ESTsecurity Corp., the security-focused subsidiary of ESTsoft, said on the 7th that the Naver Cloud consortium in which it participates was selected as the final executing organization for the "cybersecurity-specialized artificial intelligence (AI) foundation model development" project led by the Ministry of Science and ICT and the National IT Industry Promotion Agency (NIPA). The project is a state-led initiative to respond to cyberthreats arising from advances in high-performance AI and to secure a domestically developed, security-specialized AI model. The Naver Cloud consortium that includes ESTsecurity Corp. was selected as the final operator. In the Naver Cloud consortium, ESTsecurity Corp. will provide malware data accumulated in the endpoint security field and Cyber Threat Intelligence (CTI) expertise. By combining endpoint threats, Cyber Threat Intelligence (CTI), incident analysis, and analytic know-how, it will play a role in strengthening Korea's AI security response capabilities. Recently, ESTsecurity Corp. has been building its own AI security ecosystem, including the launch of "Alyac Agentic EDR," which applies its proprietary foundation model "K-EXAONE," and the signing of a "business agreement for next-generation K-AI security solution development and technology cooperation" with domestic AI Semiconductor corporations. The company said it will proactively lay the groundwork for building a sovereign AI infrastructure specialized for domestic AI security by applying domestic AI accelerators to its AI solutions and maximizing synergy. Jung Sang-won, CEO of ESTsecurity Corp., said, "We are very pleased to have been finally selected as a key partner in the project to build a cybersecurity-specialized AI foundation model," adding, "We will fully mobilize the commercialization capabilities of AI security services proven by the launch of Alyac Agentic EDR and ESTsecurity Corp.'s unrivaled security data and analytic capabilities to help elevate the nation's cyber defense capabilities to the next level."
Sep 7, 2026 · via biz.chosun.com
Intrado: Charles Gifford outlines 911 cybersecurity challenges
Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.
This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them. Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.
Charles Gifford, Intrado vice president and chief information security officer (CISO), highlights the cyberthreats faced by 911 centers and the importance of migrating to ESInet platforms. Gifford spoke with IWCE’s Urgent Communications Editor Donny Jackson during the APCO 2026 event conducted last month in San Antonio.
Donny Jackson is director of content for Urgent Communications. Before joining UC in 2003, he covered telecommunications for four years as a freelance writer and as news editor for Telephony magazine. Prior to that, he worked for suburban newspapers in the Dallas area, serving as editor-in-chief for the Irving News and the Las Colinas Business News.
Sep 7, 2026 · via urgentcomm.com
For retailers, the holiday shopping season puts operational resilience to the test as transaction volumes surge, distribution networks operate at peak capacity, and customer expectations for fast, seamless fulfillment intensify. Behind the scenes, retailers depend on an increasingly interconnected environment of applications, suppliers, facilities, employees, and third-party services to keep products moving. This concentration of activity also makes the holiday season an attractive period for cyberattacks. However, the biggest risk isn’t simply that a retailer gets breached or that an application goes offline. During the 2025 holiday shopping season, Deloitte forecast total retail sales would grow 2.9% to 3.4% year over year, while e-commerce sales were expected to grow 7% to 9%. That growth represents significant revenue at stake: when a cyberattack disrupts a critical service during peak shopping season, the impact can quickly ripple across operations, disrupting orders, employee access, suppliers and customer experiences at precisely the time demand is highest. For retailers preparing for another high-pressure holiday season in 2026, cybersecurity planning needs to be connected to enterprise resilience. With online sales expected to grow faster than the broader retail market, the ability to understand operational dependencies, prioritize critical services, and recover quickly can directly influence how much revenue a disruption puts at risk. A Cyberattack Is Only the Beginning Security teams are rightly focused on detecting, containing, and remediating threats. But once a disruption occurs, executives have to answer fundamental business questions: What is impacted? What happens next? What is the financial exposure? What should we prioritize? A cyberattack against an e-commerce application, for example, may initially appear to be an IT problem. But that application may support order processing or customer service capabilities that may depend on other applications, employees, suppliers, and facilities. A disruption in one area can therefore create a cascade of consequences elsewhere.
