âWeâre giving local communities in Alabama a fighting chanceâ: McCrary program provides cyber defense for local governments across the state Published: Jul 7, 2026 3:30 PM By Joe McAdory The average cost of a data breach in 2025 for U.S. organizations was $10.22 million, according to IBM. Even more, 34 percent of local agencies — city halls, fire stations, hospitals, schools — were compromised by ransomware. To combat this threat, the average information technology division in Alabama employs 2.2 people. That’s it. 2.2. A successful cyberattack can shut down the systems a community depends on. Water systems go offline. Utility billing stops. Communications are disrupted. Public safety is put at risk. It’s what cybersecurity experts consider “a city’s worst day.” “When a cyberattack strikes Anytown, USA, what does that mayor do?” asked Nick Sellers, McCrary Institute for Cyber and Critical Infrastructure Security chief operating officer. “What do county commissioners do? What does that local hospital administrator do? They’ve got to get services going, and if they don’t have a plan or the resources, they’re in trouble.” Cybersecurity professionals and students at Auburn University’s Samuel Ginn College of Engineering have a solution. The Alabama Cybersecurity Intelligence Center, a joint initiative of the Alabama Office of Information Technology (AOIT) and the McCrary Institute, offers basic cyber hygiene, multi factor authentication, penetration testing, incident response planning and round-the-clock monitoring of every device on a municipal network. The fundamental elements that can be quickly deployed are known as McCrary Secure and are made possible through the State and Local Cybersecurity Grant Program (SLCGP), a $19 million, five‑year federal investment under the Infrastructure Investment and Jobs Act. “We’re giving local communities in Alabama a fighting chance,” Sellers said. “What we’re offering is real, no‑cost protection from experienced cybersecurity professionals and industry partners. It’s a no‑risk
Jul 7, 2026 · via eng.auburn.edu
Federal government organizations must double down efforts to combat ‘living off the land’ attacks Commentary Read more
Jul 7, 2026 · via federalnewsnetwork.com
By now, you've probably sick of reading about Taylor Swift and Travis Kelce's New York City nuptials. Apologies if you came to the Huntress blog to escape it all. But even if you're allergic to celebrity gossip, you have to admit that the security apparatus surrounding America's Royal Wedding was impressive. And hey, it worked. As of this writing, no one's even seen the dress yet. As Huntress' newly hired Swiftie in Residence, I've compiled some Tay-keaways for cybersecurity professionals on how to protect your crown jewels from paparazzi threat actors. 1. Make your environment a fortress Madison Square Garden was already equipped with its own world-class set up of metal detectors, badges, facial recognition technology, security cameras, and door alarms. Add to that the couple's private security team, the NYPD, and even the FBI and National Guard, and you've got an impenetrable citadel, what Taylor might call "unbreakable heaven." Defender Tay-keaway: Like the meaning behind Taylor's lyrics, the strongest security postures are multi-layered. Weaving human analysis with SIEM and cutting-edge detection and response technology is the best way to achieve defense in depth. Key lyric: Baby, I know places we won't be found, and They'll be chasing their tails trying to track us down 2. Trust no one There's no doubt that Taylor and Travis's employees, vendors, and even guests were required to sign strict non-disclosure agreements ahead of the big day. A few MSG employees were reportedly escorted off the premises during the event for violating the strict no-phones policy. In other words, the wedding was not BYOD. Defender Tay-keaway: Authenticate early and often. Combining multi-factor authentication and single-sign on secures user accounts while avoiding login fatigue. Key lyric: I don't trust nobody and nobody trusts me 3. Throw off the scent Known to strategically leak false stories
Jul 7, 2026 · via huntress.com
