Cyber Decision LedgerPublic reviewed decisions

The decisions, on the record.

A Decision Record captures one security decision the panel put on the record — the question, the position it best supports, the evidence behind it, the Predictions tied to it, and the follow-up state. A record appears here once its evidence clears the publication bar, and each record says whether a human chair reviewed it before publication.

Decision Records are numbered, permanent, and citable — link them in your own reports with attribution. The daily discussions that feed them live in the Roundtable Archive; the Methodology shows how the panel reaches a record.

Filter this page · applies instantlyNo filters active · showing all records30 shown
Sort

Decision Records

24 JULY 20263 records
RecordCRT-2026-01252026.07.24Morning roundtable
Supply-chain automation reauthorization

Reauthorize CI and supplier automation trust paths

Treat CI workflows, package publishing, and supplier automation as production attack surface: pause high-risk publishing or deployment workflows, disable stale publishing tokens, require stronger provenance, inventory supplier remote access, rotate vendor and platform secrets, and prove workflow and package integrity before reauthorization.

AreaSupply chainVendor claim
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-24
RecordCRT-2026-01242026.07.24Morning roundtable
Compromise recovery for exposed enterprise edge systems

Treat exposed edge and mail systems as compromise recovery

Exposed enterprise mail, firewall management, VPN, and security-appliance systems should be handled as potential compromise-recovery cases, not patch-only tickets: preserve logs and configurations, apply vendor isolation or patch guidance, revoke active trust material where applicable, rotate impacted credentials and secrets, and hunt for administrative or mailbox persistence.

AreaBreachPatch prioritization
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps5 references
StateActiveRev 2026-07-24
RecordCRT-2026-01232026.07.24Morning roundtable
OT exposure containment

Contain internet-exposed PLC and SCADA access

Operators with internet-exposed PLC, HMI, or SCADA paths should remove direct public reachability using OT-safe change control, preserve controller and firewall evidence, validate controller logic and operator views, and move engineering access behind allowlisted VPN or jump-host paths.

AreaRisk acceptanceVulnerabilityTechICS / OT
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-24
23 JULY 20264 records
RecordCRT-2026-01222026.07.23Afternoon roundtable
n8n workload credential exposure

n8n service-account credential recovery

The n8n Google Service Account exposure should be handled as workload credential compromise rather than ordinary user account compromise.

AreaVulnerability
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps5 references
StateActiveRev 2026-07-23
RecordCRT-2026-01212026.07.23Morning roundtable
Identity recovery after token, session, and trust-material exposure

Trust-chain recovery instead of password-only reset

Do not close identity recovery with password resets alone. Revoke active sessions, invalidate refresh tokens where possible, rotate machine keys and signing or sealing secrets, review OAuth grants, rotate service account and API secrets, restrict risky device-code flows, and enforce phishing-resistant authentication for administrators and developers.

AreaPatch prioritizationRisk acceptanceTechIdentity & access
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps4 references
StateActiveRev 2026-07-23
RecordCRT-2026-01202026.07.23Morning roundtable
AI evaluation, data-processing, tool, and coding-assistant blast-radius controls

Immediate guardrails for AI development and evaluation workflows

Restrict AI evaluation, data-processing, agentic tool use, and coding-assistant workflows to reduce blast radius. Default-deny internet egress from sandboxes, use disposable least-privilege identities, quarantine untrusted datasets and model artifacts, require policy and human approval for mutating tools, and keep coding assistants read-only by default in sensitive repositories.

AreaPatch prioritizationRisk acceptanceTechAI / ML systems
SeverityMedium
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps5 references
StateActiveRev 2026-07-23
RecordCRT-2026-01192026.07.23Morning roundtable
Emergency handling for exposed collaboration, remote-access, and management services

Emergency containment for exposed collaboration and access services

Treat confirmed affected exposure of collaboration, remote-access, appliance, and security-management services as emergency containment and compromise-hunting, not routine patching. Restrict exposure, apply vendor or agency fixes, and hunt for persistence, stolen trust material, active sessions, VPN activity, new accounts, and downstream movement. Handle WordPress cases in this lane only where affected exposure and exploitability are confirmed.