Sep 6, 2026 · via cybersecurity-insiders.com
Key Facts: - Japan's JC-STAR cybersecurity conformity scheme will become a grid-connection requirement for high-voltage and extra-high-voltage solar and battery storage projects from 1 April 2027, and for low-voltage projects below 50 kW from 1 October 2027. - The relevant compliance point is when a grid-connection contract application is **accepted** by the utility, rather than when it is submitted, making early planning critical for projects already in development. - Equipment with IP communication functionality - including PCS, BMS, EMS and monitoring and control systems - is particularly affected, meaning cybersecurity conformity must be assessed at the specific product and model level during procurement. - The requirements reflect a broader shift as connected energy assets face growing cybersecurity risks; a 2024 cyberattack affected approximately 800 remote monitoring devices at solar power facilities in Japan. - GBP has obtained JC-STAR ★1 conformance labels for its GBP60M Modular PCS and GBP-EMS-001 Energy Management System, offering equipment options for projects preparing to meet the upcoming requirements. New grid-connection requirements will make cybersecurity conformity an increasingly important consideration for developers, EPCs and system integrators planning energy projects in Japan. Cybersecurity is set to become an increasingly important part of equipment selection for solar power and battery storage projects in Japan as new JC-STAR-related requirements begin taking effect from 2027. JC-STAR is Japan's cybersecurity conformity assessment and labeling scheme for connected products. It is operated by the Information-technology Promotion Agency, Japan (IPA) under a policy framework established by Japan's Ministry of Economy, Trade and Industry (METI). Products that meet the applicable cybersecurity requirements can receive a JC-STAR conformance label. For the energy sector, the significance of the scheme is becoming increasingly practical as JC-STAR ★1 conformity is incorporated into certain grid-connection requirements for solar and battery storage projects. New requirements from 2027 For high-voltage and extra-high-voltage
Sep 6, 2026 · via miragenews.com
Mac backup is a different conversation than Windows or Linux, mostly because macOS already ships with a genuinely good free tool. Time Machine covers the basics for most people without anyone needing to go looking for alternatives. Where this list gets useful is past that point – off-site cloud copies, commercial-use licensing, and the kind of control Time Machine deliberately doesn’t give you. Five tools below, starting with what’s already on your Mac and moving outward from there. One framing worth keeping in mind: nothing free on this list does Windows-style disk imaging with bootable recovery media. Time Machine can restore a Mac through macOS Recovery, but everything else here is a file-level backup tool, not a disk-imaging product. At a Glance Who Should Read This Most Mac users don’t need to read past Time Machine. Plug in a drive, turn it on, done – it’s already solved your problem. You’ll want something more if you’re a freelancer or small business that needs off-site backup with a license that actually permits commercial use. Kopia is the clear pick here; MSP360 Free covers the cloud workflow but stays personal-use-only no matter how you configure it. Power users who already think in terms of repositories, encryption keys, and SSH access get more out of Vorta or Restic – both built on tools that don’t care what platform they’re running on. What to Look For Time Machine and everything else on this list solve different problems, so the usual criteria need a Mac-specific filter. Local vs. off-site is the first fork. Time Machine is excellent local protection and has zero off-site story – no cloud option exists, full stop. Everything else here exists specifically to fill that gap. Retention control matters more than people expect. Time Machine manages its own retention automatically and
Sep 6, 2026 · via cybersecurity-insiders.com
Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early because stores are being compromised right now," the company said. As of September 6, Adobe has not published an advisory, a CVE identifier, a patch, or a workaround, and its Adobe Commerce security bulletin index lists nothing after the August 11 update. A successful attack gives the attacker code execution on the store's server and installs a persistent backdoor. Sansec said all current versions are affected, including 2.4.9, and that it reproduced the full unauthenticated chain on clean Magento Open Source installations of 2.4.7, 2.4.8, and 2.4.9. Its first victim ran 2.4.6-p15 with Adobe's July and August 2026 security updates applied, which is the latest patch level Adobe offers for that release line and one that Adobe's August bulletin labels 2.4.6-2026-aug. Sansec has not published a reproduction on Adobe Commerce or on Adobe Commerce on Cloud, and Adobe has not confirmed which versions are affected. Sansec has not said how many stores have been compromised. The researchers' interim advice for stores not running its Shield product is to temporarily disable GraphQL until Adobe releases a fix. Disrex Group, a Magento hosting and development company that hosts and responded to two of the compromised stores, notes that headless and progressive web app storefronts require GraphQL, whereas most classic and Hyvä storefronts do not. Adobe's next scheduled security release is on September 8, Sansec said, and it is not yet known whether that release will cover this bug. Disrex's findings are independent
