AI Cybersecurity News Digest - 9 Feeds, One Daily Brief

automation · $29.99

You follow 9 security news sites. You read none of them. This workflow reads them all and tells you the one thing that matters today

The news digest workflow in n8n, nine RSS feeds including The Hacker News, BleepingComputer, a CVE feed, CISA advisories, Krebs on Security, CERT-FR and Unit 42 merging into one aggregate, deduplicate and enrich node, then branching through an optional Ollama briefing to Gmail, Discord, Telegram and Slack

You know the feeling. Ten browser tabs open. The Hacker News, BleepingComputer, CISA, a CVE feed. You promise yourself you will read them later. You never do.

Then a client asks: "Are we safe from this new bug?" And you have no idea.

This n8n workflow fixes that. It reads 9 security news sites for you, every 6 hours. It throws away old news you already saw. It finds every CVE number. Then it checks each one against the CISA KEV list the official US government list of bugs that hackers are attacking right now.

The result lands in your Discord, Slack, Telegram, or inbox. Short. Ranked. Real danger at the top.

Here is the smart part: the AI does not run every time.

Most days are quiet. On quiet days, the workflow writes your briefing for free no AI, no tokens, no cost. The AI only wakes up when something is truly critical or being attacked in the wild. So you get an expert briefing when you need one, and you pay almost nothing to keep it running.

No news at all? It stops early. It does not even call the AI. It does not spam you.

Safe from day one. It ships in test mode. Import it, run it, and read exactly what it would have sent before it sends anything. Change one field to go live.

Import the JSON. Add one Discord webhook. Done in 10 minutes.

Report Example

A priority threat briefing dated 22 May 2026 showing 210 articles scanned, 54 new, 72 CVEs, 0 actively exploited and 22 critical, with an executive summary, ten findings listed as impacting our own infrastructure, and top-finding cards led by a critical Linux root access vulnerability

Why people buy it

  • It saves you money. Most runs cost zero AI tokens. Other news bots call the AI every single time.

  • It saves you time. One short briefing instead of 9 websites.

  • It tells you what is real. "Actively attacked" beats "sounds scary" every time.

  • It cannot spam your team by mistake. Test mode is on by default.

  • It works out of the box. No paid API keys. No database to set up.

Video Demo

Built for

Solo security engineers · Small MSPs · SOC teams with no time to read · Consultants who need to sound informed on every client call · Homelabbers who want a real threat feed.

Requirements

n8n (self-hosted or cloud, v1.x+) · One place to send it (Discord, Slack, Telegram, Gmail or SMTP) · Optional: Ollama for the AI briefings. All data sources are free.

Need help?

Want help deploying or customizing it? Get deployment & customization

7-day guarantee

If it doesn't work as described, or it isn't what you needed, contact us within 7 days of purchase and we'll refund you in full. If you'd rather have it working, say so and we'll help you get it running. Your call. Full terms.

← Browse all products