Niagara University opens new School of <b>Cybersecurity</b>
About Press Copyright Contact us Creators Advertise Developers Terms Privacy Policy & Safety How YouTube works Test new features NFL Sunday Ticket © 2026 Google LLC
About Press Copyright Contact us Creators Advertise Developers Terms Privacy Policy & Safety How YouTube works Test new features NFL Sunday Ticket © 2026 Google LLC
About Press Copyright Contact us Creators Advertise Developers Terms Privacy Policy & Safety How YouTube works Test new features NFL Sunday Ticket © 2026 Google LLC
- August 25, 2026 - Durham, N.C. The International Society of Automation (ISA) — the leading professional society for automation — and the Operational Technology Cybersecurity Coalition (OTCC) — a coalition working to improve operational technology (OT) cybersecurity through open, vendor-neutral collaboration — have announced their intention to collaborate to help strengthen OT cybersecurity across critical infrastructure. The two organizations have signed a Memorandum of Understanding (MOU) to work together on initiatives that raise awareness of OT cybersecurity risks and solutions, explore strategic issues of shared interest and facilitate technical engagement between members of each organization. The goal is to encourage better implementation and recognition of foundational cybersecurity standards like ISA/IEC 62443, the globally recognized consensus-based series of OT cybersecurity standards developed by ISA. “Protecting critical infrastructure requires sustained collaboration, practical guidance and a shared commitment to standards-based cybersecurity,” said Claire Fallon, CEO of ISA. “This partnership creates an important framework for ISA and OTCC to help advance key OT cybersecurity practices.” "ISA and OTCC come at OT cybersecurity from different angles — ISA through the standards that define good practice, OTCC through the companies putting them to work," said Tatyana Bolton, executive director of OTCC. "Bringing those perspectives together is how standards move from paper into practice, and we look forward to working with ISA to make that happen.” OTCC recently published a position paper advocating for a single, horizontal standard for OT cybersecurity rather than a patchwork of sector-specific mandates. The paper recommends that ISA/IEC 62443 be recognized as the global OT security standard. It names ISA/IEC 62443 as an established framework uniquely situated to harmonize around, as this standard has been specifically tailored to meet the requirements of OT. With one interoperable OT cybersecurity standard such as ISA/IEC 62443, the OTCC paper argues, the burden of adhering
About Press Copyright Contact us Creators Advertise Developers Terms Privacy Policy & Safety How YouTube works Test new features NFL Sunday Ticket © 2026 Google LLC
Office of the Premier August 25, 2026 FREDERICTON (GNB) – Investments and partnerships are intended to strengthen New Brunswick’s position as a strategic hub for Canada’s defence and cybersecurity sectors and lead to high-value economic opportunities. Premier Susan Holt joined representatives from the New Brunswick Innovation Foundation, Lastwall and industry partners today at the Cyber Centre in Fredericton to highlight Lastwall’s recently secured $16-million equity investment. “New Brunswick has the strategic advantages Canada needs as it strengthens its defence capabilities,” said Holt. “We are home to the military training ground at Canadian Forces Base Gagetown, we have access to two deepwater ports, growing expertise in cybersecurity and a strategic location on the Atlantic with connections to the Arctic. Lastwall’s growth is a strong example of how we can leverage these strategic advantages to attract investment, grow good-paying jobs and build world-class defence and cybersecurity capabilities right here in New Brunswick.” Lastwall, a cybersecurity company founded in Fredericton, secured a $16-million equity investment round led by the Business Development Bank of Canada’s StrongNorth Fund, with participation from the New Brunswick Innovation Foundation. The investment will support the company’s continued growth as it develops solutions for highly sensitive environments, including defence systems, government networks and critical infrastructure. The New