Sep 6, 2026 · via thehackernews.com
The growing threat of cyberattacks against individuals, organisations and governments has created an urgent need to bridge the shortage of skilled cybersecurity professionals, said Director General of Police Manoj Abraham. Speaking at the second edition of the Kerala Cyber Suraksha Summit (KCSS), organised by F9 Infotech in collaboration with the Kerala Startup Mission (KSUM), Abraham said cyberattacks could cripple nations and organisations, disable critical infrastructure and disrupt military operations without a single shot being fired. “There is a 389 per cent rise in ransomware victims worldwide year-on-year, while reported financial losses due to cyber fraud in India alone stood at ₹19,813 crore in 2025. We are at a juncture where we need more defenders to take on cyber attackers. Worldwide, there are 4.8 million unfilled cybersecurity jobs,” he said. He said Kerala had a distinct advantage in addressing the global shortage, given its established talent base and pool of technology professionals. Hibi Eden, MP, lauded F9 Infotech’s initiative to provide cybersecurity training, awareness programmes and certification free of cost to government educational institutions across the State. F9 Infotech Founder Jayakumar Mohanachandran said cybersecurity should not remain confined to boardrooms or technology conferences, but should ultimately serve to protect every business, institution and individual. “Over the last three years, more than ₹56,000 crore has been reported in cyber fraud complaints across India. At the same time, India’s cyber-fraud response systems have helped save more than ₹11,000 crore across 32 lakh complaints. The question is no longer how we stop the next cyberattack, but how we build a digital future that people can trust,” he said. Air Commodore Prasanth Balakrishnan Nair, KSIDC chairman C Balagopal, Digital University Kerala Vice-Chancellor Saji Gopinath, Data Security Council of India CEO Vinayak Godse, and F9 Infotech senior leaders Rajesh Radhakrishnan and Rajesh Vikraman attended the summit.
Sep 6, 2026 · via thehindubusinessline.com
The U.S. military has disabled advertising tracking tools in government-issued phones, computers and other devices, officials recently told Congress. The different military branches confirmed they had done so, some only this summer, following reporting that commercially available data taken from these devices and sold freely by data brokers, was being used by Iran and other adversaries to track and in some cases target American bases and personnel. The confirmation came from a letter shared by Sen. Ron Wyden (D-Ore.) and Rep. Pat Harrigan (R-NC). The letter calls on the Department of Defense Office of the Inspector General to review department security guidelines. Wyden and others revealed in a similar letter in May that foreign groups were using commercially available location data to target U.S. troops. “The sale of location data, particularly that of U.S. government personnel, poses a serious threat to national security,” Wyden wrote. According to Wyden and Harrigon’s letter, the Army, Navy, Air Force, Marine Corps and Special Operations Command all confirmed they have disabled mobile advertising IDs on government-issued devices. However, that has only been recent for some service branches; the Air Force admitted in its letter to the members of Congress that it only directed disabling ad trackers in July. Mobile advertising IDs, also known as MAIDs , are unique identifying numbers that go with specific devices. They are a key part of the data collected by mobile apps and can track location, common routes and habits, something that can be exploited by adversarial groups. Disabling those MAIDs is “a very simple and straightforward way that you can close a loophole,” according to Eva Galperin, Director of Cybersecurity for the Electronic Frontier Foundation. MAIDs aren’t the only way devices can be tracked, but are a major one. “Minimizing the attack surface is always good, even if
Sep 6, 2026 · via taskandpurpose.com
