Serving Iowa & Neighboring Midwest Communities Call: (515) 978-1415

Cyber Watch Live Feed

Active cyber threat and outage awareness for businesses that cannot afford surprises.

Cyber Watch helps businesses, nonprofits, home offices, and local organizations monitor current CISA advisories, known exploited vulnerabilities, and major provider outage resources in one practical dashboard.

If your systems, software, cloud tools, or vendors appear in a major alert and your IT provider has not notified you, Sasha Digital Solutions can provide an independent investigation, remediation plan, or second-opinion review.

CISA Advisories Exploited CVEs Cloud Outages Investigation Remediation

Investigation & Remediation

Concerned about a threat, outage, suspicious email, or breached account?

Sasha Digital Solutions can review the alert, investigate potential exposure, explain the risk, and recommend remediation steps. Already have an MSP or IT provider? Ask whether they reviewed the alert, checked your environment, and notified you. If they did not, it may be time for a second opinion.

Live CISA Advisory Feed

Latest cybersecurity advisories and alerts.

This section displays recent advisories from CISA. Review official details before taking action, and contact SashaDS if you need help determining whether your environment is affected.

CISA Advisory

Siemens Parasolid

Published: Aug 13, 2026

View CSAF Summary Parasolid is affected by an out of bounds read vulnerability that could be triggered when the application reads files in X_T format. This could allow an attacker to crash the application or execute arbitrary code. Siemens ...

CISA Advisory

Siemens License Server (SLS)

Published: Aug 13, 2026

View CSAF Summary Siemens License Server is affected by multiple vulnerabilities which could allow an attacker to elevate its privileges and read arbitrary files on the system. Siemens has released a new version for Siemens License Server (...

CISA Advisory

Siemens Desigo DXR and PXC Controllers

Published: Aug 13, 2026

View CSAF Summary A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to cause denial of service conditions by sending malformed BACnet packets. Recovery requires a device reset or reboot to re...

CISA Advisory

Johnson Controls Inc. Airwall

Published: Aug 13, 2026

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to decrypt sensitive data, bypass authentication controls, gaining unauthorized access to read arbitrary files on the system, or gain unauthorized ac...

CISA Advisory

Johnson Controls Metasys

Published: Aug 13, 2026

View CSAF Summary Successful exploitation of this vulnerability could allow a low-privilege user or attacker to inject a persistent malicious payload via a crafted URL that executes in the context of other users' sessions, including adminis...

Known Exploited Vulnerabilities

Latest vulnerabilities known to be exploited in the wild.

CISA's KEV catalog helps prioritize vulnerabilities that are already being exploited. If your organization uses affected vendors or products, these should be reviewed quickly.

CVE-2026-20349

Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability

Vendor: Cisco

Product: Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD)

Date Added: Aug 11, 2026

Due Date: Aug 14, 2026

If your organization uses Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) , review exposure, confirm patch status, and prioritize remediation. Known exploited vulnerabilities should not wait in the normal patch queue.

CISA Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

CVE-2026-68820

Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability

Vendor: Microsoft

Product: Windows Ancillary Function Driver for WinSock

Date Added: Aug 11, 2026

Due Date: Aug 25, 2026

If your organization uses Microsoft Windows Ancillary Function Driver for WinSock , review exposure, confirm patch status, and prioritize remediation. Known exploited vulnerabilities should not wait in the normal patch queue.

CISA Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

CVE-2026-72898

Metabase SQL Injection Vulnerability

Vendor: Metabase

Product: Metabase

Date Added: Aug 11, 2026

Due Date: Aug 14, 2026

If your organization uses Metabase Metabase, review exposure, confirm patch status, and prioritize remediation. Known exploited vulnerabilities should not wait in the normal patch queue.

CISA Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

CVE-2026-8037

Progress LoadMaster Command Injection Vulnerability

Vendor: Progress

Product: LoadMaster

Date Added: Aug 7, 2026

Due Date: Aug 10, 2026

If your organization uses Progress LoadMaster, review exposure, confirm patch status, and prioritize remediation. Known exploited vulnerabilities should not wait in the normal patch queue.

CISA Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

CVE-2026-63077

JetBrains TeamCity Deserialization of Untrusted Data Vulnerability

Vendor: JetBrains

Product: TeamCity

Date Added: Aug 5, 2026

Due Date: Aug 8, 2026

If your organization uses JetBrains TeamCity, review exposure, confirm patch status, and prioritize remediation. Known exploited vulnerabilities should not wait in the normal patch queue.

CISA Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

CVE-2026-18556

N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability

Vendor: N-able

Product: N-central

Date Added: Aug 4, 2026

Due Date: Aug 7, 2026

If your organization uses N-able N-central, review exposure, confirm patch status, and prioritize remediation. Known exploited vulnerabilities should not wait in the normal patch queue.

CISA Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

Major Service Outage Watch

Official provider status resources for major cloud and platform outages.

Public status pages can help identify major incidents, but they may not show every tenant-specific or account-specific problem. If your business is affected and your provider has not notified you, SashaDS can perform an independent review.

Microsoft

Microsoft Azure Status

Public status information for Azure services and regions. Microsoft 365 tenant-specific service health may require admin-center access.

Open Status Page
Microsoft 365

Microsoft 365 Service Health

Microsoft 365 service health for tenant-specific issues is normally reviewed inside the Microsoft 365 admin center.

Open Status Page
AWS

AWS Health Dashboard

Public AWS service health and regional outage information.

Open Status Page
Google

Google Cloud Status

Public Google Cloud service health and incident information.

Open Status Page
Cloudflare

Cloudflare Status

Cloudflare network, DNS, CDN, WAF, and platform status information.

Open Status Page
Shopify

Shopify Status

Shopify platform status for stores, checkout, admin, and related services.

Open Status Page

Already Have an MSP?

Your provider should not be silent during major alerts.

If your business uses software, cloud services, firewall products, remote access tools, or platforms listed in major advisories, your IT provider should help determine whether you are affected.

If you are learning about threats from the news before your provider contacts you, Sasha Digital Solutions can provide a second-opinion review.

No MSP or IT Provider?

We can help investigate and prioritize next steps.

SashaDS can help review suspicious activity, exposed systems, breach notices, vulnerability alerts, account compromise concerns, website issues, and cloud-service problems.

The goal is not panic. The goal is triage, containment, remediation, and better prevention going forward.

Trusted Cybersecurity Resources

Reliable places to learn, report, and verify.

Cyber Watch highlights trusted resources for awareness and reporting. These resources are useful for businesses, nonprofits, and home users.

Government

CISA Cybersecurity Advisories

CISA provides cybersecurity advisories, alerts, and guidance for organizations, businesses, and the public.

Visit CISA Advisories
Vulnerabilities

CISA KEV Catalog

CISA's Known Exploited Vulnerabilities catalog helps organizations prioritize vulnerabilities known to be exploited.

Visit KEV Catalog
Reporting

FBI Internet Crime Complaint Center

IC3 is used to report internet crimes including fraud, business email compromise, ransomware, and online scams.

Visit IC3
Consumer Safety

FTC Consumer Alerts

The FTC publishes scam alerts and consumer guidance related to fraud, impersonation, identity theft, and online threats.

Visit FTC Alerts

Need investigation, remediation, or a second opinion?

Let us review the threat, outage, vulnerability, account issue, or suspicious activity and identify practical next steps.

Request Cyber Watch Investigation