Policy Pulse - Issue #30 | Week of August 23, 2026 Mandiant found more than 100 critical flaws in two days with an agentic review harness. NIST opened two new comment windows, and CISA added nine actively exploited vulnerabilities. Policy Pulse - Issue #30 | Week of August 23, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Mandiant just made AI-scale vulnerability disclosure measurable On August 18, Mandiant published the architecture and early results of its Agentic Vulnerability Discovery Harness. In one incident-response engagement, the system found more than 100 true-positive critical vulnerabilities in two days. Across ten months of use, Mandiant says the harness has processed tens of millions of lines of code, run thousands of analysis pipelines, generated tens of thousands of findings, produced 12 assigned CVEs, and left another dozen findings in active disclosure. (Mandiant) The useful bit is not just the volume. Mandiant built explicit gates around it: agents create a threat model, discover entry points, trace control and data flow, generate hypotheses, and attack those hypotheses with multiple validators. Human consultants then reproduce exploitation, write proof-of-concept code, discard false positives, deduplicate the survivors, and prepare formal disclosures. That is closer to a disclosure production line than a faster scanner. Why it matters for VDP: AI-scale intake is no longer a hypothetical future problem. A single team has demonstrated more than 100 critical findings in 48 hours while keeping a human validation gate. Program operators now need a comparable receiving system: machine-readable evidence requirements, aggressive duplicate clustering, support for chained findings, clear CNA routing, and enough coordination capacity to keep validated reports from becoming a new backlog. Upcoming Deadlines & Events | Date | Agency | Event/Deadline | Action Required | Link | |---|---|---|---|---| | Aug 24, 2026 |
Aug 23, 2026 · via t.co
Industrial IoT Security: Designing OTA Updates That Recover From Failure Key Highlights - Industrial Linux devices require specialized OTA update strategies to ensure safety, security and minimal downtime during software upgrades. - A/B system updates, combined with hardware-assisted redundancy, allow seamless updates and automatic recovery from failures without service interruption. - Physical storage options like independent SD cards and SSDs enhance resilience, enabling systems to switch between multiple bootable images safely. - Implementing cryptographically signed update bundles and generating Software Bills of Materials (SBOMs) ensures security, traceability and compliance with regulatory standards. Every engineer who ships an industrial Linux device eventually reaches the same question: how do you update hardware that is installed in a cabinet, on a factory floor or at a remote site without prolonged service interruption, a site visit or risking a bricked device? For a development board on a workbench, updating Linux can be as simple as connecting over SSH and running apt upgrade. Industrial devices are different. They may be difficult to access, connected through unreliable networks or expected to operate continuously for years. A failed update, unexpected power loss or application that fails to start after reboot can turn a routine software release into a service call. A robust over-the-air (OTA) update therefore needs to do more than copy files. It must install a complete system safely, verify that it works and recover automatically if it does not. A practical architecture combines A/B system updates, hardware-assisted rollback, signed update bundles, software bills of materials (SBOMs) and reproducible builds. This article explores those concepts using Strato Pi Max from Sfera Labs and Rugix from Silitics as examples. Together, they provide an effective combination of industrial hardware with multiple physical storage options and a software stack designed for robust, reproducible updates. Why industrial OTA updates are
Aug 21, 2026 · via automationworld.com
Cybersecurity organisation CREST has launched a new accreditation aimed at helping organisations assess whether providers have the expertise to test AI-enabled systems securely, as generative AI and large language models become embedded in business applications. The Security Testing of AI standard sets independently assessable requirements for cybersecurity service providers, giving buyers a way to assess suppliers’ technical expertise, testing methodologies and governance. CREST said the accreditation addresses a growing gap as AI moves from experimentation into applications, products and business processes. Buyers have had limited ways to distinguish providers with specialist AI security testing capabilities from those simply claiming expertise. The standard assesses practitioner competence, testing methodologies, governance and quality controls, technical approaches and tooling, and processes for identifying and evaluating AI-specific security risks. Providers must also produce evidence supporting their testing conclusions. The approach takes a system-level view of AI security rather than treating the underlying model as the only attack surface. Testing