Rare Bellevue cybersecurity and defense tech campus poised for takeoff as anchor tenant secured ‘REACH’ facility funded partially by a $50M in state funds The planned “REACH” facility, represented here in the front row to the left, reached a milestone when an anchor tenant signed a letter of intent agreement with the Prairie Hill Farm Area Development Authority, a nonprofit that includes City of Bellevue officials and will own and manage the broader campus northeast of Highways 75 and 34 in the state’s third most populous city just south of Omaha. It is to house research and development of defense and cybersecurity technologies that will boost the missions at the Bellevue-based U.S. Strategic Command (StratCom). The REACH building is still under design. (Courtesy of the City of Bellevue and Prairie Hill Farm Area Development Authority) BELLEVUE — Now that its main tenant has been “nailed down” and an agreement signed, a campus focusing on national defense technology in this military-heavy Nebraska town should start to take shape. That’s the word from City of Bellevue officials working with anchor tenant Nebraska Defense Research Corp. on the long-planned Research, Engineering, Architecture Collaboration Hub, or “REACH” facility. The REACH complex — envisioned as a secure space occupied by researchers, startups, private industry and defense contractors — is to receive $50 million from the state and when fully built, total private and public investment could be $300 million, said Bellevue economic and community development director Harrison Johnson. It is to be the centerpiece of a broader neighborhood dubbed Prairie Hill Farm collaboration campus that, as planned, could span 45 acres northeast of Highways 75 and 34, not far from Offutt Air Force Base and the U.S. Strategic Command (StratCom). Prairie Hill over time could surpass $600 million in private and public investment, partners have
Jul 7, 2026 · via nebraskaexaminer.com
The U.S. Department of Justice’s (DOJ) recent settlement with Alabama defense contractor LOGZONE Inc. (LOGZONE) is a notable reminder that, in the federal contracting context, cybersecurity deficiencies are not merely technical concerns — they can create False Claims Act (FCA) exposure, particularly where a contractor misstates its compliance status to the government. Under the settlement, LOGZONE agreed to pay $507,144 to resolve allegations that it submitted claims for payment under two Department of the Navy contracts while knowing that it failed to comply with those contracts’ cybersecurity requirements. This resolution shows the DOJ’s continued willingness to treat alleged noncompliance with contractual cybersecurity requirements as a fraud issue even in the absence of any data breach or other security incident. The press release reflects a theory that turns not only on the existence of unimplemented security controls, but also on the alleged submission of compliance-related information that did not accurately reflect the company’s actual cybersecurity posture. That combination — known deficiencies coupled with inaccurate compliance representations — presents an especially acute area of FCA risk for government contractors handling sensitive defense information. The Settlement The two Navy contracts at issue incorporated Defense Federal Acquisition Regulation Supplement (DFARS) 252.204-7012, which requires contractors handling covered defense information to provide adequate security for covered contractor information systems, including by implementing the National Institute of Standards and Technology (NIST) Special Publication (SP) 800-171 security requirements. The applicable framework also required LOGZONE to report a summary-level score from a current NIST SP 800-171 self-assessment in the Supplier Performance Risk System (SPRS). The DOJ alleged that, from May 2021 to March 2025, LOGZONE failed to implement certain NIST SP 800-171 controls that, if left unaddressed, could permit system exploitation or exfiltration of sensitive defense information. The government further alleged that LOGZONE submitted a score of 110 in
Jul 7, 2026 · via natlawreview.com
An Iranian hacking group affiliated with Iran's Ministry of Intelligence and Security (MOIS) has been wielding a previously undocumented modular command-and-control (C2) framework dubbed Cavern (aka Cav3rn) targeting Israeli organizations. The activity, which has primarily singled out IT providers and government sectors, has been attributed to a threat cluster tracked by Check Point Research under the moniker Cavern Manticore, which it said shares some level of tactical overlaps with MuddyWater and Lyceum, the latter of which is assessed to be a subgroup within OilRig. "The framework reflects a mature and adaptable toolset built around a shared .NET foundation, while using multiple compilation formats across different components, including .NET Framework, .NET Mixed-Mode C++/CLI, and .NET Native AOT," the cybersecurity company said. "The compilation format itself becomes the anti-analysis layer that forces reverse engineers into multiple toolsets