Expert seeks unified cybersecurity standards to protect critical infrastructure Olorunfemi Agoye, a technology strategist and cybersecurity consultant, has restated the need for a unified cybersecurity approach to protect Nigeria’s critical infrastructure. Mr Olorunfemi said this on Monday in an interview, emphasising the cyberattacks on recent government agencies and financial institutions, which he described as deep structural weaknesses. He said cybersecurity was a national security imperative, stating that a digital economy without it is “like a city without law and order”, making it highly vulnerable. “Exposures involving the Corporate Affairs Commission, Sterling Bank, Remita, and Lagos State University have revealed a pattern that cuts across critical layers of Nigeria’s digital ecosystem. “What they collectively expose is not just vulnerability at the institutional level, but fragility at the architectural level. Digital systems across the public and private sectors often operate in silos. This fragmentation creates multiple points of weakness, entry points that sophisticated threat actors can exploit,” he said. He said the infrastructure supporting Nigeria’s accelerated digital transformation has not evolved, which could result in rapid growth of the digital landscape, and that this growth is marked by imbalance and systemic risks. He noted that while frameworks such as the National Cybersecurity Policy and Strategy 2021 provided a foundation, there was a need for more consistent implementation, enforcement and continuous validation. “All critical systems, public and private, must meet clearly defined baseline security requirements, supported by regular audits, real-time monitoring and mandatory compliance mechanisms. However, standards on their own are not enough; what matters is how effectively they are implemented,” he said. Mr Olorunfemi, who also works at the intersection of digital trust for the National Information Infrastructure Protection, also called for cross-sector coordination of digital security. He stressed that cybersecurity must be managed as a shared national responsibility, not an institutional
Apr 27, 2026 · via gazettengr.com
Checkmarx has disclosed that its ongoing investigation tied to the supply chain security incident has revealed that a cybercriminal group published data related to the company on the dark web. "Based on current evidence, we believe this data originated from Checkmarx's GitHub repository, and that access to that repository was facilitated through the initial supply chain attack of March 23, 2026," the Israeli security company said. It also emphasized that the GitHub repository is maintained separately from its customer production environment, adding that no customer data is stored in the repository. Checkmarx said its forensic probe into the incident is ongoing and that it's actively working to verify the nature and scope of the posted data. Furthermore, the company said it has locked down access to the affected GitHub repository as part of its incident response efforts. "If we determine that customer information was involved in this incident, we will notify customers and all relevant parties immediately," it said. The development comes after the Dark Web Informer shared in an X post that the LAPSUS$ cybercrime group claimed three victims on its data leak site, one of which includes Checkmarx. The data, per the listing, contains source code, employee database, API keys, and MongoDB/MySQL credentials. Checkmarx suffered a breach late last month following the Trivy supply chain attack, as a result of which two of its GitHub Actions workflows and two plugins distributed via the Open VSX marketplace were tampered with to push a credential stealer capable of harvesting a wide range of developer secrets. The threat actor known as TeamPCP claimed responsibility for the attack. Last week, the financially motivated group is suspected to have compromised Checkmarx's KICS Docker image, along with the two VS Code extensions and a GitHub Actions workflow with a similar credential-stealing malware. This, in
Apr 27, 2026 · via thehackernews.com
Integrated Owner-Hosted Community Network Architecture and AI-Driven Cybersecurity Deliver Secure Core-to-Edge Infrastructure for Municipalities and Enterprises NEWPORT BEACH, CA, UNITED STATES, February 25, 2026 /EINPresswire.com/ — Tradewinds Networks, Inc., a next-generation technology developer and systems integrator delivering secure, AI-enabled network and cybersecurity ecosystems, and battery energy storage systems, today formally introduced its smart city integrated infrastructure platform following nearly a year of operational development, ecosystem alignment, and architectural validation. Since beginning operations in early 2024, Tradewinds Networks has focused on building and refining its Owner-Hosted Community Network (OHCN) architecture, formalizing strategic technology relationships with Dell Technologies, Intel, Ecrio, AA Strategies, and Aviz Networks, and advancing deployment-ready frameworks for secure edge AI applications and private PLTE/5G environments. The company now formally introduces its platform to support multi-tenant facilities, municipalities, aviation hubs, manufacturing environments, utilities, and defense-adjacent operations