The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing 108 unique packages and web browser extensions spanning npm, Packagist, Go, and Google Chrome as part of an ongoing activity referred to as PolinRider. "The campaign remains active, and new malicious packages are likely to continue appearing as threat actors compromise maintainer accounts, modify legitimate repositories, and publish infected package versions where they retain or obtain registry access," Socket security researcher Karlo Zanki said in an analysis published this week. The 162 malicious release artifacts span multiple release versions corresponding to 108 unique packages and extensions, including 19 npm libraries, 10 Composer packages, 61 Go modules, and one Google Chrome extension. Contagious Interview is the moniker assigned to a North Korea-aligned campaign that weaponizes job recruitment to target software developers and individuals working in the cryptocurrency sectors, using persuasive job interviews and assessments to trick them into executing malicious code. The activity is known to be active since at least 2023. Attackers masquerade as recruiters or collaborators on platforms like LinkedIn, GitHub, or freelance websites, often setting up elaborate front companies and AI-generated employee profiles to build trust and ultimately deliver malware. PolinRider was first flagged by the OpenSourceMalware team in March 2026, describing it as involving the threat actors implanting malicious obfuscated JavaScript payloads in hundreds of public GitHub repositories belonging to several unique owners to deliver a new variant of BeaverTail, a known JavaScript malware associated with Contagious Interview. As of April 11, 2026, the activity has compromised 1,951 public GitHub repositories associated with 1,047 unique owners, while also merging with another cluster called TaskJacker that drops malicious VS Code task files into GitHub users' existing repositories. The VS Code tasks include the "runOn: 'folderOpen'" option to trigger the execution of arbitrary code
Jul 4, 2026 · via thehackernews.com
Key Points - Every major artificial intelligence (AI) deployment creates new cybersecurity challenges. - SentinelOne has evolved from an endpoint security provider into a broader platform. - The cybersecurity company benefits from AI's development in two ways. Artificial intelligence is creating some of the biggest winners on Wall Street. Investors have poured into chipmakers, cloud providers, and memory players racing to capitalize on the AI boom. But another group of businesses is quietly benefiting from this trend: cybersecurity companies. After all, every new AI tool creates a new security challenge. As businesses rush to adopt AI, they must also protect their systems, data, and applications from new threats. That dynamic could create a significant opportunity for SentinelOne(NYSE: S), a cybersecurity company that sits at the intersection of two powerful trends: AI and security. Where to invest $1,000 right now? Our analyst team just revealed what they believe are the 10 best stocks to buy right now, when you join Stock Advisor. See the stocks » AI is creating a new cybersecurity race Technology shifts often create new security challenges. The rise of the internet gave birth to modern cybersecurity. The move to cloud computing created an entirely new market for cloud security. Now AI is doing the same thing. Businesses are embedding AI into customer service, software development, data analysis, and daily operations. Some companies are even deploying AI agents that can perform tasks with limited human involvement. These tools can improve productivity, but they also create new risks. Sensitive information can flow into AI systems. Hackers can target AI applications. Automated agents can gain access to critical systems and become attractive targets for cybercriminals. In other words, the more businesses rely on AI, the more important security becomes. That's where SentinelOne comes in. SentinelOne is more than an antivirus
Jul 4, 2026 · via theglobeandmail.com
Muscat – In a major international achievement for Oman, Shaima Juma Al Hashmi, a cybersecurity lecturer at the Muscat branch of the University of Technology and Applied Sciences (UTAS), has been named Cybersecurity Woman of the Year 2026 in the Fintech category, becoming the first Omani to receive one of the industry’s most prestigious global honours. Shaima received the award, organised by the International Cybersecurity Alliance, during a ceremony held in Feldkirch, Liechtenstein, under the patronage of the country’s Minister of Home Affairs, Economy and Sport. The award forms part of a global recognition programme organised by the International Cybersecurity Alliance and attended by leading cybersecurity experts and specialists from around the world. She emerged victorious after a rigorous international evaluation process conducted by an independent jury. Nominees were assessed on professional excellence, innovation, societal impact, contributions to advancing cybersecurity, academic and research achievements, and initiatives aimed at strengthening digital security and developing human capabilities. The recognition highlights the growing international presence of Omani professionals and the increasing contribution