can encompass applications, prompts and system instructions, retrieval mechanisms, data sources, memory, tools, plugins, APIs, orchestration layers and downstream systems affected by AI-generated outputs. That broader approach is increasingly relevant to connected products and services, where an AI model may sit alongside multiple applications, APIs, data sources and Cloud or Edge components. CREST chief executive Nick Benson said the organisation’s members had identified a need for greater visibility into the AI testing credentials of cybersecurity providers. “Offering security testing of AI systems and demonstrating the ability to deliver it effectively are two different things,” he said. The accreditation is the latest element of CREST’s expanding AI assurance programme. In July, the organisation introduced an AI-Enabled Penetration Testing standard covering how providers use AI to deliver cybersecurity services. The latest standard instead focuses on their ability to test AI-enabled systems themselves. CREST research cited in the announcement
Aug 21, 2026 · via iotinsider.com
Medical Device Cybersecurity Solutions Market Report Examines Industry Trends, Growth Drivers And Future Outlook The landscape of medical device cybersecurity solutions is rapidly evolving, driven by the increasing integration of connected technologies in healthcare. As devices become more sophisticated and interconnected, ensuring their protection from cyber threats has become a critical priority. This overview explores the market's growth projections, key players, emerging trends, and segmentation to offer a comprehensive understanding of this vital sector. Projected Market Size and Expansion of the Medical Device Cybersecurity Solutions Market The medical device cybersecurity solutions market is on track for remarkable expansion, anticipated to reach $46.92 billion by 2030. This growth corresponds to a robust compound annual growth rate (CAGR) of 22.4%. Several factors are fueling this surge, including the rising adoption of IoT-enabled medical devices, tighter cybersecurity regulations targeting medical technologies, and the growing complexity of cyberattacks. Additionally, the shift toward cloud-based healthcare infrastructure and increased investments in cybersecurity measures are significant contributors to this upward trend. Throughout the forecast period, the market is expected to witness key trends such as heightened risks linked to connected devices, demand for solutions compliant with regulatory standards, a stronger emphasis on secure software updates, expansion of security services covering devices throughout their lifecycle, and greater implementation of proactive threat detection and monitoring systems. The medical device cybersecurity solutions market size has grown exponentially in recent years. It will grow from $16.67 billion in 2025 to $20.9 billion in 2026 at a compound annual growth rate (CAGR) of 25.3%. The growth in the historic period can be attributed to growth in network-connected medical devices, early cybersecurity breaches in healthcare, increasing digitization of hospital infrastructure, initial regulatory guidance on device security, rising adoption of software-based medical devices. Download a free sample of the medical device cybersecurity solutions market
Aug 21, 2026 · via openpr.com
WISeKey Appoints Alexander Hirsch as Group Chief Marketing Officer to Coordinate Global Marketing Across the Group Source: GlobeNewswire Geneva, Switzerland — August 21, 2026 — WISeKey International Holding Ltd. (SIX: WIHN; NASDAQ: WKEY), a global leader in cybersecurity, digital identity and IoT, today announced the appointment of Alexander Hirsch as Group Chief Marketing Officer (CMO), with responsibility for coordinating and accelerating the marketing, communications, brand positioning and go-to-market activities of WISeKey Group and its affiliated companies, including its SEALSQ Corp (Nasdaq: LAES) (“SEALSQ”), SEALQUANTUM, WISeSat and WISeID subsidiaries. The appointment comes as the Group enters a new phase of international expansion across post-quantum cybersecurity, semiconductors, quantum technologies, satellite communications and digital identity. In his role as Group CMO, Mr. Hirsch will work closely with the leadership and marketing teams of each company to create a more integrated global strategy while preserving the specialized positioning and market identity of each business. Mr. Hirsch brings over 15 years of international marketing leadership, specializing in scale-up strategies, corporate communications, and high-impact global partnerships. Throughout his career, he has built a strong reputation for bridging complex, cutting-edge technologies with commercial market success, creating compelling narratives that resonate across enterprise clients, strategic partners, and key industry stakeholders. Prior to joining WISeKey, Mr. Hirsch was Senior Director of EMEA Executive Field Marketing at Salesforce, where he directed executive marketing strategies and brand presence across Europe. During his tenure, he spearheaded major global partnership initiatives, including Salesforce's F1 activations and engagements at the World Economic Forum Annual Meeting in Davos, and oversaw the region's Salesforce Innovation Centers, which served as flagship briefing hubs for C-suite digital transformation strategy. He also drove marketing programs across Salesforce’s proprietary events and high-caliber third-party industry gatherings, delivering high-impact digital transformation experiences for C-suite leaders. In these roles, he drove engagements for