seeking resilient, community-aligned digital infrastructure. “Over the past year, our priority has been disciplined execution – architecting, validating, and integrating the components required to deliver secure, sovereign infrastructure from the core to the edge,” explained Keith Alexis, President and CTO of Tradewinds Networks. “With our ecosystem aligned and our platform operationally refined, we are formally introducing Tradewinds Networks to scale this model nationally and globally.” Year-One Milestones and Validation During its first year of operations, Tradewinds Networks: • Developed and operationalized its Owner-Hosted Community Network (OHCN) governance and infrastructure framework; • Integrated GuardTower™, its AI-driven proactive cybersecurity platform, into core-to-edge network infrastructure; • Established strategic technology alignment with Dell Technologies, Intel, Aviz Networks, and Ecrio; • Engaged community resources to ensure alignment with the United Nations SDG features, future IoT capabilities, and Digital Navigator training; • Built deployment-ready designs for private LTE/5G and edge AI environments with AA Strategies and Silent Partners Communications; • Advanced infrastructure planning across municipal and enterprise use cases. This
Apr 27, 2026 · via blufftontoday.com
Cybersecurity incident at contractor building JRL stations and NEWater factory Sign up now: Get ST's newsletters delivered to your inbox SINGAPORE – A cybersecurity incident has been reported at the contractor responsible for building three Jurong Region Line (JRL) MRT stations and the new Changi NEWater Factory 3. Data relating to the two projects was compromised at Shanghai Tunnel Engineering Co (Singapore), a civil engineering and construction company, although it is unclear when this had taken place. In response to queries on April 27, the Land Transport Authority (LTA) said it is aware of the incident, which has since been reported to the police and the relevant authorities. The authority added that the incident has not impacted the ongoing construction of the MRT line, and that it has temporarily suspended the construction company’s access to LTA’s digital systems as a precaution. Meanwhile, national water agency PUB said Shanghai Tunnel Engineering Co (Singapore) has no access to its digital systems. Its investigation showed that no sensitive data pertaining to the Changi NEWater Factory 3 had been stolen, with the compromised data consisting of project tender documents. These documents are publicly available on the government procurement portal GeBIZ, said a PUB spokesman, who stressed that the agency takes a “serious view” of cybersecurity and has reminded the contractor to review its measures. Checks by The Straits Times, including on ransomware portals and hacker forums where stolen data is typically leaked, yielded no results. Shanghai Tunnel Engineering Co (Singapore) told ST on April 28 that it recently identified a cybersecurity incident and took immediate steps to contain the situation. It did not state when the incident happened. The company added that it is working with an external cybersecurity specialist to support its investigation. “We are cooperating fully with the relevant authorities and kindly
Apr 27, 2026 · via straitstimes.com
‘Not just an IT issue’: the human threat to cybersecurity Organisations could be better protected from cybercrime by investing in more leadership and staff decision-making, a University of Queensland study has found. Dr Ivano Bongiovanni (pictured below) from the UQ Cyber Research Centre sat down with UQ News to discuss key findings from new research showing technology alone can’t improve cybersecurity. In our Q&A, Dr Bongiovanni shares why business leaders must ensure cybersecurity becomes a shared responsibility to better protect their organisations and the customer data entrusted to them. Why do organisations with seemingly strong cybersecurity still experience data breaches? Cybersecurity is not just a technology problem – it’s a technology, people and process problem. Investing in technical controls is essential, but it’s only one part of the picture. Organisations also need to invest in staff capability and effective internal processes. A common saying in cybersecurity is that defenders need to be right all the time, while attackers only need to be right once. That imbalance makes breaches difficult to prevent entirely. What role do human factors play in cybersecurity failures? Human factors are under-recognised when it comes to shaping effective cybersecurity policies, but they are one of the most complex challenges because every person in an organisation has a different level of awareness and understanding of what safe behaviour looks like. Our research involved interviewing people across different organisational roles – from operational security employees to senior executives and board members – and we found cybersecurity decisions are influenced by a wide range of factors, from industry regulations to individual attitudes and behaviours. Even in small organisations, staff turnover, lack of training and inconsistent awareness can create vulnerabilities. In larger organisations, the scale of the workforce multiplies the challenge. How has new technology like AI changed the risk landscape?
