No-frills tech news

Tri‑National Online Exchange: A <b>Cyber Security</b> Research Experience Across the Americas

Tri‑National Online Exchange: A Cyber Security Research Experience Across the Americas When many people hear the phrase global learning, they imagine passports, flights, and study‑abroad travel. At St. John’s University, however, global learning can also take place through sustained digital collaboration—connecting students across borders, languages, and institutions without leaving campus. Through a tri‑national Global Online Learning Exchange – Research Experience (GOLE‑RE), graduate students in the M.S. in Cyber and Information Security program. The M.S. graduate cohort was led by Dr. Schmeelk, a Fulbright Cyber Security Specialist, who partnered with peers and faculty from Pontifícia Universidade Católica de Campinas (PUC‑Campinas), São Paulo, Brazil (South America), led by Dr. Carlos Moreira, Guilherme Oliveira, and PUC Cybersecurity Faculty) and Universidad Nacional Autónoma de Honduras (Tegucigalpa, Honduras, Central America), led by Dr. Elías Leonardo García Urquía and UNAH Engineering Faculty. Together, they engaged in applied cybersecurity research addressing real‑world challenges affecting financial systems and critical infrastructure across the Americas. This blog highlights how the tri‑national exchange model brings global learning to life by combining virtual collaboration, research, and workforce‑aligned cybersecurity education. What is GOLE-RE? The Global Online Learning Exchange – Research Experience (GOLE‑RE) connects St. John’s students with international partner universities to engage in collaborative, research‑focused coursework. In this tri‑national exchange, students worked in multinational teams to analyze applied cybersecurity case studies, share regional perspectives, and produce collective research deliverables—mirroring how global cyber teams operate in professional environments. This initiative builds on Dr. Schmeelk Fulbright‑supported international collaboration and St. John’s long‑standing commitment to global online learning, strengthening cybersecurity research capacity across North, Central, and South America. Learn more What Cyber and Information Security Graduate Students Gain Over the course of several weeks, graduate students in the St. John’s University M.S. in Cyber and Information Security dual modality graduate program—accredited/validated by Middle States, ABET (graduate

Improving the Nation's <b>Cybersecurity</b> an Open Forum Event Banner

An official website of the United States government Here’s how you know Official websites use .gov A .gov website belongs to an official government organization in the United States. Secure .gov websites use HTTPS A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

University of Idaho leads the way in <b>cybersecurity</b> education | ktvb.com

Sponsored by the University of Idaho The University of Idaho continues to lead the way in cybersecurity education, building on more than 30 years of experience preparing students to address evolving digital threats. As cybersecurity becomes increasingly critical, from protecting personal data to securing national infrastructure, the university has expanded its programs to meet growing workforce demands. Designated as a National Center of Academic Excellence in Cyber Defense Education since 1999, U of I has also participated in the federal Scholarship for Service program, providing more than $20 million in student support. The university now offers a full pipeline of cybersecurity education, including a rapidly growing bachelor’s program launched in 2020, as well as master’s and doctoral degrees, making it home to Idaho’s only Ph.D. in cybersecurity. As the field continues to evolve alongside advancements in artificial intelligence and robotics, U of I is focused on preparing students to meet emerging challenges. The program emphasizes hands-on learning, research, and collaboration with industry and government partners to address real-world cybersecurity threats. From protecting connected systems like manufacturing robots and power grid infrastructure to strengthening awareness across industries and communities, graduates are equipped to make an impact across Idaho and beyond. To learn more about available programs, research opportunities, or how to apply, visit the University of Idaho’s Department of Computer Science online.

South Jersey's First BSides <b>Cybersecurity</b> Conference Coming to Rowan University