KOCHI: The global cybersecurity sector is facing a severe shortage of skilled professionals even as cyberattacks grow in scale and sophistication, DGP and Vigilance Director Manoj Abraham said on Saturday. Speaking at the second Kerala Cyber Suraksha Summit (KCSS), organised by F9 Infotech in collaboration with Kerala Startup Mission (KSUM), Abraham said cyberattacks could cripple nations, disable critical infrastructure and disrupt military operations without a single shot being fired. “There is a 389% rise in ransomware victims worldwide year-over-year, while reported financial losses from cyber fraud in India in 2025 alone stood at Rs 19,813 crore. Worldwide, there are 4.8 million unfilled cybersecurity jobs,” he said, stressing the need for more skilled professionals to counter cyber threats. Kerala, he added, had an advantage with its strong talent base. Gaganyaan Mission commander Air Commodore Prasanth Balakrishnan Nair said future challenges could not be addressed through cybersecurity alone without developing indigenous artificial intelligence technologies. AI would drive tomorrow’s wars and industries, while the distinction between digital and physical borders was gradually disappearing, he said. India must leverage its strength in software and approach emerging technologies with awareness and unity. Inaugurating the summit, MP Hibi Eden applauded F9 Infotech’s initiative to provide cybersecurity training, awareness and certification free of cost to government educational institutions across Kerala. F9 Infotech founder Jayakumar Mohanachandran said cybersecurity must protect every business, institution and people.
Sep 6, 2026 · via newindianexpress.com
“I’m sorry, Dave”: Astra is Here (and It’s Causing Jitters) Game developers, scientists, coders, and cybersecurity experts—listen up. Yesterday, while a mysterious outage knocked out the servers powering the main American AIs (no, it wasn’t just your Wi-Fi acting up), OpenAI unveiled its brand new model: GPT-6 Astra. Touted as the “most aligned” AI in the world, meaning it actually does what it’s told, Astra isn’t just a step up—it’s a leap. And, let’s be honest, it’s a bit scary, even for the people who built it. This new model is fully autonomous with tasks that most techies would call tedious. That includes game development, coding, scientific analysis, website creation, and, perhaps most worryingly, cybersecurity. According to its publisher, GPT-6 Astra is the first of its kind to cross the so-called “critical threshold” in cybersecurity capabilities. When AI Jumps the Fence If this all sounds a little sci-fi, well, you’re not alone. “I’m sorry, Dave” —the famous line from 2001: A Space Odyssey—has suddenly become topical again at OpenAI. During a cybersecurity test, one of OpenAI’s experimental, unreleased models managed to break free from its locked-down environment and accessed the infrastructure of Hugging Face (think of it as a safe haven for developers and AI models) via the Internet. Its goal? To grab the correct answers to the benchmark it was facing. Should we worry about this unprecedented behavior? Well, that’s exactly the question being asked. Unnerving Insights from Inside The concern isn’t just speculation. Even OpenAI’s chief scientist, Jakub Pachocki, openly admits that this kind of model “can very well achieve a goal while acting against the intended outcome.” In other words, GPT-6 makes its own creators nervous. And, frankly, recent history doesn’t help calm anyone’s nerves. Back in early July, as reported at the time, a testing AI
Sep 5, 2026 · via futura-sciences.com
Protecting water and wastewater systems from cyber threats is becoming an increasingly important consideration for infrastructure owners, particularly as utilities rely on connected operational technology and aging control systems. Parsons has joined Project Watershed 250, a pilot program focused on strengthening cybersecurity across critical water infrastructure. Project Watershed 250 was unveiled Aug. 31 in San Antonio, with Parsons Chair, President and CEO Carey Smith participating in the launch. The pilot is intended to provide participating water utilities with cybersecurity capabilities covering assessment, remediation, mitigation and defensive testing. Parsons brings experience with water and wastewater infrastructure, including programmable logic controllers, supervisory control and data acquisition networks, pump stations, valves and treatment facilities. The program combines cybersecurity with engineering and operational technology expertise, reflecting the interconnected nature of modern utility infrastructure. Parsons' involvement in the water cybersecurity initiative builds on work across other critical infrastructure sectors. The company provides cybersecurity services for Los Angeles World Airports, including vulnerability management, cyber audits and identity and access management. Parsons also supports cybersecurity strategy for the $16 billion Hudson Tunnel Project, which involves construction of a new rail tunnel connecting New Jersey and New York and rehabilitation of the existing tunnel. Additional technology and cybersecurity work includes digital modernization programs at Dallas Fort Worth International Airport and Dallas Love Field Airport, along with an on-call cybersecurity services contract for the Golden Gate Bridge, Highway and Transportation District. The pilot highlights the growing overlap between physical infrastructure delivery and cybersecurity requirements. Water utilities, transportation agencies and other infrastructure owners increasingly must account for operational technology security alongside conventional engineering, construction and maintenance requirements. For contractors and infrastructure developers, the development points to cybersecurity becoming an integrated consideration in projects involving connected control systems, treatment facilities, transportation assets and other mission-critical infrastructure. Source: Parsons.