Apr 27, 2026 · via news.uq.edu.au
New AI-native cybersecurity model bridges static governance frameworks and the speed of AI-driven attacks for organizations of any size. OAKBROOK TERRACE, IL, UNITED STATES, April 27, 2026 /EINPresswire.com/ -- In Balance IT Solutions, a trusted provider of managed IT and cybersecurity services, today announced the launch of Adaptive Defense, a cybersecurity model that transforms how organizations detect and neutralize AI-driven threats. Adaptive Defense is purpose-built to help organizations and their security teams bridge the growing gap between established governance frameworks and the emerging operational reality of AI-driven attacks, automated reconnaissance, and dynamic threat environments. “Governance frameworks like NIST and COBIT remain essential foundations for compliance,” said David Malcom, cybersecurity practice leader at In Balance IT. “But they were never designed to defend against autonomous AI-driven adversaries operating at machine speed. Adaptive Defense evolves those frameworks into living, AI-enabled security systems that detect, learn, and respond in real time.” By mapping traditional controls to continuous telemetry, Adaptive Defense transforms static compliance checklists into dynamic, self-learning security systems. “C-suites are being rightly told that threat vectors are multiplying, necessary dwell times are shrinking, and they need to be agentic,” said Tim Currie, chief strategy officer for In Balance IT. “But they still have to comply with the established frameworks for governance. We want to connect the dots for our customers between studying for the test and actually being cyber-secure in an agentic world.” The model centers on three core pillars: • Adaptive Defense built on five core competencies of Identity-First Security and Resilience, Adaptive Threat Detection and Autonomous Response, Data Protection and Loss Prevention (DLP), Cloud and Multi-cloud Security (CNAPP), and Internal AI/Agentic Controls. • The Adaptive Defense Human-AI Operating Model for SOC transformation, upskilling and AI/Agentic Adoption. • Continuous Compliance that maps the real-world agentic SOC operations to the traditional control
Apr 27, 2026 · via norfolkdailynews.com
UNC6692 abused Microsoft Teams interactions to deliver the Snow malware toolkit Attackers tracked as UNC6692 used email bombing followed by Microsoft Teams helpdesk impersonation to pressure targets into installing a fake patch. The payload chain delivered SnowBelt, a malicious browser extension, alongside SnowGlaze, a tunneler, and SnowBasin, a Python backdoor used for command execution and covert communications. The intrusion chain relied on scheduled tasks, startup-folder persistence, a headless Microsoft Edge instance, and WebSocket tunneling to hide activity and maintain access. Threat reporting said the operators used this approach to pursue credential theft, deep network compromise, and domain takeover, which makes the campaign more than a simple phishing incident. The broader implication is that Teams and remote support workflows have become primary attack surfaces, especially when employees are used to interacting with IT staff through chat and remote assistance. Because the operators leaned on legitimate tools and administrative protocols, post-compromise activity can blend into normal support activity and delay detection. Bitwarden confirmed a short-lived supply chain compromise affecting its CLI npm package A malicious @bitwarden/cli version 2026.4.0 was briefly distributed through npm on April 22, 2026, after attackers compromised the package’s delivery path. Bitwarden said the incident affected only the npm distribution mechanism for the CLI during a limited window and that it found no evidence of impact to vault data, production data or production systems. Reporting said the malicious package added a custom loader and credential-stealing logic capable of harvesting secrets from developer environments and potentially spreading into other projects. The incident was linked to a broader developer-tooling supply-chain campaign, which increases the risk because poisoned builds can move from one workstation into CI/CD systems and downstream releases. This matters operationally because password managers, CLIs, and package managers sit close to secrets, automation pipelines, and deployment workflows. A short-lived compromise
Apr 27, 2026 · via acronis.com
