MS

Meera Shah

Cybersecurity and privacy reporter

Meera Shah covers cybersecurity, privacy regulation, identity systems, and the practical risk decisions facing companies and consumers.

CybersecurityPrivacyRisk management

Recent stories by Meera Shah

Cisco SD-WAN vulnerabilities still need urgent triage
SecurityIdentity Security
Cisco’s March advisory and April KEV activity kept the same message alive into this week: exposed SD-WAN control systems need upgrades, log review and tighter access right now.
Meera ShahApr 29, 20266 min read
Risk, resilience, and the systems companies rely on.Read story
MCP security flaw is turning AI tooling into a supply chain problem
SecurityIdentity Security
The latest disclosures around Anthropic's Model Context Protocol point to a broader enterprise risk. The issue is not one bad plugin. It is that a fast-growing agent standard may be pushing insecure trust assumptions deep into the AI toolchain.
Meera ShahApr 28, 20266 min read
Risk, resilience, and the systems companies rely on.Read story
AI agent trust gap is turning into the next identity security fight
SecurityIdentity Security
Enterprises are running more agent pilots, but the gap between experimenting and trusting those agents in production is widening into a concrete security problem.
Meera ShahApr 27, 20264 min read
Risk, resilience, and the systems companies rely on.Read story
CVE-2026-33825 is now a real incident-response problem, not just another April patch
SecurityRansomware and Breaches
The patched Microsoft Defender flaw known as BlueHammer now comes with a KEV deadline and live-intrusion evidence, which changes how defenders should treat it.
Meera ShahApr 26, 20264 min read
Risk, resilience, and the systems companies rely on.Read story
SharePoint zero-day April 2026 still demands fast patching
SecurityRansomware and Breaches
Microsoft fixed CVE-2026-32201 on Patch Tuesday, but exposed on-premises SharePoint servers are still drawing attention and security teams should not treat this as a routine update.
Meera ShahApr 25, 20263 min read
Risk, resilience, and the systems companies rely on.Read story
CrowdStrike LogScale vulnerability leaves self-hosted users with urgent patch work
SecurityRansomware and Breaches
CVE-2026-40050 is a critical unauthenticated path traversal flaw in self-hosted LogScale, while SaaS and Next-Gen SIEM customers are in a different position.
Meera ShahApr 24, 20263 min read
Risk, resilience, and the systems companies rely on.Read story