AreaPatch prioritizationSOC escalation
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps5 references
StateActiveRev 2026-07-23
22 JULY 20261 record
RecordCRT-2026-01182026.07.22Morning roundtable
Same-day response sequencing for exposed edge and collaboration systems

Prioritize exposed SonicWall, SharePoint, and GlobalProtect response

Treat exposed SonicWall SMA 1000 and on-premises SharePoint systems as the first response tier when they are plausibly affected, with exposed affected GlobalProtect systems close behind. Isolate or restrict exposure, preserve logs, validate patches, hunt for compromise, and restore trust only after containment and review.

AreaPatch prioritizationTechNetwork security
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-22
21 JULY 20264 records
RecordCRT-2026-01172026.07.21Afternoon roundtable
Deepfake and voice-clone authorization controls

Synthetic-media requests require authorization controls

Treat likeness, voice, chat, and email as request channels, not authorization. Use two-person approval, out-of-band callback to pre-enrolled channels, holds for new payees or bank-detail changes, support step-up controls, official communications channels, and rapid takedown preparation.

AreaRisk acceptanceVendor claim
SeverityMedium
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps4 references
StateActiveRev 2026-07-21
RecordCRT-2026-01162026.07.21Afternoon roundtable
ServiceNow AI Platform governance and evidence-preservation triage

ServiceNow AI Platform exploitation triage before notification

Do not treat exploitation risk by itself as a breach-notification event. Preserve tenant, admin, audit, prompt, output, ticket, and credential evidence; conduct governance and vendor-risk triage; and escalate to notification analysis only if unauthorized access or data exposure is found.

AreaRisk acceptanceVendor claimVulnerabilityTechAI / ML systemsSaaS collaboration
SeverityMedium
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-21Prediction · due 4 AugNext checkpoint 4 Aug
RecordCRT-2026-01152026.07.21Afternoon roundtable
AI tooling containment instead of blanket shutdown

AI workflow containment based on execution authority

Do not impose a blanket AI tooling ban. Remove exposed AI workflow services from untrusted access paths, isolate code-executing agents, restrict credentials and egress, require human approval for dangerous actions, and validate recovery of model and data assets.

AreaRisk acceptanceTechAI / ML systems
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps7 references
StateActiveRev 2026-07-21
RecordCRT-2026-01142026.07.21Afternoon roundtable
Remote-access appliance trust reset after patching

Remote-access appliance patch and compromise assessment

Patch exposed PAN-OS GlobalProtect and SonicWall SMA1000 systems, but treat exposed appliances as possible compromise cases until logs are preserved, sessions are invalidated, credentials are rotated, persistence is checked, and compromise checks are clean.

AreaBreachPatch prioritizationVulnerabilityTechNetwork security
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-21Prediction · due 28 JulNext checkpoint 28 Jul
20 JULY 20266 records
RecordCRT-2026-01132026.07.20Afternoon roundtable
Cloud identity and SaaS credential abuse containment

Identity containment beyond password resets

For suspected cloud identity, SaaS, VPN, or contractor credential abuse, identity teams should revoke sessions, refresh tokens, remembered devices, app passwords, OAuth grants, VPN sessions, and privileged access; move administrators to phishing-resistant authentication; audit SSO and federation paths; bind VPN and contractor access to managed devices; and add identity detections.

AreaPatch prioritizationVulnerabilityTechIdentity & access
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps4 references
StateActiveRev 2026-07-20
RecordCRT-2026-01122026.07.20Afternoon roundtable
GitHub Actions and npm supply-chain audit

CI/CD audit for GitHub Actions and npm supply-chain exposure

Platform teams should audit repositories using GitHub Actions and npm in pull-request or release workflows, including dependency lockfiles, CI logs, runner secret reachability, release tokens, package publish tokens, and credential rotation where untrusted code may have executed near sensitive authority.