The US cybersecurity agency CISA has once again issued a warning about security vulnerabilities in digital signage infrastructures. Among the affected systems is Samsung Magicinfo, a widely used digital signage platform. What makes this case particularly concerning: the exploited vulnerabilities are not new. Samsung already released patches back in August 2024. Cybersecurity: US Agency Warns of Digital Signage Vulnerabilities Security warnings related to enterprise software are currently increasing across industries. In this case, CISA points to an older vulnerability in the Samsung Magicinfo Server that still exists in the field. Despite the availability of patches for nearly two years, numerous on‑premise Magicinfo servers remain unpatched, prompting renewed concern from US authorities. On-Premise Security Depends on Patch Discipline This situation highlights one of the core weaknesses of on‑premise digital signage solutions. In theory, self‑hosted systems can be just as secure as cloud-based platforms. In practice, however, security often fails due to insufficient or inconsistent patch management. Software vendors have no visibility into or control over on‑premise installations. Responsibility for updates lies solely with integrators and network operators. If patches are delayed or ignored, known vulnerabilities remain wide open – sometimes for months or even years. The paradox: when a security incident occurs, the ISV (Independent Software Vendor) is usually named first, even though it has no operational control over the server environment. This is one of the key reasons why more ISVs are shifting toward managed cloud models. With managed services, the vendor ensures that systems are continuously updated and secured. A major additional benefit: a single, consistent software version across all customers. Instead of supporting a mix of outdated releases, ISVs can focus on security, stability, and innovation – while significantly reducing attack surfaces. The Magicinfo case is a reminder that cybersecurity is less about technology – and more about
Apr 27, 2026 · via invidis.com
Tiny termites can bring down entire structures. They don't attack from the outside. They burrow into microscopic gaps, quietly weakening the foundation until collapse becomes inevitable. That is exactly how modern supply chain cyberattacks work. Attackers rarely go after large corporations head-on. Those systems are heavily fortified. Instead, they target smaller partners — vendors, software dependencies, managed service providers — where defenses are weaker. These entry points become stepping stones into the broader ecosystem. Recent reporting on data breaches shows how silent these attacks have become. Most companies do not detect intrusions until their data appears on the dark web. On the surface, systems appear intact. Underneath, they are already compromised. According to Anastasia Tikhonova, head of APT research at Group-IB, attackers increasingly exploit trusted channels rather than direct vulnerabilities. AI tools are accelerating this shift, enabling faster detection of even minor weaknesses in open-source software. The result is a sharp rise in supply chain attacks. South Korea, with its globally competitive manufacturing and financial sectors, has become a particularly attractive target in the Asia-Pacific region, ranking fifth in the region for attack frequency. The problem is not awareness. It is economics. For small and mid-sized companies, security is still viewed as a cost center. Building multi-layered defenses is expensive. Maintaining them is even harder. Continuous monitoring requires skilled personnel that many firms simply cannot afford. Government support exists, but it is narrowly structured. Voucher programs help companies adopt security solutions, but only at the point of installation. They do not cover what matters most: updates, maintenance and long-term operation. Software without updates quickly becomes obsolete. In practice, it can turn into a vulnerability itself. Industry officials describe a familiar pattern. Companies deploy security tools when subsidies are available. Once support ends, maintenance contracts lapse. Systems remain in place but
Apr 27, 2026 · via thelec.net
25 open-source cybersecurity tools that don’t care about your budget Regardless of the operating system you use, managing secrets, apps, cloud, compliance, and security operations can be overwhelming. The free, open-source tools presented in this article can help you detect threats, increase visibility, enforce controls, and investigate and respond to incidents throughout the development and operational lifecycle. Allama: Open-source AI security automation Allama is an open-source security automation platform that lets teams build visual workflows for threat detection and response. It includes integrations with 80+ types of tools and services typical in security operations, including SIEM systems, endpoint detection and response products, identity providers, and ticketing systems. Anubis: Open-source web AI firewall to protect from scraper bots Anubis