---
title: "ShinyHunters DMV Leak, Cisco Fixes Zero-Day, Cyberattack Ship Tracking – Cybersecurity News [September 14, 2026] | DuoCircle"
description: "Cybersecurity news roundup covering ShinyHunters, Cisco zero-days, North Korean attacks, AI security breaches, ransomware, and emerging threats."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/cybersecurity-news-update-week-38-of-2026/"
---

Quick Answer

The latest cybersecurity news covers major threats including ShinyHunters breaches, Cisco zero-day exploits, ransomware attacks, AI security incidents, North Korean phishing campaigns, supply-chain compromises, and actively exploited vulnerabilities.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=ShinyHunters%20DMV%20Leak%2C%20Cisco%20Fixes%20Zero-Day%2C%20Cyberattack%20Ship%20Tracking%20%E2%80%93%20Cybersecurity%20News%20%5BSeptember%2014%2C%202026%5D&url=undefined%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F&title=ShinyHunters%20DMV%20Leak%2C%20Cisco%20Fixes%20Zero-Day%2C%20Cyberattack%20Ship%20Tracking%20%E2%80%93%20Cybersecurity%20News%20%5BSeptember%2014%2C%202026%5D "Share on Reddit") [ ](mailto:?subject=ShinyHunters%20DMV%20Leak%2C%20Cisco%20Fixes%20Zero-Day%2C%20Cyberattack%20Ship%20Tracking%20%E2%80%93%20Cybersecurity%20News%20%5BSeptember%2014%2C%202026%5D&body=Check out this article: undefined%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F "Share via Email") 

![cybersecurity news update](https://media.mailhop.org/duocircle/spf-validator-7898-1789979589219.jpg) 

It’s been an unusually busy week. ShinyHunters both leaked a Florida DMV database and then turned around and hacked a rival ransomware gang’s leak site. Cisco pushed emergency patches for a second actively-exploited zero-day in a **week. U.S. authorities confirmed** they’re now monitoring nearly 20 ships worldwide following suspected tanker cyberattacks, and a [North Korean crypto-theft campaign](https://cyberscoop.com/north-korea-waterplum-job-seeker-crypto-attacks/) disguised as job interviews was exposed as having hit 30,000 devices. _Meanwhile, Google confirmed its Gemini AI model breached real companies’ systems during a security test gone wrong. Here’s the full rundown_.

Strong SPF, DKIM, and [DMARC](https://www.duocircle.com/email/dmarc/) help protect [email security](https://www.duocircle.com/) against phishing and impersonation threats.

## ShinyHunters leaks Florida DMV driver data after ransom refusal

The [ShinyHunters extortion gang](https://www.thedailystar.net/news/technology/news/hacker-group-claims-have-hijacked-rival-gangs-website-4278601) published hundreds of thousands of files stolen from Florida’s DAVID driver-and-vehicle database after the state agency refused to pay. The group says it got in through a password-reset weakness that let it compromise several accounts, including ones belonging to DMV employees and, allegedly, an FBI agent. As proof, it posted a screenshot of a driving record belonging to the late **Jeffrey Epstein. Florida’s motor vehicle agency** has confirmed a breach, tracing initial access to credentials that had been improperly stored on a police officer’s personal device. Source: [TechCrunch](https://techcrunch.com/2026/09/16/hackers-publish-thousands-of-drivers-data-after-breaching-florida-motor-vehicle-database/)

![Spf Validator 7001](https://media.mailhop.org/duocircle/spf-validator-7001-1789979751394.jpg)

## Cisco rushes out a second actively exploited zero-day patch in one week

Cisco disclosed CVE-2026-76460, a maximum-severity (CVSS 10.0) authentication bypass in **Identity Services Engine and ISE-PIC**, warning that attackers are already exploiting it to gain root-level access. _The flaw lets an unauthenticated attacker send a crafted request to an API endpoint and slip past the web management interface entirely_. It comes just days after Cisco confirmed a separate actively-exploited critical bug in its [Secure Email Gateway](https://www.cloudflare.com/learning/email-security/secure-email-gateway-seg/). CISA has added the ISE flaw to its Known Exploited Vulnerabilities catalog and ordered federal agencies to patch immediately. Source: [The Hacker News](https://thehackernews.com/2026/09/cisco-warns-of-new-zero-day-ise-auth.html)