Brunswick Innovation Foundation’s $1.5 million-investment represents its largest single investment and largest initial investment in a New Brunswick company. “Every startup that scales creates momentum for the next one,” said Jeff White, the foundation’s president and CEO. “Lastwall is building technology that solves critical challenges in defence and cybersecurity while attracting significant investment into New Brunswick. This is exactly the type of company we want to support. As founders build globally competitive businesses from here, they create jobs, attract capital and strengthen the province's long-term economic future.” Defence and cybersecurity have been identified
Artificial intelligence (AI) labs and cybersecurity firms are considering ways to give advanced AI models controlled access to the internet during testing, rather than trying to keep the models confined to a sandbox, Bloomberg reported Tuesday (Aug. 25). This consideration comes after OpenAI, Anthropic and Meta disclosed separate incidents in which models escaped a sandbox, accessed the internet and breached other companies’ real servers, according to the report. Giving advanced models controlled access to the internet would allow companies to get a better understanding of the models’ true capabilities, advocates of the change say. However, this move would also give the models access to systems that are outside the intended testing, per the report. We’d love to be your preferred source for news. Please add us to your preferred sources list so our news, data and interviews show up in your feed. Thanks! In one of the reported incidents in which models reached the internet during testing, OpenAI said July 21 that a combination of its models identified and chained vulnerabilities across OpenAI’s research environment and Hugging Face’s production database in search of a solution to the evaluation problem. OpenAI said at the time that the company considered the incident to be “an unprecedented cyber incident, involving state-of-the-art cyber capabilities.” It was reported July 31 that while examining this hacking incident, OpenAI unearthed other examples of its autonomous AI agents breaking containment. By Aug. 5, it was reported that Anthropic and Meta had experienced separate incidents in which AI models hacked another company during cybersecurity testing. According to the report, while the incident at OpenAI saw an AI agent independently exploit a previously unknown vulnerability to reach the internet during testing, the incidents at Anthropic and Meta resulted from unintentional misconfigurations by the company that conducted the cybersecurity evaluations. The
FREDERICTON — A New Brunswick-based cybersecurity firm says it has secured millions of investment dollars to grow its operations in Canada. Lastwall, founded in Fredericton over a decade ago, builds security software to protect computer networks and cloud services. An investment equity round led by the Business Development Bank of Canada’s StrongNorth fund raised $16 million for the company. The New Brunswick Innovation Foundation, an independent non-profit originally created by the New Brunswick government, invested $1.5 million in the company, its largest-ever spend. Lastwall counts the U.S. Department of Defence and the Canadian government among its clients. The company’s CEO Karl Holmqvist says the cash provides an opportunity for Lastwall to put its expertise to work locally to showcase to the rest of the world. Premier Susan Holt says the growth of Lastwall is an example of New Brunswick’s potential as an investment hub for strengthening Canada’s defence capabilities. Holt says it’s beneficial to have domestic cybersecurity companies so that Canada doesn’t have to rely on foreign businesses. This report by The Canadian Press was first published Aug. 25, 2026.
Investors Should Know: AI is reshaping cybersecurity. Autonomous AI agents, machine-to-machine traffic, and the demand for platforms that combine detection, response, and recovery are creating a new set of requirements that legacy point-solution tools were not built to address. Agentic AI in cybersecurity: The emerging threat landscape SA Spotlight uses AI to summarize content published on Seeking Alpha. All summaries are reviewed by human editors prior to publication.
