No-frills tech news

Gabon's ANINF Targets 1,000 Youth for Digital Skills and <b>Cybersecurity</b> Training Initiative

Gabon’s ANINF Targets 1,000 Youth for Digital Skills and Cybersecurity Training Initiative According to ANINF, the initiative goes beyond basic training and reflects a broader national vision focused on developing qualified human capital capable of supporting Gabon’s digital transformation and strengthening information systems security. The National Agency for Digital Infrastructure and Frequencies of Gabon (ANINF) has launched a major certification training programme aimed at strengthening digital skills and building a new generation of ICT professionals in the country. The initiative was officially launched on Monday, April 13, 2026, at the ANINF Tower, in the presence of the Director General of ANINF, Alberto Mounguengui Moudoki, and the Director General of Cybastion, Antonia Oliveira. The programme is designed to train 1,000 young Gabonese in digital professions, with participants working towards internationally recognised Cisco certification. According to ANINF, the initiative goes beyond basic training and reflects a broader national vision focused on developing qualified human capital capable of supporting Gabon’s digital transformation and strengthening information systems security. The programme is positioned as a strategic investment in building a competitive and resilient digital workforce. The training effort is aligned with the national development vision led by His Excellency Brice Clotaire Oligui Nguema, President of the Republic of Gabon, who has prioritised digital sovereignty as a key pillar of the country’s development strategy. ANINF, acting as the state’s technical arm, is supporting the implementation of the programme to ensure effective deployment and long-term impact. Officials emphasised that the initiative represents a critical step toward building a secure, skilled, and sustainable digital ecosystem in Gabon. The programme underscores the belief that investing in training today will help shape the digital future of the country.

Anthropic's Mythos raising flags for <b>cybersecurity</b> | Fox Business Video

Live Now All times easternNOW - 3:30 AM 3:30 AM 4:00 AM 4:30 AM 5:00 AM 5:30 AM Fox Business Channel Paid Programming 3:30 AM - 4:00 AM The Fixer 4:00 AM - 5:00 AM Fox Weather First 5:00 AM - 6:00 AM Fox News Channel Fox News @ Night 4:00 AM - 5:00 AM Fox & Friends First 5:00 AM - 6:00 AM Fox Weather Channel Fox News Radio

OpenAI unveils GPT‑5.4‑Cyber, an AI model for defensive <b>cybersecurity</b>

OpenAI has announced a new AI model called GPT-5.4-Cyber. Similar to Anthropic’s Claude Mythos, this new “cyber-permissive” variant of its GPT-5.4 is built for defensive cybersecurity and not public use. OpenAI’s newest variant is meant to prepare the way for more capable models to come OpenAI says that its new GPT-5.4-Cyber variant of GPT-5.4 is specifically meant to prepare the way for more capable models coming this year. In preparation for increasingly more capable models from OpenAI over the next few months, we are fine-tuning our models specifically to enable defensive cybersecurity use cases, starting today with a variant of GPT‑5.4 trained to be cyber-permissive: GPT‑5.4‑Cyber. Access to GPT-5.4-Cyber is limited to “the highest tier” of “users willing to work with OpenAI to authenticate themselves as cybersecurity defenders.” Trusted Access for Cyber is required for using GPT-5.4-Cyber OpenAI says this is because GPT-5.4-Cyber is “purposely fine-tuned for additional cyber capabilities and with fewer capability restrictions.” This is a version of GPT‑5.4 which lowers the refusal boundary for legitimate cybersecurity work and enables new capabilities for advanced defensive workflows, including binary reverse engineering capabilities that enable security professionals to analyze compiled software for malware potential, vulnerabilities and security robustness without needing access to its source code. Because this model is more permissive, we are starting with a limited, iterative deployment to vetted security vendors, organizations, and researchers. The rollout is part of an expanded version of Trusted Access for Cyber, a cybersecurity initiative launched by OpenAI earlier this year. The company highlights two methods for gaining access to Trusted Access for Cyber: - Individual users can verify their identity at chatgpt.com/cyber. - Enterprises can request trusted access for their team through their OpenAI representative. You can learn more about TAC here, and GPT-5.4-Cyber here. OpenAI also recently introduced a new version

