Critical Security Update: January 8, 2026 (Microsoft Exchange, Cisco, ChatGPT Ads, D-Link)
Critical Security Update
Microsoft Exchange, Cisco, ChatGPT Ads, D-Link
Risk 1: High
Issue: Microsoft Exchange Online users (typically larger corporate users, but not always) are currently experiencing problems accessing their mailbox. This is a known issue and Microsoft is working to correct it.
Resolution: There is no need to modify or adjust any settings. This is not a known security incident and adjusting settings could hinder your connectivity. If you experience a brief outage, just wait for the service to return.
Risk 2: Medium
Issue: There is a known vulnerability in Cisco Identity Management (ISE) that allows non-authenticated users to gain access to systems. Cisco issued a warning and does not believe this vulnerability has been exploited yet. That is good news, but their announcement will make the vulnerability public and open to greater exploit.
Resolution: Any one using the Cisco Identity Service Engine should ensure they have applied the most recent update (this week).
Risk 3: Low
Issue: OpenAI has begun testing the use of placing ads in ChatGPT. The initial push is just to employees, but they have an aggressive plan to push out to users very quickly. It is clear that the free plan will include adds, but no full explanation has been provided on who will see ads one deployed. There is a high probability that the Go paid plan will, but their other higher paid plans more than likely will not.
Resolution: This serves as notices in case you start seeing ads in the near future.
More so, this is a great time to start finalizing your AI platform selection and purchasing a solid, paid plan.
Risk 4: High
Issue: D-Link, a manufacturer of low-cost firewalls and routers, has once again issued another warning about vulnerabilities connected to their DSL routers. DSL is an internet protocol similar to fiber or cable. These devices can be purchased, but may also have been provided by your internet service provider.
Resolution: We have already issued a stop usage on D-Link devices. Our formal recommendation is to just move away from these devices entirely.
Announced Data Breaches
Sedgwick
Brightspeed (under investigation)
NordVPN (claimed as not a breach)
Financial Guardians is a proud member of InCite, the recently launched online community exclusively for tax professionals, bookkeepers, and accountants. InCite members receive a 30% discount.
Join today at www.incite.tax.
Financial Guardians has partnered with the California Society of Tax Consultants to provide a 30% access discount as well as many other offers. More info can be found at www.cstcsociety.org






