CyberMentor365

From ISO 27001 to ISO 42001

From ISO 27001 to ISO 42001

This is practical guidance. It is not the text of ISO/IEC 27001:2022 or ISO/IEC 42001:2023, and it is not a certificate. Zaheer Ikbal, Founder, CyHelm For years, ISO/IEC 27001:2022 has been the backbone of how organizations design and run information security programs. It gave security leaders a shared language for risk, controls, and assurance. But

From ISO 27001 to ISO 42001 Read More »

FortiMail already exploited, patch still upcoming

The mail gateway is already being exploited. The patch is still upcoming.

Zaheer Ikbal, Founder, CyHelm I would not sit on this one waiting for a patch note. Fortinet published FG-IR-26-175 on 1 October. CVE-2026-104286. Someone who is not logged in can write files onto the FortiMail system through the GUI, over HTTP or HTTPS. They describe it as path traversal plus a null byte, score it

The mail gateway is already being exploited. The patch is still upcoming. Read More »