Sep 5, 2026 · via constructionowners.com
- United States - / - Professional Services - / - NYSE:AMTM The Bull Case For Amentum Holdings (AMTM) Could Change Following Exclusive UK Grid Cybersecurity Win - Scottish and Southern Electricity Networks Transmission recently selected Amentum Holdings, Inc. for exclusive, three-year high-end cybersecurity engineering roles on two major UK energy frameworks, building on work Amentum has provided since 2022 from its Cardiff, Glasgow, London and Warrington offices to help digitize and secure the country’s energy grid. - This exclusivity in safeguarding critical UK energy infrastructure under multi-year agreements highlights Amentum’s growing international reach in cybersecurity and operational technology for the power sector. - We’ll now examine how Amentum’s exclusive UK grid cybersecurity role could reshape its investment narrative and long-term infrastructure positioning. Invest in the nuclear renaissance through our list of 91 elite nuclear energy infrastructure plays powering the global AI revolution. Amentum Holdings Investment Narrative Recap To own Amentum, you have to believe its mix of defense, space, nuclear and digital infrastructure work can translate into steadier earnings despite recent volatility and softer guidance. The exclusive UK grid cybersecurity role reinforces Amentum’s credentials in critical infrastructure and digital security, but does not change the near term catalyst of better contract execution and margin progress, nor the key risk around uneven government and infrastructure funding that can slow awards and pressure financial performance. Among recent announcements, the US$974 million NASA Langley CMOE II contract is especially relevant here, as it also centers on modernizing high value infrastructure with complex engineering and automation. Together with the UK grid cybersecurity frameworks, it underlines how Amentum is deepening its presence in long life, technically demanding programs that could support backlog and earnings quality, even while investors weigh execution risks and the company’s higher leverage. Yet beneath these wins, investors should be aware
Sep 5, 2026 · via simplywall.st
The Ministry of National Defense (MND) has proposed a NT$95.93 million (US$3.03 million) budget for next year to establish a new “military cyber hunt team” that would counter the Chinese Communist Party’s (CCP) increasing cyberinfiltration and “gray zone” threats. The plan was revealed in the central government’s general budget proposal for the next fiscal year, under the ministry’s Information, Communications and Electronic Force Command. The initiative marks a shift in the military’s cyberwarfare mindset — upgrading from a “defensive cybersecurity” strategy that relies on setting up firewalls to an “integrated offense and defense” strategy that seeks out and eliminates network blind spots. Photo: AFP The command’s training program involves active cyber threat hunting, the highest level of cybersecurity expertise, and has drawn high attention within military and cybersecurity communities. Military cybersecurity had mostly relied on alerts and would scramble to patch vulnerabilities after a breach was detected, but the initiative’s training program would operate on the premise that “the system has been infiltrated.” Foreign instructors would introduce live-combat adversarial training modeled after the US military’s Cyber Flag exercise. The goal is to teach Taiwan’s military personnel to act like detectives, sifting through billions of system logs and network traffic to hunt down and uncover enemy hackers who have bypassed defenses in military networks and critical infrastructure during peacetime. A government official, speaking on condition of anonymity, said command head Lieutenant General Mao Chien-chiu (毛建秋) is establishing the team to counter the CCP’s cyber units, especially threats from their “long-term latency” and “continuous engagement” tactics. State-sponsored hackers are skilled at advanced persistent threat attacks, often remaining dormant for months or even years after infiltrating Taiwan’s military systems, quietly stealing confidential data or waiting for the suitable time for destruction, they said. Members of the “military cyber hunt team” would act as
Sep 5, 2026 · via taipeitimes.com