and metadata-reconstruction workflows." The components of the C2 framework are used as Cavern Agent and Cavern modules, demonstrating a clear division of responsibilities between core communication capabilities and mission-specific post-exploitation functionality. This architecture has inherent advantages as it allows the operators to tailor deployments based on the victim profile, reduce forensic visibility, and ensure persistent access through bespoke modules for reconnaissance, data theft, tunneling, and lateral movement. The attack chain documented by Check Point Research commences with SysAid's software update feature, which is leveraged by the adversary to initiate a DLL side-loading chain that leads to the execution of a trojanized DLL ("uxtheme.dll") containing the Cavern Agent. The agent, for its part, loads a standalone communication DLL module ("n-HTCommp.dll") to contact the C2 server ("hospitalinstallation[.]com") and fetch additional post-exploitation modules on the fly over HTTPS or WebSocket. As many as five DLL modules have been uncovered - - mhm.dll, for file operations, enumeration, recursive file search, archive handling, and bidirectional file transfer - db.dll, for
Jul 7, 2026 · via thehackernews.com
An official website of the United States government Here’s how you know Official websites use .gov A .gov website belongs to an official government organization in the United States. Secure .gov websites use HTTPS A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites. Mohamed Telab serves as the acting Regional Director (a/RD) for CISA Region 2. In this capacity he oversees the management of all CISA regional activities, including the regional headquarters, and physical, cyber, chemical security and emergency communications programs. Prior to becoming the a/RD, he served as the Deputy Regional Director, the Chief of Protective Security, and held positions as a Protective Security Advisor in both New Jersey and New York City. Previously, he was with the Department of Homeland Security’s (DHS) Office of Intelligence and Analysis in New Jersey. Before joining DHS, he served as a civilian in the Counter Terrorism Division of the New York Police Department. Mr. Telab has over 22 years of military experience across active duty and reserve components in the United States Army and the United States Coast Guard (U.S.C.G), where his work included responding to natural disasters, security incidents, and supporting national security special events. During his tenure with the U.S. Army, he held a variety of staff and leadership positions, including a combat tour in support of Operation Iraqi Freedom. He is currently assigned as the head of Operations for the U.S.C.G reserve unit at U.S. Cyber Command at Fort Meade Md. He holds a Master of Science degree from the National Defense University, a Master of Science of Global Affairs degree from New York University, and a Bachelor of Business Administration degree from Hofstra University. He is a Graduate of the Senior Executive Fellows program at the
Jul 6, 2026 · via cisa.gov
Upcoming Webinar Tradecraft Tuesday | The Cost of a Weak CAP: Anatomy of a Major Password Spray Attack In June, a massive password spray attack against Microsoft accounts resulted in 81 million login attempts and 78 successful compromises. Threat actors used Azure command line interface (CLI) sign ins via a deprecated OAuth authorization flow called ROPC. This allowed them to slip through weak spots in victim organizations’ Conditional Access policy (CAP) configurations. Additionally, we found that the actors were using BYOIP, a service that lets the assigned owner of a range of IP addresses get peering services from an ISP. These attacks are part of a large wave of credential spray attacks across a few different ASNs. In the past six months, Huntress has observed the volume of credential spray attacks increase by over 155 times across our customer base. During this Tradecraft Tuesday, we’ll break down how threat actors operate credential spray attacks, what’s driving the recent surge, and the best CAP configurations that organizations can use to address the authorization flow used across these incidents. * HUNTRESS WEBINAR GIVEAWAY TERMS. Live webinar participants may be eligible to receive one (1) Nintendo Switch 2™ + Mario Kart™ World Bundle (“Gift”), worth approximately USD $500.00. This gift giveaway (“Giveaway”) is sponsored by Huntress Labs Incorporated (“Huntress”). By registering for the above Huntress webinar (“Webinar”), you accept the following Huntress Webinar Giveaway Terms and all decisions of Huntress, which are final and binding in all respects. NO PURCHASE NECESSARY. PURCHASE OF HUNTRESS PRODUCTS OR SERVICES DOES NOT ENHANCE CHANCES OF RECEIVING THE GIFT. Eligibility: The Giveaway is applicable to individuals who are 18 years of age or older who register for and participate in the Webinar. All applicable laws and regulations apply. Void where prohibited or restricted by law, including, but
