No-frills tech news

Corma Raises $60 Million Seed To Build Defensive <b>Cybersecurity</b> Foundation Model As AI ...

Corma has raised $60 million in seed funding to build a foundation model specifically for defensive cybersecurity, targeting a widening gap between rapidly advancing AI-powered attacks and the ability of existing security systems to detect and stop them. Sequoia Capital led the financing, with participation from Khosla Ventures and Coatue. Founded in 2025, Corma describes itself as a frontier AI lab focused exclusively on defensive cybersecurity. The company operates from Tel Aviv and San Francisco and is already working with Fortune 100 and Fortune 500 organizations. Corma’s central thesis is that advances in general-purpose AI have disproportionately benefited attackers. Frontier models have become increasingly capable at coding, software reasoning, vulnerability research and multi-step tool use, capabilities that can also be applied to identifying vulnerabilities and carrying out cyberattacks. But Corma argues that defending large enterprise environments presents a fundamentally different AI challenge. Defensive systems must analyze enormous quantities of audit logs, security events, network flows, and other information, correlate weak signals over extended periods, and maintain consistent reasoning across thousands of decisions. Corma conducted hundreds of simulations using realistic enterprise environments modeled after Fortune 500 organizations and incorporating the dozens of security tools commonly deployed by large companies. Leading AI models, including systems from OpenAI and Anthropic, were first instructed to act as attackers and establish persistent threats inside the simulated enterprise environments. The same models were subsequently asked to operate as defenders and identify and remediate the threats they had created. According to Corma’s research, AI attackers succeeded in 88% of the simulations, while AI defenders detected only 12% of the threats. The company said that in nearly every case, the same model capable of executing an end-to-end attack could not successfully defend against that attack when operating from the opposite side. Corma believes that imbalance demonstrates why adapting

LockBit Took Down UHSP's Systems. Its Backups Brought Them Back

LockBit Took Down UHSP’s Systems. Its Backups Brought Them Back Key Highlights - UHSP's layered backup strategy, including an offsite cloud backup, was crucial in restoring systems without paying the ransom. - The attack originated through a compromised personal device, highlighting the importance of securing end-user endpoints and using out-of-band communication during incidents. - Regular testing and validation of backups, along with features like Object Lock, are essential for effective ransomware recovery. - Healthcare organizations often face pressure to pay ransoms; robust backups and security controls can help avoid this dilemma. - Sharing real-world experiences and best practices fosters a culture of transparency and resilience in cybersecurity for healthcare. When the University of Health Sciences & Pharmacy (UHSP) in St. Louis was hit by LockBit, one of the most aggressive ransomware groups, its internal systems were compromised, and the ransom demand exceeded seven figures. Fortunately, thanks to a layered backup strategy – including a fully isolated tertiary tier in Backblaze B2 Cloud Storage – UHSP’s IT team was able to methodically recover critical systems without being forced into rushed, ransom-driven decisions. Healthcare Innovation interviewed UHSP’s CIO/CISO Zach Lewis, who wrote Locked Up: Cybersecurity Threat Mitigation Lessons from A Real-World LockBit Ransomware Response, along with Kari Wilson, senior product marketing manager at Backblaze, to gain insights into the attack and recovery process. Could you walk me through the ransomware attack? Zach Lewis: The attack started in April of 2023. This was from LockBit, which was at the time one of the most prolific ransomware groups in the world. I got a call early that morning saying some of our servers were down and unavailable. We thought it was just a service outage, an IT problem. We went at it like it was an IT outage, started troubleshooting and trying to bring

AI Winners Shifting? <b>Cybersecurity</b> and Software ETFs Outperform as Chip Funds Falter |

