ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
CISA added critical MLflow vulnerability CVE-2026-64849 to its exploited catalog, ordering U.S. FCEB agencies to patch within two weeks per BOD 26-04. The unauthenticated DNS-rebinding SSRF bypass in webhook delivery, fixed in version 3.15.0, lets attackers steal cloud credentials like AWS IAM.
Tap to vote and see what everyone thinks.
Summary by ByteBrief