The former head of Trenchant, a specialized U.S. defense contractor unit, was sentenced Tuesday to more than seven years in federal prison for stealing and selling zero-day exploits to a Russian exploit broker whose clients include the Russian government. […]
Category: Government & Policy
AI, APAC, Global Security News, Government & Policy, malware
Lazarus APT group deployed Medusa Ransomware against Middle East target
North Korea’s Lazarus Group used Medusa ransomware in an attack on an unnamed Middle East organization, researchers report. The North Korea-linked Lazarus APT Group, also known as Diamond Sleet and Pompilus, has been spotted deploying Medusa ransomware against an unnamed organization in the Middle East, according a new report from the Symantec and Carbon Black…
AI, Apps, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, malware, Network Security, Risk Management
New Serv-U bugs extend SolarWinds’ run of high-severity disclosures
SolarWinds continues to be besieged by security issues, this time in its Serv-U managed file transfer server. The software company has released four patches for critical Serv-U remote code execution (RCE) vulnerabilities that could allow attackers to gain root (administrator) access to unpatched servers. These four common vulnerabilities and exposures (CVEs) are rated “critical,” the…
AI, Global Security News, Government & Policy, malware, Network Security
What does business email compromise look like?
Business email compromise (BEC) is the digital con dressed to impress. It’s clean, calculated, and ready to fool even the sharpest eyes. These scammers don’t tell on themselves with sloppy hacks. They whisper in familiar voices, posing as your CEO, HR, or a trusted vendor. And, unlike phishing, they’re a precision strike built on inside…
AI, Cybersecurity, Exploits, Global Security News, Government & Policy, Russia
Ex-L3Harris executive sentenced to 87 months in prison for selling zero-day exploits to Russian broker
An ex-L3 Harris executive was sentenced to over seven years in prison Tuesday after pleading guilty to selling eight zero-day exploits to a Russian broker in exchange for millions of dollars. Williams, 39, admitted to two counts of theft of trade secrets in U.S. District Court in Washington, D.C., last year, acknowledging he took at…
Global Security News, Government & Policy
Pentagon Gives Anthropic Ultimatum and Deadline in AI Use Standoff
Defense Secretary Pete Hegseth threatened to use the government’s leverage in a meeting with CEO Dario Amodei at the Pentagon.
AI, Compliance, Global Security News, Government & Policy, Risk Management
Apple plans to make Mac minis in the US
Illustrating the extent to which it is willing to work with the Trump Administration — and as President Donald J. Trump prepares for tonight’s State of the Union address — Apple now says it will begin to make Mac minis in Houston later this year. The Macs will be made at the same factory where the company now…
Global Security News, Government & Policy, Network Security
Romanian Hacker Extradited to US Admits Hacking Oregon State Network
Catalin Dragomir admits to hacking an Oregon government office and selling network access. Read more on the $250k fraud case and his 2026 sentencing.
AI, Endpoint, Europe, Exploits, Global Security News, Government & Policy, malware, Russia
Operation MacroMaze: APT28 exploits webhooks for covert data exfiltration
Russia-linked APT28 targeted European entities with a webhook-based macro malware campaign called Operation MacroMaze. Russia-linked APT28 (aka UAC-0001, aka Fancy Bear, Pawn Storm, Sofacy Group, Sednit, BlueDelta, and STRONTIUM) launched Operation MacroMaze, targeting select entities in Western and Central Europe from September 2025 to January 2026. The campaign used webhook-based macro malware, leveraging simple tools and legitimate services for infrastructure and data…
AI, Funding, Global Security News, Government & Policy, privacy
Microsoft undercuts its kinder, gentler image with big ICE contract
For at least the last six or so years, Microsoft has worked hard to portray itself as a kinder, gentler tech company, a stark contrast to other Big Tech behemoths like Meta, Google, Amazon, and — since Donald J. Trump’s election to the presidency in 2024 — Apple. Even The New York Times has noted…
AI, china, Endpoint, Exploits, Global Security News, Government & Policy, malware, Network Security, Russia
The rise of the evasive adversary
Since the earliest days of the internet, there has never been a let-up in adversarial activity. According to CrowdStrike’s just-released 12th annual Global Threat Report, malicious activity in cyberspace continues to not only accelerate but also expand its scale and increasingly abuse the trust of targeted organizations. The good news is that, despite discussion of…
Global Security News, Government & Policy
Spain arrests suspected hacktivists for DDoSing govt sites
Spanish authorities have arrested four alleged members of a hacktivist group believed to have carried out cyberattacks targeting government ministries, political parties, and various public institutions. […]
AI, china, Global Security News, Government & Policy, Risk Management
Anthropic accuses Chinese labs of trying to illicitly take Claude’s capabilities
Anthropic on Monday accused three Chinese artificial intelligence laboratories of stealthily trying to siphon Claude’s capabilities for their own models, potentially in a way that could fuel offensive cyber operations. The U.S. AI startup said the three labs, DeepSeek, Moonshot and MiniMax, ran “industrial-scale campaigns” with a tactic known as “distillation.” It involves sending bulk…
AI, Apps, Europe, Global Security News, Government & Policy, Network Security
In India, Nvidia eyes a different approach to sovereign AI
Nvidia has been talking about sovereign AI for years, but is finding that India’s cultural and economic diversity calls for a different approach. Unlike in the US, truckloads of GPUs won’t drive the chipmaker’s expansion in India. Instead, the company plans to focus on software first, and deal with computing power later. It’s betting on…
AI, Global Security News, Government & Policy
Spanish police arrest suspected Anonymous members over DDoS attacks on government sites
