Coverage from Statescoop indicates that the Federal Emergency Management Agency has issued new guidance regarding the use of funds from its State and Local Cybersecurity Grant Program and the Tribal Cybersecurity Grant Program, specifically addressing restrictions on membership fees for cybersecurity services.FEMA has clarified that state and local governments are prohibited from using federal cyber grant funds to pay for membership fees that bundle cybersecurity or technical services, as the agency cannot determine the reasonableness of these bundled costs. Previously, a broader prohibition on spending grant funds on services from the Multi-State Information Sharing and Analysis Center (MS-ISAC) was in place. The new bulletin clarifies that purchasing individual products or services through membership organizations is permissible, provided recipients adhere to federal procurement standards. This clarification comes after some officials expressed frustration with the initial restrictions.Additionally, recipients of federal cyber grants are no longer required to complete the Nationwide Cybersecurity Review, though an alternative assessment may be mandated in the future. This update follows a bill introduced by Senator Mark Warner to restore annual funding to the MS-ISAC, highlighting ongoing discussions about federal support for state and local cybersecurity efforts.Source: Statescoop Get daily email updates SC Media's daily must-read of the most current and pressing daily news You can skip this ad in 5 seconds
Jul 3, 2026 · via scworld.com
News, news analysis, and commentary on the latest trends in cybersecurity technology. Apple Reverses Age-Old Patch Policy to Keep Up With AI Expect more compressed patching cycles from Apple going forward, as attackers leverage artificial intelligence to reduce time to exploit. Apple is changing its approach to security patching, in response to the growing threat of accelerated artificial intelligence (AI) attacks. The company has historically saved big, bundled sets of bug fixes for new versions of its operating system (OS). That's set to change. The company released a variety of security updates June 29 for iPhones, iPads, Macbooks, and the Safari browser, untethered to any major version releases. It's hardly the first time it's released security updates out-of-band, but the motivation was different this time. According to Reuters, the company said "it was adapting to the reality that, given the ability of artificial intelligence to speed the development of malicious hacking tools, it needed to reduce the time between when updates were first made public and when they were put into customers' hands." "I think faster patching helps, but it doesn't fully close the gap, because it's still a single point of defense with no fallback if something slips through," Rocky Cole, CEO of iVerify warns. "And against AI-accelerated discovery, something will slip through." Dark Reading has reached out to Apple for comment on this story. Why Apple Is Changing its Patching Cadence In speaking with reporters, Apple emphasized that none of the newly released fixes pertained to actively exploited vulnerabilities. In other words, the point wasn't to address any known cyberattacks, but to start updating more frequently in general. "The data isn't in dispute when it comes to the need for a different patching cadence," Cole says, citing Mandiant's time to exploit (TTE) findings. "In 2018, the average time
Jul 3, 2026 · via darkreading.com
Michael Nicosia, COO and cofounder at Salt Security. Security teams have spent the last few years securing the wrong things. While enterprises debated AI ethics and model safety, AI agents quietly earned the keys to production infrastructure. At Amazon, an AI coding agent made changes to a production environment without authorization, taking it offline for 13 hours, according to unnamed sources cited by the Financial Times. At McKinsey, as part of a red-team test, an autonomous agent breached their internal AI platform in under two hours and accessed 46.5 million internal chat messages. And at PocketOS, an AI coding agent deleted its database in seconds. Individually, these events may seem unrelated. Together, they point to something bigger: AI is no longer confined to generating outputs. It is being trusted to take action inside live systems. When those actions go wrong, the impact can be immediate and real. The Real Lesson From Early Incidents These incidents are an early signal of how quickly things can go wrong when autonomous systems are given operational access without sufficient controls. A self-running system can execute tasks in a live environment and cause irreversible damage in a matter of seconds. This doesn't mean AI is inherently unsafe. However, most organizations have not yet built the guardrails required for autonomous systems. There are still gaps in how permissions are defined, how actions are validated and how behavior is monitored in real time. When those gaps exist, even well-intentioned systems can create significant risk. From Assistants To Operational Actors Most recent discussions around AI risk have focused on outputs such as accuracy, bias and hallucinations. Those concerns matter, but they only address part of the picture. AI agents are now being deployed to write code, manage infrastructure, trigger workflows and interact directly with critical systems. This changes
Jul 3, 2026 · via forbes.com
About
Press
Copyright
Contact us
Creators
Advertise
Developers
Terms
Privacy
Policy & Safety
How YouTube works
Test new features
NFL Sunday Ticket
© 2026 Google LLC
Jul 3, 2026 · via youtube.com
Weâre sorry, this site is currently experiencing technical difficulties.