Aug 21, 2026 · via markets.ft.com
AI skills in cybersecurity job postings doubled as junior hiring stalls The AI Workforce Consortium today reported that the share of cybersecurity job postings across the Group of Seven economies that ask for artificial intelligence skills doubled over the year, and junior hiring has not moved with them. This was the first in a new series of spotlight reports, this one on the impact of AI agents on cybersecurity. Job demand across the G7 grew 9.5% in the six months through March, measured against the same period a year earlier. The preceding half-year came in at 6.8%. AI skills turned up in 28.5% of those postings, against 14.2% a year before. The most recent month in the data ran at 29.7%. All of it covers G7 markets only. Sort the same postings by seniority and the picture changes. Senior-titled roles grew 65% in the six months through March. Growth in junior-titled roles was 5.9%. In the half-year before that they had shrunk slightly. The consortium calls this the experience paradox. Employers are asking for senior skills in jobs that are nominally entry level. Cisco Systems Inc., which founded the consortium, asked security leaders what they cannot find in entry-level candidates. Hands-on experience with AI agents was the top gap, at 49%. Technical cybersecurity depth was 48%, human skills 45%. Four percentage points separate the top and bottom of that list, so the three are presented as a cluster rather than a ranking. The same survey asked about budgets. Leaders picked up to three investment priorities for the next two years, and AI-powered defense was chosen most often, by 36%. People came fourth on 25%, level with threat intelligence. Anthropic PBC disclosed a cyber-espionage campaign in November 2025 in which its Claude model ran 80% to 90% of the operation under
Aug 21, 2026 · via siliconangle.com
As reported by The Hacker News, a cybersecurity campaign dubbed Operation CameraSwarm has compromised over 14,530 Dahua devices between June 17 and July 22, 2026. Researchers at Hunt.io detailed the operation, which utilized credential attacks, two authentication-bypass vulnerabilities, and a peer-to-peer (P2P) relay technique to gain unauthorized access.The campaign, primarily impacting devices in Ukraine and Russia, leveraged CVE-2021-33044 and CVE-2021-33045, two authentication-bypass flaws rated 9.8 CVSS by the NVD. These vulnerabilities allowed attackers to bypass device identity authentication by sending malicious data packets. Additionally, a P2P relay technique, separate from the CVEs, enabled access to devices behind network address translation (NAT) by using a valid serial number to establish a relay path before device credential checks.Hunt.io reported that 12,324 devices were compromised via credential attacks, 1,923 through authentication bypass, and 283 via the P2P relay. While Dahua has released firmware fixes for the CVEs, ITRES Labs recommends disabling P2P functionality where not essential and ensuring devices are running the latest firmware. The campaign's operator is believed to be Russian-speaking, though no specific threat actor has been identified.Source: The Hacker News Get daily email updates SC Media's daily must-read of the most current and pressing daily news You can skip this ad in 5 seconds
Aug 20, 2026 · via scworld.com
How Internet Censorship Threatens IoT Systems Proton Proton The Internet of Things rests on a simple premise: devices talk to each other across a free and open internet. Smart city sensors stream data to municipal dashboards. Connected medical devices relay patient vitals to healthcare providers. Industrial IoT systems coordinate supply chain logistics in real time. All of this assumes the internet is truly interconnected. But what happens when it isn't? According to Freedom House's Freedom on the Net 2025 report, global internet freedom declined for the 15th consecutive year. Of 72 countries assessed, conditions deteriorated in 28 while only 17 saw improvements. China has remained the world's worst environment for internet freedom for over a decade. The report highlights that government manipulation of online information has undergone the most consistent global decline of any indicator measured over 15 years. For the IoT industry, this is not an abstract policy debate. Internet censorship through website blocking, content filtering, or shutdowns directly undermines the infrastructure that connected devices rely on to function. IoT devices depend on continuous network access. When governments block services, throttle bandwidth, or sever connectivity entirely, the consequences cascade through the ecosystem. As IoT For All has explored, urban IoT systems depend on uninterrupted data flows between sensors and central platforms. Traffic signals that adjust in real time, environmental monitoring stations, and smart parking systems all assume that data can move freely. Now imagine a government-ordered internet shutdown, or targeted blocking of cloud services hosting IoT platforms. Smart infrastructure stops working when the network fails. Emergency alert systems built on IoT frameworks go silent. Russia has repeatedly shut down mobile internet across large regions, disrupting digital payment systems and IoT-dependent commerce. These shutdowns demonstrate how quickly the absence of connectivity can paralyze the digital economy. Censorship and surveillance often