BSides South Jersey, a community driven cybersecurity conference hosted by Women in Cybersecurity Chapter (WiCyS) and Cybersecurity Club students, with support from Rowan alumni and the Rowan Computer Science Department. The free, one day event will run from 9:00 AM to 5:00 PM, with doors opening at 8:15 AM, and will be held in the Eynon Ballroom on the third floor of the Chamberlin Student Center. Stream Philadelphia News for free, 24/7, wherever you are with NBC10. Organizers expect 350 to 450 attendees from across South Jersey and the greater Philadelphia region, including students, professionals, and members of the technology community. BSides South Jersey is part of a global series of grassroots cybersecurity conferences designed to make education and knowledge sharing more accessible. The event brings together hackers, security professionals, students, and curious minds to explore real world cybersecurity challenges and emerging threats. Attendees will have access to expert led talks, panel discussions, and a live Capture the Flag (CTF) competition, covering areas such as web security, forensics, cryptography, and networking. Beverages and light food will be provided for attendees throughout the day. NBC10 Weekend Morning Anchor Brenna Weick is confirmed to moderate the BSides South Jersey panel on Saturday, April 18th. Organizers say the goal is to bridge the gap between academic learning and real world application while building a stronger cybersecurity community in South Jersey. Community The event is open to the public, though space is limited. Attendees are encouraged to register in advance and bring their Eventbrite barcode for check in. For more information or to register: https://bsidessouthjersey.org

California's <b>cybersecurity</b> audit rule is now in effect: its impact for class litigation

The IAPP writes: Last year, the California Privacy Protection Agency adopted a major new rule requiring certain businesses to conduct an annual cybersecurity audit. The rule went into effect 1 Jan. 2026. This pioneering requirement, the first of its kind among state data privacy laws of general applicability, may entail substantial compliance efforts for affected companies to identify and correct cybersecurity shortcomings. While compliance concerns may generate new anxiety, the audit requirement’s impact on data breach litigation could have equally significant long-term implications for businesses operating in California. The compliance requirements are considerable and complex, covering eighteen different technical and organizational components of an entity’s cybersecurity practice. Under the rule, covered entities are required to submit to the agency, each calendar year, a written certification that the business has completed a cybersecurity audit report that meets the rule’s standards. Although the report itself does not need to be filed, the need to create and certify one highlights an item of high interest to a plaintiff’s counsel. As a result, the audit will likely become a focal point of plaintiffs’ discovery requests in data breach class actions as they seek to prove negligence or violations of state data privacy laws. Read more at IAPP.

Senior chemistry student turns his degree into a career in <b>cybersecurity</b>

On most days, Christian Ruff can be found in a chemistry lab, assembling molecules into structures designed to move energy more efficiently or teaching lab skills to other students. Soon, his workspace will look very different. Instead of a lab bench, Ruff will head to New York City as a product manager on Mastercard’s cybersecurity team, helping develop technologies that detect fraud and secure digital transactions. At first glance, the shift from chemistry to cybersecurity seems curious. But for Ruff, a senior in the McCausland College of Arts and Sciences, it goes to show that your major doesn’t define your future. Ruff, who grew up in Columbia, didn’t always see himself in science. “I was scared of science in high school,” he said. “It felt really complex, almost mystical, and you can feel excluded from those spaces.” At USC, he leaned into that challenge. A Chemistry 111 course sparked his interest and reshaped how he approached learning. “I just wanted to learn and grow,” Ruff said. “If you only focus on the outcome, you miss the fun of actually thinking, of getting stuck on a problem and puzzling it out.” That mindset carried into his research, where he spent three years studying battery materials. He also conducted full-time research through a competitive REU program at University of California San Diego, where he worked on metal-organic frameworks and co-authored a published paper. “People may think chemistry is just right or wrong answers,” he said. “But it’s actually really creative. You’re building something completely new.” Outside the lab, Ruff explored widely, taking courses in philosophy, media arts and vocal performance. Those experiences, he said, sharpened his ability to think critically and communicate complex ideas clearly. Over time, his interests expanded. After adding a second major in computer science, he discovered product management,

Anthropic Launches Glasswing to Boost Global <b>Cybersecurity</b>

Anthropic Launches Glasswing to Boost Global Cybersecurity Anthropic launched Project Glasswing, an AI-driven cybersecurity initiative using advanced models to detect critical software vulnerabilities at scale. The program impacts technology, finance, and infrastructure sectors, raising urgency for AI governance. Anthropic launched Project Glasswing, a defensive cybersecurity initiative that integrates major technology and financial organizations to protect global software infrastructure. The program utilizes Claude Mythos Preview, an AI model capable of identifying and mitigating complex vulnerabilities that frequently bypass human detection. "AI capabilities have crossed a threshold that fundamentally changes the urgency required to protect critical infrastructure from cyber threats, and there is no going back,” says Anthony Grieco, Senior Vice President and Chief Security and Trust Officer, Cisco. “Our foundational work with these models has shown we can identify and fix security vulnerabilities across hardware and software at a pace and scale previously impossible. That is a profound shift, and a clear signal that the old ways of hardening systems are no longer sufficient." Modern global infrastructure — including banking systems, medical records, logistics networks, and power grids — relies on software that contains inherent flaws. While many bugs are minor, high-severity vulnerabilities allow adversaries to disrupt operations, hijack sensitive systems, or extract proprietary data. Reports show that the global financial impact of cybercrime can reach about US$500 billion annually. Threat actors, including state-sponsored groups, have historically targeted critical civilian and military infrastructure. Previously, identifying these flaws required specialized expertise held by a small number of researchers. However, frontier AI models have dramatically reduced the cost and effort required to locate and exploit these vulnerabilities. Claude Mythos Preview, an unreleased frontier model developed by Anthropic, demonstrates a significant advancement in autonomous coding and reasoning. This model has identified thousands of high-severity vulnerabilities, including those that have survived decades of human review