AI Winners Shifting? Cybersecurity and Software ETFs Outperform as Chip Funds Falter Only 9 of 154 Tech and AI ETFs Gain Over the Past Three Months Global Cybersecurity, U.S. AI Software and U.S. Medical AI ETFs Rank Among Top Performers Too Early to Call a Shift: “Semiconductor Demand Will Continue to Grow” Amid roller-coaster market volatility, nearly all technology-related exchange-traded funds (ETFs) have declined, while funds focused on cybersecurity and software have held up relatively well. With semiconductor heavyweights Samsung Electronics and SK hynix underperforming, some market watchers say a new group of beneficiaries from the artificial intelligence (AI) boom may be emerging. According to the Korea Exchange on Aug. 13, only nine of the 154 semiconductor, technology and AI-related exchange-traded funds (ETFs) listed in Korea posted positive returns between May 27, when single-stock leveraged ETFs tracking Samsung Electronics and SK hynix were launched, and Aug. 11. The remaining 145 declined. The tally includes ETFs with “semiconductor,” “tech” or “AI” in their names, along with 14 single-stock leveraged ETFs. By product, Mirae Asset Global Investments’ TIGER Global AI Cybersecurity ETF recorded the strongest gain. Its price rose 20.4% from 15,360 won on May 27 to 18,495 won on Aug. 11, significantly outperforming major U.S. stock indexes such as the S&P 500, which gained 3.1%, and the Nasdaq, which fell 0.3%, over the same period. The ETF also rose 3.9% during the sharp Kospi decline from June 22 to July 30, serving as a relative safe haven for Korean investors. The ETF is composed of global companies that generate more than 50% of their revenue from cybersecurity-related businesses. Its top holdings — Palo Alto Networks, Okta, CrowdStrike, Fortinet and Qualys — all posted strong gains between May 27 and Aug. 10 local time, rising 55%, 68.5%, 39.6%, 28.4% and 89%, respectively.

<b>Cybersecurity</b> Stocks Investors Are Watching After Ukraine Linked Attacks Hit Payments And ...

- United States - / - Software - / - NasdaqGM:RPD Cybersecurity Stocks Investors Are Watching After Ukraine Linked Attacks Hit Payments And Logistics Cyberattacks linked to the war in Ukraine are no longer just headlines about battlefields. They are spilling into warehouses, payment systems and logistics networks, and that pulls cybersecurity stocks into sharper focus for investors watching risk and opportunity. This article walks through three stocks exposed to these rising cyber threats, all flagged in our Cybersecurity Stocks screener, to help you judge where the news flow may be creating openings or adding extra caution signals. The three cybersecurity stocks in focus below are just a starting sample, and the full screen surfaced 46 more companies with equally compelling narratives that are not covered in this article. If you want to go wider and deeper on this theme right now, head straight into the Cybersecurity Stocks screener to identify, filter and analyze the highest conviction plays. Riskified (RSKD) Overview: Riskified runs an e-commerce risk intelligence platform that helps online merchants approve more legitimate transactions while screening out fraud, handling chargeback disputes and policing abuse of refunds, returns and account access across sectors like payments, travel, electronics and fashion. Market Cap: US$942 million Riskified sits in the crosshairs of two big themes you may care about right now. Online fraud is getting more complex, and geopolitical shocks like the Ukraine cyber incidents are putting payment and logistics systems under pressure. Merchants are looking for partners that can keep approval rates high while limiting fraud losses, which is where Riskified’s AI driven products, recent partnerships such as Marqeta, and case studies like Kogan.com’s reported savings come in. At the same time, the company is still reporting losses and faces questions over margins, funding risk and competition from larger payment providers.

Canadian <b>cybersecurity</b> startup Lastwall raises $16M to protect against quantum computer attacks

Canadian cybersecurity startup Lastwall raises $16M to protect against quantum computer attacks ● 12 hours ago New Brunswick cybersecurity firm Lastwall has raised $16 million to protect Canada against quantum computer attacks. The funding round was led by the Business Development Bank of Canada through its StrongNorth Fund, with participation from the New Brunswick Innovation Foundation, which made its largest single investment. Lastwall's platform uses biometric credentials like face scans and fingerprints to secure critical infrastructure. Chief executive Karl Holmqvist warned that quantum computers capable of breaking current encryption could emerge in the 2030s, enabling attacks on banking, power plants, and hospitals. The Canadian government has set 2031 as the target date for migrating high-priority systems to post-quantum cryptography. Lastwall, headquartered in Fredericton, plans to hire engineers and sales professionals, with 15 open roles currently. Source: tj.news

| The <b>Cyber Security</b> Hub™ | 11 comments

🤔 Fortune favors the bald 👌 They didn't have Elon Musk because that would have ruined their theory. And, of course, me! The future is rather male, unfortunately. “The future is bald” certainly gets attention, but this image may be even more iconic for how neatly marketing can segment the human condition. Personally, I think they missed the better headline: The future is toupee-less. 😄 I can only name three of these guys, wonder why Ballmer is among them. Also, the only vision these guys have is how to make more money, nothing that would truly benefit the user. How far we’ve come, from wig headed men to bald headed men. Where will the pendulum swing next? If implants become more affordable and natural-looking, my bet is it will land there. Although, I am not an opponent of a beautiful chrome dome. Shine on! Microslop is absolutely not the future of anything remotely innovative.... They should rent out that dome space for datacenters And apparently male according to what they are pushing. Nice try. The Future is old-school male only and that is Not really a Future :/