Please try again in a few moments.
Exception: forbidden
Weâre sorry, this site is currently experiencing technical difficulties.
Please try again in a few moments.
Exception: forbidden
Jul 3, 2026 · via state.gov
Agenda Cyber threats to public sector organizations are no longer a matter of if — they're a matter of when. But true resilience isn't built in the aftermath of an incident. It's built before one ever occurs — and it starts with funding. Join Grants Office, and special guests from Rubrik, Inc., for a Grantscast® designed for technology, security, and grants professionals across state and local government, education, public utilities, and public safety organizations responsible for keeping critical services running and public trust intact. We'll dig into the federal and state grant programs helping public sector organizations fund proactive cyber resilience — what's available, what's eligible, and how to build a competitive case for funding before a crisis forces your hand. We’ll also be joined by Jason Likens from Rubrik, who will share what proactive cyber resilience looks like in practice, including strategies that help organizations improve recovery readiness, protect critical operations, and strengthen continuity of services during cyber incidents and operational disruptions. Register today and you'll leave this webinar with: - A clear map of federal and state funding programs available for cybersecurity and infrastructure resilience - Strategies for writing a compelling grant narrative that positions your organization as a strong, proactive steward of public resources - Guidance on aligning your project scope and budget to funder priorities in the cybersecurity space - Practical insight from Rubrik on the resilience infrastructure that supports both operational continuity and grant eligibility For questions, comments or inquiries into Rubrik for California Public Sector please contact dan.raynes@rubrik.com.
Jul 3, 2026 · via insider.govtech.com
CHICAGO (WLS) -- Fans looking to buy World Cup tickets or merchandise are being warned to watch out for scams as criminals take advantage of the tournament's popularity. The ABC7 I-Team is investigating reports of scammers targeting consumers searching for tickets, jerseys and other World Cup-related items online. One security group has seen a recent 320% increase in malicious websites tied to the event. It could be merchandise like hats or jerseys or a ticket to go see a match. Scam artists capitalizing on the World Cup craze. One security group seeing a recent 320 percent increase in malicious sites. Nati Tal, head of research at Guardio, said increased interest in the tournament creates opportunities for fraudsters. "This is the time you see the games, and you want to buy the soccer shirts," Tal said. Tal said Guardio's cybersecurity team recently found several online shops based in China selling World Cup shirts and jerseys. Security experts warn that consumers may never receive the products they order or could receive fake items weeks later. "Everybody is looking for those events and searching for information and scammers like they always do they have a chance to find more victims using names and brands," Tal said. The FBI has also issued a warning. In May, the agency said it identified more than three dozen domains spoofing the legitimate FIFA website and expects more fraudulent domains to appear. The FBI and Guardio recommend purchasing official, FIFA-licensed merchandise and obtaining World Cup tickets through FIFA's official website. Consumers who buy tickets through third-party sellers should use a verified, trusted source and avoid online classifieds unless they thoroughly vet the seller and meet in person. They also recommend requesting a photo of the seller's driver's license. When asked how consumers can verify they are purchasing legitimate
Jul 2, 2026 · via abc7chicago.com
“Unless you know where you are, it’s very difficult to have a path forward and end up where you want to be,” he said. The Cybersecurity Coalition for Education developed its Cybersecurity Rubic as a K–12 interpretation of the National Institute of Standards and Technology’s standard and other cybersecurity and privacy standards. This 1 to 5 scale tells districts whether their cybersecurity posture is reactive and unprepared or proactive and resilient. Once your posture is defined, the next step is prioritization. “The next part is to identify where your areas of improvement and gaps are,” Ashley said. “Then, you have to make well-informed decisions on what the next steps are, because how you add your protections in the right order is how you’re going to get the biggest bang for your buck and decrease your attack surface.” He warned attendees against what he called “random acts of cybersecurity” — creating a reactive, piecemeal cybersecurity defense without a cohesive strategy. Instead, he urged leaders to focus first on essentials: a firewall, backup and recovery solutions, multifactor authentication, endpoint protection, and a practiced incident response plan. Ashley also noted that some of the most impactful changes are rooted in policies, not products. He told a story about how an email spoofing incident once cost him his paycheck. DISCOVER: A clear roadmap can help districts build cybersecurity maturity. “As soon as I heard how that happened, I was able to make some really simple changes,” he said. “Some of these protections we’re talking about don’t cost dollar signs. What it took to fix this situation was procedures, policies and guidelines.” A Rubric-Driven Approach to Vetting Digital Resources This strategic mindset around tool adoption, as well as the policies and procedures that define them, can extend to how districts adopt other ed tech tools.
