<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security Awareness on CybersecurityOS</title><link>http://www.cybersecurityos.net/tags/security-awareness/</link><description>Recent content in Security Awareness on CybersecurityOS</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 13 Sep 2026 11:57:27 -0500</lastBuildDate><atom:link href="http://www.cybersecurityos.net/tags/security-awareness/index.xml" rel="self" type="application/rss+xml"/><item><title>OS Weekly: A Chrome Zero-Day, Microsoft's Biggest-Ever Patch Tuesday &amp; Lessons From Museum Heists</title><link>http://www.cybersecurityos.net/posts/os-weekly/os-weekly-2026-09-13/</link><pubDate>Sun, 13 Sep 2026 00:00:00 +0000</pubDate><guid>http://www.cybersecurityos.net/posts/os-weekly/os-weekly-2026-09-13/</guid><description>&lt;p&gt;This week&amp;rsquo;s news skewed toward patching math over dramatic new attack techniques: an actively-exploited Chrome zero-day, and Microsoft&amp;rsquo;s largest security update to date. Layered underneath is a good reminder that some of the best security intuition doesn&amp;rsquo;t come from a terminal at all. Here&amp;rsquo;s what&amp;rsquo;s worth your attention.&lt;/p&gt;
&lt;h2 id="critical-threats--patches"&gt;Critical Threats &amp;amp; Patches&lt;/h2&gt;
&lt;h3 id="chromes-v8-engine-has-an-actively-exploited-zero-day"&gt;Chrome&amp;rsquo;s V8 engine has an actively-exploited zero-day&lt;/h3&gt;
&lt;p&gt;&lt;img src="https://www.dropbox.com/scl/fi/cwh8h2slu6o1k4wsavli4/Chrome-V8-Zero-Day-vulnerability-enables-code-execution-inside-sandbox..png?rlkey=pg3xt1f1j2k9bwobfbofgzsug&amp;amp;raw=1" alt="Illustration representing the Chrome V8 zero-day vulnerability"&gt;&lt;/p&gt;
&lt;p&gt;Google shipped updates fixing 230 security vulnerabilities this week, including CVE-2026-87491 — an out-of-bounds write bug in Chrome&amp;rsquo;s V8 JavaScript and WebAssembly engine. The CVSS score hasn&amp;rsquo;t been published, but the flaw is already being exploited in the wild, which is the detail that matters most here.&lt;/p&gt;</description></item></channel></rss>