Spanish police (Guardia Civil) arrested four members of the hacktivist group Anonymous Fénix over DDoS attacks targeting ministries, political parties and public institutions. Police raid (Source: Guardia Civil) Police identified the organization’s leadership, including its administrator and moderator, who were arrested in May 2025 in Alcalá de Henares (Madrid) and Oviedo (Asturias). Evidence gathered during…
AI, Global Security News, Government & Policy, Network Security
Romanian hacker pleads guilty to selling access to Oregon state networks
A Romanian man pleaded guilty to selling admin access to Oregon’s state network for $3,000 in Bitcoin and repeatedly accessing it to prove control. Catalin Dragomir (45) from Romania, pleaded guilty in the U.S. for selling unauthorized admin access to an Oregon state emergency management network. He gained access in June 2021, advertised it, and…
AI, Apps, Cybersecurity, Data Breaches, Europe, Exploits, Global Security News, Government & Policy, Network Security, Risk Management
1.2 Million Accounts Exposed in French Bank Registry Breach
An incident disclosed by the French Ministry of Finance involved unauthorized access to the national bank account registry and may have exposed data tied to approximately 1.2 million accounts. This case highlights the continued effectiveness of credential theft as an attack vector. The attacker “… was able to consult part of this file which lists…
AI, APAC, Apps, china, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, Network Security
CVE-2026-1731 fuels ongoing attacks on BeyondTrust remote access products
Attackers are exploiting CVE-2026-1731 in BeyondTrust RS and PRA to deploy VShell, gain persistence, move laterally, and control compromised systems. Threat actors are actively exploiting a recently disclosed critical vulnerability, tracked as CVE-2026-1731 (CVSS score: 9.9), in BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA). The flaw is being used to conduct a wide…
AI, APAC, Apps, Endpoint, Exploits, Global Security News, Government & Policy, Network Security
Attackers exploit Ivanti EPMM zero-days to seize control of MDM servers
Attackers are actively exploiting two critical zero-day vulnerabilities in Ivanti’s Endpoint Manager Mobile (EPMM) to gain unauthenticated control of enterprise mobile device management infrastructure and install backdoors engineered to persist even after organizations apply available patches. “Two critical zero-day vulnerabilities (CVE-2026-1281 and CVE-2026-1340) affecting Ivanti Endpoint Manager Mobile (EPMM) are being actively exploited in the wild, affecting…
AI, Global Security News, Government & Policy
Victoria fast-tracks NEXTDC’s Port Melbourne campus amid east coast data centre surge
With AirTrunk, CDC and global cloud players expanding across the east coast, the approval of NEXTDC’s 162MW M4 facility signals continued escalation in the race for land, power and hyperscale customers. The Victorian Government has approved NEXTDC’s proposed M4 technology campus in Port Melbourne, clearing the way for what is expected to be one of…
AI, china, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, malware, Network Security, Russia
Security Affairs newsletter Round 564 by Pierluigi Paganini – INTERNATIONAL EDITION
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. U.S. CISA adds RoundCube Webmail flaws to its Known Exploited Vulnerabilities catalog PayPal discloses extended data…
AI, Exploits, Global Security News, Government & Policy, malware, Network Security, Risk Management
Don’t trust TrustConnect: This fake remote support tool only helps hackers
After breaking into a system, crooks often install legitimate remote admin tools to keep a foothold on the network — with the risk that the tool’s vendor spots them and locks them out. Now they have a new option: a fake remote monitoring and management (RMM) tool, complete with serious-looking online storefront, built just for…
AI, Global Security News, Government & Policy, Network Security
North Korean IT worker scam nets Ukrainian five-year sentence in the U.S.
A Ukrainian man was sentenced to five years in the U.S. for helping North Korean IT workers use stolen identities to get hired by U.S. firms. Oleksandr “Alexander” Didenko, a 29-year-old Ukrainian national, has been sentenced to five years in a U.S. prison for supporting North Korea’s fraudulent IT worker scheme. Didenko admitted stealing U.S.…
AI, Compliance, Cybersecurity, Global Security News, Government & Policy, privacy, Risk Management
PayPal launches latest struggle to get rid of SMS for MFA
When PayPal started emailing customers this month that it was backing off unencrypted SMS for multifactor authentication (MFA) at login, it came with the typical approach-avoidance asterisk. The financial services giant signaled that it was turning the page on the much-maligned authentication method while simultaneously offering no timeline and assuring customers SMS wouldn’t entirely go…
Compliance, Cybersecurity, Data Breaches, Global Security News, Government & Policy, Risk Management
Applying green energy tax policies to improve cybersecurity
For years, governments have focused only on the stick of compliance when they could leverage the carrot of tax incentives. Theoretically, compliance fines and penalties should act as a deterrent that improves accountability and reduces data breaches. However, many vendors often assume compliance risk rather than securing data effectively. For example, Meta has been the…
AI, Global Security News, Government & Policy
Ukrainian sentenced to 5 years in prison for facilitating North Korean remote worker scheme
A Ukrainian national who ran multiple operations to aid the North Korean government’s expansive scheme to hire remote IT workers at U.S. companies was sentenced to five years in prison, the Justice Department said Thursday. Oleksandr Didenko stole U.S. citizens’ identities and created more than 2,500 fraudulent accounts on freelance IT job forums, money service…
AI, Apps, china, Cybersecurity, Data Security, Exploits, Global Security News, Government & Policy, Network Security, Politics, Risk Management
Texas Sues TP-Link Over Alleged Security Risks and Supply Chain Deception