Aug 20, 2026 · via iotforall.com
County's Juvenile Probation Agency Selects SuperCom's PureOne GPS Technology Following Multi-Week Live-Unit Evaluation Reinforces SuperCom's Expansion Model Within Newly Entered U.S. States NEW YORK, Aug. 20, 2026 /PRNewswire/ -- SuperCom (NASDAQ: SPCB), a global provider of secure solutions for the e-Government, IoT, and Cybersecurity sectors, today announced that it has won a new county-level electronic monitoring contract with a juvenile probation agency in the state of Texas. The award represents SuperCom's third contract since its recent expansion in the state in December 2025 and fully displaces the county's incumbent electronic monitoring provider. Under the contract, SuperCom will deploy its proprietary PureOne GPS solution to support the agency's juvenile supervision program. The contract follows a recurring revenue model based on daily active units, further expanding SuperCom's recurring revenue customer base. SuperCom was selected following a multi-week live-unit evaluation in which its PureOne technology was tested against competing solutions. "Our ambition in the United States is to build durable and expanding positions within each new market that we enter," commented Ordan Trabelsi, President and CEO of SuperCom. "Texas is a strong example of this strategy in action. After establishing a foothold, we build density county by county as the performance of our technology and the quality of our execution create opportunities for continued expansion." "This latest contract builds on broad-based momentum across our core markets, including more than 45 new electronic monitoring contracts secured in the United States since mid-2024 and more than 20 national project wins across Europe," Trabelsi added. "With trailing twelve-month EBITDA1 of approximately $11.7 million through the second quarter of 2026 and a strong balance sheet, we have the financial and operational foundation to leverage our technology leadership to drive continued expansion across both the U.S. and Europe." SuperCom's PureOne is an all-in-one GPS tracking bracelet designed for
Aug 20, 2026 · via prnewswire.com
TechEx North America 2026 comes to San Jose for your annual enterprise technology intelligence briefing. SAN JOSE, CA, UNITED STATES, March 9, 2026 /EINPresswire.com/ — TechEx North America will take place on May 18–19, 2026, at the San Jose McEnery Convention Center, bringing together seven co-located enterprise technology events under one roof to tackle the real questions enterprise leaders are asking right now. This leading enterprise technology showcase will help CIOs, CTOs, IT Directors, enterprise architects, and IT leaders understand what’s changing, what matters and what to prioritise within the technology ecosystem. TechEx North America Conference Agenda TechEx North America will deliver a comprehensive agenda, with two days of technical discussion and industry collaboration across AI and Big Data, Cyber Security and Cloud, IoT, Digital Transformation, Intelligent Automation, Edge Computing, and Data Center. View the agenda-at-a-glance, featuring all of the co-located stages from across TechEx: Commenting on the agenda, Michael Hughes, Head of Conference at TechEx Events, said: “This year’s TechEx North America agenda reflects the conversations enterprise leaders urgently need to have. I am particularly excited about our new Physical AI track, which addresses the pivotal moment where AI moves beyond models and dashboards into operational environments” The new Physical AI track explores how AI integrates with robotics, edge devices, digital twins, industrial systems, and autonomous infrastructure. As AI moves beyond models and dashboards into operational environments, the challenge shifts from experimentation to orchestration. Industry Leading Speakers The conference program features C-suite and senior executives sharing proven approaches to delivering measurable impact in a digital-first world. Secure your place today & hear from: • Franziska Bell, Chief Data, AI and Analytics Officer, Ford Motor Company • Kevin Shin, CISO, Samsung • Tina Tsou, Director of Global Tech Operations, TikTok • Mohit Goenka, Director of Engineering, Yahoo • Ricardo Lafosse,
Aug 20, 2026 · via seacoastonline.com