Crush Security Launches as the <b>Cybersecurity</b> Industry's First Unbiased Intelligence ...

Veteran-founded firm brings 60+ years of combined security leadership to a platform that eliminates the conflict of interest at the heart of the cybersecurity industry, the partner ecosystem. SCOTTSDALE, Ariz., April 14, 2026 /PRNewswire/ -- Crush Security Group today announced its official launch as a cybersecurity intelligence platform built specifically for CISOs, Risk, and Procurement teams who are tired of getting little tangible value from their current partners and resellers. Crush Security enters the market with a platform model that separates advisory from commission to bring back the trust in trusted advisors. The Problem Crush Solves Security leaders managing $100k–$300M security budgets are routinely steered toward tools and strategies that serve their vendors — not their programs. Value-added resellers earn margin on what they sell. Advisory firms grow through recurring retainers. Independent assessors lack the platform data to make cross-client recommendations. The result: fragmented tool stacks, duplicated spend, and compliance programs built on assumptions rather than evidence. Crush Security was built to close that gap. The Platform Crush Security operates across five interconnected ecosystems: - Readiness & Assessments — Independent gap analysis and compliance readiness using your data with no vendor affiliation. - Auditing Body — Third-party audit capabilities that validate posture without selling the fix. - Unbiased Software Resell — Technology procurement guided by program fit, not margin targets, and the ability for CISOs to use the platform regardless of whether they purchase from Crush Security. - AI Threat Intelligence — Continuous threat intel with automated framework mapping across NIST, PCI, SOC 2, HITRUST, UCF, ISO 27001, CMMC, pand dozens more constantly coming out. - Adaptive Security Intelligence — Every customer's environment is unique. The platform learns from each program — adapting recommendations to the customer's industry, regulatory requirements, and risk profile while benchmarking anonymously against peer organizations to

Gabon's ANINF Targets 1,000 Youth for Digital Skills and <b>Cybersecurity</b> Training Initiative

Gabon’s ANINF Targets 1,000 Youth for Digital Skills and Cybersecurity Training Initiative According to ANINF, the initiative goes beyond basic training and reflects a broader national vision focused on developing qualified human capital capable of supporting Gabon’s digital transformation and strengthening information systems security. The National Agency for Digital Infrastructure and Frequencies of Gabon (ANINF) has launched a major certification training programme aimed at strengthening digital skills and building a new generation of ICT professionals in the country. The initiative was officially launched on Monday, April 13, 2026, at the ANINF Tower, in the presence of the Director General of ANINF, Alberto Mounguengui Moudoki, and the Director General of Cybastion, Antonia Oliveira. The programme is designed to train 1,000 young Gabonese in digital professions, with participants working towards internationally recognised Cisco certification. According to ANINF, the initiative goes beyond basic training and reflects a broader national vision focused on developing qualified human capital capable of supporting Gabon’s digital transformation and strengthening information systems security. The programme is positioned as a strategic investment in building a competitive and resilient digital workforce. The training effort is aligned with the national development vision led by His Excellency Brice Clotaire Oligui Nguema, President of the Republic of Gabon, who has prioritised digital sovereignty as a key pillar of the country’s development strategy. ANINF, acting as the state’s technical arm, is supporting the implementation of the programme to ensure effective deployment and long-term impact. Officials emphasised that the initiative represents a critical step toward building a secure, skilled, and sustainable digital ecosystem in Gabon. The programme underscores the belief that investing in training today will help shape the digital future of the country.