Texas has filed a lawsuit against networking manufacturer TP-Link Systems, accusing the company of misleading consumers about the security and origins of its routers while exposing users to exploitation by Chinese state-backed threat actors. The complaint alleges that TP-Link marketed its devices as secure and labeled them “Made in Vietnam,” despite sourcing nearly all components…
AI, Europe, Global Security News, Government & Policy, Russia
Germany’s national rail operator Deutsche Bahn hit by a DDoS attack
Germany’s national rail operator, Deutsche Bahn, suffered a major DDoS attack that disrupted booking and information systems for several hours. Germany’s rail operator Deutsche Bahn was hit by a large-scale DDoS attack that disrupted information and booking systems for several hours. The cyberattack affected IT operations, causing delays and service interruptions. At this time, the…
AI, Cybersecurity, Data Breaches, Global Security News, Government & Policy, Network Security
FBI: Threats from Salt Typhoon are ‘still very much ongoing’
A top FBI cyber official said Salt Typhoon, the Chinese cyber espionage group behind the widespread compromise of U.S. telecommunications infrastructure in 2024, continues to pose a broad threat to both America’s private and public sectors. Michael Machtinger, deputy assistant director for cyber intelligence at the FBI, touted improved partnerships between the telecommunications industry and…
AI, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, Risk Management
HHS burrows into identifying risks to health sector from third-party vendors
A Department of Health and Human Services official said Thursday that HHS is devoting a lot of attention to the security of third-party service providers after the 2024 Change Healthcare cyberattack. That attack, which is widely regarded as the biggest ever in the sector — including by HHS’s Charlee Hess, who spoke Thursday at CyberTalks…
AI, Cybersecurity, Global Security News, Government & Policy, Risk Management, Venture
ONCD official says Trump administration aims to bolster AI use for defense without increasing risk
The Trump administration wants to boost the use of artificial intelligence for security in a way that doesn’t increase the number of targets for adversaries to attack, a top official with the Office of the National Cyber Director said Thursday. The administration will “promote the rapid implementation of AI enabled cyber defensive tools to detect,…
AI, Cybersecurity, Exploits, Global Security News, Government & Policy
CISA orders feds to patch actively exploited Dell flaw within 3 days
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered government agencies to patch their systems within three days against a maximum-severity Dell vulnerability that has been under active exploitation since mid-2024. […]
AI, Cybersecurity, Endpoint, Exploits, Global Security News, Government & Policy, Network Security, privacy, Risk Management
CISA alerts to critical auth bypass CVE-2026-1670 in Honeywell CCTVs
CISA warns Honeywell CCTVs are affected by a critical auth bypass flaw (CVE-2026-1670) allowing unauthorized access or account hijacking. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warns that Honeywell CCTVs are affected by a critical authentication bypass flaw, tracked as CVE-2026-1670 (CVSS score of 9.8), that lets attackers change the recovery email without logging…
AI, Cybersecurity, Exploits, Global Security News, Government & Policy, Network Security, Politics, Risk Management
The Caracas operation suggests cyber was part of the plan – just not the whole operation
The dominant narrative has framed the Jan. 3 Caracas power outage during the mission to capture Venezuelan leader Nicolás Maduro as a “precision cyberattack.” But publicly available information points to a more complicated picture: videos, photographs, and accounts published from Caracas show significant physical damage to at least three Venezuelan substations. Experts who reviewed that…
AI, Global Security News, Government & Policy, Risk Management
UK sounds alarm on rising cyber risks to businesses
The UK government launched a national campaign urging businesses to strengthen basic cyber defenses. The initiative follows new figures highlighting the scale of the threat. Serious cyber incidents cost businesses an average of £195,000, with about half of small firms experiencing one in the past 12 months, officials say. “No business is out of reach…
AI, Cybersecurity, Global Security News, Government & Policy, malware, Risk Management
G2 Recognizes ANY.RUN as a Top Security Software Provider
G2, the world’s largest and most trusted software marketplace, has recognized ANY.RUN among the Best EMEA Software Companies. In the ranking, the company was acknowledged in both Malware Analysis and Threat Intelligence categories. The ranking is based on verified reviews from companies actively using ANY.RUN’s solutions, underscoring our impact across global cybersecurity markets. Impact with…
AI, Exploits, Global Security News, Government & Policy, Network Security, privacy
Intellexa’s Predator spyware infected Angolan journalist’s device, Amnesty reports
Amnesty reports Angolan journalist’s iPhone was infected by Intellexa’s Predator spyware via a WhatsApp link in May 2024. Amnesty International reports that in May 2024, Intellexa’s Predator spyware infected the iPhone of Teixeira Cândido, an Angolan journalist and press freedom advocate, after he opened a malicious link sent via WhatsApp. This incident highlights how attackers…
AI, Global Security News, Government & Policy, malware, Network Security
Nigerian man sentenced to 8 years in prison for running phony tax refund scheme
A 37-year-old Nigerian man was sentenced to eight years in prison for participating in a five-year cybercrime spree to steal money from the U.S. government through fraudulent tax returns, the Justice Department said Wednesday. Matthew Abiodun Akande was living in Mexico when he and at least four co-conspirators broke into the networks of tax preparation…
Global Security News, Government & Policy
In First Since WWII, Navy to Hire Company to Oversee Shipbuilding Project
The government typically handles the job, but delays and cost overruns prompted a search for new approaches.
