OmenPoint turns the security-news firehose into a filtered, plain-English briefing built around the products you work with - one view for the engineers who architect it, another for the sellers who need a reason to call.
Scroll, and OmenPoint builds itself around you: the vendors you cover, the signal it attaches to each story, and the two very different ways of reading it.
An illustrative feed: these vendors and this CVE are invented. Today's real headlines are below.
Vendor research, CVEs, exploits, national CERTs, news, podcasts, YouTube: 550+ sources, collected every 30 minutes into a single stream.
Which, so far, is a list of headlines. Everyone has one of those.
Pick your vendors, plus the categories and countries you cover. Two minutes, once, and it holds for good.
Everything about the products you touch floats to the top. The rest of the wire dims rather than disappears, so nothing is hidden from you.
Every story carries what we worked out about it: whether it is known-exploited, its severity, the exploit-probability score, the government patch-by deadline, its category, and how many other outlets ran the same story.
And under all of it, a custom-written note on this specific story: not the publisher's summary rewritten, but what it means for your morning.
Watch the note change, not the story. Technical is the practitioner's read: what is affected and what to do this morning. Commercial is the seller's: the conversation this opens with a customer.
Two jobs, two answers. Almost all security news is written for the first one.
When one of your vendors lands on CISA's Known Exploited Vulnerabilities list, an email is already on its way. No dashboard-watching.
Paste a news site or a YouTube channel and it is parsed into your feed on the next sync, and admins can promote the best ones for everyone.
The same tailored feed, the same notes, built for the phone in your hand between meetings rather than the desk you left behind.
Nothing below is authored for this page. One story with both halves, then the feed itself: the same headlines read twice, once for the person who has to fix it and once for the person who has to sell around it.
A pre-authentication bypass in the EdgeGate SSL-VPN listener allows remote attackers to reach the management plane without credentials. Meridian has published fixed builds for the 4.x branch.
Written by the publisher. Every aggregator has this half.Any account running EdgeGate at the perimeter has a government patch deadline of 26 August. That deadline is the opening line: patch status, upgrade path, and who owns the appliance.
Written per story, per lens. This is the half you are paying for.SummaryA pre-authentication bypass on the SSL-VPN listener, now listed as known-exploited with a 26 August patch deadline.
SummarySession capture on privileged roles, exportable to the usual SIEM sinks.
SummaryDefault deny on cross-account role assumption, with a dated cutover every tenant has to plan for.
SummaryA broad industry write-up, kept in the feed and ranked below the things you actually run.
An authored example of how each story is framed, tagged as one. Today's real stories load in its place.
The daily brief lands at 7am in your own timezone. It opens with a custom-written analyst note: two or three paragraphs on the last 24 hours, drawn from 550+ sources. What actually mattered, how the day sits against the days before it, what was quiet, and what you do differently because of it. Then a personal "For you:" line on your pinned vendors, then the day itself, ranked, known-exploited first and badged.
The Monday weekly is a different document, not a longer one. A week is a different unit of analysis, so it is written as one: what developed across the week, what got worse or better than the week before, which vendors kept coming back, and what is still open going into next week. The sections sit inside that read rather than under it.
Both are written in the voice you choose: a practitioner's, a seller's, or a mix of the two.
Try it, and watch the analyst note change:
Meridian Networks' EdgeGate VPN is the only thing on today's list that changes what you do this morning. CVE-2026-00000 went from a published proof of concept to broad scanning inside twelve hours and was added to the known-exploited catalogue overnight, with a 26 August deadline attached. Two managed service providers have confirmed compromise, which is what turns this from a patch ticket into a question about who else runs your appliances.
Underneath it the day was ordinary. Volume sat close to the recent median and had the same shape as the three days before it: edge devices and identity, very little cloud. Meridian has now been named on five of the last seven days, which usually means a story still unfolding rather than one vendor having a bad week. Ransomware posts were flat against the median, and nothing crossed on the operational technology side at all.
So: if you run EdgeGate, today is the patch, a credential rotation and a log review back to the third. If you sell around it, lead with the deadline rather than the vulnerability, because the deadline is the part your customer's board has already heard about. Solstice Data's identity governance release is the one other item worth reading before a renewal conversation this week.
For you: Meridian Networks (6 stories, incl. known-exploited); Solstice Data (3 stories) moved. Quiet: Archway Cloud.
An illustrative sample: the vendors and the CVE are invented. Subscribers get the real note, written fresh each morning from the live feed.
Your corner of the week first: the vendors you follow.
Your OmenPoint week · 4 Aug – 11 Aug
2,900 stories crossed the feed this week; here is the week on the tools and on the market. Edge appliances dominated it from Tuesday, and the market moved around identity.
The week broke on Tuesday and never settled. EdgeGate started as a single advisory on Monday, drew four outlets on Tuesday and eleven by Thursday, which is the shape of a story that built rather than one that landed. Identity ran quietly underneath it and only surfaced on Friday, when three vendors shipped session recording inside a day of each other.
Known-exploited entries in the week's coverage are up on the week before, and two of them fell due during the week rather than ahead of it. Meridian Networks was named on six days of seven, against two the week before. Ransomware victim posts were down slightly. Cloud stayed thinner than it has been all month.
Actively exploited this week: the patch-now list.
The stories the most outlets agreed mattered.
Who was loudest on the ransomware side.
Market signals from the commercial wire.
Events that open sales conversations.
What readers across OmenPoint actually opened.
Two deadlines fell due during the week and the coverage suggests plenty of appliances are still unpatched, so treat the EdgeGate list as unfinished rather than closed. The managed service provider angle only appeared on Friday and has not been picked up widely yet, which usually means it runs into next week. Identity vendors converging on the same feature is a competitive story that has not resolved.
An illustrative sample. Monday's email carries that morning's analyst note on top of this, so the week's read and the day's read arrive together.
Pick the vendors you work with; everything else fades away. It's your slice, not everyone's firehose.
One switch changes the writing, not the filter. A practitioner's triage line, or the conversation the story opens with a customer.
Known-exploited flags, severity, exploit probability, patch-by deadlines and the outlets that covered it, on the story itself.
One filtered feed replaces the blog / newsletter / social shuffle. Search it, save what matters, share a story in a click.
The live feed, the briefings and the alerts: all of it, built around your vendors and your regions.
Card required to start. We email you before the first charge.
Cancel in one click from Settings - no phone calls, no retention flow.
Your card is charged A$5 and the feed keeps flowing. We send a reminder email a few days before, so nothing is a surprise. Cancel before then and you pay nothing.
You keep access until the end of the period you've paid for. Your interests, sources and saved items stay put, so reactivating later picks up where you left off. You can also export or delete everything from Settings at any time.
Payments run entirely on Stripe - your card details never touch OmenPoint's servers.