Abstract The increasing heterogeneity and scale of Internet of Things (IoT) ecosystems have intensified cybersecurity challenges associated with highly imbalanced traffic distributions, evolving attack patterns, and resource-constrained deployment environments. Conventional cloud-centric intrusion detection systems often introduce communication overhead and latency constraints, while minority attack classes remain difficult to detect under severely skewed traffic conditions. To address these challenges, this study proposes EHiD-FC, an explainable hierarchical two-stage intrusion diagnosis framework for IoT Fog–Cloud environments. The proposed framework employs lightweight anomaly screening at the Fog layer using Autoencoder (AE), Isolation Forest (IF), and One-Class Support Vector Machine (OCSVM), followed by Cloud-level multi-class attack diagnosis using an Ensemble + XGBoost classifier. Stage-specific explainability is incorporated through LIME-based local interpretation at the Fog layer and SHAP-based global feature attribution at the Cloud layer. Experimental evaluation was conducted using the CIC-IoT2023 dataset under multiple operational scenarios involving Fog-layer anomaly screening, Cloud-level diagnosis, real-time traffic simulation, and explainability assessment. The framework demonstrated competitive intrusion detection performance across multiple evaluation metrics, including Precision, Recall, F1-score, Macro-F1, Specificity, False Positive Rate (FPR), False Negative Rate (FNR), and G-Mean under highly imbalanced traffic conditions. The results indicate that EHiD-FC supports interpretable and imbalance-aware intrusion diagnosis in Fog–Cloud IoT environments while highlighting the need for further validation under large-scale real-world deployment conditions. Subjects Acknowledgements This research is supported by Princess Nourah bint Abdulrahman University (PNU) Researchers Supporting Project number (PNURSP2026R194), Princess Nourah bint Abdulrahman University, Riyadh, Saudi Arabia. Funding Open access funding provided by Manipal Academy of Higher Education, Manipal. Ethics declarations Competing interests The authors declare no competing interests. Ethical approval This study uses the publicly available CIC-IoT2023 dataset, which contains anonymized network traffic data and does not involve human participants, personal data, or sensitive information. Therefore, ethical approval was not required for this study. Additional information Publisher’s note
Aug 19, 2026 · via nature.com
Abstract As more IoT-powered Smart farming systems push automation to the next level, many farms are facing security risks, including spoofing, data breaches, and denial-of-service (DoS) attacks. Most current intrusion detection methods do not perform well due to limited scalability and the decision system's limited interpretability, as well as the dynamic nature of agricultural settings. On the one hand, traditional machine learning models fail to capture more complex temporal-spatial patterns in network traffic; on the other hand, many existing deep learning-based systems lack satisfactory explainability and are not feasible for edge deployment. To overcome these limitations, this paper offers AgroCyberShield, a new cybersecurity framework for IoT-enabled smart agriculture. At the core of this framework is the proposed FarmSecureNet algorithm a hybrid deep learning model that integrates Convolutional Neural Networks (CNNs), Bidirectional Long Short-Term Memory (BiLSTM), and attention for effective and explainable intrusion detection. These two datasets come from different sources on which the model is trained to enable generalisation. Extensive experiments demonstrate that FarmSecureNet achieves 96.4% classification accuracy, with F1-score, precision, and recall outperforming baseline models. We present further validation of the framework with SHAP-based explainability, confusion matrix analysis, and ablation studies. Moreover, the low latency and minimal memory footprint, as demonstrated in edge-deployment tests on Raspberry Pi and Jetson Nano, further support real-time performance. The developed AgroCyberShield framework enhances the cybersecurity of smart farms while improving decision transparency, contributing to the sustainable and safe digitisation of agriculture. Subjects Materials availability Materials used in this research are available from the corresponding author and can be provided on request. Ethics declarations Competing interests The authors declare no competing interests. Consent for Publication The authors give consent for their publication. Additional information Publisher's note Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations. Rights and permissions
Aug 19, 2026 · via nature.com
At Palo Alto Networks, we are privileged to sit at the intersection of cybersecurity technology, business, and outcomes. We speak to hundreds of customers, partners, analysts, and other experts every day about threats, tools, and solutions, so we’re often asked for our opinions on what’s next for cybersecurity. But when technology leaps forward, it can create trends whose impact and speed are much harder to forecast. The sudden changes to the cybersecurity landscape in the first half of 2026 are a good example of this, leaving many playing catch-up in some areas. To illustrate the salience of these changes, let’s take a look back at our predictions for this year, as outlined by our Chief Security Intelligence Officer, Wendi Whitmore, in her late-2025 article ‘2026: The Year of the Defender’, and see which have come true, which haven’t, what’s surprised us, and what’s