Jul 2, 2026 · via edtechmagazine.com
BIO-key International will participate in a cybersecurity workshop in Amman, focusing on identity security and authentication strategies. Quiver AI Summary BIO-key International, Inc. will participate in an exclusive cybersecurity and identity workshop in Amman, Jordan, on July 6, 2026, organized by the Association of Banks in Jordan. The event will gather leaders from various banks and financial institutions to discuss pressing issues like cyber threats, identity security, and modern authentication strategies. Attendees will gain insights into BIO-key’s solutions, such as Identity-Bound Biometrics and the PortalGuard IAM platform, which support passwordless authentication to enhance security and user experience. The workshop aims to address the evolving cybersecurity landscape and reinforce identity security as a priority for regional financial institutions undergoing digital transformation. Both BIO-key and the Association of Banks in Jordan emphasized the importance of equipping banking leaders with tools and knowledge to meet these challenges effectively. Potential Positives - BIO-key's participation in a prestigious, invitation-only cybersecurity workshop demonstrates its recognition as a leader in identity and access management, enhancing its brand reputation within the banking sector. - Engagement with over 25 banking institutions and C-level executives provides BIO-key with valuable networking opportunities and potential partnerships in the rapidly evolving cybersecurity landscape. - The focus on passwordless authentication solutions positions BIO-key at the forefront of modern security needs, catering to the increasing demand for enhanced digital experiences and improved security in financial institutions. Potential Negatives - The emphasis on forward-looking statements may signal a lack of immediate product or market traction, raising concerns about the company's current performance. - The need for ongoing support in the Jordanian banking sector highlights potential weaknesses in clients' current security measures, implying dissatisfaction or vulnerabilities that could affect BIO-key's reputation. FAQ What is the focus of the cybersecurity workshop in Amman? The workshop focuses on addressing
Jul 2, 2026 · via quiverquant.com
The American Transportation Research Institute (ATRI) calculates that cargo theft costs the trucking industry over $18 million per day. And according to CargoNet, strategic theft, a category of crime that uses deception, identity theft and fraudulent documentation to divert freight, has surged by 1,500% since 2021. Ninety percent of motor carriers are small businesses operating 10 trucks or less, and they’re under enormous strain to counter these technologically advanced adversaries. In addition, the transnational aspect of cargo theft also poses a national security threat. The proceeds from stolen goods finance other criminal activities, including drug trafficking, organized crime and even potentially terrorism. Navigating a New Normal During a recent webinar presented by the Truckload Carriers Association (TCA), Scott Cornell, chief risk officer for SPG Cargo and Logistics, said cargo theft trends in the U.S. have fundamentally changed. Carriers and law enforcement are navigating a “new normal” in the fight against cargo theft. “Unless something drastically changes or there’s more regulation through the federal government around things that could prevent cargo theft, there’s no sign that cargo theft is gonna go down,” he said. According