Anthropic's Mythos raising flags for <b>cybersecurity</b> | Fox Business Video

Live Now All times easternNOW - 3:30 AM 3:30 AM 4:00 AM 4:30 AM 5:00 AM 5:30 AM Fox Business Channel Paid Programming 3:30 AM - 4:00 AM The Fixer 4:00 AM - 5:00 AM Fox Weather First 5:00 AM - 6:00 AM Fox News Channel Fox News @ Night 4:00 AM - 5:00 AM Fox & Friends First 5:00 AM - 6:00 AM Fox Weather Channel Fox News Radio

OpenAI unveils GPT‑5.4‑Cyber, an AI model for defensive <b>cybersecurity</b>

OpenAI has announced a new AI model called GPT-5.4-Cyber. Similar to Anthropic’s Claude Mythos, this new “cyber-permissive” variant of its GPT-5.4 is built for defensive cybersecurity and not public use. OpenAI’s newest variant is meant to prepare the way for more capable models to come OpenAI says that its new GPT-5.4-Cyber variant of GPT-5.4 is specifically meant to prepare the way for more capable models coming this year. In preparation for increasingly more capable models from OpenAI over the next few months, we are fine-tuning our models specifically to enable defensive cybersecurity use cases, starting today with a variant of GPT‑5.4 trained to be cyber-permissive: GPT‑5.4‑Cyber. Access to GPT-5.4-Cyber is limited to “the highest tier” of “users willing to work with OpenAI to authenticate themselves as cybersecurity defenders.” Trusted Access for Cyber is required for using GPT-5.4-Cyber OpenAI says this is because GPT-5.4-Cyber is “purposely fine-tuned for additional cyber capabilities and with fewer capability restrictions.” This is a version of GPT‑5.4 which lowers the refusal boundary for legitimate cybersecurity work and enables new capabilities for advanced defensive workflows, including binary reverse engineering capabilities that enable security professionals to analyze compiled software for malware potential, vulnerabilities and security robustness without needing access to its source code. Because this model is more permissive, we are starting with a limited, iterative deployment to vetted security vendors, organizations, and researchers. The rollout is part of an expanded version of Trusted Access for Cyber, a cybersecurity initiative launched by OpenAI earlier this year. The company highlights two methods for gaining access to Trusted Access for Cyber: - Individual users can verify their identity at chatgpt.com/cyber. - Enterprises can request trusted access for their team through their OpenAI representative. You can learn more about TAC here, and GPT-5.4-Cyber here. OpenAI also recently introduced a new version

MSP <b>cybersecurity</b> news digest, April 13, 2026

Medusa‑linked Storm‑1175 conducts fast‑moving attacks that escalate quickly to ransomware Microsoft said Storm-1175 has been deploying n-day and zero-day exploits in high-velocity campaigns and can move from initial access to data exfiltration and Medusa ransomware deployment within days, and in some cases within 24 hours. The activity heavily impacted organizations in health care, education, professional services and finance across Australia, the United Kingdom and the United States. Microsoft observed the group exploiting more than 16 vulnerabilities across products including Exchange, ScreenConnect, TeamCity, SimpleHelp, CrushFTP, SmarterMail, GoAnywhere and BeyondTrust, showing that the actor routinely rotates quickly between newly disclosed exposed services rather than relying on a single access path. After exploitation, the group has been seen creating new accounts, deploying remote monitoring and management tools, stealing credentials, and tampering with security controls before encrypting systems. That combination makes the campaign operationally important because the ransomware stage is only the final part of a broader intrusion chain. Iran‑linked actors launch widespread password spraying attacks against Microsoft 365 accounts Security researchers reported an Iran-linked password spraying campaign targeting Microsoft 365 tenants, impacting hundreds of organizations across multiple sectors. Instead of focusing on one user, the attackers systematically tried commonly used passwords across many accounts to increase the chance of success while avoiding traditional lockout thresholds. In the observed activity, the attackers targeted Microsoft 365 login endpoints, used infrastructure such as VPNs and Tor to disguise their origin, and focused on organizations in government, technology, energy and private-sector environments. Successful authentication could provide access to email, internal data and other cloud resources inside compromised tenants. This is a cloud-native identity attack because it does not rely on malware or software vulnerabilities but instead exploits weak authentication practices and inconsistent identity controls. The broader risk is that attackers can gain access with valid credentials and

