The Docket: Treasury Just Named the Ransomware Supply Chain Treasury's First VPN sanctions show ransomware enforcement is moving upstream to infrastructure, evasion tools, and evidence trails.
The Docket: SonicWall SMA1000 Shows the Edge Appliance Is an Administrative Control Plane CISA's SonicWall deadline shows edge appliance response is an evidence problem, not just a patch ticket.
The Docket: ShinyHunters Shows SaaS Trust Is an Attack Path Microsoft's ShinyHunters research shows why OAuth grants, vendor integrations, and guest access now define SaaS breach risk.
The Docket: RabbitMQ Shows Message Brokers Are Identity Boundaries Now RabbitMQ's patched OAuth and authorization flaws show why message brokers now belong in the identity risk boundary.
The Docket: A Healthcare Ransomware Settlement Is a Litigation Map A pathology provider's ransomware settlement shows why breach response is now litigation strategy, not just incident response.
The Docket: CISA's GitHub Leak Shows Incident Response Needs Its Own Playbook CISA's cloud-key leak shows why incident response must cover public repositories, contractor access, logs, and key rotation.
The Docket: Gitea Docker Turned Proxy Trust Into Identity Bypass Gitea's Docker image shows why identity headers need a verified trust boundary, not just a reverse proxy in front.