AI, Data Breaches, Global Security News, Government & Policy
French Ministry confirms data access to 1.2 Million bank accounts
A hacker accessed data from 1.2 million French bank accounts using stolen official credentials, the Economy Ministry said. A hacker gained access to data from 1.2 million French bank accounts using stolen credentials belonging to a government official, according to the French Economy Ministry. French authorities said affected account holders will be notified in the…
AI, Cybersecurity, Data Breaches, Global Security News, Government & Policy, malware, Network Security, Risk Management
Shocking 12 Recent Major Cyber Attacks 2026 That Are Reshaping Global Security
The year 2026 has already witnessed an alarming rise in cybercrime activity worldwide. From large-scale ransomware incidents to sophisticated nation-state espionage campaigns, the recent major cyber attacks 2026 highlight a rapidly evolving digital threat landscape. Businesses, governments, healthcare systems, and even critical infrastructure have become prime targets. For a domain like CyberCrimesWatch.com, reporting on verified…
AI, Apps, Cybersecurity, Europe, Global Security News, Government & Policy, privacy
European Parliament Blocks AI on Lawmakers’ Devices Over Security Fears
The European Parliament has disabled built-in artificial intelligence features on work devices used by lawmakers and their staff, following internal cybersecurity and privacy concerns. The decision was communicated in an internal email seen by Politico, which reported the move on Monday. According to the message from the Parliament’s IT support team, the institution could not…
AI, Apps, china, Exploits, Global Security News, Government & Policy, malware
Notepad++ patches flaw used to hijack update system
Notepad++ patched a vulnerability that attackers used to hijack its update system and deliver malware to targeted users. Notepad++ fixed a vulnerability that allowed a China-linked APT group to hijack its update mechanism and selectively push malware to chosen targets. In early February, the Notepad++ maintainer revealed that nation-state hackers compromised the hosting provider’s infrastructure,…
AI, Global Security News, Government & Policy, Risk Management
Fulton County lawsuit claims feds used ‘gross mischaracterizations’ to justify raid
A former federal official who tested and certified voting machines used in Fulton County, Georgia for the 2020 presidential election told a court that the federal government misrepresented key facts and omitted exculpatory public evidence while seeking a warrant in last month’s law enforcement raid. The raid, carried out by the FBI and overseen by…
AI, Apps, Global Security News, Government & Policy, Network Security
SpaceX Joins Pentagon’s $100M Voice-Controlled Drone Challenge
The race to command drone swarms by voice has begun. SpaceX is competing in a $100 million Pentagon prize challenge to develop software that allows battlefield commanders to control large fleets of autonomous drones using plain-language commands, according to Bloomberg. The initiative, led by the Defense Innovation Unit, is designed as a fast-moving competition to…
AI, APAC, Apps, Compliance, Europe, Global Security News, Government & Policy, Risk Management
ArmorText Debuts Sovereign Edition for Operational Resilience
ArmorText, an organization dedicated to safeguarding communication globally for organizations, has debuted ArmorText Sovereign Edition. ArmorText Sovereign Edition built to support collaboration as geopolitical security risks rise This new solution enables deployment of globally reachable, multi-tenant secure communications hosted entirely on local infrastructure to ensure communication continuity even when connectivity is disrupted. The Edition addresses…
AI, APAC, Apps, Compliance, Europe, Global Security News, Government & Policy, Risk Management
ArmorText Debuts Sovereign Edition for Operational Resilience
ArmorText, an organization dedicated to safeguarding communication globally for organizations, has debuted ArmorText Sovereign Edition. ArmorText Sovereign Edition built to support collaboration as geopolitical security risks rise This new solution enables deployment of globally reachable, multi-tenant secure communications hosted entirely on local infrastructure to ensure communication continuity even when connectivity is disrupted. The Edition addresses…
Global Security News, Government & Policy
Singapore & Its 4 Major Telcos Fend Off Chinese Hackers
After detecting a zero-day attack, the country’s effective response was attributed to the tight relationship between its government and private industry.
AI, APAC, Apps, china, Cybersecurity, Endpoint, Exploits, Global Security News, Government & Policy, malware, Network Security
Chinese hackers exploited a Dell zero-day for 18 months before anyone noticed
Researchers uncovered more worrying details about a long-running cyber espionage campaign suspected to be backed by the Chinese government, exemplifying how such attacks often go undetected until they’ve already caused significant damage. Google Threat Intelligence Group and Mandiant said the Chinese threat group UNC6201 has been exploiting a zero-day vulnerability in Dell RecoverPoint for Virtual…
AI, Compliance, Global Security News, Government & Policy, Risk Management
Pentagon Weighs Axing $200M Anthropic Deal in Moral Standoff Over AI Safeguards
Here’s a sentence you don’t hear every day: the US military is threatening to punish an AI company for being too ethical. Axios reported that Defense Secretary Pete Hegseth is “close” to cutting ties with Anthropic and designating it a “supply chain risk,” a label normally reserved for foreign adversaries like Chinese tech firms. The…
AI, Data Breaches, Global Security News, Government & Policy, malware, Network Security, Russia
Polish cybercrime Police arrest man linked to Phobos ransomware operation
Officers from Poland’s Central Bureau of Cybercrime Control (CBZC) police arrested a 47-year-old man linked to the Phobos ransomware operation. Polish authorities arrested a 47-year-old man suspected of involvement in cybercrime and linked him to the Phobos ransomware operation. Police said they discovered evidence of illegal activities on his seized devices. “Officers from the Central…
AI, Apps, Compliance, Cybersecurity, Data Security, Global Security News, Government & Policy, Network Security, Risk Management, Venture
RSA mafia continues to shape the industry 44 years later
Although, as a startup founder now, I don’t get much (any?) time to look at parts of the industry unrelated to what I am building, I would still consider myself to be pretty plugged into the cybersecurity ecosystem. I have a good idea what is being discussed, what people pay attention to, and what questions…
Global Security News, Government & Policy
NSW’s cyber strategy reflects a broader shift, security is becoming an enabler of progress
GUEST OPINION: The NSW Government’s new cyber security strategy is a strong point of reference, not just because it applies to government, but because it reflects a broader shift we are seeing across Australian organisations.