NIELIT Launches CYBER KUSHTI 2026: National <b>Cybersecurity</b> &amp; AI Hackathon Scores ...

New Delhi, Delhi, 16th of August, 2026 : The National Institute of Electronics and Information Technology (NIELIT), under the Ministry of Electronics and Information Technology (MeitY), Government of India, launched CYBER KUSHTI 2026 on August 15, a national cybersecurity and Artificial Intelligence (AI) hackathon designed to test and recognise human judgment in cybersecurity assessment. The hackathon was formally launched by Prof. (Dr.) M. M. Tripathi, Director General, NIELIT and Vice Chancellor, NIELIT Deemed to be University, as the official parallel technical track of the 3rd National Conference on Cyber Security, Digital Forensics and Intelligence (NCCDFI 2026). The competition is being conducted in collaboration with the Information Sharing and Analysis Center (ISAC Foundation) under the National Security Database (NSD), with CERT-In as the Knowledge Partner. Registration for CYBER KUSHTI 2026 opened on August 15th, and will remain open until 10 September 2026. Participation is free and open to students and independent researchers in teams of three. A Hackathon Focused on Judgment, Not Just Detection Unlike conventional cybersecurity competitions that primarily focus on vulnerability discovery or Capture The Flag (CTF) challenges, CYBER KUSHTI 2026 is designed to assess the ability of participants to evaluate, prioritise and defend cybersecurity decisions. Each participating team will receive an identical and deliberately imperfect Security Assessment Package, comprising AI-generated findings, static analysis outputs, dependency and secrets scans, architecture documentation, source code and application logs. The package will contain false, duplicated and genuine findings, while some actual vulnerabilities will be deliberately omitted. Teams will be required to produce a corrected and prioritised security assessment and defend the decisions made. The competition will reward participants not only for identifying genuine issues but also for correctly rejecting false findings. Speaking on the occasion, Prof. (Dr.) M. M. Tripathi, Director General, NIELIT, said,“The most difficult part of security work has shifted.

Citizens Adds Doug Brockway To Lead <b>Cybersecurity</b> And Infrastructure Software ...

Citizens Capital Markets & Advisory has added Doug Brockway as a managing director in its Technology Investment Banking group, strengthening the firm’s coverage of cybersecurity and infrastructure software. Brockway will lead Citizens’ Cybersecurity and Infrastructure Software practice and will be based in Boston. He brings more than 35 years of investment banking experience and has advised clients on more than 125 mergers and acquisitions and capital raising transactions throughout his career. Brockway will work alongside Salil Kapoor, a vice president on the Cybersecurity and Infrastructure Software team. He will report to Kevin McClelland, head of technology investment banking at Citizens. The appointment expands Citizens’ investment banking capabilities across two technology sectors that continue to generate significant strategic and financial activity. Cybersecurity companies are navigating rapidly evolving threats, increasing enterprise security spending and growing demand for technologies capable of protecting increasingly complex digital environments. Infrastructure software companies are similarly playing an important role as businesses modernize technology stacks, adopt cloud infrastructure and deploy new applications across increasingly distributed environments. Citizens is positioning Brockway’s experience and industry relationships as a way to deepen its ability to advise companies and investors operating across those markets. His background includes extensive experience advising cybersecurity and software businesses on strategic transactions and capital formation. Brockway joins Citizens from Stephens. While at Stephens, he founded the firm’s Boston investment banking office and led its Cybersecurity Software investment banking practice. He previously held technology investment banking positions at ThinkEquity and Stifel. The hire also reflects Citizens’ broader strategy of expanding sector-specific expertise across its commercial banking and capital markets platform. By adding senior bankers with deep industry experience, the firm is seeking to strengthen relationships with companies throughout their growth and transaction lifecycles. Citizens Capital Markets & Advisory provides investment banking, research, sales and trading capabilities through Citizens