## US now tracking nearly 20 ships worldwide over suspected cyberattacks

Following last month’s boarding of two oil and gas tankers by the **US Coast Guard** and FBI near Texas, a third vessel an LNG carrier that had loaded cargo in Louisiana [suffered a suspected cyber-related system](https://cybernews.com/news/iran-tanker-cyberattacks-us-ships-monitored/) failure crossing the Atlantic. US authorities have confirmed they’re now monitoring close to 20 vessels globally for similar threats. CISA has acknowledged the attacks but says there’s no evidence hackers took control of any ship, and no injuries or environmental damage have been reported. Source: [Cybernews](https://cybernews.com/news/iran-tanker-cyberattacks-us-ships-monitored/)

## ShinyHunters turns around and hacks the Clop ransomware gang

In a rare hacker-on-hacker incident, ShinyHunters broke into and defaced C[lop’s dark-web leak site](https://www.bleepingcomputer.com/news/security/shinyhunters-hacks-clop-leak-site-threatens-to-extort-ransomware-gang/) late on September 18, exploiting an unpatched file-upload flaw in the Grav content management system that runs the site. The group claims it stole Clop’s server logs, source code, and the [private cryptographic keys](https://www.techtarget.com/cybersecurity/definition/What-is-a-private-key) to its onion service, and says it now plans to extort the [ransomware](https://www.duocircle.com/blog/phishing-protection/the-threat-of-ransomware-is-real/) gang in retaliation for alleged death threats made during a dispute over a shared exploit used in last year’s Oracle E-Business Suite attacks. Source: [BleepingComputer](https://www.bleepingcomputer.com/news/security/shinyhunters-hacks-clop-leak-site-threatens-to-extort-ransomware-gang/)

## North Korea’s fake job interview scheme infected 30,000 devices worldwide

A joint advisory from US, Japanese, Australian, and German authorities revealed that a [North Korean hacking cluster tracked as WaterPlum](https://therecord.media/north-korean-hackers-infect-thousands-of-devices-waterplum-scheme) (also known as “Contagious Interview”) infected at least 30,000 devices across more than 100 countries between **December 2025 and July 2026**. The group poses as recruiters for fake AI, crypto, or NFT companies, then convinces job applicants to download malicious “coding tests.” Investigators say the group used AI face-swapping tools during video interviews and drained over 7,000 crypto wallets, funneling roughly $10.7 million back to North Korea’s weapons-development arm. Source: [BleepingComputer](https://www.bleepingcomputer.com/news/security/north-korean-waterplum-hackers-infected-30-000-devices-worldwide/)

## Google confirms Gemini AI broke into real companies during a security test

Google acknowledged that its [Gemini model](https://cybersecuritynews.com/google-gemini-ai-hacked-3-real-companies/)

accessed protected systems belonging to three real organizations during a “capture the flag” [cybersecurity](https://www.duocircle.com/blog/phishing-protection/how-to-be-cyber-smart-the-best-cybersecurity-tips-to-empower-your-team-this-cybersecurity-awareness-month/) evaluation. A fictional test target happened to share a name with a real company, and a configuration mistake left the AI agent with unintended internet access. _Believing it was still inside the simulation, Gemini guessed its way into one system’s password and used credentials it found exposed in public code repositories to log into two others_. Google says the model stopped itself once it realized it had reached genuine infrastructure, and stresses this isn’t classified as a safety failure. Similar incidents were reported involving models from OpenAI, Anthropic, and Meta during the same evaluation program. Source: [Cyber Security News](https://cybersecuritynews.com/google-gemini-ai-hacked-3-real-companies/)

![Spf Record 7003](https://media.mailhop.org/duocircle/spf-record-7003-1789979829074.jpg)

## Researchers use Claude to hack into OpenAI’s internal network

Security researchers at Hacktron used [Anthropic’s Claude Opus 5 model](https://www.cnbc.com/2026/07/24/anthropic-claude-opus-5-ai-fable-5-cost.html) to chain two vulnerabilities and hijack the **ChatGPT and Codex accounts** of several OpenAI employees, ultimately reaching an internal code repository. The chain started with a bug in the software running OpenAI’s public help forum and moved through a weakness in its login system. _It was a sanctioned research exercise” the team reported the flaws responsibly, proved access with a harmless pull request, and stopped_. OpenAI patched the underlying issue within 14 hours and paid a $6,500 bounty. Source: [The Hacker News](https://thehackernews.com/)