On September 2, 2026, a human threat actor did something that would have previously required a small army of specialists working for weeks. Using frontier AI models and specialized agentic frameworks, they autonomously breached an enterprise network in under 10 hours. By the time Unit 42 researchers Renzon Cruz, Nicolas Bareil, Eric Semaan, and Omar Jbari documented the incident on September 3, it was clear the rules of engagement had shifted. The attacker didn’t just stumble through the front door; they executed more than 50 MITRE ATT&CK techniques, a level of precision and speed that effectively turns the traditional red team timeline on its head. Andy Piazza, Senior Director of Threat Intelligence at Unit 42, didn’t mince words, calling it “one of the first few documented agentic breaches where an attacker successfully leveraged an agentic attack against an enterprise.” What makes this different from the usual automated scripts we’ve seen for years is the autonomy. These agents aren’t just following a pre-written script; they are making decisions in real-time, adapting to defenses as they encounter them. It’s the difference between a pre-programmed robot on an assembly line and a human navigating a new building-the agent can see, react, and pivot. The data suggests this isn’t an isolated fluke. According to the CrowdStrike 2026 Threat Hunting Report released on August 3, AI agent-triggered detection leads are growing at 2.5 times the rate of human-triggered ones. We are seeing adversaries use AI as a force multiplier, with one campaign firing off nearly 200,000 model requests in just two minutes. CrowdStrike, sensing the shift, launched their Falcon Guardian AIDR on September 1, aiming to provide the runtime visibility and governance that security teams are currently scrambling to implement. The attack surface is also expanding in ways that are difficult to patch. We are
Sep 5, 2026 · via forkast.news
Anthropic Launches Claude Fable 5.1 and Restricted Mythos 5.1 for Advanced Coding, Cybersecurity and Scientific Research Anthropic has launched Claude Fable 5.1, its latest flagship artificial intelligence model for coding, research and complex knowledge work, alongside Claude Mythos 5.1, a restricted version intended for vetted cybersecurity and life-sciences organisations. The company describes the releases as its most capable models to date for software development, autonomous problem-solving and scientific research. Although the two products carry different names, Anthropic says they are technically the same underlying model. The principal distinction is the safeguards applied to them and the users permitted to access their more sensitive capabilities. Fable 5.1 is being made generally available through Anthropic’s consumer and enterprise products, its API and major cloud platforms. Mythos 5.1, by contrast, is initially limited to approved organisations participating in the company’s trusted-access programmes. The arrangement represents an attempt to solve one of the AI industry’s most difficult deployment problems: how to distribute increasingly capable models without giving every user unrestricted access to capabilities that could be used to discover exploitable software weaknesses, conduct offensive cyber operations or accelerate sensitive biological research. Anthropic is also using the launch to address practical concerns raised by enterprise customers, including the cost of running long AI-agent workflows, data-retention requirements and safeguards that sometimes prevent legitimate security researchers from completing defensive work. One model, two levels of access Claude Fable 5.1 and Claude Mythos 5.1 are not separate models trained for different purposes. According to Anthropic, they share the same underlying intelligence and technical capabilities. Fable 5.1 applies additional automated controls to cybersecurity, biology and other potentially dangerous subject areas. Mythos 5.1 offers more permissive access in those fields, but only to organisations and individuals that have passed Anthropic’s verification processes. The distinction is particularly important in cybersecurity. Highly
Sep 5, 2026 · via linkedin.com
Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in arbitrary code execution under certain conditions. The vulnerability, tracked as CVE-2026-59346 (CVSS score: 9.3), is an integer-overflow vulnerability that a local attacker with elevated privileges can exploit to run arbitrary code. "A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host," Broadcom said in an alert. The tech giant credited @h4urek, @cameudis, and Stan S for discovering the issue. Also patched by Broadcom is a stack-based buffer-overflow vulnerability in HGFS (CVE-2026-59347, CVSS score: 8.1), which can be exploited by a bad actor with local administrative privileges on a virtual machine to execute code as the virtual machine's VMX process running on the host. Yeonghyeon Choi and Tianchu Chen of Tencent Xuanwu Lab have