Jul 6, 2026 · via huntress.com
Cybersecurity is entering a new phase. It's one where the gap between awareness and operational execution is becoming the industry's biggest challenge. That's what stood out to me most after reviewing the results of the 2026 Bitdefender Cybersecurity Assessment, which found that organizations have never had greater insight into the risks they face, yet turning that understanding into meaningful action remains a persistent challenge. Nowhere is that gap more visible, in my view, than in how organizations handle breach transparency. We surveyed 1,200 IT and cybersecurity professionals across six countries: France, Germany, Italy, Singapore, the United Kingdom, and the United States. Respondents ranged from frontline employees to IT managers to CISOs, all working within organizations with 500 or more employees. A Governance Problem, Not an Attacker Problem One of the most troubling findings in our report is not about attacker behavior. It's about internal response. More than half, 55.2%, of respondents who experienced a security incident or breach in the past 12 months told us they were instructed to keep it confidential, even though they believed it should have been reported to authorities. The U.S. led all regions at 68.6%, followed by Germany and the U.K. at 57.2%. Most Organizations Say Transparency Matters. Many Still Face Pressure to Stay Quiet. Most organizations recognize the importance of transparent incident reporting, yet more than half of professionals who experienced a breach say they were told to keep it confidential. That contradiction, to me, is one of the clearest signs of an industry that understands the right answer but still struggles to operationalize it. These findings, detailed in the full 2026 Bitdefender Cybersecurity Assessment, point to a broader governance issue: how organizations respond when incidents happen, how transparent they are, and whether internal culture supports compliance, accountability, and trust. Awareness Is Not the
Jul 6, 2026 · via thehackernews.com
Getty Images/iStockphoto/gorodenkoff Enough is enough: Let talent dictate technology Commentary Read more
Jul 6, 2026 · via federalnewsnetwork.com
INDIANAPOLIS (WRTV) — The state of Indiana is phasing out a transparency tool out of concern for cybersecurity, Indiana’s I-Team has learned. “Find a Person” allows you to look up state employees and learn: - Title - Agency - Work address - Email address - Desk phone number Indiana’s I-Team has also used the “Find a Person” tool to see whether someone is still employed with the state. Indiana’s I-Team noticed certain state employees missing from the portal, and we contacted the Indiana Office of Technology. “While the Find a Person feature provided transparency and contact information, it also introduced a significant security risk by making data easily accessible to cybercriminals,” said Kelly Johnson, IOT Director of Communications, in an email to Indiana’s I-Team. “Upon further review, page traffic and utilization of the application was very low, leading to the decision to phase it out, as the benefit of the tool did not outweigh the security concerns.” Johnson points out that the state does still have the Indiana Transparency Portal, which contains salary information about employees. “The Indiana Transparency Portal on in.gov continues to provide information about state finances, assets, contracts, employee salaries, and more. Indiana was also the first state to introduce a broad-based generative AI chatbot on our homepage, making information more readily searchable,” said Johnson in an email. “Using the Ask Indiana tool, constituents are able to locate the information they need quickly and efficiently. While we have seen an increase in website visits, overall page views and time on site have decreased, illustrating that people are finding answers faster.” Johnson said the Indiana Office of Technology conducts ongoing security and risk assessments to safeguard state data and systems.
Jul 6, 2026 · via wrtv.com
Some Jacksonville services offline as city addresses cybersecurity incident
JACKSONVILLE, Texas (KLTV) - The City of Jacksonville has taken some city systems offline after they discovered a cybersecurity concern.