MSP <b>cybersecurity</b> news digest, April 13, 2026

Medusa‑linked Storm‑1175 conducts fast‑moving attacks that escalate quickly to ransomware Microsoft said Storm-1175 has been deploying n-day and zero-day exploits in high-velocity campaigns and can move from initial access to data exfiltration and Medusa ransomware deployment within days, and in some cases within 24 hours. The activity heavily impacted organizations in health care, education, professional services and finance across Australia, the United Kingdom and the United States. Microsoft observed the group exploiting more than 16 vulnerabilities across products including Exchange, ScreenConnect, TeamCity, SimpleHelp, CrushFTP, SmarterMail, GoAnywhere and BeyondTrust, showing that the actor routinely rotates quickly between newly disclosed exposed services rather than relying on a single access path. After exploitation, the group has been seen creating new accounts, deploying remote monitoring and management tools, stealing credentials, and tampering with security controls before encrypting systems. That combination makes the campaign operationally important because the ransomware stage is only the final part of a broader intrusion chain. Iran‑linked actors launch widespread password spraying attacks against Microsoft 365 accounts Security researchers reported an Iran-linked password spraying campaign targeting Microsoft 365 tenants, impacting hundreds of organizations across multiple sectors. Instead of focusing on one user, the attackers systematically tried commonly used passwords across many accounts to increase the chance of success while avoiding traditional lockout thresholds. In the observed activity, the attackers targeted Microsoft 365 login endpoints, used infrastructure such as VPNs and Tor to disguise their origin, and focused on organizations in government, technology, energy and private-sector environments. Successful authentication could provide access to email, internal data and other cloud resources inside compromised tenants. This is a cloud-native identity attack because it does not rely on malware or software vulnerabilities but instead exploits weak authentication practices and inconsistent identity controls. The broader risk is that attackers can gain access with valid credentials and

5 trends defining the future of AI-powered <b>cybersecurity</b> | CSO Online

Artificial intelligence is redefining the balance between business innovation and adversarial tradecraft in the modern security landscape. The new N-able and Futurum Report reveals how AI is reshaping cyber resilience as it accelerates both business innovation and adversarial tradecraft. Attackers are scaling their operations with unprecedented speed, leveraging automation to bypass traditional defenses. For IT security leaders and MSP owners, the days of relying on static, perimeter-based security are over. To stay ahead, we must look beyond simply keeping attackers out. The future belongs to those who prioritize continuous cyber resilience—the ability to withstand, adapt to, and recover from threats in real-time. Here is where the industry is heading and how AI-powered platforms are redefining defense strategies for the next 3–5 years. 1. AI is both the weapon and the shield We are entering an era of AI-versus-AI warfare. Threat actors are already using generative AI to craft sophisticated phishing campaigns, automate vulnerability scanning, and execute attacks at machine speed. However, AI is also our most powerful ally. Modern defense isn’t about human analysts staring at screens; it’s about leveraging AI for rapid detection, automated triage, and predictive insights. By processing vast amounts of telemetry data, AI can identify subtle anomalies that human teams might miss, allowing for preemptive neutralization of threats before they cause damage. See how AI is altering the landscape in the new N-able and Futurum report, Cybersecurity in the Age of AI: Moving from Fragile to Resilient. Get key insights on building a modern framework for business resilience. 2. From perimeter security to continuous cyber resilience The “castle and moat” approach is obsolete. In a world of hybrid work and distributed cloud environments, the perimeter has dissolved. The new standard is continuous cyber resilience. This shift moves the goalposts from “prevention” to “continuity.” It focuses on

In the Wake of Anthropic's Mythos, OpenAI Has a New <b>Cybersecurity</b> Model—and Strategy