of Omani women in specialised technology sectors, particularly cybersecurity, which has become a strategic priority worldwide amid rising cyber threats and rapid digital transformation. With more than ten years of experience in cybersecurity, Shaima has made significant contributions to higher education, scientific research and community awareness. She has designed and delivered numerous training programmes and awareness initiatives to promote cybersecurity knowledge and prepare national talent capable of keeping pace with technological advancements. Speaking after receiving the award, Shaima said the honour reflects the importance of investing in human capabilities and strengthening international cooperation and innovation to build a safer and more sustainable digital environment. She said the world is increasingly exposed to complex cyber risks and emphasised that women’s participation is essential to addressing such challenges. She expressed pride in representing
Jul 4, 2026 · via muscatdaily.com
FOR YEARS, when a cybersecurity question reached the chief financial officer (CFO), the answer was simple: talk to the IT department. That answer is gone. Sunil Golecha, finance chief for Japan and Asia-Pacific at Palo Alto Networks, says nearly every CFO he now meets ranks cybersecurity among the top three issues they bring to the board. It is the shift Bernadette Nacario, the company’s country manager for the Philippines, raised at a recent media briefing. Cybersecurity used to be viewed as a technical cost, she said. Now it sits with the board and the C-suite because a breach affects revenue, customer trust, business continuity and enterprise value. That framing is no longer just a vendor’s pitch. On June 22, the cybersecurity agencies of Australia, Canada, New Zealand, the United Kingdom and the United States — the group often called the Five Eyes — issued a joint statement warning that frontier artificial intelligence (AI), the most advanced models of their kind, will reshape both attack and defense within months. Their language was blunt. Cyber risk “can no longer be treated as a purely technical issue,” they wrote. “This is a core business risk and leadership responsibility.” The wording closely echoes Nacario’s point, but this time it came from governments rather than a security company. There is already a clock on it. Philippa “Pip” Cogswell, managing partner for Unit 42 in Japan and Asia-Pacific, the threat intelligence arm of Palo Alto Networks, says the fastest intrusions now move from initial compromise to data exfiltration — the point at which stolen data leaves the network — in about 72 minutes. That is faster than most companies can respond, which is why cybersecurity can no longer remain below board level. So what changes when the CFO joins the conversation? Golecha says the questions come
Jul 4, 2026 · via manilatimes.net
ADVERTISEMENT
Though people shouldn't panic, cybersecurity expert Claudiu Popa said the school data breach was very serious.
Jul 4, 2026 · via ctvnews.ca
Why has the US Softened its Anthropic Mythos 5 Ban? After a dramatic ban on Anthropic’s AI for foreign use which sent shockwaves across the tech industry, the US government has partially eased restrictions on Anthropic's advanced Mythos 5 model following negotiations aimed at strengthening cybersecurity safeguards. Under the revised arrangement, a roster of approved companies and government partners will once again be able to access Mythos 5, while the broader restrictions on Anthropic's Fable 5 model remain, making the tech unavailable outside tightly controlled environments. The regulatory rollback follows weeks of discussions between the US Commerce Department and Anthropic after officials raised concerns over the vast cybersecurity implications of the company's latest AI systems. Digital ID: UK Finance Spearheads Campaign With Major Banks UK Finance is spearheading an initiative to reshape digital identity verification architecture. By bringing together Barclays, HSBC, Lloyds Banking Group, Nationwide Building Society, NatWest Group and Santander, the trade association is working to streamline authentication mechanisms for online identity verification. The initiative centres on a voluntary, bank-led digital verification service that would enable customers to securely share verified personal data directly from their banking applications. Aston Martin and Zscaler Race Ahead in Zero Trust Security Racing into the Formula One spectacle in a fancy Aston Martin is Zscaler, bringing iron-clad security to nail-biting excitement. Marking a significant step towards strengthening cybersecurity in one of the world's most technologically advanced sporting environments, Aston Martin Aramco Formula One Team has announced a new multi-year partnership with Zscaler. As the team's new Global Cybersecurity Partner, Zscaler will provide its AI-powered Zero Trust Exchange platform to help protect critical data, applications and operations both at the track and at Aston Martin's UK headquarters. Security Lessons from the Nidec Ransomware Attack Held at hostage point with a nasty ransomware attack is
Jul 4, 2026 · via cybermagazine.com
