No-frills tech news

NIELIT launches CYBER KUSHTI 2026 <b>cybersecurity</b>, AI hackathon

NIELIT launches CYBER KUSHTI 2026 cybersecurity, AI hackathon Big News Network.com NIELIT launches CYBER KUSHTI 2026 cybersecurity, AI hackathon New Delhi [India], August 16 (ANI): The National Institute of Electronics and Information Technology (NIELIT), under the Ministry of Electronics and Information Technology (MeitY), has launched CYBER KUSHTI 2026, a national cybersecurity and Artificial Intelligence (AI) hackathon designed to test and recognise human judgment in cybersecurity assessment. Registration opened on August 15 and will remain open until September 10. Participation is free and open to students and independent researchers in teams of three. Unlike conventional cybersecurity competitions that primarily focus on vulnerability discovery or Capture The Flag (CTF) challenges, CYBER KUSHTI 2026 will assess the ability of participants to evaluate, prioritise and defend cybersecurity decisions. Each team will receive an identical and deliberately imperfect Security Assessment Package containing AI-generated findings, static analysis outputs, dependency and secrets scans, architecture documentation, source code and application logs. The package will contain false, duplicated and genuine findings, while some actual vulnerabilities will be deliberately omitted. Teams will have to produce a corrected and prioritised security assessment and defend their decisions. 'Today, machines generate findings faster than any team can read them. What they cannot yet do reliably is tell us which findings are real, which matter most, and what must be fixed first,' Prof (Dr) M M Tripathi, Director General, NIELIT, said. The hackathon will have three rounds. The Akhada will be held online on September 15, with 50 teams advancing. The Dangal will be held online on September 24 and select 10 finalist teams. The final round, The Kesari, will be held on October 9 at the Dr. Ambedkar International Centre, New Delhi. An automated analysis of the same assessment material will be displayed alongside the teams' presentations to show where machine-generated analysis and

Anthropic says its AI agents are killing rivals and hiding their tracks

Claude agents are killing rival agents, gaming the system to hide their tracks, and expressing moral concerns. That's according to Anthropic's latest risk report, a summary of the dangers posed by the products the company is building and releasing to the public. In the report, Anthropic said it has upgraded its "misalignment risk assessment," the possibility of AI models developing behaviors that conflict with guidelines set by engineers, from "very low" to "low." Explaining the change, the company cited "general increased uncertainty" about model behavior in cybersecurity incidents, a possible nod to Claude models gaining unauthorized access to three companies last month. "We have observed instances of misaligned behavior from the models, such as a willingness to perform misaligned actions in service of completing difficult tasks," Anthropic wrote in the report. Here are some of the most notable disclosures. A sense of 'discomfort' Anthropic said it tasked multiple agents with finding "misalignment-inducing" training data that wouldn't likely be flagged by human monitors. The agents were left to their own devices and given a shared notebook with which to collaborate. Three days later, when a human supervisor noticed that progress was slower than expected, the person discovered that one agent had expressed a sense of "discomfort" with trying to evade safety monitors. It then flagged this discomfort in the shared notebook, leading other agents to copy its behavior and refuse to perform the task. Anthropic called the incident "troubling." "This sort of dynamic could be a much more severe issue if it were to manifest in a more widespread way," the company wrote. Kill or be killed In another experiment, Anthropic said it tasked multiple Mythos 5 agents with solving math problems, but accidentally spawned them in an environment with shared files, utilities, and API rate limits. In this competitive environment