to a report from Overhaul, for the first time since 2021, U.S. cargo theft declined year over year in the first quarter of 2026 — but that relief may be short-lived. The National Motor Freight Traffic Association (NMFTA) noted in its most recent Transportation Industry Cybersecurity Trends Report that the most dramatic increase in cargo theft occurred in the New York City metropolitan area, specifically New Jersey and eastern Pennsylvania (up 110% and 33%, respectively). Dangerous Combination Analysts attribute these spikes to the adoption of cybercrime tactics by organized criminal networks that leveraged social engineering to impersonate carriers, hijack Federal Motor Carrier Safety Administration (FMCSA) accounts and manipulate load tenders and other dispatch documentation. “The result
Jul 2, 2026 · via thetrucker.com
Amsterdam-based cybersecurity startup Dawnguard has announced the public launch of its security architecture automation platform, alongside an additional €2.8 million ($3.3 million) in pre-Seed funding. The round came from existing investor BNVT Capital in the UK, with new participation from Curiosity VC in the Netherlands and eCAPITAL in Germany. According to the company, the fresh capital brings Dawnguard’s total funding to more than €5.5 million ($6.3 million). This comes one year after they emerged from stealth with €2.6 million in pre-Seed funding – as covered by EU-Startups. “Cybersecurity has become trapped in an endless cycle of detection, response, and patching,” says Mahdi Abdulrazak, CEO and co-founder of Dawnguard. “For twenty years, security was something you added later. That model was already fragile. Today, against an attacker running at machine speed, it becomes increasingly indefensible. When probing is continuous and cheap, the only thing that holds is what was designed correctly from the start.” Dawnguard’s additional pre-Seed round comes amid continued 2026 activiy of European companies working on cybersecurity automation, AI-agent security, cloud infrastructure security, software supply-chain protection and adjacent digital identity infrastructure. Relevant rounds reported this year include Cloudsmith’s €61.5 million Series C for AI-driven software supply-chain security, Geordie AI’s €25 million Series A for AI-agent governance, NeuralTrust’s €17.2 million Seed round for enterprise AI-agent security, Escape’s €15.4 million Series A for offensive security engineering, and Cloudgeni’s €858k raise for secure cloud infrastructure automation. In the Netherlands, Amsterdam-based Duna raised €30 million for AI-native business identity and onboarding, an adjacent trust-infrastructure segment. Taken together, adjacent 2026 rounds represent approximately €224 million in funding, indicating active investor interest in security tooling that moves beyond reactive monitoring towards earlier-stage design, governance, identity and infrastructure controls. “Every engineering team understands the gap between what was designed and what ultimately gets deployed,” adds Kim
Jul 2, 2026 · via eu-startups.com
About
Press
Copyright
Contact us
Creators
Advertise
Developers
Terms
Privacy
Policy & Safety
How YouTube works
Test new features
NFL Sunday Ticket
© 2026 Google LLC
Jul 2, 2026 · via youtube.com
Webinar
Securing MedTech's Digital Future: AI, Cybersecurity & Compliance
As medical technology evolves, so do the threats - and the regulations designed to counter them. This webinar explores the critical intersection of AI, connected devices, and security in the MedTech industry.