AI, Compliance, Global Security News, Government & Policy, Risk Management
Citizen Lab links Cellebrite to the hacking of a Kenyan presidential candidate’s phone
Researchers have found forensic evidence suggesting that Kenyan authorities used Cellebrite’s phone-cracking technology on the device of a prominent human rights activist after arresting him, according to a report published Tuesday. The University of Toronto’s Citizen Lab said the intrusion is a sign of growing abuse of Cellebrite’s technology. According to the report, after his…
AI, Apps, Data Breaches, Endpoint, Exploits, Global Security News, Government & Policy, Network Security, Risk Management
Phishing Evolves Into Multi-Platform Fraud Systems
Phishing no longer announces itself with obvious red flags or clumsy impersonations. New research from Bolster AI shows today’s most effective scams are engineered to blend into routine digital interactions, hiding in search results, paid ads, document workflows, and online marketplaces rather than obvious spoofed emails. “Attackers are designing scams that look and feel real…
AI, Exploits, Global Security News, Government & Policy
CISA gives feds 3 days to patch actively exploited BeyondTrust flaw
CISA ordered U.S. government agencies on Friday to secure their BeyondTrust Remote Support instances against an actively exploited vulnerability within three days. […]
AI, Global Security News, Government & Policy
UK sets course for stricter AI chatbot regulation
The UK government has announced immediate action to force AI chatbot providers to comply with laws requiring online platforms to protect children from illegal and harmful content. Providers that fail to meet these duties will face legal consequences. This follows recent intervention after non-consensual intimate images were shared through the AI chatbot Grok, prompting the…
AI, Cybersecurity, Data Breaches, Funding, Global Security News, Government & Policy, Risk Management
CISO Julie Chatman wants to help you take control of your security leadership role
Julie Chatman never planned to get into cybersecurity. In fact, she believes most don’t but are mentored into it, as she was. Chatman started her professional career as a Navy Hospital Corpsman, specializing in medical laboratory science and technology — a core part of medical diagnostics. “I analyzed blood work, monitoring quality control, ensuring accuracy…
AI, Global Security News, Government & Policy, Network Security, Politics, Risk Management
Palantir Gets Millions of Dollars From New York City’s Public Hospitals
New York City’s public hospital system is paying millions to Palantir, the controversial ICE and military contractor, according to documents obtained by The Intercept. Since 2023, the New York City Health and Hospitals Corporation has paid Palantir nearly $4 million to improve its ability to track down payment for the services provided at its hospitals…
AI, Cybersecurity, Exploits, Global Security News, Government & Policy, Network Security, Risk Management
U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added an BeyondTrust RS and PRA vulnerability, tracked as CVE-2026-1731 (CVSS score of 9.9), to its Known Exploited Vulnerabilities (KEV) catalog. This week BeyondTrust released security updates to…
AI, Cybersecurity, Exploits, Global Security News, Government & Policy, Network Security, Risk Management
U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added an BeyondTrust RS and PRA vulnerability, tracked as CVE-2026-1731 (CVSS score of 9.9), to its Known Exploited Vulnerabilities (KEV) catalog. This week BeyondTrust released security updates to…
AI, Apps, Global Security News, Government & Policy, malware, Russia
Suspected Russian hackers deploy CANFAIL malware against Ukraine
A new alleged Russia-linked APT group targeted Ukrainian defense, government, and energy groups, with CANFAIL malware. Google Threat Intelligence Group identified a previously undocumented threat actor behind attacks on Ukrainian organizations using CANFAIL malware. The group is possibly linked to Russian intelligence services and has targeted defense, military, government, and energy entities at both regional…
AI, APAC, Apps, Compliance, Cybersecurity, Europe, Exploits, Global Security News, Government & Policy, Network Security
FTC digs deeper into Microsoft’s bundling and licensing practices
The US Federal Trade Commission (FTC) seems to be doubling down on its investigation of Microsoft and the tech giant’s potentially shady bundling and licensing practices. According to a Bloomberg report, the federal agency has been issuing civil investigative demands (CIDs) to companies that compete with Microsoft in the business software and cloud computing markets.…
AI, APAC, Apps, Compliance, Cybersecurity, Europe, Exploits, Global Security News, Government & Policy, Network Security
FTC digs deeper into Microsoft’s bundling and licensing practices
The US Federal Trade Commission (FTC) seems to be doubling down on its investigation of Microsoft and the tech giant’s potentially shady bundling and licensing practices. According to a Bloomberg report, the federal agency has been issuing civil investigative demands (CIDs) to companies that compete with Microsoft in the business software and cloud computing markets.…
AI, Apps, Data Breaches, Endpoint, Exploits, Global Security News, Government & Policy, malware, Network Security
1,800+ Windows Servers Hit by BADIIS SEO Malware
More than 1,800 Windows servers have been quietly compromised in a sprawling malware campaign that turns legitimate websites into tools for search engine manipulation. The operation leverages a sophisticated strain known as BADIIS to infect Microsoft Internet Information Services (IIS) environments, allowing threat actors to monetize trusted infrastructure without disrupting normal operations. We found “……
AI, Global Security News, Government & Policy, malware, Russia
Google Ties Suspected Russian Actor to CANFAIL Malware Attacks on Ukrainian Orgs
A previously undocumented threat actor has been attributed to attacks targeting Ukrainian organizations with malware known as CANFAIL. Google Threat Intelligence Group (GTIG) described the hack group as possibly affiliated with Russian intelligence services. The threat actor is assessed to have targeted defense, military, government, and energy organizations within the Ukrainian regional and
AI, Exploits, Global Security News, Government & Policy
Attackers exploit BeyondTrust CVE-2026-1731 within hours of PoC release
Attackers quickly targeted BeyondTrust flaw CVE-2026-1731 after a PoC was released, enabling unauthenticated remote code execution. Threat actors rapidly began exploiting a newly patched BeyondTrust vulnerability, tracked as CVE-2026-1731 (CVSS score of 9.9), soon after a proof-of-concept exploit became public. This week BeyondTrust released security updates to address the critical flaw in its Remote Support…
AI, Compliance, Cybersecurity, Data Breaches, Global Security News, Government & Policy, Network Security, Risk Management
Odido CRM Data Breach Exposes 6.2M Customer Records