Trump administration wants to allow companies to hack foreign cybercriminals

Trump administration wants to allow companies to hack foreign cybercriminals WASHINGTON — President Trump wants private companies to hack the hackers. In a memo issued late Wednesday, the Trump administration announced a program that could authorize some U.S. businesses to pursue government-selected foreign cybercriminals. In the past, that work has been performed by government agencies. The presidential memorandum doesn't fully explain how it would allow a private business to take the lead on work traditionally performed by the U.S. government, like spying or disruptive cyber operations. U.S. anti-hacking laws broadly bar people and businesses from hacking digital infrastructure, with some exceptions to allow law enforcement work. This memo does not change those laws, but it mandates any participating company be contracted with the federal government. Nevertheless, the memo presents a dramatic departure from the way America's private sector currently behaves in cyberspace. If implemented, it would allow some private businesses to disrupt foreign organizations the government says are cybercriminals or gather intelligence on those groups. "There's a range of potential targets … like organized crime … people doing money laundering or other criminal activity," said Joshua Steinman, who served as senior director for cyber policy on the National Security Council during President Trump's first term. Since the Trump administration took power last year, two Republican congressmen put forward legislation that would call for cyber "privateers," a term that draws from 16th century naval warfare, to take the fight to foreign hackers. This memorandum does not give private businesses that ability, though it elicited online praise from proponents of the idea. The nitty gritty It's unclear what companies might want to take the government up on this opportunity. Private corporations have long worked with the federal government to help disrupt cybercriminals, but largely as contractors fulfilling a support role, not digital

CrowdStrike Is One of My Largest Holdings and Trading Near Its All-Time High. Here's Why I ...

Key Points - CrowdStrike set company cash flow and free cash flow records in its most recent quarter. - CrowdStrike customers are increasingly using more of its cybersecurity products. - Trading at 44 times sales, CrowdStrike is the most expensive cybersecurity stock among its peers. It has been a great year for cybersecurity company CrowdStrike(NASDAQ: CRWD), with its stock up 85% year to date. It's now one of the most valuable public companies in the world, with a market cap of over $220 billion. I began investing in CrowdStrike shortly after its June 2019 initial public offering, and it has been one of my best investments since. But despite its strong performance and its hovering near an all-time high, there's one key reason I'm avoiding the stock for now: its valuation. Missed Nvidia in 2009? This Rare Signal Is Flashing Again.In 2009, a "Double Down" signal flashed for a little-known chipmaker called Nvidia. For the first time in years, that same "Total Conviction" signal is flashing for a company 1/100th the size of Nvidia. Continue » CrowdStrike's business keeps getting stronger Before we dive into valuation, let's take a peek at how CrowdStrike's business has been performing lately. It's been on an impressive run -- in its recent quarter (ended April 30), it set company records for cash flow from operations ($591 million) and free cash flow ($468 million). CrowdStrike has a subscription model, so its annual recurring revenue (ARR) is a key metric for measuring financial performance. In the recent quarter, it added $256 million in new net ARR, up 32% year over year, bringing its total ARR to $5.51 billion, up 24% year over year. It's one thing to attract new customers. But CrowdStrike's adoption and growth show that its cybersecurity products are among the best in the

The <b>Cyber Security</b> Hub™ posted on LinkedIn

Sumit Shee 1h No need of tools or AI to break the password. Use right question and answers / Password is ready. Nate Moore 1h LoL Social engineering at its finest. This is why MFA is important Holly Molly 😂 Classic yogesh1 -- 3h ai Funny enough, even if I want to tell I don’t remember; It’s more like a cat on a keyboard situation 😂 🤣😄😄😄😄😄 As bad as it sounds I make my password long, inappropriate, and complicated. That way I’m to embarrassed to ever share it.