next. The new age of deception: The threat of AI identity The role of frontier AI in shaping cyber risk and vulnerabilities has become far more significant in 2026, impacting many of our predictions. AI identity is just one significant part of that.The transition from human identities to non-human identities (NHIs) is not only well underway but progressing even faster than we predicted in late 2025. The ratio of NHIs to human identities was 82:1, now it’s a staggering 109:1. We’ve all had to step up our capabilities in pressure testing identity systems to simulate bad actors’ increasing use of NHIs in their attacks. It’s a trend our CyberArk acquisition did anticipate, however, leading us to build our new Idira platform around identity. Thankfully, our access to new frontier AI models via our participation in Project Glasswing has allowed us to model some of these emerging attack vectors. It’s a good thing we can, because in the
Aug 19, 2026 · via paloaltonetworks.com
The CISO now owns physical security. Here’s what that means for the channel Physical security budgets have moved to CISOs, and partners must adapt to this important shift For years, selling physical security meant knowing one buyer. The director of physical security, or facilities, signed off on cameras, locks, and badge readers, and the conversation rarely left that room. That buyer is being moved aside. Physical security budgets are rising sharply. EY research found that nearly 80% of organizations increased spending in the last budget cycle, and more than a quarter have now shifted oversight to the CISO, a role built for network defense, not card readers and lockdown logic. The money is growing, and the person controlling it has changed. For Value-Added-Resellers (VARs), Managed Service Providers (MSPs) and integrators, that is the most important shift in this market, and the partners who haven’t adjusted their go-to-market are still pitching buyers who no longer control the budget. Here is what that looks like on the ground. A reseller who used to walk in with a door schedule now sits across from a CISO who wants to see NIST CSF mappings. An integrator arrives for a campus deployment and finds the cybersecurity team holds policy authority over systems they have never seen up close. Deals that should close stall, because no one in the room feels accountable for a physical incident. The handoff is happening faster than buying committees are used to. Four things will determine which partners own this shift - and which get left behind. Who actually owns the budget now? Map the buying committee before you pitch anything. In most organizations going through this shift, the CISO owns the budget and the risk, but the physical security or facilities lead still owns day-to-day operations. Both are in the
Aug 19, 2026 · via itpro.com
CRWD vs. FTNT: Which Cybersecurity Stock Should You Buy Right Now? CrowdStrike CRWD and Fortinet FTNT are well-known players in the cybersecurity domain. While CrowdStrike specializes in endpoint protection and extended detection and response, offering AI-native cloud security through its Falcon platform, Fortinet combines a variety of hardware and cloud-based security solutions. Both CRWD and FTNT are riding the key industry trends, driven by the mounting incidents of credential theft, remote desktop protocol breaches and social engineering-based strikes by malicious actors. However, from an investment point of view, one stock offers a more favorable outlook than the other right now. Let’s break down their fundamentals, growth prospects, market challenges and valuation to determine which stock offers a more compelling investment case. The Case for CrowdStrike Stock CrowdStrike provides its cybersecurity services mainly through its Falcon platform. CrowdStrike’s Falcon platform is renowned for being the industry’s first multi-tenant, cloud native, intelligent security solution. The Falcon platform helps secure workloads across on-premise, cloud-based and virtualized environments running on several endpoints, such as desktops, laptops, servers, virtual machines and IoT devices. CrowdStrike’s cloud-based Falcon platform currently provides 33 cloud modules via a software-as-a-service subscription model that is categorized under three categories: Endpoint Security, Security & IT Operations and Threat Intelligence. The share of subscription-based sales to CrowdStrike’s total revenues grew from 72% in fiscal 2017 to 95% in fiscal 2026. CrowdStrike’s Falcon Flex subscription model is becoming an important driver of its growth. Falcon Flex makes it easier for customers to access multiple modules of the Falcon platform through a single contract. This makes it easier for customers to deploy additional security products over time and expand their use of the Falcon platform, which has now become the company’s primary go-to-market model. In the first quarter of fiscal 2027, Annual recurring revenue (ARR)
Aug 18, 2026 · via tradingview.com
