Hard2bit sponsors CyberMadrid's second SME cybersecurity conference
On 29 September we will have a stand at Digitaliza Madrid and Thilina Manana joins the panel on the human factor and the supply chain.
By Adrián González · CEO y socio fundador
IT news read through a security lens: what affects your architecture, compliance or risk posture, with operational context, not just headlines.
IT industry news read through a security lens: platform releases, regulatory changes, market moves, standards publication. We do not aggregate headlines — we filter what affects architecture, compliance or risk posture and add operational context.
The goal is that a CISO or CIO reads an entry and leaves with enough judgement to decide: act now, wait, or simply register the change on the internal radar.
On 29 September we will have a stand at Digitaliza Madrid and Thilina Manana joins the panel on the human factor and the supply chain.
By Adrián González · CEO y socio fundador
A macOS Screen Sharing flaw hands root to anyone who can reach port 5900. Exploitation is active with Monero miners, and the usual hardening offers no protection.
By Adrián González · CEO y socio fundador
Lazarus paired fake job offers and DLL side-loading in a PDF viewer with zero-day CVE-2026-68820 in afd.sys to plant the FudModule rootkit inside European defence firms.
By Thilina Manana · COO, Director Técnico de Seguridad hard2bit y socio fundador
On 2 August 2026 Article 50 of the EU AI Act starts to apply. It is not only about big tech: if you run a chatbot or publish AI-generated content, the transparency duty is yours too.
By Adrián González · CEO y socio fundador
What compliance software must actually deliver for ISO 27001, ENS, NIS2 and DORA: document control, risk, controls, evidence, audit, traceability and where AI genuinely helps.
By Thilina Manana · COO, Director Técnico de Seguridad hard2bit y socio fundador
On 18 July the first attacks hit CVE-2026-6875, five days after the patch: a ServiceNow AI Platform sandbox escape giving unauthenticated RCE. What to watch and how to contain it.
By Thilina Manana · COO, Director Técnico de Seguridad hard2bit y socio fundador
Brussels did not pass a law. It published an execution policy linking the AI Act to NIS2, DORA and the CRA. The nine actions, the deadlines and the operating shift it demands of CISOs.
By Thilina Manana · COO, Director Técnico de Seguridad hard2bit y socio fundador
A flaw in the Microsoft Defender engine spawns a SYSTEM shell on fully patched Windows 10 and 11. What RoguePlanet is, how to check your engine version and how to detect and defend against it.
By Adrián González · CEO y socio fundador
What a breach linked to the European Commission reveals about supply chain, API keys, third parties, cloud, monitoring and compliance under NIS2, DORA, ENS and ISO 27001.
By Adrián González · CEO y socio fundador
A practical set of questions for evaluating a cybersecurity provider, MSSP or software product in 2026. Reduce hidden risk and buy with more judgement, operation and control.
By Adrián González · CEO y socio fundador
On 23 June 2026 CISA added four UniFi OS and Lantronix EDS5000 flaws to its KEV catalogue. Chained, three of them give unauthenticated remote code execution on the box that manages your network.
By Adrián González · CEO y socio fundador
Before you leave…
Quick 15-minute assessment and we'll tell you what to prioritise first: Microsoft 365, pentesting, vulnerability management, SOC, DORA, NIS2, ENS or ISO 27001.
No spam. Reply within 24h.