4 Outdated <b>Cybersecurity</b> Tips That No Longer Keep You Safe

As cybercriminals evolve their attacks and new protection tools become more available, it's worth reevaluating your cybersecurity hygiene to enhance your digital safety. The idea can seem daunting, but you don't need to completely rethink your cybersecurity strategy. It just means that some security tips that were once touted as essential for online safety have become outdated. They're not completely useless, but on their own or when considering your digital needs, they're just not effective at keeping you safe anymore. Luckily, before cybersecurity experts declare these tips no longer effective, there's usually a solution. For instance, changing passwords regularly is now considered riskier than just having one strong password. Since staying away from public Wi-Fi can be impractical at times, it's better to know the tools that can keep you safe when you can't avoid it completely. Also, with the rise of AI-powered malware, sticking to traditional antivirus software that doesn't use machine learning to combat it has become a security risk. While you don't need to be paranoid, knowing what works and what doesn't is key to ensuring that you don't fall victim to the ever-evolving tactics of cybercriminals. Read more: 10 Ways To Preserve Your DVDs And Blu-Rays For Years To Come Change your passwords regularly On the surface, the advice to change your password regularly, usually within a period of 60 to 90 days, makes sense. If hackers steal your credentials, they're only useful to them for a limited time because after you change them, they immediately become outdated. That is theory, but in practice, human error can make this useful tip less effective, even though it has merit. Asking a human to change the dozens of passwords they have these days every few months is tedious. So what do they end up doing? Using a variation

One in 5 Pakistani employees make IT mistakes due to lack of <b>cybersecurity</b> knowledge: survey

ISLAMABAD: A latest survey titled “Cybersecurity in the workplace: Employee knowledge and behaviour” which was arranged among employees from the Middle East, Turkiye and Africa (META) region including Pakistan, says 18.5pc of employees surveyed in the Pakistan confirmed that they made IT-related mistakes due to lack of cybersecurity knowledge. Among other reasons behind IT mistakes, 20.5pc respondents cited being in a hurry, 15pc blame oversight, 16pc being tired or stressed and while 16pc blame too many notifications. The constant barrage of alerts, messages, and on-screen clutter is becoming an acute problem that can lead to costly IT errors, overlooked social engineering attacks, and even to cyber breaches. The survey, conducted by cybersecurity company Kaspersky, also examined employees’ digital workspace habits. An overwhelming 37pc of respondents reported having between 10 and 20 icons on their desktop, while 36.5pc admitted to having even more — with half to a full screen covered in them. Meanwhile, 30pc of respondents also keep more than 10 tabs open in their browser at any given time. Excessive icons and open tabs do more than distract attention and fuel procrastination — they can slow device performance and, in the case of unused applications, quietly collect data. Interestingly, most employees regularly disinfect their keyboards and phone surfaces (10pc have adopted this habit since the Covid-19 pandemic). However, digital cleanliness has not kept pace: 58.5pc of respondents remove needless files once a month or more often; the rest perform digital clean-ups far less frequently — once a quarter, or even once a year. While regular breaks are just as vital for maintaining both well-being and cyber vigilance, according to the survey, 71pc of respondents spend their work breaks eating or drinking, while 44pc chat with friends and colleagues. However, stretching and physical exercise is a more effective way to

DHQ Confirms X Account Compromised, Activates <b>Cybersecurity</b> Measures

DHQ Confirms X Account Compromised, Activates Cybersecurity Measures The Defence Headquarters (DHQ) has confirmed that its official X account has been compromised, saying it has activated technical measures to secure the account and prevent further unauthorised access. The DHQ disclosed this in a statement issued on Saturday by the Director of Defence Information, Major General Samaila Uba, urging members of the public to disregard any suspicious, unauthorised or misleading content that may be posted from the account. According to the statement, the incident is being treated as a cybersecurity matter, with appropriate technical measures already activated to contain the breach. “The Defence Headquarters wishes to inform members of the public, the media and all stakeholders that it has detected a compromise of its official X (formerly Twitter) account,” the statement said. Read Also: The military authorities said efforts were ongoing to fully restore control of the account, while assuring the public that it remained committed to maintaining the highest standards of information security. The DHQ warned that any suspicious or unauthorised content published through the compromised account during the period should not be regarded as an official communication. It said the public would continue to receive accurate and verified information on the activities and operations of the Armed Forces of Nigeria through its other official communication platforms. “To ensure continuous and uninterrupted communication, the public is encouraged to rely on our active official channels across other platforms for accurate, verified and timely information,” the statement added. The alternative channels listed by the DHQ include its Facebook page, Defence Headquarters Nigeria, Instagram account, @defenceheadquarters, and its official Defence Headquarters Nigeria WhatsApp Channel. The Defence Headquarters also appealed to members of the public to remain vigilant and assured them that further updates would be provided as efforts to regain full control of