China’s cybersecurity standard on AI agent deployment the TC260’s Cybersecurity Standards Practice Guide – Security Guidelines for the Deployment and Use of AI Agents China’s National Information Security Standardization Technical Committee (TC260) has officially released the Cybersecurity Standards Practice Guide – Security Guidelines for the Deployment and Use of AI Agents. The document follows a clear lifecycle-based security framework. It requires AI agents to undergo security assessments before they are put into use, complete security hardening prior to deployment, operate under strict permission controls throughout their lifecycle, and ensure that all data is securely erased when they are decommissioned. Across every stage of this lifecycle, the guidelines repeatedly emphasize six practical security requirements: ensuring the integrity and trustworthiness of software and model sources; enforcing the principle of least privilege; minimizing network exposure; maintaining comprehensive audit logs of agent activities; implementing controls over high-risk operations; and applying enhanced safeguards to sensitive data and long-term memory. The guidance suggests that China no longer regards AI agents merely as lightweight application-layer components built on top of large language models. Instead, regulators increasingly view them as integrated systems that combine memory, tool use, autonomous decision-making, and operational privileges—systems that introduce an entirely new category of security risks requiring dedicated governance. Separately, the Cyberspace Administration of China, together with four other government agencies, has issued the Interim Measures for the Administration of Anthropomorphic AI Interaction Services, which will take effect on 15 July 2026. In early July, both Doubao and Tongyi Qianwen notified users that certain AI agent features would be discontinued during the same period. According to multiple media reports, these adjustments form part of a broader compliance campaign aimed at bringing anthropomorphic AI services and user-created AI agents into line with the new regulatory framework. Importantly, this should not be interpreted as China
Jul 4, 2026 · via geopolitechs.org
""Our community has resilience, intelligence, and drive. What has often been missing is a clear pathway into industries where those qualities are rewarded. The Mo School is that pathway, and cybersecurity is the vehicle that will help our community members build stable, meaningful careers." - Spokesperson"Ye Yint Myint Mo, a Burmese refugee and Cornell EMPA candidate, has founded The Mo School under Myanmar Center to provide career-oriented cybersecurity education tailored to the Burmese diaspora. The initiative seeks to transform how refugee and immigrant communities access high-demand technology careers. The story of The Mo School begins with a personal journey. Ye Yint Myint Mo arrived in the United States as a Burmese refugee and went on to build a career dedicated to serving immigrant communities through education, policy development, and direct support services. Now pursuing a Master of Public Administration through Cornell University's Executive MPA program with an expected completion in 2026, Mo has channeled that experience into founding The Mo School, a cybersecurity education initiative under the umbrella of Myanmar Center that is specifically designed for the Burmese diaspora. Mo's leadership extends across multiple organizations. As Executive Director of USIRD, a separate nonprofit focused on immigrant resettlement and legal navigation, Mo has spent years working directly with individuals and families navigating the challenges of building new lives in the United States. That frontline experience informed the creation of The Mo School, which was built not as an abstract academic exercise but as a practical response to a clear community need. Members of the Burmese diaspora frequently possess the aptitude and motivation to succeed in technology careers but face significant barriers including cost, language, lack of professional networks, and limited access to specialized training programs. The Mo School addresses these barriers head-on. The curriculum centers on cybersecurity, one of the fastest-growing
Jul 4, 2026 · via elpasoinc.com
""Our community has resilience, intelligence, and drive. What has often been missing is a clear pathway into industries where those qualities are rewarded. The Mo School is that pathway, and cybersecurity is the vehicle that will help our community members build stable, meaningful careers." - Spokesperson"Ye Yint Myint Mo, a Burmese refugee and Cornell EMPA candidate, has founded The Mo School under Myanmar Center to provide career-oriented cybersecurity education tailored to the Burmese diaspora. The initiative seeks to transform how refugee and immigrant communities access high-demand technology careers. The story of The Mo School begins with a personal journey. Ye Yint Myint Mo arrived in the United States as a Burmese refugee and went on to build a career dedicated to serving immigrant communities through education, policy development, and direct support services. Now pursuing a Master of Public Administration through Cornell University's Executive MPA program with an expected completion in 2026, Mo has channeled that experience into founding The Mo School, a cybersecurity education initiative under the umbrella