5 trends defining the future of AI-powered <b>cybersecurity</b> | CSO Online

Artificial intelligence is redefining the balance between business innovation and adversarial tradecraft in the modern security landscape. The new N-able and Futurum Report reveals how AI is reshaping cyber resilience as it accelerates both business innovation and adversarial tradecraft. Attackers are scaling their operations with unprecedented speed, leveraging automation to bypass traditional defenses. For IT security leaders and MSP owners, the days of relying on static, perimeter-based security are over. To stay ahead, we must look beyond simply keeping attackers out. The future belongs to those who prioritize continuous cyber resilience—the ability to withstand, adapt to, and recover from threats in real-time. Here is where the industry is heading and how AI-powered platforms are redefining defense strategies for the next 3–5 years. 1. AI is both the weapon and the shield We are entering an era of AI-versus-AI warfare. Threat actors are already using generative AI to craft sophisticated phishing campaigns, automate vulnerability scanning, and execute attacks at machine speed. However, AI is also our most powerful ally. Modern defense isn’t about human analysts staring at screens; it’s about leveraging AI for rapid detection, automated triage, and predictive insights. By processing vast amounts of telemetry data, AI can identify subtle anomalies that human teams might miss, allowing for preemptive neutralization of threats before they cause damage. See how AI is altering the landscape in the new N-able and Futurum report, Cybersecurity in the Age of AI: Moving from Fragile to Resilient. Get key insights on building a modern framework for business resilience. 2. From perimeter security to continuous cyber resilience The “castle and moat” approach is obsolete. In a world of hybrid work and distributed cloud environments, the perimeter has dissolved. The new standard is continuous cyber resilience. This shift moves the goalposts from “prevention” to “continuity.” It focuses on

In the Wake of Anthropic's Mythos, OpenAI Has a New <b>Cybersecurity</b> Model—and Strategy

OpenAI on Tuesday announced the next phase of its cybersecurity strategy and a new model specifically designed for use by digital defenders, GPT-5.4-Cyber. The news comes in the wake of an announcement last week by competitor Anthropic that its new Claude Mythos Preview model is only being privately released for now—because, the company says, it could be exploited by hackers and bad actors. Anthropic also announced an industry coalition, including competitors like Google, focused on how advances in generative AI across the field will impact cybersecurity. OpenAI seemed to be seeking to differentiate its message on Tuesday by striking a less catastrophic tone and touting its existing guardrails and defenses while hinting at the need for more advanced protections in the long term. “We believe the class of safeguards in use today sufficiently reduce cyber risk enough to support broad deployment of current models,” the company wrote in a blog post. “We expect versions of these safeguards to be sufficient for upcoming more powerful models, while models explicitly trained and made more permissive for cybersecurity work require more restrictive deployments and appropriate controls. Over the long term, to ensure the ongoing sufficiency of AI safety in cybersecurity, we also expect the need for more expansive defenses for future models, whose capabilities will rapidly exceed even the best purpose-built models of today.” The company says that it has homed in on three pillars for its cybersecurity approach. The first involves so-called “know your customer” validation systems to allow controlled access to new models that is as broad and “democratized” as possible. “We design mechanisms which avoid arbitrarily deciding who gets access for legitimate use and who doesn’t,” the company wrote on Tuesday. OpenAI is combining a model where it partners with certain organizations on limited releases with an automated system introduced

OAS and INCIBE open the call for applications for the <b>CyberSecurity</b> Summer BootCamp 2026

Each year the OAS Secretary General publishes a proposed Program-Budget for the coming calendar year. The OAS General Assembly meets in a Special Session to approve the Program-Budget. Find these documents from 1998-2013 here. Each year in April, the OAS Board of External Auditors publishes a report covering the previous calendar year’s financial results. Reports covering 1996-2016 may be found here. Approximately six weeks after the end of each semester, the OAS publishes a Semiannual Management and Performance Report, which since 2013 includes reporting on programmatic results. The full texts may be found here. Here you will find data on the Human Resources of the OAS, including its organizational structure, each organizational unit’s staffing, vacant posts, and performance contracts. The OAS executes a variety of projects funded by donors. Evaluation reports are commissioned by donors. Reports of these evaluations may be found here. The Inspector General provides the Secretary General with reports on the audits, investigations, and inspections conducted. These reports are made available to the Permanent Council. More information may be found here. The OAS has discussed for several years the real estate issue, the funding required for maintenance and repairs, as well as the deferred maintenance of its historic buildings. The General Secretariat has provided a series of options for funding it. The most recent document, reflecting the current status of the Strategy, is CP/CAAP-3211/13 rev. 4. Here you will find information related to the GS/OAS Procurement Operations, including a list of procurement notices for formal bids, links to the performance contract and travel control measure reports, the applicable procurement rules and regulations, and the training and qualifications of its staff. The OAS Treasurer certifies the financial statements of all funds managed or administered by the GS/OAS. Here you will find the latest general purpose financial reports for

