No-frills tech news

Operational technology (OT) firewall market projected to reach USD 3.19 billion by 2034

Operational technology (OT) firewall market projected to reach USD 3.19 billion by 2034 The global OT firewall market was valued at approximately USD 1.19 billion in 2025 and is projected to reach USD 3.19 billion by 2034, expanding at an 11.58% CAGR from 2026 to 2034, according to Polaris Market Research. Growth is being driven by the increasing connectivity of industrial environments, the adoption of industrial IoT and smart manufacturing, and greater requirements for network segmentation and critical-infrastructure protection. From this article you will learn: - how industrial digitalization is changing requirements for OT cybersecurity and network segmentation, - why cloud-managed OT firewall deployments are expected to grow at a 16.3% CAGR, - which regions and industrial sectors account for the largest shares of the OT firewall market and where growth is expected to be fastest. Industrial connectivity is changing OT cybersecurity For decades, industrial cybersecurity was based on the assumption that operational technology (OT) networks were isolated and difficult for external attackers to reach. That assumption is changing as factories adopt connected sensors, utilities modernize grids, energy companies integrate remote monitoring, and industrial assets increasingly communicate across IT and OT environments. As industrial connectivity expands, cybersecurity is becoming more closely integrated with infrastructure. OT firewalls control industrial traffic, segment networks, restrict unauthorized access, and protect systems where unexpected downtime can have operational consequences. Polaris Market Research estimates that the global OT firewall market was valued at approximately USD 1.19 billion in 2025 and is projected to reach USD 3.19 billion by 2034, expanding at an 11.58% CAGR from 2026 to 2034. Industrial environments require different security measures Traditional enterprise cybersecurity can generally accommodate disruption, patching windows, and more frequent infrastructure changes. Industrial environments may have less flexibility because manufacturing lines, power stations, pipelines, and water facilities can depend on

ETSI Proposes 17 <b>Cybersecurity</b> Standards to Support EU CRA

Technology standards across Europe are evolving to prepare manufacturers for the EU Cyber Resilience Act (CRA) that takes full effect in December 2027. The European Telecommunications Standards Institute (ETSI), one of the three official standards organizations recognized by the EU, launched an approval process for 17 key cybersecurity standards European vendors will have to meet under the CRA. The final draft standards, made available on August 13, cover 17 major product categories spanning network and edge devices, security solutions and internet-of-things (IoT) appliances: | | | The proposed standards set out a list of minimum-security features manufacturers must implement to be CRA-compliant, allowing for the sale of their products in the EU from December 2027. Several of these proposed standards mandate modern cryptography, secure-by-default settings, a software bill of materials (SBOM) – a machine-readable inventory of software dependencies – and post-sale update capabilities. The standards have been submitted to 41 member organizations across Europe, including the national standardization bodies of the European Economic Area and Europe-wide industry and standards organizations, and are currently under public enquiry as part of the first phase of the approval procedure. Stakeholders are welcome to issue comments until mid-September to mid-November 2026, depending on the vertical. The final versions of these 17 cybersecurity standards are expected to be available by December 2026. They will apply to all manufacturers, importers, distributors, service providers and developers of commercially available hardware and software products sold in the EU from the end of 2027. ETSI and the other two EU-approved standardization bodies, the European Committee for Standardization (CEN) and the European Committee for Electrotechnical Standardization (CENELEC), have organized a series of workshops across Europe to help European small and medium businesses to comply to the CRA when it’s enforced. Read more about the CRA: Two-Thirds of Open Source Community

Is Confidentiality, Integrity, and Availability (CIA) Dead?

Introduction The CIA triad, Confidentiality, Integrity, and Availability has long served as a foundational framework in cybersecurity. Confidentiality ensures sensitive data is accessed only by authorized individuals. Integrity guarantees data remains accurate and unaltered, while availability ensures that systems and information are accessible to authorized users when needed. These principles have historically guided security strategies across industries, from healthcare (e.g., HIPAA regulations) to financial services. However, the rapid evolution of technology, along with new and complex cyber threats, has raised questions about the ongoing effectiveness of the CIA triad. With emerging technologies such as cloud computing, the Internet of Things (IoT), and artificial intelligence (AI), organizations are facing more sophisticated attacks, leading many to reconsider whether the CIA model is sufficient for today’s cybersecurity challenges. This article explores the relevance of the CIA triad in modern cybersecurity, evaluates its limitations, and discusses newer security frameworks that aim to address the changing digital landscape. Understanding the CIA Triad The CIA triad encompasses three pillars: - Confidentiality: This principle protects sensitive information from unauthorized access through measures such as encryption, access control, and secure authentication. A breach of confidentiality can lead to severe consequences like identity theft or financial loss, as seen in the 2013 Target data breach, where 40 million credit card numbers were compromised. - Integrity: Ensuring the accuracy and reliability of data is critical, particularly in fields like finance, where unauthorized alterations to transaction data can lead to fraud. Mechanisms such as cryptographic hash functions and digital signatures help maintain integrity. The 2010 Stuxnet worm is an example of an attack on data integrity that caused extensive damage to Iran’s nuclear facilities by altering critical data. - Availability: This principle ensures that systems and data are accessible when needed. Redundancy, disaster recovery planning, and load balancing are some ways