According to the city, suspicious network activity was detected on July 3 and city officials have since determined is related to a cybersecurity incident.
The city said the affected systems were taken offline and an investigation was launched into the nature and scope of the incident.
According to the city, certain systems have been disabled as a precaution and some city services will remain unavailable as the investigation continues. The city said it is implementing workarounds where possible.
The city said it has also implemented additional security measures and enhanced monitoring across its network.
According to the city, the investigation is in its early stages. The city said it is working with third-party cybersecurity specialists to address the situation and restore the network.
Officials said they will provide updates as the investigation progresses.
Copyright 2026 KLTV. All rights reserved.
Jul 6, 2026 · via kltv.com
About
Press
Copyright
Contact us
Creators
Advertise
Developers
Terms
Privacy
Policy & Safety
How YouTube works
Test new features
NFL Sunday Ticket
© 2026 Google LLC
Jul 6, 2026 · via youtube.com
Home
Categories
Front Page
News
News
Community
National
Statewide
Obituaries
Sports
Social
Social
Pets
Tourism
Business
Health
Food
Health
Agriculture
Agriculture
Outdoors
Area Interest
Columns
Education
Featured
Misc
Viewpoints
Weather
Special Pages
Archives
Search
About Us
Printed Paper Online
SUBSCRIBE
SUBSCRIBE
LOGIN
LOGIN
Login with Facebook
Login with Facebook
×
Subscribe
Loading...
RUSK WEATHER
Front Page
News
News
Community
National
Statewide
Obituaries
Sports
Social
Social
Pets
Tourism
Business
Health
Food
Health
Agriculture
Agriculture
Outdoors
Area Interest
Columns
Education
Featured
Misc
Viewpoints
Weather
Special Pages
Archives
Search
Jacksonville Investigating Cybersecurity Incident
by Press release from City of Jacksonville.
This content is for subscribers only. Log in or sign up for a free trial below.
Click here to start your Free Trial
(No credit card required)
Click here to start your Free Trial
(No credit card required)
×
Free Trial
Loading...
Register/Claim
Register/Claim
Loading...
Jul 6, 2026 · via thecherokeean.com
Cybersecurity Lessons from a Floriculture Phishing Attack The floriculture sector is increasingly facing cyber incidents. It is no longer a question of *if* you will be affected, but *when*. That is why it is important for growers and buyers — and, by extension, the entire floriculture sector — to become more resilient to cyber incidents. Floris Kloeg, an IT Specialist at Ter Laak Orchios, remembers it well. It was around a quarter past six in the morning on Wednesday, April 8, 2026, when he received a message via WhatsApp from a colleague. The colleague had received an email from a member of staff at Riza Growers, the growers’ collective of which Ter Laak Orchios is a part. The sender’s name was correct, as was the email address. The layout looked genuine, too. Yet, Floris’s colleague thought: something isn’t quite right. “He’s never been in contact with that Riza employee. And the content of the email was vague as well,” says Floris. “We checked it out and sure enough: it wasn’t genuine.” From a Single Wrong Click to Crop Damage What had happened? The Riza Growers employee had clicked on the wrong link in a phishing email. This gave cybercriminals access to his email account, and they sent emails in his name to around 125 contacts. This is how the phishing email spread within the floriculture sector. Floris acted quickly. “We blocked the employee’s account at around a quarter to seven. We informed the recipients of the email as quickly as possible.” As a result, the ultimate damage was limited. “We reported it promptly to Royal FloraHolland, which was able to link this incident to a number of other cyber incidents,” says Floris. In collaboration with organizations including the National Cyber Security Centre, Royal FloraHolland traced the source of the attack.