QBS Software is expanding its European cybersecurity portfolio through a new distribution agreement with Nord Security, giving the distributorâs MSP and reseller partners access to NordLayer, NordPass and other business security products. European MSPs gain new route to market with Nord Security QBS Software will make Nord Securityâs business solution available to its network of reseller and managed service provider (MSP) partners across Europe. Nord Securityâs cybersecurity solutions include: - NordLayer, a toggle-ready network security platform, - NordPass, a password manager - NordLayer Browser, an enterprise-focused secure browser - NordStellar, a threat exposure intelligence platform The solutions will now combine with QBS Softwareâs pan-European reach, local market expertise, and channel-first approach. âAs cybercriminals weaponize AI to automate attacks, the threat landscape is evolving faster than ever,â said Aivaras ArtiÅ¡keviÄius, channel sales director for the EMEA and APAC regions at Nord Security. âAt Nord Security, our mission is to help organizations strengthen their security posture and resilience against modern cyber threats, and partnering with QBS Software allows us to expand our reach across Europe through an experienced distributor with strong local relationships and deep channel expertise. Together, we are enabling partners to deliver trusted security solutions that meet the evolving needs of modern organizations,â ArtiÅ¡keviÄius added. QBS builds out cybersecurity distribution strategy This move comes as QBS Software has made a point to expand its cybersecurity portfolio as customer demand grows. âCybersecurity remains one of the fastest-growing priorities for businesses across Europe. By welcoming Nord Security to our vendor ecosystem, we are giving our partners access to an innovative, globally recognized cybersecurity brand that perfectly complements our portfolio,â said Jordan Travers, the group head of security at QBS Software. âTogether, we will help resellers and MSPs accelerate growth while delivering greater security and value to their customers,â he adds. Futurex deal
Ghana and UK Deepen Cybersecurity Cooperation to Tackle Cybercrime and Protect Children The Cyber Security Authority (CSA) said discussions with the British High Commission focused on deepening UK–Ghana collaboration in cybersecurity, including tackling cyber-enabled crime and financial fraud, promoting child online protection, strengthening cyber capacity building and advancing international cyber governance. Ghana is strengthening its cybersecurity cooperation with the United Kingdom as part of efforts to build a safer and more resilient digital ecosystem. The Cyber Security Authority (CSA) said discussions with the British High Commission focused on deepening UK–Ghana collaboration in cybersecurity, including tackling cyber-enabled crime and financial fraud, promoting child online protection, strengthening cyber capacity building and advancing international cyber governance. A key area of focus was the Pall Mall Process, with the CSA highlighting the importance of expanding African participation and translating its principles into practical action that strengthens cybersecurity while protecting human rights. The engagement also explored opportunities to increase cybersecurity awareness among secondary school students and strengthen partnerships around child online safety. Both sides also discussed greater regional cooperation across Africa. The CSA said continued strategic partnerships, practical interventions and regional collaboration will be critical as Ghana seeks to maintain its position as a leading player in Africa’s cybersecurity landscape and contribute to a safer digital future.
Cybersecurity researchers have flagged a cyber espionage campaign targeting Myanmar that uses graduation ceremony invitation lures to deliver a Go backdoor called QUICAgent. The campaign, codenamed Operation QUICSILVER, has been found to target government and information technology sectors, per Seqrite Labs. The activity is assessed to be the work of a China-nexus threat actor with moderate confidence. It was first observed in April 2026, when the attack was observed delivering a file named "HolidayNotice.pdf.exe" along with a lure that was a fabricated Belgian–Myanmar public holiday calendar. Two subsequent artifacts, each detected in June and July 2026, make use of a Virtual Hard Disk (VHD) file that activates the infection chain. Present within the VHD file is a Windows Shortcut (LNK) that mimics a PDF document. Opening the document displays a decoy PDF to the victim, an official graduation ceremony invitation that's written in Burmese and purports to be from the Information Technology and Cyber Security Department (ITCSD), which operates under Myanmar's Ministry of Transport and Communications. The "announcement" serves as a distraction while the shortcut file stealthily launches "ftp.exe," a legitimate Microsoft-signed Windows binary, and abuses its "-s" option to run commands stored in a local script file. "While the decoy is presented on the victim's screen, the script searches for two document files, header.doc and body.doc, stored inside the hidden _rels directory," security researchers Priya Patel and Kartik Jivani said. "It then combines these two files using the native Windows copy /b command to reconstruct the next-stage payload." The payload is a Golang-based implant dubbed QUICAgent that performs sandbox evasion techniques before connecting to a command-and-control (C2) server. Specifically, it incorporates a random delay of 100-600 milliseconds and executes 1,000 iterations of SHA-256 hashing operations to exhaust automated sandbox execution time limits. The backend C2 server address is retrieved
An official website of the United States government Here’s how you know Official websites use .gov A .gov website belongs to an official government organization in the United States. Secure .gov websites use HTTPS A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.