is an open-source tool designed to protect websites from automated scraping and abusive traffic by adding computational friction before a request is served. Maintained by TecharoHQ, the project targets a growing problem for site operators who want to keep content accessible to humans while limiting large scale automated collection. Asqav: Open-source SDK for AI agent governance AI agents are executing consequential tasks autonomously, often across multiple systems and with little record of what they did or why. Asqav, a Python SDK released under the MIT license, addresses that gap by attaching a cryptographic signature to each agent action and linking entries into a hash chain. Bandit: Open-source tool designed to find security issues in Python code Bandit is an open-source tool that scans Python source code for security issues that show up in everyday development. Many security teams and developers use it as a quick way to spot risky coding patterns early in the lifecycle, especially in projects that already rely on automated linting and testing. Betterleaks: Open-source secrets scanner Secrets scanning has become standard practice across engineering organizations, and Gitleaks has
Apr 27, 2026 · via helpnetsecurity.com
The National Computer Emergency Response Team (NCERT) has introduced a structured set of criteria for registering cybersecurity professionals who will provide consultancy and audit readiness services under the Pakistan Information Security Framework (PISF). The move is aimed at strengthening the cybersecurity posture of organizations across Pakistan by ensuring compliance with security standards and improving preparedness for audits and assessments. Under the new framework, registered consultants will operate across three major domains: IT security, Operational Technology (OT) security, and cloud security. Their responsibilities will include conducting gap assessments, preparing implementation roadmaps, and assisting organizations during security audits. Consultants will be categorized into four tiers: Expert, Senior, Junior, and domain-specific specialists in IT, OT, and cloud security. Organizations have also been classified into different risk categories. High-risk entities, designated as CAT-I and CAT-II, will be required to engage Expert Consultants due to the complexity and sensitivity of their systems. These experts will lead security assessments and guide organizations through compliance and audit requirements. For lower-risk categories, including CAT-III and CAT-IV, the requirements are more flexible. Senior or Expert Consultants may be assigned depending on the organization’s complexity, while Junior Consultants may assist with tasks such as vulnerability assessments and penetration testing under supervision. Expert Consultants are required to have at least 12 years of experience in IT and information security, including a minimum of 6 years in cybersecurity and at least 3 years in areas such as risk assessments and compliance audits. They must also hold advanced certifications, including CISSP and CISM, along with domain-specific credentials such as ISO 27001 for IT, ISO/IEC 27017 for cloud security, and ISA/IEC 62443 for OT systems. Senior Consultants must meet similar standards but with comparatively lower experience requirements and fewer audit-related engagements. Junior Consultants must have at least three years of cybersecurity experience and hold
Apr 27, 2026 · via propakistani.pk
Improving State and Local Government Cybersecurity State and local governments face rising cybersecurity risks that strain budgets, disrupt services, and erode public trust. Governments need targeted investments in modern infrastructure, continuous monitoring, and stronger third-party risk management to protect critical services. KEY TAKEAWAYS Key Takeaways Contents State and Local Governments Face Increased Cybersecurity Risk. 4 State and Local Government Cybersecurity is Fragmented, Underfunded, and Unprepared. 9 Introduction Cyberattacks in the United States have surged in frequency and impact since the start of this decade, with the country facing several hundred on any given day.