OpenAI on Tuesday announced the next phase of its cybersecurity strategy and a new model specifically designed for use by digital defenders, GPT-5.4-Cyber. The news comes in the wake of an announcement last week by competitor Anthropic that its new Claude Mythos Preview model is only being privately released for now—because, the company says, it could be exploited by hackers and bad actors. Anthropic also announced an industry coalition, including competitors like Google, focused on how advances in generative AI across the field will impact cybersecurity. OpenAI seemed to be seeking to differentiate its message on Tuesday by striking a less catastrophic tone and touting its existing guardrails and defenses while hinting at the need for more advanced protections in the long term. “We believe the class of safeguards in use today sufficiently reduce cyber risk enough to support broad deployment of current models,” the company wrote in a blog post. “We expect versions of these safeguards to be sufficient for upcoming more powerful models, while models explicitly trained and made more permissive for cybersecurity work require more restrictive deployments and appropriate controls. Over the long term, to ensure the ongoing sufficiency of AI safety in cybersecurity, we also expect the need for more expansive defenses for future models, whose capabilities will rapidly exceed even the best purpose-built models of today.” The company says that it has homed in on three pillars for its cybersecurity approach. The first involves so-called “know your customer” validation systems to allow controlled access to new models that is as broad and “democratized” as possible. “We design mechanisms which avoid arbitrarily deciding who gets access for legitimate use and who doesn’t,” the company wrote on Tuesday. OpenAI is combining a model where it partners with certain organizations on limited releases with an automated system introduced

OAS and INCIBE open the call for applications for the <b>CyberSecurity</b> Summer BootCamp 2026

Each year the OAS Secretary General publishes a proposed Program-Budget for the coming calendar year. The OAS General Assembly meets in a Special Session to approve the Program-Budget. Find these documents from 1998-2013 here. Each year in April, the OAS Board of External Auditors publishes a report covering the previous calendar year’s financial results. Reports covering 1996-2016 may be found here. Approximately six weeks after the end of each semester, the OAS publishes a Semiannual Management and Performance Report, which since 2013 includes reporting on programmatic results. The full texts may be found here. Here you will find data on the Human Resources of the OAS, including its organizational structure, each organizational unit’s staffing, vacant posts, and performance contracts. The OAS executes a variety of projects funded by donors. Evaluation reports are commissioned by donors. Reports of these evaluations may be found here. The Inspector General provides the Secretary General with reports on the audits, investigations, and inspections conducted. These reports are made available to the Permanent Council. More information may be found here. The OAS has discussed for several years the real estate issue, the funding required for maintenance and repairs, as well as the deferred maintenance of its historic buildings. The General Secretariat has provided a series of options for funding it. The most recent document, reflecting the current status of the Strategy, is CP/CAAP-3211/13 rev. 4. Here you will find information related to the GS/OAS Procurement Operations, including a list of procurement notices for formal bids, links to the performance contract and travel control measure reports, the applicable procurement rules and regulations, and the training and qualifications of its staff. The OAS Treasurer certifies the financial statements of all funds managed or administered by the GS/OAS. Here you will find the latest general purpose financial reports for

Only 5% of organisations have full trust in their <b>cybersecurity</b> vendors

Sophos today released findings from a global, vendor-agnostic study (based on responses from 5,000 organisations across 17 countries), examining one of cybersecurity’s most urgent and overlooked necessities: trust. The Cybersecurity Trust Reality 2026 report is one of the most comprehensive studies of trust in cybersecurity and the impact on operational risk and board-level decision making. It reveals a critical challenge facing CISOs: Trust in cybersecurity vendors is fragile, difficult to measure, and increasingly shaping risk posture at both operational and board levels. At a time of relentless cyber threats, heightened regulatory scrutiny, and accelerating AI adoption, trust has become a defining factor in cybersecurity decision-making. Yet new research reveals that nearly all organisations report lacking full confidence in their cybersecurity vendors, and many struggle to assess vendor trustworthiness in the first place. The independent study found that: – 95% of respondents said they do not have full trust in their cybersecurity vendors – 79% struggle to assess the trustworthiness of new cybersecurity partners, and over six in ten (62%) even find it challenging for their existing vendors – More than half (51%) report increased anxiety about the likelihood of a significant cyber incident as a direct result of lack of trust These findings underscore a critical reality: cybersecurity effectiveness cannot be measured by technological performance alone, but also by the confidence that organisations have in the partners defending their business. For CISOs, trust gaps create operational friction, slower decision-making, and higher vendor turnover. Trusted cybersecurity partners reduce risk and build more resilient organisations. “Trust is not an abstract concept in cybersecurity, it’s a measurable risk factor,” said Ross McKerchar, CISO at Sophos. “When organisations can’t independently verify a vendor’s security maturity, transparency, and incident handling practices, that uncertainty flows directly into boardrooms and security strategies.” The survey identifies verifiable security

The &quot;SaaSpocalypse&quot; Created the Best Buying Opportunity in <b>Cybersecurity</b> in Years. Don't Miss It.