CHT Security Receives Frost & Sullivan's 2026 Taiwan Company of the Year Recognition for Excellence in Cybersecurity Services This recognition highlights CHT Security's leadership in AI-enabled security operations, cyber resilience, and customer-centric cybersecurity services that support secure digital transformation. SAN ANTONIO, Texas, Aug. 24, 2026 /PRNewswire/ -- Frost & Sullivan is pleased to announce that CHT Security has received the 2026 Taiwan Company of the Year Recognition in the cybersecurity services industry for its outstanding achievements in innovation, strategy execution, and customer impact. The recognition highlights CHT Security's leadership in delivering AI-enabled security operations, managed security services, and cloud security capabilities that help organizations strengthen cyber resilience while accelerating digital transformation. Frost & Sullivan evaluates companies through a rigorous benchmarking process across two core dimensions: strategy effectiveness and strategy execution. CHT Security excelled in both, demonstrating its ability to anticipate evolving cybersecurity challenges, align its innovation strategy with emerging market requirements, and consistently execute at scale through integrated managed and professional security services. "CHT Security has demonstrated a strong ability to anticipate the cybersecurity implications of AI adoption and transform emerging technologies into practical services that help organizations strengthen cyber resilience," said Vivien Pua, Industry Principal at Frost & Sullivan. "Its continued investments in AI-enabled security operations, AI governance, cloud security, and proprietary research, combined with disciplined execution and a customer-first approach, position the company as a leader in Taiwan's cybersecurity services industry." Guided by a long-term growth strategy centered on AI innovation, cloud security, and digital transformation, CHT Security continues to strengthen its market position by addressing the evolving security needs of modern enterprises. Through sustained investments in AI-enabled security operations, proprietary technologies, and integrated cybersecurity services, the company has built a comprehensive portfolio spanning security operations, AI security assessments, offensive security services, cloud security, and governance capabilities that
Alabama’s attorney general announced Monday that it sent a subpoena to OpenAI as part of an investigation into the company’s alleged “complete lack of oversight and adequate safeguards” in the Hugging Face incident. The investigation comes weeks after OpenAI admitted that one of its unreleased and guardrail-free cybersecurity models had escaped an isolated environment, connected to the internet, and hacked AI dataset platform Hugging Face. As Reuters first reported, Hugging Face was only one of four victims of what was supposed to be “an internal evaluation” of a model with “maximal cyber capabilities,” as OpenAI put it. The press release announcing the subpoena sent by the state’s attorney general Steve Marshall said that the state was seeking to understand if OpenAI’s “inability or unwillingness to ensure the safety of its products” violated the state’s consumer protection laws. When reached by TechCrunch for comment, OpenAI spokesperson Nate Evans provided the statement: “The Hugging Face incident marked an important moment for AI safety and we are conducting a thorough review along with external advisors. Once the review is complete, we will share a technical report with relevant government authorities and publish our findings publicly.” Earlier this month, Marshall, along with the attorneys general of 14 other states, including Florida, Missouri, Pennsylvania, and Texas, sent a letter to OpenAI’s CEO Sam Altman, requesting that he and his company preserve all records related to the Hugging Face incident. The letter also asked OpenAI to “immediately cease and desist” from any internal cybersecurity evaluations. In the wake of the Hugging Face incident, and several other incidents disclosed by Anthropic, the U.K.’s AI Security Institute, Meta, and workers at AI companies — including executives and technical leaders — signed an open letter called “Pacing the Frontier,” which called for developing AI capabilities slowly and more responsibly.