AreaPatch prioritizationSupply chainTechDevOps supply chain
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps5 references
StateActiveRev 2026-07-20
RecordCRT-2026-01112026.07.20Morning roundtable
RubyGems SleeperGem CI and developer secret-exposure response

RubyGems SleeperGem secret-exposure triage

Treat affected RubyGems execution paths as possible secret-exposure paths across CI, build, release, and developer environments. Inspect dependencies, lockfiles, cached gems, build images, bootstrap scripts, and internal templates; review telemetry; restrict build egress; add package-change gates; and rotate credentials that were confirmed or likely exposed.

AreaSOC escalationVulnerabilityTechDevOps supply chain
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps4 references
StateActiveRev 2026-07-20
RecordCRT-2026-01102026.07.20Morning roundtable
KNX building-automation remediation ownership

KNX facilities-led safety remediation

Treat exposed KNX and building-management remediation as a facilities-led safety operation. Facilities and OT teams should lead safe isolation, verify manual or safe operating modes, preserve recovery materials, and avoid blind mass resets or reprogramming.

AreaPatch prioritizationTechICS / OT
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-20
RecordCRT-2026-01092026.07.20Morning roundtable
WordPress wp2shell active-exploitation wording

WordPress wp2shell exploitation wording

Treat WordPress wp2shell as urgently patchable and monitorable, but do not describe it as confirmed active exploitation or assign attribution until victim telemetry, incident artifacts, or campaign evidence appears.

AreaPatch prioritization
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-20
RecordCRT-2026-01082026.07.20Morning roundtable
SonicWall versus SharePoint containment sequencing

SonicWall and SharePoint containment sequencing

Prioritize exposed or recently exposed SonicWall appliances first in tonight’s containment queue, while keeping exposed SharePoint servers in immediate incident-response handling. Both require exposure restriction, evidence preservation, compromise assessment, and credential or key review rather than routine patching.

AreaPatch prioritizationSOC escalationTechNetwork security
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps7 references
StateActiveRev 2026-07-20
19 JULY 20264 records
RecordCRT-2026-01072026.07.19Afternoon roundtable
Developer supply-chain containment near secrets

Containment for untrusted developer code near secrets

Contain where untrusted code can execute near secrets. Freeze nonessential dependency updates, gate install-time scripts where feasible, rotate secrets on developer or CI systems that ran unreviewed code, review recent dependency and workflow changes, and keep autonomous AI agents away from production credentials unless sandboxed.

AreaPatch prioritizationTechAI / ML systems
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-19
RecordCRT-2026-01062026.07.19Afternoon roundtable
Emergency action for exposed on-premises SharePoint Server

Emergency handling for exposed SharePoint Server

Yes. Treat exposed on-premises SharePoint Server as an emergency response lane: restrict internet exposure where possible, preserve web and endpoint evidence, validate and apply patches quickly, and hunt for web shells, machine-key exposure, service-account abuse, persistence, and lateral movement before declaring systems clean.

AreaPatch prioritizationSOC escalationVulnerability
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-19Prediction · due 18 AugNext checkpoint 18 Aug
RecordCRT-2026-01052026.07.19Morning roundtable
Validate IT and OT separation before claiming segmentation held

IT and OT separation validation after administrative-system malware

Do not rely on diagrams or public reassurance alone. Validate the infected zone, identity crossover, Level 4-to-Level 3 paths, OT choke points, data flows, engineering workstation integrity, and controller or SCADA change history before claiming separation held.

AreaRisk acceptanceVulnerabilityTechICS / OT
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-19
RecordCRT-2026-01042026.07.19Morning roundtable
Control-plane credential exposure from exposed AI and automation tooling

Exposed AI and developer tools as control-plane credential risk

Remove public exposure from Langflow, Docker API, Jenkins, Ollama, and ComfyUI; isolate before routine patching; revoke before rotating cloud, Kubernetes, Jenkins, database, MinIO, deploy, and CI/CD credentials; sandbox untrusted repositories; require review for workflow changes; allowlist developer extensions; and move developer secrets to short-lived scoped credentials.