Only 5% of organisations have full trust in their <b>cybersecurity</b> vendors

Sophos today released findings from a global, vendor-agnostic study (based on responses from 5,000 organisations across 17 countries), examining one of cybersecurity’s most urgent and overlooked necessities: trust. The Cybersecurity Trust Reality 2026 report is one of the most comprehensive studies of trust in cybersecurity and the impact on operational risk and board-level decision making. It reveals a critical challenge facing CISOs: Trust in cybersecurity vendors is fragile, difficult to measure, and increasingly shaping risk posture at both operational and board levels. At a time of relentless cyber threats, heightened regulatory scrutiny, and accelerating AI adoption, trust has become a defining factor in cybersecurity decision-making. Yet new research reveals that nearly all organisations report lacking full confidence in their cybersecurity vendors, and many struggle to assess vendor trustworthiness in the first place. The independent study found that: – 95% of respondents said they do not have full trust in their cybersecurity vendors – 79% struggle to assess the trustworthiness of new cybersecurity partners, and over six in ten (62%) even find it challenging for their existing vendors – More than half (51%) report increased anxiety about the likelihood of a significant cyber incident as a direct result of lack of trust These findings underscore a critical reality: cybersecurity effectiveness cannot be measured by technological performance alone, but also by the confidence that organisations have in the partners defending their business. For CISOs, trust gaps create operational friction, slower decision-making, and higher vendor turnover. Trusted cybersecurity partners reduce risk and build more resilient organisations. “Trust is not an abstract concept in cybersecurity, it’s a measurable risk factor,” said Ross McKerchar, CISO at Sophos. “When organisations can’t independently verify a vendor’s security maturity, transparency, and incident handling practices, that uncertainty flows directly into boardrooms and security strategies.” The survey identifies verifiable security

The &quot;SaaSpocalypse&quot; Created the Best Buying Opportunity in <b>Cybersecurity</b> in Years. Don't Miss It.

Investors recognized artificial intelligence's (AI) potential to transform industries, supercharging many tech stocks in recent years. That enthusiasm shifted to alarm in 2026. AI's transformational potential includes agentic AI that can independently execute tasks previously handled by software-as-a-service (SaaS) companies, leading to a massive sell-off in SaaS stocks. This "SaaSpocalypse" extended to the cybersecurity sector after AI giant Anthropic released artificial intelligence capable of identifying security vulnerabilities in software. While Wall Street believes AI threatens cybersecurity companies, the reality is not so simple. Moreover, the current sell-off offers long-term investors an opportunity to buy cybersecurity stocks at substantial discounts. Why AI cannot replace cybersecurity companies First, let's address Wall Street's AI fears. Although artificial intelligence is a potent technology, it's not a blanket replacement for cybersecurity, which has become critical to functioning in today's digital age. Organizations are unlikely to dump existing solutions for unproven AI alternatives from the likes of Anthropic. In addition, AI alone isn't a panacea against criminal hackers, who are launching increasingly sophisticated attacks such as data poisoning. This is where the AI that depends on the data to do its job is corrupted, creating vulnerabilities for hackers to exploit. Consequently, the multi-pronged protection provided by cybersecurity companies is essential. Also, they can address situations AI cannot solve, such as strategic decision-making and weighing ethical considerations. Cybersecurity stocks to consider buying The SaaSpocalypse caused many cybersecurity stocks to appear oversold. Some successful companies in the sector to invest in include identity security expert Okta (OKTA 1.97%), data protection provider Rubrik (RBRK 1.19%), and Palo Alto Networks (PANW 0.51%), one of the select businesses given exclusive access to Anthropic's latest AI, deemed too great a cybersecurity threat to release to the public. NASDAQ: PANW Key Data Points Each of these businesses saw substantial share price declines of