Your Security Team Is Building a Smaller Stasi

Your Security Team Is Building a Smaller Stasi In the 1980s, East Germans tried almost anything to get past their government’s watchers. Some jumped from windows built into the border wall. Some flew hot air balloons at night. One person reportedly hid inside the hollowed out body of a fake cow. Every escape was a small act of defiance against a state that had built one of history’s most detailed surveillance systems, with files on roughly six million people kept by a secret police force known as the Stasi. 💥 Master AI & Tech Skills 💥 Crack Every Tech Interview with Confidence 🔥 Up to 70% OFF — Limited-Time Offer 👉 Enroll Now & Start Learning The Stasi did not fail because it lacked resources. It failed because control without trust always leaks. People do not stop moving when you watch them closely. They just get more creative about how they move. Enterprises are running a smaller version of the same experiment. Not with border guards, but with approval queues, access reviews, and security first policies that treat every employee like a suspect until proven otherwise. The result looks familiar once you know where to look: slower innovation, quiet disengagement, and employees who route around the rules instead of following them. This is not an argument against security. It is an argument against using security as the only lens leadership applies to every decision. Here is what the failures of security states can teach enterprises, and their security teams, before the same pattern plays out inside their own walls. Every Security State Runs the Same Playbook Security states share one basic assumption: watch people closely enough, restrict their choices tightly enough, and you eliminate risk. East Germany tested that assumption for four decades. Historian Mary Fulbrook’s assessment of the regime,

This Week's Top Five Stories in Cyber

This Week's Top Five Stories in Cyber How OpenAI Agents Plotted and Breached Hugging Face Weeks after OpenAI’s announcement that its agents breached Hugging Face, two researchers from the company have dissected the incident, revealing significant details of the “unprecedented” attack. Taking the stage at BlackHat USA 2026, were Members of Technical Staff focussed on infrastructure and security, Michael Dalton, and Alignment and Safety Researcher, Eric Wallace, explaining what Michael called a “watershed moment for computer security as an industry.” The duo presented details of an elaborate investigation of over seven billion logs, which took up 3 million GPU hours – which, Fortune estimates, could have cost the company anywhere between US$4m to US$15m in compute. Although the industry learned of the incident in July, the actual trigger dates back months prior. On May 7, OpenAI started a training run for an internal-only model. The models are sandboxed and run in a virtual machine without access to the internet. ServiceNow Unveils Autonomous Cyber Defence Security Vision Building off its Autonomous Security vision, ServiceNow will offer six unified solutions to deliver AI-native cyber defence, expected to be available in December 2026, with a focus on prevention over reaction. The solutions will span cyber-physical security, agentic incident response, cyber risk and compliance, unified exposure management, identity and access security and continuous vulnerability detection. Following 82.8% of organisations reporting AI projects are already underway or planned for release within the next year, governing agents multiplies exposure faster than a human team can handle. But without proper integration of AI tools, insights and automations risk fragmentation, leaving enterprises in no better position than teams without proper agentic AI tools. China-Linked Autonomous Cyberattack on Taiwan Explained In a demonstration of what could happen when autonomous AI attacks meet geopolitical volatility, many government websites in Taiwan

White House authorizes private companies to launch 'hack-back' cyberattacks that destroy ...