Investors recognized artificial intelligence's (AI) potential to transform industries, supercharging many tech stocks in recent years. That enthusiasm shifted to alarm in 2026. AI's transformational potential includes agentic AI that can independently execute tasks previously handled by software-as-a-service (SaaS) companies, leading to a massive sell-off in SaaS stocks. This "SaaSpocalypse" extended to the cybersecurity sector after AI giant Anthropic released artificial intelligence capable of identifying security vulnerabilities in software. While Wall Street believes AI threatens cybersecurity companies, the reality is not so simple. Moreover, the current sell-off offers long-term investors an opportunity to buy cybersecurity stocks at substantial discounts. Why AI cannot replace cybersecurity companies First, let's address Wall Street's AI fears. Although artificial intelligence is a potent technology, it's not a blanket replacement for cybersecurity, which has become critical to functioning in today's digital age. Organizations are unlikely to dump existing solutions for unproven AI alternatives from the likes of Anthropic. In addition, AI alone isn't a panacea against criminal hackers, who are launching increasingly sophisticated attacks such as data poisoning. This is where the AI that depends on the data to do its job is corrupted, creating vulnerabilities for hackers to exploit. Consequently, the multi-pronged protection provided by cybersecurity companies is essential. Also, they can address situations AI cannot solve, such as strategic decision-making and weighing ethical considerations. Cybersecurity stocks to consider buying The SaaSpocalypse caused many cybersecurity stocks to appear oversold. Some successful companies in the sector to invest in include identity security expert Okta (OKTA 1.97%), data protection provider Rubrik (RBRK 1.19%), and Palo Alto Networks (PANW 0.51%), one of the select businesses given exclusive access to Anthropic's latest AI, deemed too great a cybersecurity threat to release to the public. NASDAQ: PANW Key Data Points Each of these businesses saw substantial share price declines of

Anthropic's Mythos Triggers <b>Cybersecurity</b> Race

Anthropic's unveiling of Project Glasswing and its Claude Mythos frontier model marks a watershed moment for cybersecurity, introducing an AI system capable of discovering and exploiting software vulnerabilities autonomously at unprecedented scale. - RBRK stock is moving. See the chart and price action here. In its latest newsletter, ARK Invest pointed to Mythos' breakout scores — 93.9% on SWE-bench Verified and 83.1% on CyberGym — as a signal of a major evolution in both software engineering and cybersecurity defense. Anthropic's decision to keep Mythos private and share access with major compute and security partners — including AWS, Apple, Microsoft, Google, CrowdStrike, Broadcom and NVIDIA — illustrates how defense players are being brought directly into the AI frontier. CrowdStrike CTO Elia Zaitsev noted that the window between discovering and exploiting a vulnerability has shrunk "from months to minutes." This compression of time fundamentally reshapes corporate risk management, forcing enterprises to upgrade detection, response and resilience capabilities. Tailwinds for CRWD, NET, RBRK For CrowdStrike, whose Falcon platform already blends AI-driven anomaly detection with one of the largest endpoint telemetry datasets in cybersecurity, Mythos-like advances could amplify both product performance and commercial relevance. Glasswing reinforces the need for autonomous, predictive defense — an area where CrowdStrike has a multi-year head start. Cloudflare, meanwhile, stands to benefit from the heightened urgency to secure internet infrastructure and network perimeters. Its Zero Trust framework and global edge network are positioned to guard against increasingly AI-powered attacks targeting identity, data routing, and distributed endpoints. Rubrik, which focuses on data resilience and ransomware recovery, fits squarely into the other half of ARK's thesis: protection not just from infiltration, but from data destruction and manipulation once breaches occur. Its deep integration with enterprise cloud environments makes it an essential player as organizations reallocate budgets toward cyber continuity and automated