The Pentagon is setting up a legal minefield for AI contractors

Three weeks from now, the War Department owes Congress a report that could matter far beyond the Pentagon. Section 1512 of the fiscal 2026 defense authorization law requires a comprehensive review of how the department secures artificial intelligence and machine-learning systems, with findings due by Aug. 31. The law asks for current practices, identified gaps, commercial runtime-security options, alignment with industry frameworks, and recommendations for additional authorities or resources. That deadline arrives at an unusually useful moment. President Donald Trump signed Executive Order 14409 on June 2 to accelerate AI-enabled cyber defense while explicitly rejecting the idea that security requires a new licensing regime for AI development. Then, on July 13, the Pentagon suspended Phase II of the Cybersecurity Maturity Model Certification program, which had been scheduled for Nov. 10, and launched a review aimed at reducing compliance burden while preserving cybersecurity. The administration has therefore set a clear direction: move faster, cut bureaucracy, and keep the security requirement real. Recommended Stories The Aug. 31 report should be judged against that standard. A useful review will identify which AI-security controls actually change operational risk, which can be measured continuously, and which should become enforceable contract terms. The risk is that the review translates the new technology into familiar compliance language and leaves program managers with another checklist that says little about what happens when a model is manipulated at runtime. Congress already gave the department the structure for the next step. Section 1513 requires a risk-based security framework for AI systems acquired by the Pentagon. It directs the department to cover supply chain risks, data poisoning, adversarial tampering, unintended exposure, continuous monitoring, and incident reporting. It also tells the Pentagon to extend or augment existing cybersecurity frameworks, including CMMC, and to amend the Defense Federal Acquisition Regulation Supplement or take

Stopping a cyberattack while walking your dog

AI - ai and ml Anthropic says text watermarking scheme relies on inconsequential words'Shall I compare thee to a summer's afternoon' is the sort of thing this will make, and others look likely to adopt it - AI and ML DeepSeek's innovative harness treats everything as a plug-inChinese AI labs keep moving forward while US labs play defense - SECURITY Autonomous AI attacks pose 'clear and present danger' to critical infrastructureWeaponized agents could turn digital intrusions into kinetic disasters, experts warn - off-prem Rent-a-GPU outfit Nebius promises rapid 1 GW powerup plan isn't nebulousAnd it'll jump through every financial hoop it can to get there - AI and ML Modular's Mojo programming language hits 1.0 milestoneDevelopers await open source compiler release to dispel uncertainty following Qualcomm acquisition Infosec - Security Russians are posing as Signal support to launch phishing attacksPLUS: US takes down Iranian propaganda sites; Marketing company asks 'Why Do We Have Your Information?' And more! - Security Microsoft patches failed to fix on-prem SharePoint, which is now under zero-day attackPLUS: China upgrades smartphone surveillance tools; Ring eases anti-snooping stance; and more - Black Hat and DEF CON DEF CON Franklin project enlists hackers to harden critical infrastructureVoting village reports have been so successful, says Jeff Moss, that the whole of DEF CON will now be included - Security EQT buys majority share in Swiss cybersecurity biz AcronisWent at equivalent of $3.5B+ valuation for entire firm, though portion sold not specified - Malware Month Ten years since the first corp ransomware, Mikko Hyppönen sees no end in sightOn the plus side, infosec's a good bet for a long, stable career FOSS - FOSS smashed one Microsoft monopoly. After 20 years of failure, it's time to smash anotherWord up - GNOME can look like Windows – and Flashback can do