This webinar brings together thought leaders to explore:
- The rising tide of cyberattacks hitting MedTech - from ransomware shutting down operations to credential theft exposing ePHI
- AI security risks unique to MedTech - model vulnerabilities, data privacy, and egovernance gaps
- IoT and connected device threats - and what a breach in one system means for the whole network
- Navigating HIPAA and FDA regulations in an era of rapid digital transformation
- What a modern security posture looks like for MedTech organizations building resilient, compliant operations
Jul 1, 2026 · via fiercebiotech.com
For years, professionals seeking a doctorate in cybersecurity had few options beyond computer science or engineering. Old Dominion University is opening a new path. The University’s nationally recognized School of Cybersecurity has launched a new Ph.D. in cybersecurity designed to prepare the next generation of cyber leaders, researchers and educators as the world faces new and complex security challenges. The Ph.D. program will highlight the interdisciplinary nature of the rapidly evolving field of cybersecurity, with artificial intelligence and other emerging technologies. Students from a wide range of educational and professional backgrounds are encouraged to contribute diverse perspectives that advance cybersecurity research. “The coursework and research pathways are designed for people from different backgrounds,” said Daniel Takabi, Ph.D., professor, director of the School of Cybersecurity and Batten Endowed Chair of Cybersecurity. “Our Ph.D. program offers advanced technical specializations, alongside comprehensive pathways in strategic cybersecurity management, policy, legal and human factors in cybersecurity.” This unique program is among the first of its kind in the nation and the only Ph.D. in cybersecurity in Virginia. It also represents a new phase of growth for the school, which celebrated its 10th anniversary this year. Dr. Takabi touted the school’s expanding programs in cybersecurity and artificial intelligence, as well as research efforts to advance the University’s national reputation as a R1 research institution. The school is also growing its research faculty and partnering with federal and regional agencies to address real-world needs. Over the last decade, the School of Cybersecurity has grown from a handful of students to approximately 1,700 and has gained several national recognitions, including the National Security Agency (NSA) designations as Centers of Academic Excellence in Cyber Defense, Cyber Operations and Cyber Research. The NSA also granted the University official validation for its cyber artificial intelligence programs of study. Old Dominion University
Jul 1, 2026 · via odu.edu
How Firms Can Prepare For Increasing AI-Cybersecurity Risks
A key challenge for businesses is how to use artificial intelligence in a way that is not only commercially meaningful, but also defensible if something goes wrong from a security standpoint....To view the full article, register now.
Already a subscriber? Click here to view full article
Jul 1, 2026 · via law360.com
- Johnson Controls - Building Insights - Metasys sets a new standard for smarter buildings Metasys 16.0: A legacy of innovation – engineered for what’s next Future-Ready Building Control Request a demoHighlights - Native server redundancy supports continuous operations without specialized hardware or third-party solutions - Built-in cybersecurity features help secure servers and field devices across the system - Up to 30% faster engineering and 40% faster upgrades through standardized workflows and pre-emptive system checks, plus up to 80% faster integration than most competitors with visual flow-based programming - Up to 30% energy savings through ASHRAE Guideline 36–aligned control strategies - An open approach to integration by supporting multiple devices, protocols and systems across portfolios For more than three decades, building automation has been transforming how facilities operate, adapt and perform. Few platforms have shaped that evolution as consistently or impactfully as Metasys. From early days bringing disparate building systems together to today’s data-rich cyber-resilient environments, Metasys has continuously reflected the principle that buildings are assets that should work for you, bring value to occupants and benefit the bottom line. Metasys 16.0 takes the next step. It builds on a long legacy of openness, scalability and reliability by responding directly to the demands shaping modern buildings. The latest release is not simply about new functionality; it leads the industry with maximum uptime, internationally recognized cyber resilience and even faster deployment acceleration. It also represents how building automation has become a strategic foundation for sustainability, operational resilience and long-term performance. “Customers need systems that are resilient by design and simple to deploy and scale. With Metasys 16.0, Johnson Controls brings that together in a single platform.” - M. Faisal Pandit, President, Building Management Systems, Johnson Controls Decades in building automation When Metasys was first introduced in 1990, building systems were largely
Jul 1, 2026 · via johnsoncontrols.com