Anthropic's Mythos Triggers <b>Cybersecurity</b> Race

Anthropic's unveiling of Project Glasswing and its Claude Mythos frontier model marks a watershed moment for cybersecurity, introducing an AI system capable of discovering and exploiting software vulnerabilities autonomously at unprecedented scale. - RBRK stock is moving. See the chart and price action here. In its latest newsletter, ARK Invest pointed to Mythos' breakout scores — 93.9% on SWE-bench Verified and 83.1% on CyberGym — as a signal of a major evolution in both software engineering and cybersecurity defense. Anthropic's decision to keep Mythos private and share access with major compute and security partners — including AWS, Apple, Microsoft, Google, CrowdStrike, Broadcom and NVIDIA — illustrates how defense players are being brought directly into the AI frontier. CrowdStrike CTO Elia Zaitsev noted that the window between discovering and exploiting a vulnerability has shrunk "from months to minutes." This compression of time fundamentally reshapes corporate risk management, forcing enterprises to upgrade detection, response and resilience capabilities. Tailwinds for CRWD, NET, RBRK For CrowdStrike, whose Falcon platform already blends AI-driven anomaly detection with one of the largest endpoint telemetry datasets in cybersecurity, Mythos-like advances could amplify both product performance and commercial relevance. Glasswing reinforces the need for autonomous, predictive defense — an area where CrowdStrike has a multi-year head start. Cloudflare, meanwhile, stands to benefit from the heightened urgency to secure internet infrastructure and network perimeters. Its Zero Trust framework and global edge network are positioned to guard against increasingly AI-powered attacks targeting identity, data routing, and distributed endpoints. Rubrik, which focuses on data resilience and ransomware recovery, fits squarely into the other half of ARK's thesis: protection not just from infiltration, but from data destruction and manipulation once breaches occur. Its deep integration with enterprise cloud environments makes it an essential player as organizations reallocate budgets toward cyber continuity and automated

OPM Opens Applications for New <b>Cybersecurity</b> Role

The Office of Personnel Management (OPM) announced on Monday that it is now hiring information cybersecurity specialists through the US Tech Force. OPM said applications are open for the new role, which will focus on protecting critical systems, strengthening federal cybersecurity capabilities, and safeguarding digital infrastructure. “The federal government depends on strong cybersecurity to protect critical systems and maintain public trust,” OPM Director Scott Kupor said in an April 13 press release. “Through Tech Force, we’re recruiting highly skilled cybersecurity professionals to take on real challenges and strengthen the government’s defenses where it matters most.” OPM said it is coordinating with other federal agencies to recruit a broad range of cybersecurity specialists, including those participating in the CyberCorps Scholarship for Service program. “The cybersecurity specialist position is in addition to the existing software engineering, data scientist, and product manager roles that Tech Force has released previously,” OPM said. OPM unveiled the US Tech Force in December, a new effort to hire early-career technologists. They will serve two-year employment terms across the federal government. The agency said those who are interested in applying for the information cybersecurity specialist role can sign up for the Tech Force talent network.

OPM Announces New <b>Cybersecurity</b> Role for US Tech Force

OPM Announces New Cybersecurity Role for US Tech Force WASHINGTON, DC — The US Office of Personnel Management (OPM) today announced the opening of applications for a new Information Cybersecurity Specialist role through the US Tech Force (Tech Force), expanding efforts to recruit top cybersecurity talent to strengthen federal systems and infrastructure. The new role will focus on protecting critical systems, strengthening federal cybersecurity capabilities, and safeguarding the digital infrastructure relied on by millions of Americans. Like previous Tech Force positions, this role will support high-impact, mission-critical technology work across federal agencies. “The federal government depends on strong cybersecurity to protect critical systems and maintain public trust,” OPM Director Scott Kupor said. “Through Tech Force, we’re recruiting highly skilled cybersecurity professionals to take on real challenges and strengthen the government’s defenses where it matters most.” As part of this initiative to bolster the federal cybersecurity workforce, OPM is coordinating with agencies across government to recruit a broad range of talented cybersecurity professionals, including individuals participating in programs such as the CyberCorps Scholarship for Service. The Cybersecurity Specialist position is in addition to the existing software engineering, data scientist, and product manager roles that Tech Force has released previously. Tech Force was created to bring elite technical talent into government service to solve meaningful problems at scale and help modernize federal technology capabilities. If you are interested in applying for the Information Cybersecurity Specialist role, sign up for the Tech Force talent network here.