of Myanmar Center that is specifically designed for the Burmese diaspora. Mo's leadership extends across multiple organizations. As Executive Director of USIRD, a separate nonprofit focused on immigrant resettlement and legal navigation, Mo has spent years working directly with individuals and families navigating the challenges of building new lives in the United States. That frontline experience informed the creation of The Mo School, which was built not as an abstract academic exercise but as a practical response to a clear community need. Members of the Burmese diaspora frequently possess the aptitude and motivation to succeed in technology careers but face significant barriers including cost, language, lack of professional networks, and limited access to specialized training programs. The Mo School addresses these barriers head-on. The curriculum centers on cybersecurity, one of the fastest-growing
Jul 4, 2026 · via ktbs.com
The risks associated with the use of artificial intelligence (AI), the continued concealment of security breaches and the growing importance of data sovereignty are among the biggest cybersecurity challenges facing organizations today. These are the findings of "Bitdefender Cybersecurity Assessment 2026", based on a survey of more than 1,200 IT and cybersecurity professionals working at companies with at least 500 employees across the United States, France, Germany, Italy, the United Kingdom and Singapore. The report identifies the key concerns, threats and challenges that, according to respondents, are shaping organizations' cybersecurity strategies. Below are some of its main findings highlighted by Bitdefender. Limited visibility into AI use The report reveals that nearly half of organizations lack full visibility into how employees use AI tools. While 51.8% of respondents say they have complete visibility into both authorized and unauthorized AI usage, 47.4% admit they have only partial or no visibility into Shadow AI tools or personal AI accounts used for work purposes. The study also highlights a perception gap between executives and technical professionals. While 57.8% of decision-makers believe their organizations have full control over AI usage, that figure drops to 45.9% among technical specialists. According to Bitdefender, this suggests that senior management may be underestimating their organizations' actual level of exposure. Internal AI systems and cloud infrastructure top security concerns Internal AI systems and large language models (LLMs) rank as cybersecurity professionals' top concern, cited by 45% of respondents. Cloud infrastructure and applications follow closely at 44%, while Identity and Access Management (IAM) systems rank third at 33.3%. However, the report identifies a contradiction between perceived and actual risk. Although AI is regarded as the primary concern, one in five respondents considers the leakage of sensitive information by employees into public LLMs to be a low or very low risk for
Jul 4, 2026 · via escudodigital.com
Operations too frequent.
Try again later
Page not found, please try again later.
Take me home
Jul 4, 2026 · via moomoo.com
About
Press
Copyright
Contact us
Creators
Advertise
Developers
Terms
Privacy
Policy & Safety
How YouTube works
Test new features
NFL Sunday Ticket
© 2026 Google LLC
Jul 4, 2026 · via youtube.com
CHENNAI: The Indian Institute of Technology-Madras (IIT-M) and IIT-Kanpur have jointly launched what is touted as the country’s first practice-oriented, four-year Bachelor of Cybersecurity (B Cyber) programme. Admissions to the inaugural batch will be conducted jointly this month, while students will pursue the programme at their institute of choice. The undergraduate programme has been introduced to address the country’s growing demand for skilled cybersecurity professionals amid rapid digital transformation across sectors such as governance, finance, healthcare, telecommunications, manufacturing and defence. There is an estimated shortage of 1.5 million cybersecurity professionals nationally, a release by IIT-M stated. Designed with an emphasis on hands-on learning, the course combines academic instructions with extensive laboratory training and real-world professional experience. A key feature is a two-year field deployment professional project, under which students will spend their final four semesters working on live cybersecurity projects under the mentorship of experts from strategic and critical organisations. The competency-based curriculum covers areas including security operations, vulnerability assessment and penetration testing, secure systems, malware analysis, firmware reverse engineering, hardware security, cloud security and critical infrastructure security. Students can also choose advanced electives such as digital forensics, embedded systems security, secure processor microarchitecture and applied cryptography. During the first two years, students will receive intensive laboratory-oriented training in computer systems, programming, Linux system administration, cryptography, operating systems, computer networks, ethical hacking and web security. Graduates will be equipped for careers in cyber defence, security operations centres, cloud security and critical infrastructure protection, among others, the release added.