OPM Opens Applications for New <b>Cybersecurity</b> Role

The Office of Personnel Management (OPM) announced on Monday that it is now hiring information cybersecurity specialists through the US Tech Force. OPM said applications are open for the new role, which will focus on protecting critical systems, strengthening federal cybersecurity capabilities, and safeguarding digital infrastructure. “The federal government depends on strong cybersecurity to protect critical systems and maintain public trust,” OPM Director Scott Kupor said in an April 13 press release. “Through Tech Force, we’re recruiting highly skilled cybersecurity professionals to take on real challenges and strengthen the government’s defenses where it matters most.” OPM said it is coordinating with other federal agencies to recruit a broad range of cybersecurity specialists, including those participating in the CyberCorps Scholarship for Service program. “The cybersecurity specialist position is in addition to the existing software engineering, data scientist, and product manager roles that Tech Force has released previously,” OPM said. OPM unveiled the US Tech Force in December, a new effort to hire early-career technologists. They will serve two-year employment terms across the federal government. The agency said those who are interested in applying for the information cybersecurity specialist role can sign up for the Tech Force talent network.

OPM Announces New <b>Cybersecurity</b> Role for US Tech Force

OPM Announces New Cybersecurity Role for US Tech Force WASHINGTON, DC — The US Office of Personnel Management (OPM) today announced the opening of applications for a new Information Cybersecurity Specialist role through the US Tech Force (Tech Force), expanding efforts to recruit top cybersecurity talent to strengthen federal systems and infrastructure. The new role will focus on protecting critical systems, strengthening federal cybersecurity capabilities, and safeguarding the digital infrastructure relied on by millions of Americans. Like previous Tech Force positions, this role will support high-impact, mission-critical technology work across federal agencies. “The federal government depends on strong cybersecurity to protect critical systems and maintain public trust,” OPM Director Scott Kupor said. “Through Tech Force, we’re recruiting highly skilled cybersecurity professionals to take on real challenges and strengthen the government’s defenses where it matters most.” As part of this initiative to bolster the federal cybersecurity workforce, OPM is coordinating with agencies across government to recruit a broad range of talented cybersecurity professionals, including individuals participating in programs such as the CyberCorps Scholarship for Service. The Cybersecurity Specialist position is in addition to the existing software engineering, data scientist, and product manager roles that Tech Force has released previously. Tech Force was created to bring elite technical talent into government service to solve meaningful problems at scale and help modernize federal technology capabilities. If you are interested in applying for the Information Cybersecurity Specialist role, sign up for the Tech Force talent network here.

<b>Cybersecurity</b> chief to warn of 'unpredictable' AI impact

The implications of AI for cybersecurity are "both vast and inherently unpredictable", the director of the National Cyber Security Centre will tell the Oireachtas Committee on Artificial Intelligence. Richard Browne will address today's committee hearing alongside representatives from the Defence Forces and the Department of Defence. In his opening address, Mr Browne will tell committee members that threat actors are heavy users of AI tools and that advances in the technology are allowing for "greater automation of attack processes". "It means that we’re in a race, whether we chose to accept it or not," Mr Browne is expected to say. "The technical frontier is leaping ahead every week, and the role of managing cyber related risks to society is becoming far more dynamic than we might like," according to his opening statement. He will also tell the committee that AI is a "revolution" and a "generational change that will affect every other digital technology that has gone before". Director of Emergency Operations and Infrastructure Oversight in the Department of Defence, Jason Kearney, will tell the committee that the rise of and acceleration of generative AI "has created significant new opportunities while also introducing challenges that are broader and more complex than anything we have previously encountered". Commander of the Defence Forces Joint Cyber Defence Command Brigadier General Mark Staunton will tell the committee that his unit remains proactive in considering the appropriateness of incorporating AI into military capabilities. Committee chair Malcolm Byrne said the impact of AI on defence, security and cybersecurity is one of the most critical areas for the committee. "We know about the risks of cyberattacks emanating from other states, notably Russia, China, and Iran, and by non-state actors already on Ireland," Mr Byrne said. "If these are AI enabled, there are even greater challenges, particularly given