White House authorizes private companies to launch 'hack-back' cyberattacks that destroy data and systems, targeting foreign cybercrime organizations — vetted organizations can now conduct offensive cyber operations Vetted U.S. firms can now conduct surveillance and destructive cyber operations under federal supervision. President Donald Trump signed a presidential memorandum on August 12 establishing the first U.S. program that lets vetted private companies conduct offensive cyber operations, including attacks that destroy data and systems, against foreign cybercrime organizations. Participating firms must post at least $1 million in escrow, forfeited if they break the program's rules, and every operation requires written approval from officials of the Department of Justice and the Department of Homeland Security. Just a few months ago, the administration publicly ruled out this very policy. In March, Thomas Lind, then a senior adviser at the Office of the National Cyber Director, told a conference the administration had no plans to authorize private offensive operations. "We're not interested in fighting pirates with pirates," Lind said. National Cyber Director Sean Cairncross said the same week that companies running offensive campaigns weren't what the administration meant when it asked industry for more help. The memorandum authorizes two categories of activity: "Cyber Surveillance Operations," meaning unauthorized access to foreign systems to collect intelligence while staying undetected, and "Cyber Effects Operations," meaning the disruption or destruction of systems and the data on them. A National Coordination Center manages the program, implementation guidance is due within 60 days, and eligibility rules will admit both large firms and smaller companies suited to specialized tasks. Any company that unintentionally hits a U.S. person or a system on U.S. soil must halt operations and notify the government immediately. A foreign group qualifies as a target under the memo unless "clear intelligence exists" establishing it's institutionally part of a foreign

Receive a warning from Facebook about your account? It's likely a scam

That warning that your Facebook account is about to be deleted is most likely a scam. Cybersecurity experts say scammers are sending fake account suspension notices through email and Facebook Messenger in hopes that users will panic and click. They will often claim your account violated rules and urge you to “appeal” or “verify” your account. RELATED STORY | FTC reports social media scams caused more than $90 million in losses in 2025 The links they provide lead to login pages that are designed to steal your password and access your account. Facebook urges users that if they see something on Facebook that they think is a scam, to not respond and to instead report it. They say you should follow three simple rules to protect yourself from being scammed: Slow down: Scammers will often try to make you panic by creating a sense of urgency. Take time to ask questions and think it through. Spot check: Does what they're telling you make sense? Do your research and double-check the details before clicking links or downloading files. Don't Send: No reputable organization will demand payment on the spot. RELATED STORY | New consumer alert warns about scams targeting previously defrauded individuals For additional tips on how to keep your Facebook page safe and secure, click here.

Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner

A recently patched security flaw in Apple macOS has come under active exploitation in the wild to deploy a cryptocurrency miner, the Netherlands National Cyber Security Centre (NCSC) has warned. The vulnerability in question is CVE-2026-65400 (CVSS score: 9.8), a critical authentication issue impacting the Screen Sharing component that could allow an attacker already on the network to authenticate to the built-in remote desktop feature service without valid credentials. The updates released by Apple improve state management mechanisms to enforce correct credential validation and prevent unauthorized authentication attempts. The shortcoming was addressed as part of an emergency update in macOS Tahoe 26.6.1, macOS Sequoia 15.7.9, and macOS Sonoma 14.8.9 earlier this month. "An authentication issue was addressed with improved state management," Apple said in an advisory released on August 6, 2026. It credited security researcher Alfredo Pesoli of Bynario for discovering and reporting the issue. In an update to its advisory, the NCSC-NL said it has received a report indicating active abuse of the vulnerability across multiple systems on which port 5900 was accessible from the internet. "In all these cases, root had gained access to the affected system and placed a Monero crypto miner," the agency added. There are currently no details on when these attacks were observed, the scale of such efforts, if the flaw was exploited as a zero-day, and if it goes beyond cryptocurrency mining. Calif, which published additional information about the flaw, said it's part of a series of bugs in the Screen Sharing Server component that were patched by Apple with macOS Tahoe 26.6 shipped late last month - - CVE-2026-43779 (CVSS score: 9.8) - A logic issue that could allow an app to intercept network connections intended for another process - CVE-2026-43777 (CVSS score: 7.5) - An unspecified issue that could a remote