A major Dutch telecom provider is warning customers after a cyberattack exposed personal data tied to millions of accounts. Odido Telecom confirmed that attackers gained unauthorized access to its customer database, impacting roughly 6.2 million customers. “This involved personal data from a customer contact system used by Odido. No passwords, call logs, or billing information…
AI, Cybersecurity, Global Security News, Government & Policy
Amid the AI onslaught, a few silver linings for US tech jobs
AI continues gobbling up IT jobs, but hints about how the technology is now influencing hiring are becoming more visible. About 130,000 jobs were created in the broader US economy in January, according to data from the US Bureau of Labor Statistics (BLS) released Wednesday. The growth was driven by hiring in the healthcare, social…
AI, china, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, malware, Risk Management, Russia
Google fears massive attempt to clone Gemini AI through model extraction
Google detected and blocked a campaign involving more than 100,000 prompts that it claimed were designed to copy the proprietary reasoning capabilities of its Gemini AI model, according to a quarterly threat report released by Google Threat Intelligence Group. The prompts looked like a coordinated attempt to perform model extraction or distillation, a machine-learning process…
AI, china, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, malware, Risk Management, Russia
Google fears massive attempt to clone Gemini AI through model extraction
Google detected and blocked a campaign involving more than 100,000 prompts that it claimed were designed to copy the proprietary reasoning capabilities of its Gemini AI model, according to a quarterly threat report released by the company’s Threat Intelligence Group. The prompts looked like a coordinated attempt to perform model extraction or distillation, a machine-learning…
AI, china, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, malware, Risk Management, Russia
Google: state-backed hackers exploit Gemini AI for cyber recon and attacks
Google says nation-state actors used Gemini AI for reconnaissance and attack support in cyber operations. Google DeepMind and GTIG report a rise in model extraction or “distillation” attacks aimed at stealing AI intellectual property, which Google has detected and blocked. While APT groups have not breached frontier models, private firms and researchers have tried to…
AI, Europe, Global Security News, Government & Policy
Why there’s no ‘screenless’ revolution
Apparently, Silicon Valley has declared a “war on screens,” according to a Jan. 1 headline. The article highlighted OpenAI’s hardware project, which is expected to be a screenless device crafted by former Apple designer Jony Ive. OpenAI acquired Ive’s company, io, last May for $6.5 billion and Foxconn has reportedly been hired to make as many as…
Global Security News, Government & Policy, Legal, Russia, Security
Russia tries to block WhatsApp, Telegram in communication blockade
The Russian government is attempting to block WhatsApp in the country as its crackdown on communication platforms not under its control intensifies. […]
AI, APT, china, Cybersecurity, Global Security News, Government & Policy, malware, Russia, Technology
Google finds state-sponsored hackers use AI at ‘all stages’ of attack cycle
A new report from Google found evidence that state-sponsored hacking groups have leveraged AI tool Gemini at nearly every stage of the cyber attack cycle. The research underscores how AI tools have matured in their cyber offensive capabilities, even as it doesn’t reveal novel or paradigm shifting uses of the technology. John Hultquist, chief analyst…
AI, Global Security News, Government & Policy
Nation-State Hackers Embrace Gemini AI for Malicious Campaigns, Google Finds
Google researchers found that government-backed hackers now use AI throughout the whole attack lifecycle
AI, APAC, Congress, Cybersecurity, Cybersecurity and Infrastructure Security Agency (CISA), Financial, Funding, Global Security News, Government, Government & Policy, Network Security, Politics
Acting CISA chief says DHS funding lapse would limit, halt some agency work
Acting Director Madhu Gottumukkala said it could affect everything from responding to threats to finalizing CIRCIA regulations.
The post Acting CISA chief says DHS funding lapse would limit, halt some agency work appeared first on CyberScoop.
AI, Breaking News, cyber crime, data breach, Data Breaches, Global Security News, Government & Policy, Network Security, Security
Volvo Group hit in massive Conduent data breach
A Conduent breach exposed data of nearly 17,000 Volvo Group North America employees as the total impact rises to 25 million people. A data breach at business services provider Conduent has impacted at least 25 million people, far more than initially reported. Volvo Group North America confirmed that the security breach exposed data of nearly […]
AI, Apps, Global Security News, Government & Policy, Risk Management, Venture
JumpCloud: Most businesses aren’t truly ready for AI
As developers begin using Claude and Codex to help create Mac, iPhone, and iPad apps in Xcode, spare a moment to consider a recent JumpCloud survey that shows most businesses aren’t really ready for AI — though many think they might be.
Among the highlights from the survey:
- 40% of IT leaders self-assess as mature in their AI practices, yet only 22% meet the rigorous objective standards for leading AI readiness.
- 90% of leaders see productivity gains from AI, but 74% remain concerned about security risks, specifically around unauthorized data access and AI-generated phishing.
- 61% of organizations report the use of unsanctioned AI tools, creating significant visibility and governance gaps.
- 85% of IT leaders agree that secure identity and access management (IAM) is critical for scaling AI safely. (Note that JumpCloud calls itself an AI-powered IT management platform.)
JumpCloud argues that enterprises must deploy IT processes to help protect the identity layer as AI impacts their business, “consolidating identity and access controls for both humans and bots to turn AI from a potential liability into a sustainable engine for growth.”
To support that transition, JumpCloud this week introduced a new investment arm to invest in companies building solutions around AI, security, identity and IT productivity. To an extent, this mirrors competitors in the burgeoning Apple-related IT space (Jamf Ventures, for example) even as it highlights the looming impact AI will have on this side of the market.
One of the first JumpCloud investments, Tofu, uses AI as part of its package of protections against identity fraud during the hiring and onboarding process, an emerging problem for some businesses. You could see Tofu’s tools as indicative of the speed at which AI is evolving.
Between the thought and the action lies the shadow
People don’t seem prepared for the consequences of the rapid evolution even though business leaders think they are. This gap between perceived preparedness and actual readiness comes after over a decade of rapid digital transformation. That transformation saw the iPhone-driven evolution of mobile business, the collapse of the former hegemonic Microsoft dominance of the enterprise, and an algorithmic assault on some of the principles that underpinned international trade.