[1] The proliferation of digital systems and interconnected infrastructure has widened the attack surface, while adversaries have become more organized and technologically advanced, increasing the sophistication of their methods. These trends amplify both the scale and severity of incidents, making recovery costlier and disruptions more prolonged. These attacks strike federal, state, and local governments nationwide regardless of size or location, putting personal data, critical infrastructure, essential government services, and business operations at risk. State and local governments now stand on the front lines of a rapidly changing cyberspace, facing a range of cyberthreats, from opportunistic attackers exploiting basic security weaknesses to organized groups using advanced techniques. Underfunded IT departments, aging critical infrastructure sectors, and a chronic shortage of cybersecurity professionals leave many state and local governments exposed. At the same time, cybercriminals, organized groups, and nation-state adversaries such as Russia, China, and Iran are deploying increasingly sophisticated tools to exploit these weaknesses. Recent incidents demonstrate the scope of these threats, including the 2023 ransomware attack on Dallas, Texas, which disrupted police, fire, and court systems and exposed 30,000 residents’ data; the attack on Oakland, California, that compromised 600 gigabytes of the city’s employee data; the 2024 Salt Typhoon infiltration of U.S. telecommunications networks such as Verizon and
Apr 27, 2026 · via itif.org
via 10Guards
The Cyber Security Hub™’s Post
More from this author
Explore content categories
- Career
- Productivity
- Finance
- Soft Skills & Emotional Intelligence
- Project Management
- Education
- Technology
- Leadership
- Ecommerce
- User Experience
- Recruitment & HR
- Customer Experience
- Real Estate
- Marketing
- Sales
- Retail & Merchandising
- Science
- Supply Chain Management
- Future Of Work
- Consulting
- Writing
- Economics
- Artificial Intelligence
- Employee Experience
- Workplace Trends
- Fundraising
- Networking
- Corporate Social Responsibility
- Negotiation
- Communication
- Engineering
- Hospitality & Tourism
- Business Strategy
- Change Management
- Organizational Culture
- Design
- Innovation
- Event Planning
- Training & Development
Apr 27, 2026 · via linkedin.com
As the global automotive industry moves toward deeper integration of electronic and electrical (E/E) architectures, a new axis of competition is emerging: digital sovereignty. Fueled by rising concerns over cybersecurity, control of the software-defined...
The article requires paid subscription. Subscribe Now
Apr 27, 2026 · via digitimes.com
What’s New with AI and Cybersecurity: Inside the New Era of Ecosystem-Wide Supply Chain Compromise Published by Pearson Join Omar Santos and guest David Bianco for a live deep dive into systemic software supply chain attacks and defenses In recent months, a wave of high-impact attacks exposed systemic weaknesses across trusted ecosystems—from the compromise of Aqua Security’s Trivy scanner to CI/CD supply chain attacks and the hijacking of the Axios npm package, which reaches over 100 million weekly downloads. These incidents signal a broader shift: supply chain attacks are now the preferred model for scalable cybercrime and state aligned operations, exploiting trust, identity, and inherited access rather than isolated vulnerabilities. Join Omar Santos, with special guest -cybersecurity researcher and strategist David Bianco, for a focused exploration of this new era of software supply chain security. Examine modern attack techniques such as GitHub Actions tag hijacking, malicious dependency publishing, and compromised maintainer credentials, and learn the concrete defensive shifts required to respond—including immutable dependency pinning, CI/CD permission segmentation, and credential hardening. You’ll leave with a practical framework for securing software supply chains against the next generation of ecosystem-wide attacks. What you’ll learn and how you can apply it - Learn the latest trends in AI and cybersecurity. - Apply AI-driven tactics for threat detection, automate incident response, and proactively hunt for risks using the latest AI tools. - Assess the security implications of advanced AI, such as coding agents, agentic AI applications, and large language models (LLMs). - Design strategic methodologies for integrating AI into cybersecurity programs. This live event is for you because... - You’re an AI/ML Engineer or Data Scientist who wants to learn the latest trends in AI and cybersecurity. - You’re a Cybersecurity Professional (Analyst, Engineer, Architect, or Consultant) looking to upgrade your skills for the AI-driven
Apr 27, 2026 · via oreilly.com