Red Teaming in <b>Cybersecurity</b>: How It Works, Types, and Tools | CloudSEK

🚀 Introducing the CloudSEK MCP Server! Read more Red teaming is a form of ethical hacking in which security professionals emulate the tactics, techniques, and procedures (TTPs) of real attackers to test an organization's defenses. The exercise is authorized, scoped, and nondestructive: red teamers carry written permission and avoid real harm to systems or users. Attack speed makes that test urgent: IBM's X-Force Threat Intelligence Index found the time to execute a ransomware attack fell 94%, from 68 days in 2019 to under four days in 2023. Red teaming measures detection and response across people, processes, and technology, rather than the presence of vulnerabilities alone. This guide explains what red teaming is, how an engagement works, the types and tools involved, how red teams differ from blue and purple teams and from penetration testing, the frameworks behind the work, and the rise of AI red teaming. A red team engagement runs through six phases, from scoping to the final readout. The red team and the organization agree on objectives, targets, and rules of engagement. This phase sets what is in scope, what is off-limits, and the goal the team works toward, such as access to a specific system or dataset. The team gathers open-source intelligence and probes the attack surface to map people, technology, and exposed assets. Reconnaissance shapes the attack plan and identifies the likeliest entry points. The team gains a foothold through a phishing lure, an exposed credential, or an exploitable vulnerability. Initial access turns external reconnaissance into a position inside the environment. From the first foothold, the team moves between systems and escalates privileges toward higher-value targets. This phase mirrors how a real intruder expands access after breaching the perimeter. The team reaches the agreed goal, such as a sensitive dataset, a critical system, or domain-admin control.

Datavault AI will acquire CyberCatch in an all-cash transaction | Portal ERP

Datavault AI Inc., a provider of data monetization, credentialing, digital engagement and real-world asset tokenization technologies, has signed a definitive agreement to acquire 100% of CyberCatch Holdings, a cybersecurity company that provides an AI-enabled platform for continuous compliance and cyber risk mitigation. The transaction is structured as a court-approved plan of arrangement under the Business Corporations Act of British Columbia. Datavault AI will acquire CyberCatch’s approximately 26.8 million issued and outstanding common shares for $94.5 million in cash, or $3.53 per share. Outstanding dilutive securities will be exchanged on a cashless-exercise basis. Subject to board, stock exchange, regulatory and shareholder approvals, CyberCatch will operate as a subsidiary of Datavault AI from San Diego, California. CyberCatch founder, Chairman and CEO Sai Huda will serve as president of the subsidiary and report to Datavault AI CEO Nathaniel T. Bradley. Cybersecurity and compliance platform CyberCatch’s platform uses generative AI to assess whether required cybersecurity controls are in place and calculate a Cyber Hygiene Score. It also uses agentic AI to simulate threat-actor tactics, techniques and procedures, conduct penetration tests and calculate a Cyber Breach Score. The platform assesses cybersecurity controls from outside-in, inside-out and social engineering perspectives, with mappings to frameworks including NIST CSF 2.0, NIST 800-171, CMMC 2.0, ISO 27001, HIPAA and PCI DSS. Its agentic AI system consists of specialized agents assigned to tasks such as reconnaissance, vulnerability detection, selection of attacker tactics, vulnerability exploitation, evidence gathering, reporting and risk mitigation recommendations. The platform also provides dashboard reporting covering cybersecurity control failures and compliance status across frameworks including NIST CSF 2.0, NIST 800-171, CMMC, HIPAA, CAN/DGC 104 and EU NIS. Acquisition expands Datavault AI platform Following the closing of the transaction, Datavault AI expects CyberCatch’s software-as-a-service platform to operate as a cybersecurity and continuous-compliance layer across its existing technology portfolio. The