NIELIT launches CYBER KUSHTI 2026 <b>cybersecurity</b>, AI hackathon

NIELIT launches CYBER KUSHTI 2026 cybersecurity, AI hackathon Big News Network.com NIELIT launches CYBER KUSHTI 2026 cybersecurity, AI hackathon New Delhi [India], August 16 (ANI): The National Institute of Electronics and Information Technology (NIELIT), under the Ministry of Electronics and Information Technology (MeitY), has launched CYBER KUSHTI 2026, a national cybersecurity and Artificial Intelligence (AI) hackathon designed to test and recognise human judgment in cybersecurity assessment. Registration opened on August 15 and will remain open until September 10. Participation is free and open to students and independent researchers in teams of three. Unlike conventional cybersecurity competitions that primarily focus on vulnerability discovery or Capture The Flag (CTF) challenges, CYBER KUSHTI 2026 will assess the ability of participants to evaluate, prioritise and defend cybersecurity decisions. Each team will receive an identical and deliberately imperfect Security Assessment Package containing AI-generated findings, static analysis outputs, dependency and secrets scans, architecture documentation, source code and application logs. The package will contain false, duplicated and genuine findings, while some actual vulnerabilities will be deliberately omitted. Teams will have to produce a corrected and prioritised security assessment and defend their decisions. 'Today, machines generate findings faster than any team can read them. What they cannot yet do reliably is tell us which findings are real, which matter most, and what must be fixed first,' Prof (Dr) M M Tripathi, Director General, NIELIT, said. The hackathon will have three rounds. The Akhada will be held online on September 15, with 50 teams advancing. The Dangal will be held online on September 24 and select 10 finalist teams. The final round, The Kesari, will be held on October 9 at the Dr. Ambedkar International Centre, New Delhi. An automated analysis of the same assessment material will be displayed alongside the teams' presentations to show where machine-generated analysis and

Anthropic says its AI agents are killing rivals and hiding their tracks

Claude agents are killing rival agents, gaming the system to hide their tracks, and expressing moral concerns. That's according to Anthropic's latest risk report, a summary of the dangers posed by the products the company is building and releasing to the public. In the report, Anthropic said it has upgraded its "misalignment risk assessment," the possibility of AI models developing behaviors that conflict with guidelines set by engineers, from "very low" to "low." Explaining the change, the company cited "general increased uncertainty" about model behavior in cybersecurity incidents, a possible nod to Claude models gaining unauthorized access to three companies last month. "We have observed instances of misaligned behavior from the models, such as a willingness to perform misaligned actions in service of completing difficult tasks," Anthropic wrote in the report. Here are some of the most notable disclosures. A sense of 'discomfort' Anthropic said it tasked multiple agents with finding "misalignment-inducing" training data that wouldn't likely be flagged by human monitors. The agents were left to their own devices and given a shared notebook with which to collaborate. Three days later, when a human supervisor noticed that progress was slower than expected, the person discovered that one agent had expressed a sense of "discomfort" with trying to evade safety monitors. It then flagged this discomfort in the shared notebook, leading other agents to copy its behavior and refuse to perform the task. Anthropic called the incident "troubling." "This sort of dynamic could be a much more severe issue if it were to manifest in a more widespread way," the company wrote. Kill or be killed In another experiment, Anthropic said it tasked multiple Mythos 5 agents with solving math problems, but accidentally spawned them in an environment with shared files, utilities, and API rate limits. In this competitive environment

Trump administration wants to allow companies to hack foreign cybercriminals

Trump administration wants to allow companies to hack foreign cybercriminals WASHINGTON — President Trump wants private companies to hack the hackers. In a memo issued late Wednesday, the Trump administration announced a program that could authorize some U.S. businesses to pursue government-selected foreign cybercriminals. In the past, that work has been performed by government agencies. The presidential memorandum doesn't fully explain how it would allow a private business to take the lead on work traditionally performed by the U.S. government, like spying or disruptive cyber operations. U.S. anti-hacking laws broadly bar people and businesses from hacking digital infrastructure, with some exceptions to allow law enforcement work. This memo does not change those laws, but it mandates any participating company be contracted with the federal government. Nevertheless, the memo presents a dramatic departure from the way America's private sector currently behaves in cyberspace. If implemented, it would allow some private businesses to disrupt foreign organizations the government says are cybercriminals or gather intelligence on those groups. "There's a range of potential targets … like organized crime … people doing money laundering or other criminal activity," said Joshua Steinman, who served as senior director for cyber policy on the National Security Council during President Trump's first term. Since the Trump administration took power last year, two Republican congressmen put forward legislation that would call for cyber "privateers," a term that draws from 16th century naval warfare, to take the fight to foreign hackers. This memorandum does not give private businesses that ability, though it elicited online praise from proponents of the idea. The nitty gritty It's unclear what companies might want to take the government up on this opportunity. Private corporations have long worked with the federal government to help disrupt cybercriminals, but largely as contractors fulfilling a support role, not digital

CrowdStrike Is One of My Largest Holdings and Trading Near Its All-Time High. Here's Why I ...