ImageFlow - stock.adobe.com Black Hat Asia: Privacy and cyber security are inseparable The separation of privacy and security is no longer tenable in a world where exposed personal data is increasingly the entry point for major cyber incidents, delegates at Black Hat Asia 2026 were told Privacy is not a side issue to cyber security but a core part of it, as privacy failures can easily become security breaches, investigative journalist and author Violet Blue told delegates during the opening keynote at Black Hat Asia 2026 in Singapore. While terms like “privacy policy” and “anonymised data” can sound reassuring, they do not always mean privacy is truly protected, said Blue. She argued that the technology industry has too often treated privacy as optional while reserving urgency for security. This split, she suggested, is no longer tenable in a world where personal data is increasingly the entry point for major cyber incidents. Security professionals often believe “privacy is dead”, she said, leading them to “shrug and engage in practices they know they shouldn't”. Blue argued that the same business incentives eroding privacy also weaken security, warning that relentless data collection fuels surveillance-based business models and creates new attack paths. “Surveillance capitalism doesn’t just erode privacy, it creates an attack surface,” she said. “Every data broker is a target. Every adtech SDK [software development kit] is a supply chain risk. Every ‘we need this telemetry’ decision is a pre-positioned asset for a future breach.” While a common counterargument is that security carries a financial cost and privacy regulation is an added compliance burden, Blue said the incentives working against privacy are equally detrimental to security. She highlighted several high-profile incidents where exposed personal information was not just part of the fallout, but the weaponised entry point for the attack itself. In the
Apr 27, 2026 · via computerweekly.com
Providing a view of cybersecurity leaders’ responses to changes across the industry, including increased regulatory pressure and accelerating AI adoption. TAMPA, FL, UNITED STATES, February 19, 2026 /EINPresswire.com/ — Cyber Security Tribe has announced the release of its 2026 Annual State of the Industry Report, delivering insight into how senior cybersecurity leaders are adjusting strategy, investment, and operating models as organizations move further into an AI-driven era. Now in its latest edition, the Annual Report reflects perspectives gathered from 455 of cybersecurity practitioners in senior leadership roles across multiple industries and regions. The findings offer a grounded view of how CISOs and executive teams are dealing with regulatory demands, budget pressure, workforce constraints, and rapid technological change. The 2026 report is structured around three pillars that continue to define cybersecurity maturity: People, Technology, and Process. Together, these themes provide a practical framework for understanding where organizations are focusing attention and how security programs are changing in response. Dorene Rettas, Co-Founder at Cyber Security Tribe, states how “Many of the responses closely mirror the conversations we’re having with CISOs every day, with few real surprises. The most concerning data point relates to post-quantum cryptography (PQC): 78% of respondents have either not discussed it internally or have taken no formal action. This is an issue organizations need to get ahead of now; if you wait until it hits, you’ve waited too long.” Download the full report here: https://www.cybersecuritytribe.com/annual-report People The People section of the 2026 Annual State of the Industry Report examines the leadership, workforce, and organizational dynamics shaping cybersecurity teams. It explores the relationship between CISOs and the board, including how security leaders communicate risk in commercial terms and secure long-term executive backing. The report looks at hiring priorities, evolving role requirements, and the ongoing challenge of building capable teams in
Apr 27, 2026 · via blufftontoday.com
Nearly half of cybersecurity pros want to quit - here's why Follow ZDNET: Add us as a preferred source on Google. ZDNET's key takeaways - There's a big mismatch between demand and rewards in cyber. - Working pressure is only likely to increase due to the use of AI. - Security staff should focus on strategy and communication skills. Almost 20% of organizations have reported a major security attack in the past two years, and the threat environment, whether due to criminal activity or the rise of new AI-enabled models, such as Anthropic's Mythos, continues to evolve at breakneck speed. However, the cybersecurity professionals who help their enterprises manage these challenges don't feel adequately rewarded -- and most are fed up with the situation. That's the conclusion from the newly released Harvey Nash Global Tech Talent & Salary Report, which surveyed over 3,646 technology professionals globally. While 19% of respondents reported a major attack at their firm in the past 24 months, those working in the security specialism were the least likely to report a pay increase over the last year. Also: These 4 critical AI vulnerabilities are being exploited faster than defenders can respond Only 29% of cyber professionals said they'd received additional compensation for their efforts, which is in stark contrast to other roles, where at least half of tech professionals received a pay increase in 2025, specifically in DevOps (56%), product management (51%), and business analysis (50%). "The research clearly tells us that there's a big mismatch between the demand and the reward in cyber," said Ankur Anand, group CIO at technology and talent solutions provider Nash Squared, which owns tech recruiter Harvey Nash, the firm that produced the survey. "I think this mismatch is due to the complacency of many boards saying nothing bad has happened