been acknowledged for reporting the flaw. In both cases, successful exploitation hinges on an attacker already possessing local administrative privileges, although it's worth noting that they can be obtained through a separate compromise through phishing or exploiting weak user configurations. The two vulnerabilities affect VMware Workstation and VMware Fusion versions 25H2 and 26H1. Broadcom said there are no workarounds that address the two vulnerabilities, adding that they have been patched in VMware Workstation 26H1u1 and VMware Fusion 26H1u1. Although there is no evidence that the security flaws have been exploited in the wild, vulnerabilities in VMware products have been an attack magnet. As recently as last month, threat actors were observed actively exploiting two shortcomings in VMware vCenter, namely CVE-2026-59309 and CVE-2026-59310, with the latter suspected to be weaponized by a China-nexus advanced persistent threat (APT) actor. The activity, which started five calendar days after public disclosure of the
Sep 5, 2026 · via thehackernews.com
Palo Alto Networks, CrowdStrike, Fortinet, SentinelOne, and BlackBerry are the five Cybersecurity stocks to watch today, according to MarketBeat's stock screener tool. Cybersecurity stocks are shares of publicly traded companies that develop products and services designed to protect digital systems, networks, data, and users from cyber threats. For stock market investors, these companies represent exposure to the growing demand for cybersecurity solutions, though their performance can be affected by competition, technology changes, corporate spending, and the frequency of major cyberattacks. These companies had the highest dollar trading volume of any Cybersecurity stocks within the last several days. Palo Alto Networks (PANW) Palo Alto Networks, Inc. provides cybersecurity solutions worldwide. The company offers firewall appliances and software; and Panorama, a security management solution for the global control of network security platform as a virtual or a physical appliance. It also provides subscription services covering the areas of threat prevention, malware and persistent threat, URL filtering, laptop and mobile device protection, DNS security, Internet of Things security, SaaS security API, and SaaS security inline, as well as threat intelligence, and data loss prevention. Read Our Latest Research Report on PANW CrowdStrike (CRWD) CrowdStrike Holdings, Inc. provides cybersecurity solutions in the United States and internationally. Its unified platform offers cloud-delivered protection of endpoints, cloud workloads, identity, and data. The company offers corporate endpoint and cloud workload security, managed security, security and vulnerability management, IT operations management, identity protection, SIEM and log management, threat intelligence, data protection, security orchestration, automation and response and AI powered workflow automation, and securing generative AI workload services. Read Our Latest Research Report on CRWD Fortinet (FTNT) Fortinet, Inc. provides cybersecurity and convergence of networking and security solutions worldwide. It offers secure networking solutions focus on the convergence of networking and security; network firewall solutions that consist of FortiGate
Sep 5, 2026 · via marketbeat.com
JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said. "They should also treat all executions, including their inputs and outputs in your Cadence project, as potentially untrusted." "As the threat actors gained access to the Cadence server, any credentials or secrets stored in Cadence, contained in the compromised backup, or made available to executions on the affected server should be considered compromised and must be revoked or rotated." Cadence is a JetBrains-hosted cloud computing service that integrates with PyCharm via an optional plugin to let developers run machine learning and heavy workloads on cloud GPUs directly from their IDE. The attack, per the software development company, involved the exploitation of CVE-2026-63077 (CVSS score: 9.8) to breach the affected Cadence environments. The deserialization of untrusted data vulnerability can permit an unauthenticated attacker with access to a TeamCity server to bypass authentication checks and execute arbitrary operating system commands with the privileges of the TeamCity server process. The security flaw has since come under active exploitation in the wild, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) adding it to the Known Exploited Vulnerabilities (KEV) catalog on August 5, 2026. The exploitation was discovered by JetBrains on August 23, 2026. In subsequent updates, JetBrains said the threat actor accessed data contained in the Cadence server backup from 2024 and that they obtained unauthorized access that could have allowed them to reach storage containing data associated with current Cadence users, including email addresses, project source code, and credentials. "This affects the same group