The impact has been felt by every business, and entire business sectors have already been replaced by digitized alternatives. Our century so far has seen an avalanche of change, (remember “1,000 songs in your pocket”?) and enterprise leaders are struggling to keep pace, the JumpCloud survey shows.
Thought leaders have been discussing the need to adopt a new business mindset in which enterprises accept they live in an environment of constant change. These people say creative thinking and a willingness to embrace constant change will be the hallmarks of business success, but when technology moves faster than business leaders, the business environment itself becomes inevitably unstable.
When it comes to AI deployment, that means confidential data leaks, legal battles as regulators challenge those leaks, and the need to invest in managing digital transformation.
Faster than progress
AI development is accelerating. New models like GPT-5.3 Codex or Claude Opus 4.6 are insanely powerful and have now evolved something like autonomous discretion. That’s why they can create and iterate application code, which Xcode developers will be exploring now that tools have been made available to them.
It won’t end with code. You can see the direction of travel for yourself at METR, an organization that tracks how long it takes AI models to complete long tasks.
Anthropic CEO Dario Amodei tells it like it is when he says AI models “substantially smarter than almost all humans at almost all tasks” could arrive as soon as this year. He also says it might only be a couple of years until AI autonomously builds its own AI successors.
In the background, the leader of Anthropic’s Safeguards Research Team, Mrinank Sharma, just quit, warning the “world is in peril” from a series of interconnected crises, including AI. Think about that, think about the extent to which you and your business truly meet the standards of AI preparedness, and then consider the challenge it poses to IT decision makers working to keep their heads afloat amid this tsunami of change.
The gap between perceived and actual readiness is not just a statistic, it is a call to action for every leader. In a world where AI evolves so very quickly, true leadership requires us to prepare for the unknown. The experts say those who manage to stay afloat will be the ones who experiment today, and adapt tomorrow. While you do that, note that AI will be adapting at the very same time and probably faster, and is already in use, sanctioned, or unsanctioned, across your company.
Are you ready? Probably not yet.
Yes, the image to this story was created using AI.
You can follow me on social media! Join me on BlueSky, LinkedIn, and Mastodon.
AI, Apps, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, Network Security, News, Risk Management, Threats, trends
White House Draft Executive Order Signals Broader Federal Push on Quantum Strategy
A draft executive order would coordinate federal quantum strategy and accelerate modernization efforts.
The post White House Draft Executive Order Signals Broader Federal Push on Quantum Strategy appeared first on eSecurity Planet.
AI, Global Security News, Government & Policy, malware
APT36 and SideCopy Launch Cross-Platform RAT Campaigns Against Indian Entities
Indian defense sector and government-aligned organizations have been targeted by multiple campaigns that are designed to compromise Windows and Linux environments with remote access trojans capable of stealing sensitive data and ensuring continued access to infected machines.
The campaigns are characterized by the use of malware families like Geta RAT, Ares RAT, and DeskRAT, which are often
AI, Apps, Compliance, Global Security News, Government & Policy, Network Security, SIs, VARs, Advisors & MSSP News
SmartBear Expands Carahsoft Partnership for Public Sector
SmartBear has expanded its partnership with Carahsoft Technology Corp. to strengthen its public sector go-to-market strategy and deepen engagement with the government-focused channel ecosystem, the companies announced Tuesday. The expanded agreement positions Carahsoft as SmartBear’s Master Government Aggregator, giving federal, state, and local agencies simplified access to SmartBear’s software quality and application visibility portfolio through…
AI, Congress, Cybersecurity, Election Security, Funding, Global Security News, Government, Government & Policy, Politics
GOP Congress moves to shape election law in Trump’s image
Republicans in Congress are moving ahead with two pieces of legislation this week that would dramatically reshape the nation’s election laws. Together, the SAVE America Act and MEGA Act would shift key voter certification powers to the executive branch, require stricter proof of citizenship for voter registration, and allow states to more easily access federal…
AI, Global Security News, Government & Policy
Asia Fumbles With Throttling Back Telnet Traffic in Region
Only Taiwan made the top 10 list of governments, effectively blocking the threat-ridden protocol, but overall the region lagged in curbing Telnet traffic.