SuperCom Reports Record Revenue and Record EBITDA of $4 Million in the Second ...

Q2 2026: Record Revenue of $8.1 million, Non-GAAP Net Income of $2.9 million, Non-GAAP EPS of $0.52 H1 2026: Revenue of $15.7 million; Record EBITDA of $7.3 million TEL AVIV, Israel, Aug. 13, 2026 /PRNewswire/ -- SuperCom Ltd. ("SuperCom" or the "Company") (NASDAQ: SPCB), a global provider of secure solutions for the e-Government, IoT and Cybersecurity sectors, today reported results for the second quarter ended June 30, 2026 Second Quarter 2026 Financial Highlights (Compared to the Second Quarter of 2025): - Revenue of $8.1 million, an increase of 13.3% compared to $7.1 million, an over 8-year record. - Gross Profit of $4.9 million, with gross margin of 60.0%, compared to $4.2 million. - GAAP Net Income of $1.11 million, compared to $1.10 million, despite foreign currency headwinds from an approximately 17% year-over-year increase in the average ILS/USD exchange rate. - GAAP EPS of $0.20. - Non-GAAP Net Income of 2.9 million an increase of 32% compared to 2.2 million. - Non-GAAP EPS of $0.52. - EBITDA¹ of $4.0 million, an increase of 58% compared to $2.5 million, an over 10-year record. - Total Shareholders' Equity was $47.8 million, an increase of 28% compared to 37.2 million. - SuperCom's electronic monitoring ("EM") technology quarterly recurring revenues in the U.S. increased approximately 171%, reflecting rapid expansion across the United States. - SuperCom's EM technology Annualized Recurring Revenues (ARR) run-rate is accelerating, reflecting growth of approximately 290% from July 2025 to July 2026. First Half Ended June 30, 2026 Financial Highlights (Compared to the First Half of 2025): - Revenue of $15.7 million, an increase of 10.7% compared to $14.2 million. - Gross Profit of $9.7 million, with gross margin of 61.7%, compared to 8.7 million. - Excluding the extraordinary financial gains of $4.1 million recorded in H1-25, GAAP Net Income increased by

&quot;Evil twin&quot; Wi-Fi attacks could expose connected devices

Cybersecurity experts are warning that so-called “evil twin” attacks on planes and other publicly-accessible Wi-Fi systems can create an overlooked attack surface for connected devices, after passengers returning from a hacking conference in Las Vegas apparently made a rogue network appear on a Delta Air Lines flight. According to Delta Airlines, an unauthorised Wi-Fi network appeared on its flight DL591 from Las Vegas to Atlanta on August 10, prompting the crew to disable the aircraft’s Wi-Fi functionality for around 30 minutes. The airline stressed that there was no hack of its aircraft systems and that flight safety was never at risk. It is investigating the incident with federal law enforcement and aviation regulators. Messages reportedly sent by the flight crew through the Aircraft Communications Addressing and Reporting System (ACARS) stated that a passenger had created a network called “DELTA WIFI FAST” and that the crew believed it was being used to scam other passengers. “An evil twin attack is when hackers create fake Wi-Fi networks with the goal of stealing sensitive information from people, or exploiting known vulnerabilities present in victim devices,” said Aras Nazarovas, Senior Information Security Researcher at Cybernews. The networks can use names that are identical or very similar to legitimate services. Once a victim connects, an attacker may be able to inspect aspects of their traffic, probe their device for vulnerabilities or redirect them to malicious websites – risks that become particularly relevant as more devices depend on wireless connectivity without continuous human oversight. “The risk here is that the hacker may attempt to redirect the victim to a phishing website,” Nazarovas said. The incident raises a broader question for the IoT industry: what happens when a connected device cannot reliably distinguish between a legitimate network and a malicious one? As IoT deployments expand across vehicles,