NEW YORK, Aug. 18, 2026 (GLOBE NEWSWIRE) -- The cybersecurity decisions organizations make about connected devices today could become the governance decisions they are forced to defend tomorrow. In a new whitepaper, Y27: The Governance Reckoning for IoT Security, global technology intelligence firm ABI Research finds that IoT cybersecurity is moving beyond technical best practice and becoming an issue of corporate governance, procurement accountability, and reasonable care. As U.S. federal policy, regulatory scrutiny, and enterprise risk management converge ahead of January 4, 2027, organizations will increasingly need documented, defensible evidence that connected devices meet recognized cybersecurity baselines. The shift represents what ABI Research describes as the end of "trust me" security. For decades, organizations have relied on manufacturer claims, supplier assurances, contractual promises, and internal processes to establish trust in connected products. As regulatory and legal scrutiny increases, those assertions are giving way to a need for objective evidence that recognized security requirements have been met. Y27 marks a turning point for connected device security as trust can no longer rest on vendor claims alone. For boards, CIOs, CISOs, and procurement leaders, the question is shifting from whether a breach can happen to whether the organization can demonstrate that it exercised reasonable care in selecting, deploying, and governing IoT devices. ABI Research estimates there were 19 billion IoT connections globally in 2025, with that number forecast to grow to 37 billion by 2030. As the number of connections nearly doubles and connected devices proliferate across homes, workplaces, healthcare environments, schools, industrial sites, and public sector infrastructure, the expanding attack surface creates risks ranging from lateral movement and data compromise to service disruption, unauthorized surveillance, and broader network exposure. The firm notes that the U.S. Cyber Trust Mark is significant not only as a consumer-facing label, but as an operational and
Aug 18, 2026 · via markets.businessinsider.com
Philippines Cybersecurity Market Projected to Reach USD 2.8 Billion During 2026-2034 Market Overview The Philippines cybersecurity market is experiencing strong expansion driven by accelerating digital transformation across public and private sectors, escalating cyber threats from organized criminal groups and state-sponsored actors, increasing adoption of cloud computing and IoT technologies, and government initiatives establishing comprehensive cybersecurity frameworks with mandatory compliance requirements. The market size reached USD 1.4 Billion in 2025 and is projected to reach USD 2.8 Billion by 2034, growing at a compound annual growth rate (CAGR) of 8.08% from 2026 to 2034. The Philippines faces one of Southeast Asia's most severe cyber threat landscapes - ranked among the top 10 most targeted nations globally for malware, phishing, and ransomware - with the National Privacy Commission reporting 345 cybersecurity incidents in 2025, an 89% increase since 2019, and data breaches rising 49% in Q3 2025 alone exposing over 52 million credentials. NICA confirmed 234 data breaches in high-level government agencies in 2025, while the DICT reported over 20,000 exploited vulnerabilities across government systems. These alarming breach frequencies are compelling enterprises and government agencies to rapidly scale cybersecurity investment across the Philippines cybersecurity market share throughout the forecast period. Request a Sample Report for In-Depth Market Insights: https://www.imarcgroup.com/philippines-cybersecurity-market/requestsample Philippines Cybersecurity Market Summary • Solutions lead with a 52% component share in 2025, with enterprises preferring integrated security platforms consolidating endpoint protection, network defense, identity management, and vulnerability management into unified, operationally efficient suites. • On-premises deployment leads with a 55% share in 2025, driven by regulatory compliance requirements and data sovereignty concerns compelling BFSI and government sectors to maintain direct control over sensitive security infrastructure. • Large enterprises dominate with a 63% user type share in 2025, reflecting substantial cybersecurity budgets, complex IT infrastructures, and stringent regulatory obligations - with 94%
Aug 18, 2026 · via openpr.com
Sovereignty is the channel’s next trust test Data sovereignty has become a key channel priority The UK government’s £1.1bn AI sovereignty plan has put infrastructure control firmly on the boardroom agenda. With £750m earmarked for a national AI supercomputer and further funding for domestic chip capability, the message is clear: sovereignty has moved way past an abstract policy debate. It is now a practical test of how much control the UK has over the compute, data, networks, and suppliers that increasingly underpin its economy. That question is affecting the channel, too, particularly as major cyber incidents have sharpened focus on the resilience of the networks underpinning operations. While buyers continue to care about performance and price, they are placing greater emphasis on the level of control their technology partners have over business-critical infrastructure. Security is now a commercial decision The majority (88%) of IT decision makers (ITDMs) say that UK data sovereignty is vital when choosing technology partners, according