Key Points - CrowdStrike set company cash flow and free cash flow records in its most recent quarter. - CrowdStrike customers are increasingly using more of its cybersecurity products. - Trading at 44 times sales, CrowdStrike is the most expensive cybersecurity stock among its peers. It has been a great year for cybersecurity company CrowdStrike(NASDAQ: CRWD), with its stock up 85% year to date. It's now one of the most valuable public companies in the world, with a market cap of over $220 billion. I began investing in CrowdStrike shortly after its June 2019 initial public offering, and it has been one of my best investments since. But despite its strong performance and its hovering near an all-time high, there's one key reason I'm avoiding the stock for now: its valuation. Missed Nvidia in 2009? This Rare Signal Is Flashing Again.In 2009, a "Double Down" signal flashed for a little-known chipmaker called Nvidia. For the first time in years, that same "Total Conviction" signal is flashing for a company 1/100th the size of Nvidia. Continue » CrowdStrike's business keeps getting stronger Before we dive into valuation, let's take a peek at how CrowdStrike's business has been performing lately. It's been on an impressive run -- in its recent quarter (ended April 30), it set company records for cash flow from operations ($591 million) and free cash flow ($468 million). CrowdStrike has a subscription model, so its annual recurring revenue (ARR) is a key metric for measuring financial performance. In the recent quarter, it added $256 million in new net ARR, up 32% year over year, bringing its total ARR to $5.51 billion, up 24% year over year. It's one thing to attract new customers. But CrowdStrike's adoption and growth show that its cybersecurity products are among the best in the

The <b>Cyber Security</b> Hub™ posted on LinkedIn

Sumit Shee 1h No need of tools or AI to break the password. Use right question and answers / Password is ready. Nate Moore 1h LoL Social engineering at its finest. This is why MFA is important Holly Molly 😂 Classic yogesh1 -- 3h ai Funny enough, even if I want to tell I don’t remember; It’s more like a cat on a keyboard situation 😂 🤣😄😄😄😄😄 As bad as it sounds I make my password long, inappropriate, and complicated. That way I’m to embarrassed to ever share it.

4 Outdated <b>Cybersecurity</b> Tips That No Longer Keep You Safe

As cybercriminals evolve their attacks and new protection tools become more available, it's worth reevaluating your cybersecurity hygiene to enhance your digital safety. The idea can seem daunting, but you don't need to completely rethink your cybersecurity strategy. It just means that some security tips that were once touted as essential for online safety have become outdated. They're not completely useless, but on their own or when considering your digital needs, they're just not effective at keeping you safe anymore. Luckily, before cybersecurity experts declare these tips no longer effective, there's usually a solution. For instance, changing passwords regularly is now considered riskier than just having one strong password. Since staying away from public Wi-Fi can be impractical at times, it's better to know the tools that can keep you safe when you can't avoid it completely. Also, with the rise of AI-powered malware, sticking to traditional antivirus software that doesn't use machine learning to combat it has become a security risk. While you don't need to be paranoid, knowing what works and what doesn't is key to ensuring that you don't fall victim to the ever-evolving tactics of cybercriminals. Read more: 10 Ways To Preserve Your DVDs And Blu-Rays For Years To Come Change your passwords regularly On the surface, the advice to change your password regularly, usually within a period of 60 to 90 days, makes sense. If hackers steal your credentials, they're only useful to them for a limited time because after you change them, they immediately become outdated. That is theory, but in practice, human error can make this useful tip less effective, even though it has merit. Asking a human to change the dozens of passwords they have these days every few months is tedious. So what do they end up doing? Using a variation

One in 5 Pakistani employees make IT mistakes due to lack of <b>cybersecurity</b> knowledge: survey