Jul 4, 2026 · via newindianexpress.com
Explore the exciting world of Fortinet(NASDAQ: FTNT) with our contributing expert analysts in this Motley Fool Scoreboard episode. Check out the video below to gain valuable insights into market trends and potential investment opportunities! *Stock prices used were the prices of May 13, 2026. The video was published on Jul. 3, 2026. Should you buy stock in Fortinet right now? Before you buy stock in Fortinet, consider this: Where to invest $1,000 right now? Our analyst team just revealed what they believe are the 10 best stocks to buy right now, when you join Stock Advisor. See the stocks » The Motley Fool Stock Advisor analyst team just identified what they believe are the 10 best stocks for investors to buy now… and Fortinet wasn’t one of them. The 10 stocks that made the cut could produce monster returns in the coming years. Consider when Netflix made this list on December 17, 2004... if you invested $1,000 at the time of our recommendation, you’d have $418,761!* Or when Nvidia made this list on April 15, 2005... if you invested $1,000 at the time of our recommendation, you’d have $1,195,804!* Now, it’s worth noting Stock Advisor’s total average return is 918% — a market-crushing outperformance compared to 208% for the S&P 500. Don't miss the latest top 10 list, available with Stock Advisor, and join an investing community built by individual investors for individual investors. *Stock Advisor returns as of July 3, 2026. Anand Chokkavelu has no position in any of the stocks mentioned. Jason Hall has positions in Fortinet. Toby Bordelon has no position in any of the stocks mentioned. The Motley Fool has positions in and recommends Fortinet. The Motley Fool has a disclosure policy.
Jul 4, 2026 · via theglobeandmail.com
Explore the exciting world of Fortinet (FTNT 1.72%) with our contributing expert analysts in this Motley Fool Scoreboard episode. Check out the video below to gain valuable insights into market trends and potential investment opportunities!
*Stock prices used were the prices of May 13, 2026. The video was published on Jul. 3, 2026.
Stocks Mentioned
*Average returns of all recommendations since inception. Cost basis and return based on previous market day close.
Jul 3, 2026 · via fool.com
About
Press
Copyright
Contact us
Creators
Advertise
Developers
Terms
Privacy
Policy & Safety
How YouTube works
Test new features
NFL Sunday Ticket
© 2026 Google LLC
Jul 3, 2026 · via youtube.com
We sat down with Lars Stephan, EMEA director of marketing, policy and public affairs for system integrator Fluence, to discuss energy storage, data centres and cybersecurity at Intersolar last month. The interview took place at the Smarter E Europe trade show in Munich, Germany, last month, colloquially known as Intersolar, which is actually the solar PV portion of the expo. The battery and battery energy storage systems (BESS) industry meanwhile convened in the ees Europe section of the show, where Energy-Storage.news had a video interview booth: the full video interview and write-up of our discussion with Stephan is below. BESS technology development While Stephan focuses on market design, policy and regulation, we touched on battery energy storage system (BESS) technology developments too. Fluence unveiled a more energy-dense, 10MWh iteration of its Smartstack AC block solution at the event. Try Premium for just $1 - Full premium access for the first month at only $1 - Converts to an annual rate after 30 days unless cancelled - Cancel anytime during the trial period Premium Benefits - Expert industry analysis and interviews - Digital access to PV Tech Power journal - Exclusive event discounts Or get the full Premium subscription right away Or continue reading this article for free New hardware, particularly around grid-forming and sodium-ion solutions, were a key theme over the three days. Sodium-ion especially was talk of the town, following big industry news in the space. Stephan said new technologies are always exciting, but that analytics and software are also hugely significant and less talked about. “The cells are innovating, more energy density is driving cost declines and better performance, and that’s very exciting,” Stephan said. “And we can’t not talk about sodium-ion. We’re not quite there in terms of large-scale deployments in Europe or the US, but it’s