Anthropic's Mythos signals a structural <b>cybersecurity</b> shift

Claude Mythos Preview won’t break cybersecurity, but two new analyses shed light on how it is compressing exploit windows and exposing gaps in vulnerability management. CISOs should prepare for what’s ahead. Credit: Pixabay Over the past week, reaction to Anthropic’s Glasswing disclosure has split along familiar lines. At one end: alarm over an AI system capable of autonomously identifying and exploiting vulnerabilities. At the other: dismissive hot takes, arguing there is nothing new here. A more grounded view comes from a new briefing by the Cloud Security Alliance (CSA), led by Gadi Evron, CEO of Knostic and CISO-in-Residence for AI at the alliance; Rob T. Lee, chief AI officer and chief of research at SANS Institute; and Rich Mogull, chief analyst at CSA. The paper draws on a deep bench of contributors, including former CISA Director Jen Easterly, Bruce Schneier, former National Cyber Director Chris Inglis, and former Google CISO Phil Venables, along with dozens of CISOs and CEOs. Evron told CSO that assembling that level of input among so many leaders so quickly reflects the nature of cybersecurity itself: “The cybersecurity industry is also a community, and knowing each other, all folks need to have is a good cause, and dispelling noise and spreading good information matters to us.” The group’s conclusion is direct: Glasswing is not an outlier. It is an early example of a capability that will scale, and CISOs should start getting ready for this era. “In the near term, security organizations will likely be overwhelmed by the need to apply patches and respond to AI-discovered vulnerabilities, exploits, and autonomous attacks,” the paper states. “The storm of vulnerability disclosures from Project Glasswing is the first of many large waves.” The shift is speed AI-driven vulnerability discovery is not new. What has changed is speed. Tasks that

Anthropic Unveils Claude Mythos Preview For <b>Cybersecurity</b> Initiative

Anthropic has rolled out the Claude Mythos Preview, an unreleased AI model that sits at the heart of its new cybersecurity push, Project Glasswing. The company claims that Mythos represents a significant advancement in AI, boasting the ability to spot and take advantage of software vulnerabilities on par with top human experts. Testing revealed that the model identified thousands of serious flaws in major systems think operating systems, web browsers, and popular software. Some of these vulnerabilities had remained hidden for decades, such as a bug in OpenBSD that's been around for 27 years. Anthropic cautions that Mythos illustrates how AI could significantly reduce the skill and effort needed for cyberattacks, which might ramp up threats to critical infrastructure. On the flip side, the model's abilities could also be harnessed defensively, allowing for the detection and repair of security gaps faster and on a larger scale than ever before. Given the associated risks, Anthropic has decided against a public release of Mythos. Instead, they'll be providing access to a select group of partners, aiming to fortify cybersecurity systems while they work on safeguards for future use. This development marks a pivotal moment where AI might transform both cyber defense approaches and the landscape of cybercrime. For comments and feedback: editorial@rttnews.com

How UK Data Centers Can Navigate <b>Cybersecurity</b> Pressures

Insight and analysis on the data center space from industry thought leaders. How UK Data Centers Can Navigate Privacy and Cybersecurity Pressures UK data centers are critical to digital infrastructure but face growing regulatory scrutiny on privacy, cybersecurity, and compliance. Data centers have become core components of the UK’s digital infrastructure and are key to enabling economic growth, technological innovation, and the deployment of AI. They have also been formally recognized as nationally critical assets. As such, they are entering a period of intensified regulatory scrutiny. On top of ensuring compliance with UK data privacy obligations, operators are set to become ‘essential services’ under the UK’s updated Network and Information Systems (NIS) framework, reshaping risk, governance, and enforcement exposure. Ensuring compliance with overlapping and complicated regimes is crucial to avoiding contractual or regulatory breaches that can have significant financial impact. Cyber Risks and Regulatory Challenges Data centers are a valuable target. The UK government has responded with the introduction of new cybersecurity standards under the Cyber Resilience Bill which will bring data centers into the scope of the Network and Information (NIS) Regulations. The new rules mean that medium and large managed service providers will need to put in place appropriate measures to manage risks to the services they provide. Regulators will have the power to impose turnover-based penalties for serious security breaches, with harmful incidents now required to be reported within 24 hours. In addition, data centers will be regulated as “operators of essential services” by the DFT and Ofgem as part of the digital infrastructure scheme. More frequent, formal incident notifications (to regulators and customers) increase the potential for contractual claims, negligence, or data protection compensation claims, alongside the threat of substantial regulator fines for non-compliance. Ransomware incidents, in particular, continue to present a very real legal and