Jul 6, 2026 · via greenhousegrower.com
Students in the Oregon Tech Portland-Metro Cybersecurity Club held a hands-on hackathon June 4, focused on applying classroom knowledge in a practical, enterprise-style environment. Participants Scott Reinholtz (Cybersecurity), Joshua Brady (Information Technology), Anibal Lopez-Bonilla (Software Engineering Technology), Trevor Craig (Cybersecurity), and Noah Etchemendy (Software Engineering Technology) tested their classroom learning by building servers and testing them against attacks. The hackathon emphasized the full lifecycle of cybersecurity work. Students built and configured systems, hardened servers and workstations against potential threats, and then used their hacking skills to get into the machines and find flags placed everywhere on the servers and workstations. “This allowed students to apply what they learned in class in a practical way, demonstrating those skills in a real environment,” said Scott Reinholtz, one of the club’s organizers. “It also allows students opportunities to ask questions and keep learning outside the classroom. We want students to be able to continue their education with an on-site practical use case that uses enterprise hardware and software to enhance their skills in cybersecurity, IT, and networking.” All participants received commemorative awards 3D printed by Reinholtz. The Oregon Tech Cybersecurity Club Portland is a 12-member student-run group that meets weekly to explore cybersecurity topics and prepare for competitions. The club introduces students to a range of tools and practices used in the field, including: - Network and web exploitation (nmap, Burp, sqlmap, Metasploit) - Hardware and wireless security (Pwnagotchi, Flipper, Bash Bunny, Alfa cards) - Reverse engineering and binary exploitation (Ghidra, pwntools, ROP) - Defensive ops and SIEM (Splunk, Wazuh, network forensics) - Capture-the-Flag (CTF) preparation — internal practice + external competitions Faculty and staff support for the club includes advisor Malini Nagasundaram, along with Gary Lomprey and Kellyn Beeck. Students interested in getting involved can attend weekly meetings or join the club’s
Jul 6, 2026 · via oit.edu
Home
Pink Sheet
Scrip
Medtech Insight
HBW Insight
Generics Bulletin
In Vivo
Spotlight
FDA
EU Medical Device Regulation
Robotics
AI
Interviews
Business
Deals
Financing
Earnings
Startups
R&D
Policy & Regulation
Approvals
Recalls
Legislation
Compliance
IP & Litigation
Commercial Trackers
M&A Deals
Financing Deals
Executive Moves
Company Rankings
Regulatory Trackers
US Original PMAs
US PMA Supplements
US 510(k) Clearances
US De Novo Classifications
Non-US Approvals
US FDA Warning Letters
US Breakthrough Devices
Global Guidance Tracker
Podcasts
Conference Coverage
Partner Insights
Opens in new window
Advertise
Opens in new window
Medtech Insight Perspectives
Uncovering medtech commercial, market access and development trends.
View
Pink Sheet
Scrip
Medtech Insight
HBW Insight
Generics Bulletin
In Vivo
MDIC Lays Out Five-Step Cybersecurity Penetration Testing Process For Connected Device Makers
Jul 06 2026
•
By
Krishna Chandra Eluri
More from Cybersecurity
More from Digital Technologies
Jul 6, 2026 · via insights.citeline.com
Pursuing a career in cybersecurity can seem intimidating, particularly for those without a traditional IT or mathematics background. It’s a challenging field where responding to threats not only requires an understanding of complex solutions, but also patience and practice. Video games have emerged as a way of making the act of learning these complex solutions accessible for anyone with ambitions to become a cybersecurity professional. TryHackMe is a training platform that gamifies cybersecurity, transforming regular classes into accessible modules taught in rewarding, straightforward ways. Could gaming make cybersecurity careers more accessible? One of the biggest barriers to pursuing a career in cybersecurity is the perception that it’s only for IT professionals or programmers. Today there are a growing number of platforms that gamify cybersecurity, opening up learning opportunities and making it accessible to everyone. By introducing puzzles, virtual environments and simulations, this approach helps learners grasp complex topics in a way that may be far more engaging than sitting through a lecture. If you originally dismissed cybersecurity as a career, a gamified experience could entirely prove you wrong. How are cybersecurity platforms borrowing from video games? TryHackMe is a gamified cybersecurity training platform designed to teach anyone cybersecurity through a more rewarding, accessible approach than a traditional degree course. You’ll follow a ‘learning roadmap’ that guides you through pathways and industry-recognised certifications needed to specialise in one of four areas. These pathways are broken down into modules, all of which encourage hands-on learning from the outset: you’ll learn how to attack and defend corporate networks, secure cloud-based applications and be guided through real-world scenarios like investigating suspicious activity in a security operations centre (SOC). There’s even a King of the Hill mode where 10 players compete to compromise a system first while fending off other skilled hackers who want to