Apr 26, 2026 · via zdnet.com
Update about February cybersecurity incident at University of Hawaiʻi Cancer Center People who might have been impacted by a February University of Hawaiʻi Cancer Center cybersecurity incident are reminded that deadlines are approaching to enroll in 12 months of free credit monitoring and $1 million in identity theft insurance. Enrollment codes will no longer work after deadlines pass. Deadlines - May 31: Enrollment deadline for people who received Multiethnic Cohort study notification letter codes. - May 31: Closure of the call center to assist all potentially affected people: - Kroll Call Center: 844-443-0842 - Hours: 3:30 a.m. to 4 p.m. Monday through Friday - June 20: Enrollment deadline for people who received email-based Experian enrollment codes. Cybersecurity incident The cybersecurity incident involved historical driver’s license and voter registration records — including Social Security numbers — used decades ago to recruit participants for epidemiological research studies. No information kept by the center’s clinical trials operations, patient care or other divisions was impacted. Potentially impacted people Personal information affected by the incident was located in a subset of research files stored on certain servers that support University of Hawaiʻi Cancer Center’s epidemiology research operations, including: - Two files containing names and birthdates in combination with Social Security numbers: The first, containing driver’s license numbers, was collected in 2000 from Hawaiʻi Department of Transportation; the second, containing voter registration information, was collected in 1998 from the City and County of Honolulu. At that time, driver’s license numbers numbers in Hawaiʻi were typically based on Social Security numbers, and City and County of Honolulu voter registration information also often contained Social Security numbers - Files for study participants in the long-running Multiethnic Cohort Study, with recruitment for participants in Hawaiʻi and Los Angeles from 1993 to 1996, and three other epidemiological studies of diet
Apr 26, 2026 · via bigislandnow.com
Key Points Anthropic claims its latest large language model could be used by hackers to exploit vulnerable code bases. It provided a handful of big enterprises with early access to help prevent widespread cybersecurity breaches. This company made it on the roster, and it could be more important than ever in the age of LLM-based attacks. Anthropic announced Claude Mythos, its most advanced large language model yet, earlier this month. Announced is the keyword. The broad release of the artificial intelligence (AI) model has been delayed due to security concerns. Anthropic claims Mythos is so good at coding that it can identify and exploit vulnerabilities in codebases that have existed undetected for years. To prevent its product from causing too much harm, Anthropic established Project Glasswing, an initiative that invites a handful of top enterprises to use Mythos to find and patch vulnerabilities across operating systems, web browsers, and other critical software before it is more widely released. Will AI create the world's first trillionaire? Our team just released a report on the one little-known company, called an "Indispensable Monopoly" providing the critical technology Nvidia and Intel both need. Continue » While many view the improved capabilities of large language models as a major threat to cybersecurity stocks, the opposite may prove true -- at least for some companies. And Project Glasswing may have just crowned a cybersecurity champion. The cybersecurity giant on Project Glasswing's roster Among the list of companies with early access to Claude Mythos is Palo Alto Networks(NASDAQ: PANW). Palo Alto's position as a leading cybersecurity vendor, offering solutions across network security, cloud security, and security operations, undoubtedly played a key role in the company winning a spot in Project Glasswing. Importantly, Palo Alto's scale may prove an increasingly valuable competitive advantage as large language models continue
Apr 26, 2026 · via theglobeandmail.com