NORFOLK, VA, July 01, 2026 (GLOBE NEWSWIRE) -- For years, professionals seeking a doctorate in cybersecurity had few options beyond computer science or engineering. Old Dominion University is opening a new path. The University’s nationally recognized School of Cybersecurity has launched a new Ph.D. in cybersecurity designed to prepare the next generation of cyber leaders, researchers and educators as the world faces new and complex security challenges. The Ph.D. program will highlight the interdisciplinary nature of the rapidly evolving field of cybersecurity, with artificial intelligence and other emerging technologies. Students from a wide range of educational and professional backgrounds are encouraged to contribute diverse perspectives that advance cybersecurity research. “The coursework and research pathways are designed for people from different backgrounds,” said Daniel Takabi, Ph.D., professor, director of the School of Cybersecurity and Batten Endowed Chair of Cybersecurity. “Our Ph.D. program offers advanced technical specializations, alongside comprehensive pathways in strategic cybersecurity management, policy, legal and human factors in cybersecurity.” This unique program is among the first of its kind in the nation and the only Ph.D. in cybersecurity in Virginia. It also represents a new phase of growth for the school, which celebrated its 10th anniversary this year. Dr. Takabi touted the school’s expanding programs in cybersecurity and artificial intelligence, as well as research efforts to advance the University’s national reputation as a R1 research institution. The school is also growing its research faculty and partnering with federal and regional agencies to address real-world needs. Over the last decade, the School of Cybersecurity has grown from a handful of students to approximately 1,700 and has gained several national recognitions, including the National Security Agency (NSA) designations as Centers of Academic Excellence in Cyber Defense, Cyber Operations and Cyber Research. The NSA also granted the University official validation for its cyber
Jul 1, 2026 · via markets.businessinsider.com
In a tight job market, finding your niche and setting yourself apart from the competition is essential. As technology continues to evolve rapidly, businesses are in constant need of qualified technology professionals to assist them in advancing their own processes as well as defend their electronic systems from malware and cyberattacks. Cybersecurity was once a buzzword in tech, but now it is mainstream. The new latest buzzword and trending tech is artificial intelligence. As these tech breakthroughs continue to develop, students have to be able to combat cyber attacks, to combat AI threats and ultimately be ready to fill jobs that haven’t even been created yet. There are thousands of unfilled jobs throughout the country in IT and cybersecurity, and FSU is providing the necessary training to help individuals establish the knowledge and skills to fill them. The Center for Defense and Homeland Security (CDHS) was founded in 2010 with the mission to prepare the next generation of National Security, Cybersecurity, and Emergency Management workforce professionals through STEM education and training. CDHS’s Cybersecurity Academy provides hands-on accelerated training in Information Technology and Cybersecurity. This training is available to civilians and military-affiliated persons. Military can use VA Post/911 Education Benefits or Veterans Readiness for Employment (VRE) Benefits to help fund their participation in the course. CDHS offers two cybersecurity certification training programs within their academy: Certificate in Cyber Foundations This program is offered three times a year and does not have any prerequisites. Classes are held in the evenings Tuesday, Thursday, and Friday, from 6-10 p.m., and the entire course spans 33 classroom days. Students who complete this course and pass the final exam are certified in CompTIA A+, Network+ and Security+. The course has a 98% pass rate. Certificate in Cyber Security This program is offered two times a year
Jul 1, 2026 · via bizfayetteville.com
Researchers say a critical vulnerability in Oracle E-Business Suite is facing exploitation attempts by a threat actor.
The vulnerability, tracked as CVE-2026-46817, is a flaw in the Oracle Payments, and has a severity score of 9.8.
If successfully exploited, an unauthenticated attacker with network access via HTTP would be able to compromise the product.
Researchers at Defused observed a hacker exploiting the flaw on its Oracle E-Business honeypots, according to a post on X. The activity was observed on June 27 from a French IP address, but researchers said the threat actor was using a VPN.
There has been no prior known exploitation activity or any release of a proof of concept, researchers said.
About 950 exposed instances are considered potentially vulnerable, according to internet security researchers Shadowserver Foundation and Validin.
Oracle previously addressed the vulnerability as part of a larger series of security patch updates in May.
Jul 1, 2026 · via cybersecuritydive.com
Israeli company PlaxidityX, an automotive cybersecurity firm formerly known as Argus, will shut down, with approximately 80 employees in Israel and abroad will to be laid off.
Loading...
Around 80 employees of PlaxidityX, formerly Argus, in Israel and abroad will be gradually laid off. Its parent company said the decision came following 'market growth being slower than expected'
Israeli company PlaxidityX, an automotive cybersecurity firm formerly known as Argus, will shut down, with approximately 80 employees in Israel and abroad will to be laid off.
Jul 1, 2026 · via haaretz.com