to our research. Some 70% identify cyber risk as one of their top organizational threats. Among resellers, 77% believe customers would switch providers for better protection. Cyber resilience, therefore, needs to appear early in the sales conversation, framed around operational risk, customer confidence and the confidence that businesses will be able to keep trading when threats escalate. It also needs to be communicated over time, rather than treated as a one-off assurance during procurement, with 89% of ITDMs saying they want providers to deliver proactive updates on how their networks are being protected. In short, as trust has become an even more integral part of the buying decision, partners need to move beyond headline credentials and make the delivery model behind the service much clearer. Partners must deliver across data, operations and technical control Sales conversations can set the expectation, but
Aug 17, 2026 · via itpro.com
Andhra Pradesh has emerged as the leading state in artificial intelligence (AI) and Big Data Analytics (BDA) skilling under the Centre's FutureSkills PRIME programme, with over 1 lakh candidates completing certification. This achievement positions the state at the forefront of talent development in critical emerging technologies, according to Union government data.The Ministry of Electronics and Information Technology (MeitY) reported on August 12 that more than 1.5 lakh candidates in Andhra Pradesh had been enrolled or trained in AI and BDA over the last three years. Cumulatively, over 2.1 lakh candidates in the state have been enrolled or trained in these domains under the programme. The ministry highlighted that 1,08,895 candidates specifically completed certification in AI and BDA, placing Andhra Pradesh at the top nationally.FutureSkills PRIME is a MeitY initiative implemented in partnership with NASSCOM, focusing on skilling, reskilling, and upskilling in various emerging technologies. These include AI, BDA, Internet of Things (IoT), cybersecurity, blockchain, and Augmented Reality/Virtual Reality (AR/VR). The broader technology-skilling drive in Andhra Pradesh under this programme has seen over 4.3 lakh candidates enrolled or trained across all emerging technology domains. - Market Insights & Analysis - 2 min Read Andhra Pradesh Leads India in AI, Big Data Skilling Under FutureSkills PRIME Andhra Pradesh has emerged as the top state in AI and Big Data Analytics skilling under the Centre's FutureSkills PRIME programme, with over 1 lakh candidates certified. This talent development initiative is expected to support the state's efforts to attract technology investments and foster new tech hubs, contributing to India's digital infrastructure talent pool. - Published On Aug 17, 2026 at 09:57 AM IST Highlights - Andhra Pradesh leads India in AI, Big Data Analytics skilling - Over 1.08 lakh candidates certified under FutureSkills PRIME in the state - National programme records 13 lakh certifications, 86%
Aug 17, 2026 · via datacenters.economictimes.indiatimes.com
Abstract The complexity of network security has grown, and new problems have emerged that call for more sophisticated network security solutions. Due to their historical reputation as rigid and unscalable systems, intrusion detection systems (IDSs) require innovation. This research proposes a distributed intrusion detection framework that integrates blockchain technology with Multi-Agent Reinforcement Learning (MARL) for enhanced blockchain security, transparency, and decentralization. The proposed system was trained and tested over the Open, Public, and Network Traffic Dataset of Internet of Things (TON-IoT) to detect cyber threats in a resilient manner over IoT networks. Blockchain guarantees the integrity of data, while the IDS is MARL, which can learn active, unprecedented, and evolving attack patterns. Experiments have shown that the proposed approach achieves 99.99% accuracy on the TON-IoT dataset, outperforming standard IDS approaches. Further, the usage of the framework is validated for generalization by comparing the datasets of the Botnet Dataset for Internet of Things (BOT-IoT) dataset with 99.65% accuracy. To improve performance, a large ablation experiment was conducted to attempt to identify the required learning parameters (reward form, exploration-exploitation dilemma, and learning rate decay). To reduce the false positives, a balanced performance reward scheme was introduced, reducing the accuracy to 95.67%. For stable decision-making, the investigation rate was set to a constant 0.1. In experiments on learning information, we demonstrate that 0.001 is a reasonable compromise between convergence rate and stability. This is well exemplified by the fact that IDS can secure both systems by using MARL and Blockchain. Future work will then focus on real-time dynamicity, reducing computational overhead, and expanding the model to various network environments. This research establishes an emerging practice of intelligent distributed intrusion detection in emerging cybersecurity architectures. Data availability The dataset is available on reasonable request. Abbreviations - IDS: - Intrusion Detection Systems - PPO: -
Aug 17, 2026 · via link.springer.com