a detainer requesting Kentucky authorities not release a criminal illegal alien who was arrested for sexually assaulting a teenager in his church office while working as a pastor. The individual has prior arrests for theft, forgery, and reckless driving. DHS is invoking federal immigration authority to ensure the individual remains detained pending removal proceedings.

Priority review Enforcement Immigration
Favicon for wid.cert-bund.de

Apache Traffic Server vulnerabilities allow DoS, request smuggling

CERT-Bund published security advisory WID-SEC-2026-0978 disclosing multiple vulnerabilities (CVSS Base Score 7.5, CVSS Temporal Score 6.5) in Apache Traffic Server. The vulnerabilities affect versions prior to 9.1.13 and 10.1.2 running on Linux and UNIX systems, including Debian Linux and Fedora Linux. Remote attackers can exploit these vulnerabilities to conduct Denial of Service or HTTP Request Smuggling attacks. Mitigations are available.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

sudo Vulnerability Enables Privilege Escalation - CVSS 7.4

CERT-Bund issued security advisory WID-SEC-2026-0971 regarding a vulnerability in sudo (CVSS Base Score 7.4) affecting Linux and UNIX systems. The vulnerability enables local attackers to escalate privileges. Affected products include Microsoft Azure Linux azl3 and Open Source sudo. Mitigation measures are available.

Urgent Guidance Cybersecurity
Favicon for wid.cert-bund.de

Keycloak vulnerabilities CVSS 8.1, affects Linux

Keycloak vulnerabilities CVSS 8.1, affects Linux

Routine Notice
Favicon for wid.cert-bund.de

MariaDB DoS Vulnerability - CVSS 6.5 Medium Severity

CERT-Bund issued advisory WID-SEC-2026-0972 disclosing a medium-severity denial-of-service vulnerability in MariaDB database systems. Affected versions include MariaDB prior to 11.4.10, 11.8.6, and 12.2.2, with a CVSS base score of 6.5. Remote authenticated attackers can exploit this vulnerability to conduct DoS attacks against affected installations on Linux, UNIX, and Windows platforms.

Priority review Guidance Cybersecurity

Showing 361–370 of 1,352 changes

1 35 36 37 38 39 136
RSS

Get daily alerts for cybersecurity

Daily digest delivered to your inbox.

Free. Unsubscribe anytime.

Filters

42 official sources tracked

CERT-Bund Security Advisories

Updated 31m ago

USPTO Patent Applications - Networking (H04L)

Updated 1d ago

USPTO Patent Applications - AI & Computing (G06N)

Updated 5m ago

USPTO Patent Grants - Networking (H04L)

Updated 8d ago

CERT-FR Security Advisories

Updated 32m ago

DHS Press Releases

Updated 19m ago

CISA ICS-CERT Advisories

Updated 3d ago

CSA Alerts & Advisories (Singapore)

Updated 4m ago

CISA Known Exploited Vulnerabilities (KEV)

Updated 1d ago

NIST Publications

Updated 20d ago

DHS News

Updated 10d ago

EDGAR: Cybersecurity Incidents (8-K 1.05)

Updated 5d ago

UK NCSC Alerts & Advisories

Updated 9d ago

NIST AI News & Updates

Updated 13d ago

JD Supra Technology & Cyber

Updated 19d ago

DHS OIG Reports

Updated 19d ago

NIST News

Updated 19d ago

CISA Cybersecurity Advisories

Updated 1d ago

FFIEC IT Examination Handbook Updates

Updated 27d ago

IEEE Standards News

Updated 21d ago

EU AI Act Updates

Updated 5d ago

TSA Press Releases

Updated 16d ago

EPO Patent Bulletin - Networking (H04L)

Updated 17m ago

NCSC UK News

Updated 22d ago

NSA Cybersecurity Advisories

Updated 7d ago

NIST Cybersecurity Framework Updates

Updated 23d ago

ENISA News

Updated 13d ago

FR: Office of the National Cyber Director

Updated 16d ago

Regs.gov: Office of the National Cyber Director

Updated 15d ago

Regs.gov: Information Security Oversight Office

Updated 1mo ago

FedRAMP Changelog

Updated 1mo ago

FR: National Crime Prevention and Privacy Compact Council

Updated 1mo ago

FR: Information Security Oversight Office

Updated 1mo ago

Regs.gov: Cybersecurity and Infrastructure Security Agency

Updated 1mo ago

Regs.gov: First Responder Network Authority

Updated 1mo ago

Regs.gov: Privacy and Civil Liberties Oversight Board

Updated 1mo ago

PCI SSC Press Releases

Updated 1mo ago

HITRUST News & Advisories

Updated 1mo ago

EPO Patent Bulletin - AI & Computing (G06N)

Updated --

USPTO Patent Grants - AI & Computing (G06N)

Updated --

NCSC UK Threat Reports

Updated 1mo ago

Saudi NCA

Updated --

Frequently asked questions

What does this feed cover?

CISA Known Exploited Vulnerabilities catalog, ICS-CERT industrial control system advisories, NSA/CISA joint alerts, NIST Cybersecurity Framework updates, FedRAMP authorization changes, and ENISA EU guidance.

Who is this for?

CISOs, SOC teams, and security compliance officers who need to track government cybersecurity directives and mandatory patching deadlines.

How often is this updated?

GovPing checks source pages multiple times daily. CISA KEV catalog additions are flagged as urgent.

Does this cover NIST framework updates?

Yes. We monitor NIST CSF, 800-series publications, and FedRAMP authorization pages.

Why are KEV additions flagged as urgent?

CISA's Known Exploited Vulnerabilities catalog carries binding operational directives for federal agencies, and most organizations treat it as a mandatory patch list. A new addition means active exploitation in the wild.

Is GovPing free?

Yes. GovPing is free, and always will be. We believe government regulatory data should be accessible to everyone. For custom monitoring of pages we don't cover yet, Changeflow starts at $99/mo.

Need to monitor something else?

GovPing covers the common sources. For niche pages specific to your team, add custom URL monitoring with Changeflow.

Get Cybersecurity alerts

Daily digest of cybersecurity regulatory changes. AI-summarized, no noise.

Free. Unsubscribe anytime.