OT <b>Cybersecurity</b> Market Outlook 2026 Highlights AI-Driven

OT Cybersecurity Market Outlook 2026 Highlights AI-Driven Threat Defense, Critical Infrastructure Protection and Industrial Security Opportunities The OT Cybersecurity Market is gaining strategic importance as manufacturers, utilities, energy companies, transportation operators, and critical infrastructure organizations connect operational technology with enterprise IT, cloud platforms, industrial IoT devices, and remote-access systems. Increasing ransomware activity, geopolitical cyber threats, vulnerable legacy industrial systems, and expanding IT/OT convergence are driving demand for asset discovery, industrial network monitoring, threat detection, vulnerability management, secure remote access, segmentation, incident response, and managed OT security services. Fortinet's 2026 global OT security survey found that organizations continue to report challenges around visibility, segmentation, remote access, and incident response. Access the Sample Report: https://www.worldwidemarketreports.com/sample/1037818 Strategic Insights - OT Cybersecurity Market The OT Cybersecurity Market is moving from isolated point solutions toward integrated security platforms capable of discovering industrial assets, monitoring network communications, prioritizing vulnerabilities, detecting malicious behavior, and coordinating response without interrupting physical operations. Artificial intelligence is becoming another important differentiator. In June 2026, Dragos launched EmberAI, an OT-native AI capability designed to combine operational context with its industrial threat-intelligence data to help analysts investigate assets, vulnerabilities, and network activity and prioritize threats according to operational impact. OT Cybersecurity Market Size, Growth and Forecast The global OT Cybersecurity Market is projected to grow from approximately USD 27.39 billion in 2026 to USD 58.94 billion by 2031, representing a CAGR of 16.6% during 2026-2031. Growth is being supported by connected industrial assets, remote engineering access, industrial IoT adoption, digital transformation, expanding attack surfaces, and stronger cybersecurity requirements across manufacturing, energy, oil & gas, transportation, and other critical sectors. United States: Recent OT Cybersecurity Market Developments In June 2026, U.S.-based Accentur agreed to acquire a majority stake in Dragos and acquire runZero and NetRise outright. The transactions carry a combined enterprise value of

<b>IoT</b> Investment Tracker – 2H26 - Omdia

This tracker examines investment and acquisitions by IoT enterprises through June 30. The tracker categorizes deals by acquirer, acquiree, region, IoT vertical, and use case. The tracker extrapolates IoT trends based on deal volume, deal verticals, and deal values. Email Article All set! This article has been sent to my@email.address. All fields are required. For multiple recipients, separate email addresses with a semicolon. Please Note: Only individuals with an active subscription will be able to access the full article. All other readers will be directed to the abstract and would need to subscribe. The Analyst Team Andrew Brown Follow Analyst Practice Lead, IoT Andrew Brown is an industry expert on enterprise mobility and the IoT, with 25 years’ experience providing consulting and advisory services in IT market research, with a specialist focus on enterprise, IoT, mobility, connectivity, B2B, AI, security, and wireless networks. In addition to managing a team of analysts that advises on all aspects of the IoT ecosystem, Andrew spends his time helping network service providers, device vendors, regulators, and many other vendors understand the implications and opportunities presented by the growing IoT space. Andrew joined Omdia from Strategy Analytics, where he worked for 14 years. Prior to that, he worked at IDC for a decade. He also worked for Lucas Automotive GmbH in Germany as a market analyst. He gained a joint honors degree in marketing and German from Lancaster University in the UK. More Content By Andrew Brown Gaurav Chaudhary Follow Analyst Analyst, Service Provider Networks Gaurav, an analyst based in India, is part of Omdia’s service provider team. He covers topics such as innovative telco services, 5G broadband pricing, consumer AI, smart home and smart Wi-Fi trends, IoT, and revenue forecasts, among others. Gaurav has around three years of market research experience across the ICT

[ChangePASS FY2026 H1 Earnings Call] <b>IoT</b> Revenue Share Jumps from 1% to 11%, H1 ...