<b>Cybersecurity</b> Sector Sentiment Reset Amid AI Disruption Concerns

Keysight Technologies Industry leader, wide product range According to a report from Yahoo Finance, the cybersecurity sector is undergoing a sharp sentiment reset, with leading platforms caught in a broader selloff. This is driven by investor concerns that next-generation artificial intelligence could disrupt traditional security models and compress long-term margins. A new catalyst emerged with the launch of Project Glasswing, a high-profile collaboration that includes Palo Alto Networks alongside other major technology leaders. The initiative aims to deploy advanced AI for defensive cybersecurity, centered on a powerful model that has demonstrated the ability to uncover thousands of critical vulnerabilities across software systems. The announcement initially reignited optimism and briefly lifted cybersecurity stocks, as investors saw the partnership as validation for the ongoing relevance of such companies. However, that enthusiasm proved short-lived, with shares pulling back again. Palo Alto Networks stock has declined over the past six months. The company is a leading global cybersecurity platform provider. It is valued as a large-cap technology leader, reflecting its scale and strategic importance. The stock has experienced a notable valuation reset over recent months, reflecting both sector-wide pressure and evolving investor expectations. Over the past year and year-to-date, the stock has declined amid a broader derating across high-growth cybersecurity names as multiples compress. The performance over the past six months reflects heightened volatility and fragile investor positioning. Interactive table based on the Store Companies dataset for this report. | # | Company | Headquarters | Focus | Scale | Note | |---|---|---|---|---|---| | 1 | Keysight Technologies | Santa Rosa, California | Electronic test & measurement equipment | Large | Industry leader, wide product range | | 2 | Tektronix | Beaverton, Oregon | Test & measurement instruments | Large | Part of Fortive, historic brand | | 3 | Anritsu America |

OPM Opens Applications for New <b>Cybersecurity</b> Role

The Office of Personnel Management (OPM) announced on Monday that it is now hiring information cybersecurity specialists through the US Tech Force. OPM said applications are open for the new role, which will focus on protecting critical systems, strengthening federal cybersecurity capabilities, and safeguarding digital infrastructure. “The federal government depends on strong cybersecurity to protect critical systems and maintain public trust,” OPM Director Scott Kupor said in an April 13 press release. “Through Tech Force, we’re recruiting highly skilled cybersecurity professionals to take on real challenges and strengthen the government’s defenses where it matters most.” OPM said it is coordinating with other federal agencies to recruit a broad range of cybersecurity specialists, including those participating in the CyberCorps Scholarship for Service program. “The cybersecurity specialist position is in addition to the existing software engineering, data scientist, and product manager roles that Tech Force has released previously,” OPM said. OPM unveiled the US Tech Force in December, a new effort to hire early-career technologists. They will serve two-year employment terms across the federal government. The agency said those who are interested in applying for the information cybersecurity specialist role can sign up for the Tech Force talent network.

<b>Cybersecurity</b> veteran on Anthropic Mythos: 'We've never had a problem finding vulnerabilities'

Anthropic caused an industrywide panic last week when it announced Claude Mythos Preview, an AI model with a knack for uncovering high-level cybersecurity vulnerabilities. Among its achievements, the model found a now-patched weak spot in OpenBSD, an operating system known for its security, that Anthropic claimed went undiscovered for 27 years. It has also found “thousands of additional high- and critical-severity vulnerabilities” across open-source and closed-source programs, according to the company. Tech insiders and other experts subsequently freaked out over the potential for the large language model to upend cybersecurity, but one 25-year industry veteran is skeptical. David Lindner, chief information security officer at Contrast Security, told Fortune that while Mythos may help find myriad problems, this isn’t necessarily the most important issue. “We’ve never had a problem finding vulnerabilities. We find them every day. We actually have a pile of them that we just don’t fix,” he said. “So I don’t think that really changes anything.” Lindner pointed out that weak spots are easier to find than to fix, noting that Anthropic’s blog post announcing Mythos stated over 99% of the vulnerabilities the model uncovered haven’t been patched. More specifically, he said, Mythos does little to help solve one of the biggest issues facing cybersecurity experts: social engineering. Hackers can still use existing tools and AI to impersonate an employee’s boss or an IT worker and gain access to systems, he argued. Anthropic has said Mythos is so powerful it won’t be publicly released, and it is being made available only to a group of 40 organizations including tech companies such as Microsoft, Apple, and Google, as well as others like cybersecurity company CrowdStrike and bank JPMorgan Chase so they can use the technology to improve their own security infrastructure through an effort it called Project Glasswing. Because so