Skip to content

Month: May 2025

Inside the Race: Ryan Vargas Talks CTMP, Team Progress, and the Road Ahead

In our latest interview with Ryan Vargas, we got a firsthand look at what’s fuelling his drive this season—upcoming races, continued team growth, and the strong foundation built through our ongoing partnership with Léargas Security. All Eyes on Chicago and CanadaRyan shared his excitement about the next stops on the schedule: Chicago and Canada. With travel plans in motion and preparations underway, the team is
Read More

VMware Cloud Foundation Security Advisory: Multiple High-Severity Vulnerabilities (VMSA-2025-0009)

Critical security vulnerabilities have been discovered in VMware Cloud Foundation, posing significant risks. These include directory traversal (CVE-2025-41229, CVSS 8.2), information disclosure (CVE-2025-41230, CVSS 7.5), and missing authorization (CVE-2025-41231, CVSS 7.3). Immediate patching is strongly recommended as no temporary mitigations are currently available.
Read More

A UK Breach, A US Warning: Scattered Spider’s Growing Threat to Retail – and How to Prepare

The recent cyberattack on Marks & Spencer (M&S), allegedly carried out by the threat group Scattered Spider, isn’t just a UK incident—it’s a stark warning for U.S. retailers. This group demonstrates a pattern of targeting specific sectors in waves, and with UK retail currently under siege, U.S. businesses should be actively preparing for potential targeting. What Happened at M&S? A Deep Dive Scattered Spider’s
Read More

Leargas Critical Infrastructure Alert: Enhancing the Security of Operational Technology and Industrial Control Systems

Leargas Critical Infrastructure Alert: Enhancing the Security of Operational Technology and Industrial Control Systems Critical infrastructure poses a challenge not only in deployment, maintenance, uptime, but also the risk of cyberattacks is significant. We will address some key ways to reduce risk and attack surface for this challenging environment. Also it is worth noting that we see alerts from government agencies, cybersecurity, and threat
Read More

Hidden Threats in Critical Infrastructure: How Léargas Protects Against Supply Chain Kill Switches

In May 2025, a Reuters investigation revealed what many of us in security have long feared: Chinese-manufactured solar inverters—deployed across the U.S. power grid—contained embedded, unauthorized cellular radios. These radios enabled direct command-and-control, bypassing local networks entirely. They functioned as silent kill switches for critical infrastructure. This isn’t theory. It’s verified. It’s happening now. At Léargas, we built our platform with threats like this
Read More

Léargas and Critical Path Security to Participate in Consensus 2025

This week, Patrick Kelley, CEO of both Léargas Security and Critical Path Security, will be attending Consensus 2025 in Toronto, Ontario. While the companies are not formal sponsors of the event, Mr. Kelley’s presence reflects the growing commitment by both organizations to remain at the forefront of global cybersecurity trends—particularly where blockchain, digital identity, and threat intelligence converge. Consensus 2025, hosted by CoinDesk, is
Read More