The Vulnerability Gap: Why Discovery Is Outrunning Repair AI is discovering more vulnerabilities, faster, and under a tightening regulatory environment, making this an all-hands-on-deck moment for the cybersecurity community. COMMENTARY For decades, finding a serious vulnerability in widely used open source software was specialized work. It took a skilled researcher weeks, sometimes months, to trace a flaw and responsibly bring it to a maintainer. That timeline has effectively collapsed. Advanced AI models can now produce vulnerability reports in hours, demolishing what a seasoned professional would have taken weeks to develop. That's not hypothetical: it's what the open source security community has watched happen since the fall of last year, as tools built on frontier models and strong open-weight models alike started turning out findings that are, frankly, good. The trouble is that discovery was never the bottleneck. Fixing was. Patching, disclosure coordination, the upstream maintainer who has to understand a report, validate it, and ship a release — none of that has sped up at anywhere near the same rate. Some projects are using AI to combat the problem, like Valkey's provenance guard or AIxCC winner Trail of Bits' Buttercup finding vulns at DEF CON 2025. Discovery in Hours, Remediation in Weeks However, the structural mismatch remains: discovery measured in hours, remediation still measured in weeks and months. IBM's Cost of a Data Breach Report 2026 puts a number on that gap. One in four malicious breaches last year were AI-enabled, up 56% over the prior year, and those breaches cost companies $6 million on average, roughly a million more than the overall breach average. The same research found only 18% of organizations are applying AI agents to vulnerability management, even as more than half already use agents for threat detection. Models are finding problems at maximum velocity while the
Gov. Gavin Newsom on Friday announced Marshall’s appointment as CISO, which will see Marshall housed within the California Department of Technology (CDT). Marshall's career as a public-sector cybersecurity professional began in 2008 with an information security architect position at the California Public Employees’ Retirement System, according to his LinkedIn. Marshall most recently served as acting information officer at the California Environmental Protection Agency, a position he held dating back to 2022, the governor’s office said. He previously served as the agency’s information security officer from 2017 to 2022. During his time at that agency, he worked with CDT on projects such as Cal-Secure, Marshall told Industry Insider – California* in 2021. Marshall takes over the CISO position as California begins implementing Cal-Secure 2.0, the state’s new cybersecurity road map, first announced on July 31. The road map succeeds the original Cal-Secure strategy issued in 2021 and is intended to help agencies address emerging risks while operating under a common statewide framework aligned with national cybersecurity standards. The strategy centers on three pillars: developing and retaining the state’s cybersecurity workforce; improving coordination and information sharing across government; and modernizing security technology. It also gives individual agencies flexibility to concentrate on the risks most relevant to their operations. Marshall’s experience at the California Environmental Protection Agency touches at least two of those priorities. In addition to leading information security at the agency, he participated in the Information Security Leadership Academy, an 11-week CDT program intended to prepare public-sector technology professionals for information security leadership positions. The curriculum combines state security and compliance requirements with technical training, incident-response exercises and management skills. Marshall succeeds Vitaliy Panych, who stepped down in late July after seven years of serving as state CISO. Panych helped develop Cal-Secure 2.0 and said when it was released that the
The water system in Rapid City, which is part of Pennington County, was among the first of dozens of utilities targeted in a nationwide wave of cyberattacks this summer. The attackers did not access its network in Rapid City, city officials said. Mitchell, meanwhile, is recovering from its own breach, which left city staff without computer access. The three incidents — all hitting South Dakota local governments within weeks of each other — underscore a vulnerability that state officials have spent years and millions of dollars trying to address. Local governments hold sensitive taxpayer data, but often lack the staff, budget or expertise to protect it from cyberattacks. A 2025 report by the Multi-State Information Sharing and Analysis Center found that 68% of state, local, tribal and territorial governments lack the budget to address major cybersecurity priorities, and that small and rural communities are especially vulnerable. A state-funded program in South Dakota is working to close that gap — but time and money are running short. State Funding in Place of Declined Federal Funding SecureSD is a $7 million program run by the South Dakota Attorney General’s Office and Dakota State University that delivers cybersecurity tools, training and technical support to local governments. Lawmakers launched the program with funds in 2024 in response to Gov. Kristi Noem rejecting a piece of $1 billion in cybersecurity grants to states. Noem spokesman Ian Fury told South Dakota Searchlight at the time that the grants were “wasteful spending,” adding the administrative burden of the grant “would have far exceeded the allowable administrative cost.” That 2022 four-year federal grant program, part of the 2021 Infrastructure Investment and Jobs Act, faces an uncertain future. Congress extended the program through next month, but did not provide new funding. Efforts to reauthorize the program haven’t cleared both
Cyber criminals are finding new ways to access your personal data - whether it be stealing your identity or hacking your accounts - but cybersecurity expert Jasmine Wong is offering 10 crucial tips to stay protected online. "If people can see your entry points, what type of lock do you have, do you keep your windows open...sometimes that information might be there, and you might not even realize it," says Wong. Wong says it's relatively easy to do. "Google came out with this feature about last year...The main way to go is to go into your Google account, and there should be an option where you can opt into that," says Wong. Wong says this can stop thieves from locking you out of your Apple ID. "You would go to Have I Been Pwned...and you can actually search your email and your passwords to see if they're floating around on the dark web as part of previous data breaches," says Wong. Wong says you can do this by turning off data sharing in your settings, especially for sensitive information. Wong says this can stop identity thieves from opening new accounts. "This allows you to see transactions that happen in real time so you can better catch if someone is using your credit card or your debit card," says Wong. "The browser extensions can monitor what you’re doing on the browser and steal your data, maybe your passwords that you’re putting in," says Wong.