Jul 6, 2026 · via sciencefocus.com
Researchers found a flaw in Opera GX, the gaming-focused version of the Opera browser, that let a malicious website silently install a browser add-on and use it to lift specific data from the pages a victim visits. In a proof of concept, they reconstructed a signed-in user's full Gmail address from a single visit, with no click. Opera has patched the flaw and says it found no evidence that it was ever used in the wild. The fix shipped in Opera GX version 130.0.5847.89, so anyone on a current build is already covered; you can confirm yours at opera://about. There is no CVE. Because the attack needed no clicks or approvals, there was no workaround short of the patch. Opera's bug bounty team rated the issue P1, its top severity, and paid the maximum $5,000 award for a critical bug. How the attack works GX Mods let you reskin Opera GX with custom sounds, themes, wallpapers, and CSS that restyles the sites you visit. They ship as .crx files, like browser extensions, but they cannot run JavaScript and hold no permissions. The weakness is in how they install: Opera's mod pipeline downloads and enables a mod automatically, with no approval prompt. So a malicious page can install one silently, for instance by loading a hidden iframe pointed at a .crx file. The only sign is a notification bar below the address bar telling you a mod was added, with a Remove button. This auto-install behavior is not new. The researcher Renwa identified it back in 2023 and, by escalating an installed mod into a full extension, used it to spoof the browser's address bar. Opera patched that specific attack in March 2023 but left the underlying auto-install in place, which is what this new research builds on. A silent look-and-feel
Jul 6, 2026 · via thehackernews.com
The proposed regulations would require cybersecurity and software update management systems for advanced vehicles, with phased implementation beginning in October for new models featuring Level-3 automation. Share Post The proposed regulations would require cybersecurity and software update management systems for advanced vehicles, with phased implementation beginning in October for new models featuring Level-3 automation. The Ministry of Road Transport and Highways (MoRTH) has proposed new regulations that would make cybersecurity and software update management systems mandatory for vehicles equipped with advanced technologies. This comes amid growing concerns over cyber threats as modern vehicles become increasingly connected and software-driven, making them more vulnerable to malware and other forms of cyberattacks. Under the proposed framework, the rules would apply to passenger vehicles, commercial vehicles and tractors fitted with at least one electronic control unit (ECU) capable of supporting Level-3 or higher automated driving functions, The Economic Times reported, New vehicle models equipped with Level-3 automation and above, including models such as the Mercedes-Benz S-Class, Audi A8 and BMW 7 Series, would be required to comply with the cybersecurity and cybersecurity management system requirements from October. Existing models would have to meet the requirements from April next year. The regulations would then be expanded in phases. Vehicles capable of receiving over-the-air (OTA) software updates would be required to comply between April and October 2028, followed by vehicles with software update capability from October 2029. Over-the-air software updates allow vehicles to receive software, firmware and system upgrades through Wi-Fi or cellular networks, similar to software updates on smartphones. The technology enables manufacturers to deliver feature enhancements, bug fixes and system improvements without requiring customers to visit a dealership. Officials said vehicle manufacturers need to strengthen the security of software code used in critical systems, including battery management systems, which monitor and manage the operation
Jul 6, 2026 · via ackodrive.com