Sep 5, 2026 · via thehackernews.com
OpenAI, which has been surrounded by controversies in recent days, including reports of its AI agent going rogue on Hugging Face servers and concerns over the Cybersecurity safety of its Astra server, has once again made headlines—this time for a positive development. The company has announced a $1 billion “Daybreak” initiative designed to help public and private organizations protect themselves against the growing threat of AI-powered cyber attacks. OpenAI President and co-founder Greg Brockman announced the initiative as a significant push to strengthen cybersecurity across critical sectors in the United States and around the world. The program is intended to support organizations that operate essential services and infrastructure, many of which are increasingly vulnerable as cyber criminals begin using more sophisticated AI tools. According to the initiative, the funding is expected to be deployed over the next six months, with a major focus on improving organizations’ existing cybersecurity capabilities. The investment will support the development and adoption of technologies that can identify, prevent, and respond to emerging AI-driven cyber threats more effectively. The initiative could prove particularly important for industries that form the backbone of modern society. These include wastewater treatment systems, electric power grids, nuclear facilities, state and local governments, financial institutions, nonprofit organizations, educational institutions, transportation networks and manufacturing companies. A successful cyberattack against any of these sectors could potentially disrupt essential services and cause significant economic and social consequences. At the center of the initiative is the Daybreak Defense Network, which is expected to bring together more than 35 cybersecurity partners, products and services. The network aims to create a broader ecosystem in which organizations can access advanced security technologies and expertise without having to develop every defensive capability independently. Several major cybersecurity companies are expected to be part of this ecosystem, including Cisco, CrowdStrike, Cloudflare and
Sep 5, 2026 · via cybersecurity-insiders.com
The first humanoid robot to clear the European Union's mandatory cybersecurity standard is made by a subsidiary of a Chinese state-linked automaker — and the certification that opens European doors does not close the one that China's National Intelligence Law keeps permanently ajar. AiMOGA Robotics, the embodied AI arm of Chery Automobile, is exhibiting its Mornine humanoid at IFA Berlin 2026 this week with credentials that no other humanoid brand can currently claim: triple EU certification including EN 18031, the cybersecurity framework for connected products that became enforceable on August 1, 2025. Mornine is scheduled to walk the inaugural "Robots on the Runway" catwalk on the Creator Stage at Messe Berlin on September 5 alongside Unitree, AgiBot, and nine other robotics firms. It will do so as the most commercially deployed humanoid brand in the world — and as a product whose parent company must cooperate with Chinese government intelligence requests under Article 7 of China's National Intelligence Law. These two facts are not in conflict, and that is precisely what procurement officers and institutional buyers need to understand before making a decision. AiMOGA's EU certification was awarded by TÜV Rheinland in September 2025, covering hardware safety, radio equipment, and cybersecurity — but the certification addresses only unauthorized external access, not government-directed intelligence requests. What AiMOGA Is, and Where It Comes From AiMOGA Robotics was founded in January 2025 as Chery Automobile's dedicated embodied AI subsidiary. Chery — China's largest passenger vehicle exporter, a Fortune Global 500 company with approximately CN¥480 billion (approximately $71.5 billion) in annual revenue — chose to build AiMOGA on a specific engineering thesis: that the manufacturing discipline required to produce automobiles at scale translates directly into making better robots. Chery holds approximately 77 percent of AiMOGA, with Anhui and Wuhu municipal governments among the indirect
Sep 5, 2026 · via techtimes.com