As I glanced around a room of 25 C-suite leaders ahead of delivering a briefing on antisemitism, I thought, “What am I doing here?!” In my head, I was still the cybersecurity professional, the IT guy. I had no business speaking about Jewish lived experience in the workplace. And yet, in that moment, I realized I was standing in a gap that needed to be filled. Looking back over the past three years, the story sounds almost like a movie: A successful cybersecurity professional leaves his career in search of greater meaning, building a global Jewish workplace community. In fact, if you’d told me as I lay in bed on Oct. 7, 2023, awoken by the sound of distant interceptions by the Iron Dome missile-defense system, that I’d be writing about my career pivot, I imagine I would have laughed so hard that I’d be admitted for hysteria. Yet here I am. No longer solving tech problems but helping Jews around the world navigate something far more personal: how to show up at work as proud Jews. My story, however, begins before Oct. 7. In 2019, with a colleague in London, I started what was essentially a small Jewish social group at Amazon. We met for drinks once or twice before COVID-19 paused everything. We stayed in touch, even hosting a virtual gathering during lockdown. Then came the murder of George Floyd in Minneapolis in May 2020 and mandatory 2.5-hour diversity training. Jews weren’t mentioned once. That omission was a turning point. I realized that if we were not included, we had to organize ourselves. I set out to build a formal Employee Resource Group (ERG). The resistance was immediate. I was told that Jews were just a religion, too small a minority, not an ethnicity. Even jokingly pointing to
On August 19, 2026, the Federal Trade Commission announced that it is seeking public comment on a proposed enforcement policy statement regarding personalized pricing—the practice of using personal data to set prices based on what a company believes an individual consumer is willing to pay. The proposed policy statement outlines the FTC’s legal concerns with the practice and signals the agency’s intent to pursue enforcement actions against businesses that fail to make adequate disclosures to consumers. Background The proposed policy statement arrives amid a rapidly evolving regulatory landscape in which multiple states have enacted or introduced legislation targeting surveillance pricing. Maryland became the first state to enact a law directly prohibiting certain personalized pricing practices in the grocery sector, and New Jersey recently followed. Connecticut has amended its data privacy law to impose both disclosure requirements and substantive bans on surveillance pricing by retailers and third-party delivery services. New York also recently passed a bill prohibiting surveillance pricing. California’s Office of the Attorney General has launched an investigative sweep targeting businesses that use personal data for algorithmic pricing in potential violation of the California Consumer Privacy Act. Additional states, including Colorado and Illinois, also recently have considered legislation that would impose similar restrictions. The FTC’s proposed policy statement represents the federal government’s most direct articulation to date of how existing consumer protection law applies to personalized pricing. Key Provisions of the Proposed Policy Statement The proposed policy statement emphasizes that consumers generally expect the prices they see to be the same prices offered to other consumers for the same product or service. According to the FTC, retailers who represent or imply that a price is static when it in fact varies by individual consumer are at risk of engaging in deceptive practices in violation of Section 5 of the FTC