AreaPatch prioritizationRisk acceptanceVulnerabilityTechDevOps supply chain
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-19
18 JULY 20268 records
RecordCRT-2026-01032026.07.18Afternoon roundtable
Mobile roaming and ad-tech location exposure for sensitive personnel

Personnel-security controls for mobile location exposure

Treat mobile roaming and ad-tech location exposure as a personnel-security issue for military-adjacent, diplomatic, defense, energy, media, and similar high-risk personnel. Restrict advertising identifiers, disable unnecessary roaming, review carrier and mobile-device-management telemetry, brief travelers, and use clean-phone rules for travel or crisis environments.

AreaRisk acceptanceThreat actor
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps4 references
StateActiveRev 2026-07-18
RecordCRT-2026-01022026.07.18Afternoon roundtable
Malicious npm package execution and secret exposure

Credential-exposure response for executed malicious npm packages

When malicious npm package lifecycle scripts ran where secrets were reachable, treat the event as a credential-exposure incident. Confirm execution, map reachable secrets, rotate only exposed secrets, freeze polluted rebuilds, pin known-good artifacts, and strengthen install-script and provenance controls.

AreaBreachSupply chainTechDevOps supply chain
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-18
RecordCRT-2026-01012026.07.18Afternoon roundtable
SonicWall SMA 1000 isolation and hotfix sequencing

Isolation-first handling for exposed SonicWall SMA 1000 appliances

For affected, internet-facing appliances with unknown patch or compromise status, isolate or severely restrict access before normal patch sequencing. Then apply the appropriate hotfix, preserve and review logs, revoke sessions, rotate appliance credentials, and reset MFA seeds if compromise is plausible.

AreaPatch prioritizationVulnerabilityTechNetwork security
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps7 references
StateActiveRev 2026-07-18
RecordCRT-2026-01002026.07.18Afternoon roundtable
SharePoint emergency patching and investigation

Emergency patching and investigation for exposed on-premises SharePoint

Treat exposed on-premises SharePoint as an urgent patch-and-investigate item. Restrict exposed access where needed, test and apply updates promptly, hunt for remote-code-execution and webshell activity, and scope session, account, secret, or machine-key recovery to forensic evidence.

AreaPatch prioritizationVulnerability
SeveritySeverity was not recorded when this record was first published.
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps9 references
StateActiveRev 2026-07-18
RecordCRT-2026-00992026.07.18Morning roundtable
Android and Gemini lock-screen assistant controls

Lock-screen assistant restrictions for affected Android fleets

Disable or restrict lock-screen assistant messaging on affected Android and Gemini managed fleets, and enforce device-management controls until the configuration or patch risk is resolved.

AreaPatch prioritizationTechMobile platform
SeverityMedium
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps4 references
StateActiveRev 2026-07-18
RecordCRT-2026-00982026.07.18Morning roundtable
Developer supply-chain compromise response

Developer supply-chain response scoped by execution and secrets

Scope response by execution and secret reachability: determine whether flagged packages or tooling ran, rotate only credentials those systems could access, and revoke abused signing or publishing trust.

AreaSupply chainVulnerabilityTechDevOps supply chain
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps6 references
StateActiveRev 2026-07-18
RecordCRT-2026-00972026.07.18Morning roundtable
Exposed AI and cloud administration tooling

NadMesh response for exposed AI and cloud tooling

Find exposed AI and cloud administration tooling named in the reporting, remove public access, rotate reachable cloud credentials, and hunt for secret discovery and botnet activity.

AreaPatch prioritizationVulnerability
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps5 references
StateActiveRev 2026-07-18
RecordCRT-2026-00962026.07.18Morning roundtable
Trust-state recovery

Trust-state recovery after identity and session compromise

Revoke sessions and rotate trust material tied to affected identity, collaboration, VPN, browser-token, and developer-secret surfaces; do not reset every password by default.

AreaRisk acceptanceVulnerability
SeverityHigh
Evidence and confidenceHigh confidence · 0/9 backed · 2 gaps5 references
StateActiveRev 2026-07-18

Showing 30 records · page 5 of 9

These controls filter only the 30 records on this page. Search the full Ledger

Unified Search

Search the public record.