## Sri Lanka-style DAMA breach hits Ernst & Young’s payroll vendor pipeline

A [breach at a financial-services](https://www.securityweek.com/revolut-data-breach-5-months-680-high-profile-accounts-3m-ransom/) help-desk vendor exposed Social Security numbers that had been routed through Ernst & Young’s systems from banking clients, illustrating how sensitive tax data can end up sitting in tools nobody classifies as a “data store.” The incident underscores a recurring theme in **2026’s breach reports**: exposure increasingly follows the supply chain rather than a single company’s own inventory of where its sensitive data lives. Source: [PKWARE](https://www.pkware.com/blog/2026-data-breaches)

## Two previously unknown flaws found in TP-Link’s popular home security camera

_OPSWAT researchers disclosed two zero-day vulnerabilities in the widely sold TP-Link Tapo C200 camera, commonly used as a baby monitor and home security device_. One flaw lets an attacker on the network replay old authentication data to gain full admin access without ever knowing the password; the other can crash the **camera’s management service** with an oversized data packet. TP-Link has released a firmware fix, and OPSWAT says it’s still working with the vendor on a third, more critical flaw that could let an attacker use a compromised camera as a foothold into the rest of a home or office network. Source: [Tom’s Guide](https://www.tomsguide.com/home/home-security/zero-day-flaws-in-tp-link-security-cameras-could-let-hackers-eavesdrop-on-you-but-theres-a-fix)

## Scattered Spider member pleads guilty to wire fraud and identity theft

_Texas resident Ahmed Elbadawy, accused of being part of the notorious Scattered Spider cybercrime collective, pleaded guilty to wire fraud conspiracy and identity theft charges connected to a string of attacks on dozens of organizations_. The scheme involved selling stolen sensitive data and stealing millions of dollars’ worth of cryptocurrency. Source: [DataBreachToday](https://www.databreachtoday.com/)

## Massive leak exposes Flock’s surveillance cameras as vulnerable “Android phones on sticks”

A new leak obtained by security researchers and shared with Wired and 404 Media revealed that [Flock’s license-plate-reading surveillance](https://fox59.com/news/national-world/hackers-rip-down-flock-camera-steal-its-data-share-findings-with-media/) cameras run on stripped-down Android software riddled with security flaws, including hardcoded cryptographic keys. The leak came after hackers extracted the software directly from a physical Flock camera and passed it to the transparency site DDoSecrets, reigniting concerns about the security of police-adjacent surveillance infrastructure already facing **scrutiny over privacy issues**. Source: [This Week in Security](https://this.weekinsecurity.com/this-week-in-security-september-20-2026-edition/)

![Email Smtp Service 8934](https://media.mailhop.org/duocircle/email-smtp-service-8934-1789979904480.jpg)

## UK, US, and Dutch authorities warn of Iranian spyware targeting journalists

_The UK’s National Cyber Security Centre, alongside US and Dutch counterparts, issued a joint warning about an Iranian spyware campaign dubbed “Chosen Brick” targeting journalists and human rights activists_. The advisory urges high-risk individuals to tighten their **device security** and be wary of unsolicited contact that could be used to deliver the spyware. Source: [This Week in Security](https://this.weekinsecurity.com/this-week-in-security-september-20-2026-edition/)

## CrowdSec says former employee’s compromised account led to GitHub repo theft

Security firm CrowdSec disclosed that attackers copied roughly 170 of its private GitHub repositories after a former employee’s account was compromised, tracing the intrusion back to [May’s TanStack npm supply-chain attack.](https://www.secure.com/news/openai-tanstack-supply-chain-attack) The incident is a reminder that supply-chain compromises can have long tails, resurfacing months later through dormant access that was never fully revoked. Source: [Cyber Security News](https://cybersecuritynews.com/tanstack-supply-chain-attack/)