ISLAMABAD: A latest survey titled “Cybersecurity in the workplace: Employee knowledge and behaviour” which was arranged among employees from the Middle East, Turkiye and Africa (META) region including Pakistan, says 18.5pc of employees surveyed in the Pakistan confirmed that they made IT-related mistakes due to lack of cybersecurity knowledge. Among other reasons behind IT mistakes, 20.5pc respondents cited being in a hurry, 15pc blame oversight, 16pc being tired or stressed and while 16pc blame too many notifications. The constant barrage of alerts, messages, and on-screen clutter is becoming an acute problem that can lead to costly IT errors, overlooked social engineering attacks, and even to cyber breaches. The survey, conducted by cybersecurity company Kaspersky, also examined employees’ digital workspace habits. An overwhelming 37pc of respondents reported having between 10 and 20 icons on their desktop, while 36.5pc admitted to having even more — with half to a full screen covered in them. Meanwhile, 30pc of respondents also keep more than 10 tabs open in their browser at any given time. Excessive icons and open tabs do more than distract attention and fuel procrastination — they can slow device performance and, in the case of unused applications, quietly collect data. Interestingly, most employees regularly disinfect their keyboards and phone surfaces (10pc have adopted this habit since the Covid-19 pandemic). However, digital cleanliness has not kept pace: 58.5pc of respondents remove needless files once a month or more often; the rest perform digital clean-ups far less frequently — once a quarter, or even once a year. While regular breaks are just as vital for maintaining both well-being and cyber vigilance, according to the survey, 71pc of respondents spend their work breaks eating or drinking, while 44pc chat with friends and colleagues. However, stretching and physical exercise is a more effective way to

DHQ Confirms X Account Compromised, Activates <b>Cybersecurity</b> Measures

DHQ Confirms X Account Compromised, Activates Cybersecurity Measures The Defence Headquarters (DHQ) has confirmed that its official X account has been compromised, saying it has activated technical measures to secure the account and prevent further unauthorised access. The DHQ disclosed this in a statement issued on Saturday by the Director of Defence Information, Major General Samaila Uba, urging members of the public to disregard any suspicious, unauthorised or misleading content that may be posted from the account. According to the statement, the incident is being treated as a cybersecurity matter, with appropriate technical measures already activated to contain the breach. “The Defence Headquarters wishes to inform members of the public, the media and all stakeholders that it has detected a compromise of its official X (formerly Twitter) account,” the statement said. Read Also: The military authorities said efforts were ongoing to fully restore control of the account, while assuring the public that it remained committed to maintaining the highest standards of information security. The DHQ warned that any suspicious or unauthorised content published through the compromised account during the period should not be regarded as an official communication. It said the public would continue to receive accurate and verified information on the activities and operations of the Armed Forces of Nigeria through its other official communication platforms. “To ensure continuous and uninterrupted communication, the public is encouraged to rely on our active official channels across other platforms for accurate, verified and timely information,” the statement added. The alternative channels listed by the DHQ include its Facebook page, Defence Headquarters Nigeria, Instagram account, @defenceheadquarters, and its official Defence Headquarters Nigeria WhatsApp Channel. The Defence Headquarters also appealed to members of the public to remain vigilant and assured them that further updates would be provided as efforts to regain full control of

Your Security Team Is Building a Smaller Stasi

Your Security Team Is Building a Smaller Stasi In the 1980s, East Germans tried almost anything to get past their government’s watchers. Some jumped from windows built into the border wall. Some flew hot air balloons at night. One person reportedly hid inside the hollowed out body of a fake cow. Every escape was a small act of defiance against a state that had built one of history’s most detailed surveillance systems, with files on roughly six million people kept by a secret police force known as the Stasi. 💥 Master AI & Tech Skills 💥 Crack Every Tech Interview with Confidence 🔥 Up to 70% OFF — Limited-Time Offer 👉 Enroll Now & Start Learning The Stasi did not fail because it lacked resources. It failed because control without trust always leaks. People do not stop moving when you watch them closely. They just get more creative about how they move. Enterprises are running a smaller version of the same experiment. Not with border guards, but with approval queues, access reviews, and security first policies that treat every employee like a suspect until proven otherwise. The result looks familiar once you know where to look: slower innovation, quiet disengagement, and employees who route around the rules instead of following them. This is not an argument against security. It is an argument against using security as the only lens leadership applies to every decision. Here is what the failures of security states can teach enterprises, and their security teams, before the same pattern plays out inside their own walls. Every Security State Runs the Same Playbook Security states share one basic assumption: watch people closely enough, restrict their choices tightly enough, and you eliminate risk. East Germany tested that assumption for four decades. Historian Mary Fulbrook’s assessment of the regime,