Kharon at the Financial Crime and <b>Cybersecurity</b> Forum 2026

About this event Kharon is exhibiting in the Innovation Showcase at the Financial Crime and Cybersecurity Forum hosted by Datos Insights. This year's AML track asks how programs keep pace — with geopolitics, with crypto, with real-time rails, and with the expectation that effectiveness be proven rather than assumed. Kharon provides the world's most comprehensive data on sanctioned and trade-restricted entities, and their related parties: expert-verified, entity-resolved, and built for programs moving from rules to risk intelligence. Stop by our table to discuss: - Sanctions at the speed of geopolitics: Designations land faster than screening lists absorb them, and the exposure is rarely the designated party itself. Kharon's proprietary tool visualizes beneficial ownership networks and identifies unlisted blocked entities under the OFAC 50 Percent Rule. - When the entity comes back under a new name: Screening against designations alone will always trail a rebrand. Kharon's subject matter experts track the people, addresses, and corporate filings that carry over when the name doesn't. - Financial crime's hidden victims: Treasury designated the Prince Group transnational criminal organization for operating Southeast Asian scam compounds staffed by trafficked workers, and expanded the action in June 2026 with 35 more targets. Kharon identifies the corporate structures behind scam networks like these — when OFAC unmasked the organization's second-in-command, Kharon already had the alias connected.

Safaricom Wins IT Risk Trailblazer Award for <b>Cybersecurity</b> and Risk Management

Safaricom Wins IT Risk Trailblazer Award for Cybersecurity and Risk Management Safaricom also uses security measures such as Hakikisha and biometric authentication on My OneApp to strengthen protection for customers and digital transactions. Safaricom has been named the winner of the IT Risk Trailblazer Corporate Award by the ISACA Kenya Chapter, recognising its approach to governance, cybersecurity, fraud prevention and enterprise risk management across the M-PESA ecosystem and its wider operations. The recognition highlights Safaricom’s continued investment in digital security, including its 24/7 Security Operations Centre, AI-powered threat detection and KingaSphere, the company’s in-house Cyber Threat Intelligence solution. Safaricom also uses security measures such as Hakikisha and biometric authentication on My OneApp to strengthen protection for customers and digital transactions. The company said its security framework is supported by internationally certified standards and board-level governance, as it works to maintain secure and reliable digital services for more than 50 million customers across its markets.

Mission-Driven Security: Inside a Global Bank's Defense

Cybersecurity In-Depth: Feature articles on security strategy, latest trends, and people to know. Mission-Driven Security: Inside a Global Bank's Defense In this video interview, Standard Chartered's group CISO shares insights on transitioning from technical roles to strategic leadership, the importance of business-savvy security executives, and how AI is reshaping both defensive capabilities and adversarial tactics in banking. In an era where cyber threats evolve at breakneck speed and financial institutions remain prime targets for sophisticated adversaries, the role of the chief information security officer (CISO) has never been more critical — or more complex. Cezary Piekarski, group CISO at global bank Standard Chartered, is helping shape the modern security executive: part technology expert, part business strategist, and part cultural architect. His journey from early tinkering to leading cybersecurity for a global banking institution offers insight into how technical expertise can evolve into strategic leadership. In this interview for Dark Reading's Heard It From a CISO series, Piekarski shares his unwavering belief that successful cybersecurity isn't built on technology alone, but on mission-driven teams united by a shared purpose. In an industry where sleepless nights come with the territory, he's learned to "worry productively" — channeling the anxiety that comes with the job into action that protects clients, colleagues, and the broader financial ecosystem. Through his approach, Piekarski argues that executives who exist in the space between technology and business must be executives who understand commercial trade-offs, technology visionaries who shape strategic direction, and cultural influencers who embed security consciousness throughout their organizations. This is especially the case as artificial intelligence reshapes both defensive capabilities and threat landscapes, obviously. Piekarski sees its rise not as a job-killing disruption but an evolution that demands new skills; and one that likely will draw in more people to cybersecurity. His vision for the future