Jul 3, 2026 · via energy-storage.news
About
Press
Copyright
Contact us
Creators
Advertise
Developers
Terms
Privacy
Policy & Safety
How YouTube works
Test new features
NFL Sunday Ticket
© 2026 Google LLC
Jul 3, 2026 · via youtube.com
We help you solve the problems that matter most so you can act faster and move further. What would you like to explore?A new chapter in cybersecurity is unfolding. One where machines follow human-led commands but chart their own course. This shift is being driven by agentic AI: autonomous systems that can reason, plan and act independently to achieve complex goals. AI agents enable companies to rethink and reimagine the way they work. In the context of cyber defence, these agents are not only more efficient tools but they’re also emerging collaborators. Imagine intelligent systems that detect threats in real time, coordinate responses across networks, probe for vulnerabilities and adjust their tactics as conditions change. They don’t wait for instructions. They act. This is more than an upgrade in capability. It’s a shift in how cybersecurity is designed and led. And it raises big questions: This series from PwC’s Cyber & Risk Innovation Institute explores the new frontier of agentic AI in cybersecurity: the opportunities, threats and leadership needed to shape what comes next. Here’s a glimpse of what’s ahead: How attackers might wield agentic AI in future operations, from intelligent recon to dynamic payload delivery. Agentic AI isn’t just changing the tools we use; it’s rewriting the rules of engagement in cybersecurity. We’re stepping into a world where autonomous systems can defend, attack, adapt and evolve faster than humans ever could. For defenders, this is about more than keeping up. It’s about reimagining what’s possible. The organisations that thrive in this new era won’t just adopt AI. They’ll build strategies, cultures and digital teams that think and act alongside us as teammates. This series is your map to that future. The age of agents has already begun. Let’s lead it. PwC helps organisations build Responsible AI programmes that unlock
Jul 3, 2026 · via pwc.com
Security firm runZero has disclosed seven vulnerabilities in FatFs, a small filesystem library that lets a device read and write the FAT and exFAT formats used on USB drives and SD cards. The flaws matter because FatFs is nearly everywhere. It ships inside the firmware that runs security cameras, drones, industrial controllers, hardware crypto wallets, and other devices built on real-time operating systems. On the worst-affected systems, an attacker who gets a booby-trapped USB drive, SD card, or update file onto a device can corrupt its memory and run their own code. Many embedded devices lack the memory protections found on phones and desktops, which is why runZero says "any physical access leads to a jailbreak." A public kiosk, a camera with an SD slot, an ATM, or a voting machine with a USB port should not hand over full control after a moment of physical access, but here it can. All seven bugs work the same basic way. The device tries to read a storage volume or firmware image that has been deliberately malformed, and FatFs mishandles the bad data. runZero rated the set CVSS Medium to High, with no Criticals. The headline bug is CVE-2026-6682 (CVSS 7.6), an integer overflow in the code that mounts a FAT32 volume. Bad math can produce a false file size, which later code treats as a real read length. On real hardware, that can become memory corruption and code execution. Here are all seven, worst first by runZero's ranking: - CVE-2026-6682 (7.6, High): FAT32 mount integer overflow leading to memory corruption and possible code execution. Reachable through some firmware updates, not just physical media. - CVE-2026-6687 (7.6, High): an exFAT volume-label field overflows a small buffer, giving an attacker a clean memory-corruption foothold. - CVE-2026-6688 (7.6, High): long filenames overflow the wrapper
Jul 3, 2026 · via thehackernews.com