AI, Europe, Global Security News, Government & Policy, privacy, Risk Management
Apple, Google agree to app store changes in the UK
Under pressure from UK regulators, Apple and Google have reached an agreement to change how they operate their app stores in the UK, the Competition and Markets Authority (CMA) announced on Tuesday. The agreement means both companies will not discriminate against apps that compete with their own apps and services. They pledged to be more transparent…
AI, Apps, china, Cybersecurity, Data Breaches, Exploits, Global Security News, Government & Policy, Network Security, privacy, Risk Management, Venture
Stop comparing safety and cybersecurity, they have very little in common
Nearly a year ago, we hosted Dug Song, the legendary founder of Duo Security, on Inside the Network. During that conversation, Dug shared a powerful analogy that has stuck with me. He explained that in aviation, a plane crashes the same way only once, or maybe twice. Whenever it happens, we get to the bottom…
AI, Cybersecurity, Cybersecurity and Infrastructure Security Agency (CISA), Geopolitics, Global Security News, Government, Government & Policy, malware, Research, Russia
After major Poland energy grid cyberattack, CISA issues warning to U.S. audience
A recent attempt at a destructive cyberattack on Poland’s power grid has prompted the Cybersecurity and Infrastructure Security Agency to publish a warning for U.S. critical infrastructure owners and operators. Tuesday’s alert follows a Jan. 30 report from Poland’s Computer Emergency Response Team concluded the December attack overlapped significantly with infrastructure used by a Russian…
AI, Breaking News, cyber crime, Cybercrime, Cybersecurity, data breach, Data Breaches, Global Security News, Government & Policy, Network Security, Security
Senegal shuts National ID office after ransomware attack
Senegal closed its national ID card office after a ransomware cyberattack disrupted ID, passport, and biometric services. Senegal confirmed a cyberattack on the Directorate of File Automation, the government office that manages national ID cards, passports, and biometric data. After ransomware claims surfaced, authorities temporarily closed the office to contain the incident. The agency warned…
AI, APAC, Compliance, Global Security News, Government & Policy, Network Security, News and Trends, Vendor Leadership & Partner Programs
SecureW2 Debuts Global Channel Program
Passwordless security leader SecureW2 is launching its new global partner program. Stephen Newhauser tapped to lead new program and drive partner revenue growth The Nexus partner program is designed to drive growth, open new revenue streams, and offer high rewards through a performance-based tiering framework aligned to partner engagement and deal involvement. The program will…
AI, Breaking News, Cybersecurity, Data Breaches, Endpoint, Europe, Exploits, Global Security News, Government & Policy, hacking, hacking news, intelligence, Security
Dutch agencies hit by Ivanti EPMM exploit exposing employee contact data
Dutch agencies confirmed attacks exploiting Ivanti EPMM flaws that exposed employee contact data at the data protection authority and courts. Dutch authorities said cyberattacks hit the Dutch Data Protection Authority and the Council for the Judiciary after hackers exploited newly disclosed flaws in Ivanti Endpoint Manager Mobile (EPMM). The incidents were reported to parliament, and…
Data Breaches, Europe, Global Security News, Government & Policy
European Governments Breached in Zero-Day Attacks Targeting Ivanti
The European Commission and government agencies in Finland and the Netherlands have suffered potentially related breaches
AI, APT, Breaking News, china, Data Breaches, Exploits, Global Security News, Government & Policy, hacking, intelligence, Network Security, Security
China-linked APT UNC3886 targets Singapore telcos
China-linked group UNC3886 targeted Singapore ’s telecom sector in a cyber espionage campaign, Singapore’s Cyber Security Agency revealed. Cyber Security Agency of Singapore (CSA) and the Infocomm Media Development Authority (IMDA) ran Operation CYBER GUARDIAN to protect the telecom sector. Since July 2025, investigations showed China-linked UNC3886 launched a targeted campaign against all four major…
AI, Global Security News, Government & Policy
As Apple’s Cook bows to Trump, Microsoft’s Nadella quietly refuses
Microsoft and Apple have for decades been seen as the Yin and Yang of the tech world, with Microsoft’s products portrayed as being for buttoned-corporate drones, while Apple’s were for the truth seekers and rebels — the people willing to stand up to those in power. Those cliches reflected the way the company’s founders and…
Global Security News, Government & Policy
Elon Musk’s Go-To Banker Is Back in Action for the SpaceX IPO
Michael Grimes is leaving the government to return to Morgan Stanley and work on possibly the biggest initial public offering ever.
AI, ai safety, china, Cybersecurity, Europe, Exploits, Geopolitics, Global Security News, Government, Government & Policy, Politics, privacy, Risk Management, Russia
Critics warn America’s ‘move fast’ AI strategy could cost it the global market
The Trump administration has made U.S. dominance in artificial intelligence a national priority, but some critics say a light-touch approach to regulating security and safety in U.S. models is making it harder to promote adoption in other countries. White House officials have said since taking office that Trump intended to move away from predecessor Joe…
AI, Apps, Cybersecurity, Data Breaches, Endpoint, EU, Europe, Exploits, Global Security News, Government & Policy, malware, Network Security, News, Risk Management, Threats
European Commission Hit by Mobile Management Data Breach
European Union officials are investigating a cybersecurity incident after attackers breached systems used to manage staff mobile devices, potentially exposing limited personal data. The European Commission said it detected a cyberattack on its central mobile device management infrastructure and moved quickly to contain it. “The EU commission did well to clean systems swiftly and ensure…
AI, Apps, Cybersecurity, Data Breaches, Endpoint, EU, Europe, Exploits, Global Security News, Government & Policy, malware, Network Security, News, Risk Management, Threats
European Commission Hit by Mobile Management Data Breach
European Union officials are investigating a cybersecurity incident after attackers breached systems used to manage staff mobile devices, potentially exposing limited personal data. The European Commission said it detected a cyberattack on its central mobile device management infrastructure and moved quickly to contain it. “The EU commission did well to clean systems swiftly and ensure…
AI, Apps, Cybersecurity, Data Breaches, Endpoint, EU, Europe, Exploits, Global Security News, Government & Policy, malware, Network Security, News, Risk Management, Threats
European Commission Hit by Mobile Management Data Breach
European Union officials are investigating a cybersecurity incident after attackers breached systems used to manage staff mobile devices, potentially exposing limited personal data. The European Commission said it detected a cyberattack on its central mobile device management infrastructure and moved quickly to contain it. “The EU commission did well to clean systems swiftly and ensure…
AI, Apps, Cybersecurity, Data Breaches, Endpoint, EU, Europe, Exploits, Global Security News, Government & Policy, malware, Network Security, News, Risk Management, Threats
European Commission Hit by Mobile Management Data Breach
European Union officials are investigating a cybersecurity incident after attackers breached systems used to manage staff mobile devices, potentially exposing limited personal data. The European Commission said it detected a cyberattack on its central mobile device management infrastructure and moved quickly to contain it. “The EU commission did well to clean systems swiftly and ensure…
AI, Apps, Cybersecurity, Data Breaches, Endpoint, EU, Europe, Exploits, Global Security News, Government & Policy, malware, Network Security, News, Risk Management, Threats
European Commission Hit by Mobile Management Data Breach
European Union officials are investigating a cybersecurity incident after attackers breached systems used to manage staff mobile devices, potentially exposing limited personal data. The European Commission said it detected a cyberattack on its central mobile device management infrastructure and moved quickly to contain it. “The EU commission did well to clean systems swiftly and ensure…