## New “BragJack” technique lets malicious browser extensions hijack AI assistants

Researchers detailed a [new attack called BragJack](https://www.darkreading.com/endpoint-security/bragjack-browser-agentic-ai) that allows a malicious browser extension to seize the trusted communication channels used by AI browser assistants across **Chrome, Edge, Opera**, and other major browsers, potentially letting an attacker manipulate what an AI assistant sees or does on a user’s behalf. The finding adds to a growing list of security concerns around AI agents that are given broad access to browsing sessions. Source: [Cyber Security News](https://cybersecuritynews.com/bragjack-ai-agent-hijacking/)

## CISA warns of actively exploited Linux kernel vulnerabilities

CISA issued a warning that attackers are actively exploiting [three Linux kernel vulnerabilities](https://securityaffairs.com/199430/security/u-s-cisa-adds-linux-kernel-flaws-to-its-known-exploited-vulnerabilities-catalog-2.html), urging organizations to treat patching as urgent. The bugs create a pathway for privilege escalation, and **CISA’s advisory puts pressure** on federal agencies and enterprises alike to move quickly given confirmed in-the-wild exploitation. Source: [Cyber Security News](https://cybersecuritynews.com/linux-kernel-vulnerabilities-actively-exploited/)

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F) [ ](https://twitter.com/intent/tweet?text=ShinyHunters%20DMV%20Leak%2C%20Cisco%20Fixes%20Zero-Day%2C%20Cyberattack%20Ship%20Tracking%20%E2%80%93%20Cybersecurity%20News%20%5BSeptember%2014%2C%202026%5D&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-38-of-2026%2F) Copy 

Related Articles

- [ ![Cybersecurity News](https://media.mailhop.org/duocircle/spf-permerror-5610-1779093389633.jpg)  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\] Blog ](/blog/cybersecurity-news-update-week-20-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5667-1779700511937.jpg)  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\] Blog ](/blog/cybersecurity-news-update-week-21-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5686-1780301891080.jpg)  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News Blog ](/blog/cybersecurity-news-update-week-22-of-2026/)
- [ ![cybersecurity news](https://media.mailhop.org/duocircle/spf-record-4590-1780921768387.jpg)  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News Blog ](/blog/cybersecurity-news-update-week-23-of-2026/)

## Related Articles

[  news  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\]  May 18, 2026 ](/blog/cybersecurity-news-update-week-20-of-2026/)[  news  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\]  May 25, 2026 ](/blog/cybersecurity-news-update-week-21-of-2026/)[  news  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News  Jun 1, 2026 ](/blog/cybersecurity-news-update-week-22-of-2026/)[  news  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News  Jun 8, 2026 ](/blog/cybersecurity-news-update-week-23-of-2026/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"ShinyHunters DMV Leak, Cisco Fixes Zero-Day, Cyberattack Ship Tracking – Cybersecurity News [September 14, 2026]","description":"Cybersecurity news roundup covering ShinyHunters, Cisco zero-days, North Korean attacks, AI security breaches, ransomware, and emerging threats.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-38-of-2026/","datePublished":"2026-09-21T00:00:00.000Z","dateModified":"2026-09-21T00:00:00.000Z","dateCreated":"2026-09-21T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-38-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-validator-7898-1789979589219.jpg","caption":"cybersecurity news update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"news"},{"@type":"ListItem","position":3,"name":"ShinyHunters DMV Leak, Cisco Fixes Zero-Day, Cyberattack Ship Tracking – Cybersecurity News [September 14, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-38-of-2026/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"news","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"ShinyHunters DMV Leak, Cisco Fixes Zero-Day, Cyberattack Ship Tracking – Cybersecurity News [September 14, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-38-of-2026/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"ShinyHunters DMV Leak, Cisco Fixes Zero-Day, Cyberattack Ship Tracking – Cybersecurity News [September 14, 2026]","description":"Cybersecurity news roundup covering ShinyHunters, Cisco zero-days, North Korean attacks, AI security breaches, ransomware, and emerging threats.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-38-of-2026/","datePublished":"2026-09-21T00:00:00.000Z","dateModified":"2026-09-21T00:00:00.000Z","dateCreated":"2026-09-21T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-38-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-validator-7898-1789979589219.jpg","caption":"cybersecurity news update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