[ChangePASS FY2026 H1 Earnings Call] IoT Revenue Share Jumps from 1% to 11%, H1 EPS NT$1.45; July Revenue Down 13.2% YoY but Full-Year Growth Still Targeted ChangePASS (8272) held its earnings call on the 13th, with General Manager Yang Wen-Ho personally presenting first-half operating results. While AI has captured the market's attention, ChangePASS — a cybersecurity firm built on proprietary R&D — delivered first-half revenue growth that slowed to 1% and a gross margin decline of 1 percentage point. But hidden beneath the unremarkable numbers was the IoT security product line's first-ever jump from 1% a year ago to 11% of revenue, making it the most closely watched development of the call. Yang Wen-Ho stated bluntly: "First-half revenue was NT$200 million, slightly more than the NT$198 million from the same period last year — essentially flat." Financial Overview: Flat Revenue, Modest EPS Decline | Item | H1 2026 | H1 2025 | Change | |---|---|---|---| | Revenue | NT$200 million | NT$198 million | +1% | | Gross Margin | 74.3% | 75.3% | -1 ppt | | Net Profit After Tax | NT$27.6 million | ~NT$29 million | ~-5% | | EPS | NT$1.45 | NT$1.52 | -NT$0.07 | In terms of product mix, security certification and fintech security remain the two pillars, together accounting for 76% of revenue; however, IoT's jump from 1% to 11% directly compressed the share of existing product lines. IoT Emerges as the Biggest Highlight: Smart Meters and Matter Modules Shipping in H2 General Manager Yang Wen-Ho said IoT currently focuses on smart meters and Matter smart home communication modules. The smart meter initiative targets Taipower's next-generation smart meter security chip requirements, with initial design and validation completed in collaboration with meter manufacturers, and volume production expected to begin in the second half of

TCS partners with Vodafone Business for AI push: What it means for investors

Tata Consultancy Services (TCS) and Vodafone Business have announced a strategic partnership to support AI-driven digital transformation among enterprises in the UK. Announced on August 13, the partnership will combine TCS’ technology services and digital transformation capabilities with Vodafone Business’ telecommunications and connectivity infrastructure. The companies said the collaboration will focus on helping UK organisations modernise technology and accelerate digital adoption. The partnership will cover cloud transformation and migration, AI and automation, cybersecurity, network modernisation, data and analytics, Internet of Things (IoT), managed services and operational transformation. The companies will target customers across the public sector, healthcare, financial services, manufacturing, retail and critical infrastructure sectors. The partnership builds on VodafoneThree’s £11 billion investment in its UK network. Under the collaboration, TCS will support Vodafone Business in strengthening the digital services and capabilities it offers to enterprise customers. Nick Gliddon, Business Director at VodafoneThree, said businesses in the UK are looking for partners that can help them implement technology changes, integrate systems and translate investments into measurable outcomes. Vinay Singvi, Head of UK and Ireland at TCS, said the partnership would combine AI and digital transformation capabilities with industry expertise to create value for Vodafone Business and its customers. The companies did not disclose the financial terms of the partnership or provide specific revenue projections from the arrangement. TCS has been operating in the UK for more than 50 years and said it has created 42,000 jobs in the country, directly and indirectly. Its AI Experience Zone and London Design Studio are expected to support innovation and engagement with UK clients. Vodafone UK serves more than 20 million unique full-fibre premises through partnerships with CityFibre and Openreach. Its 4G network covers more than 99 per cent of the UK population. The partnership comes a day after TCS shares came under pressure

News | SonicWall Report: Professional Services Face Cyber Threats | Pipeline Publishing

| Professional Services Firms Face Record Cyber Attacks SonicWall Finds SonicWall Research Finds Professional Services Firms Overruled by Their Own Cybersecurity Gaps as Attackers Target the Sectorâs Privileged Data SonicWall today released its 2026 Professional Services Protect Brief, a vertical-specific companion to the SonicWall 2026 Cyber Protect Report, revealing that law firms, accountancies, consulting practices, engineering firms and managed service providers generated 3 billion IPS events in the first half of 2026, the largest absolute attack volume of any industry SonicWall tracks, and that 460 organizations in the sector are actively detecting ransomware campaigns, the broadest exposure of any vertical. Every year, attacks look more sophisticated. In most ways they are; AI has made them faster, cleaner, and harder to spot at a glance. But the underlying methods have not changed. Attackers are still walking through the same unlocked doors. In professional services, those doors are open by design. Client portals, document management platforms, billing systems and collaboration tools are built to be accessible, and that accessibility is also the vulnerability. âProfessional services holds the kind of data that carries built-in leverage,â said Michael Crean, SonicWall SVP of Managed Services. âClient records tied to active legal matters, financial transactions, privileged communications, and for MSPs, administrative credentials into dozens of other organizationsâ networks. We're not talking about harmless background data. For the client, it represents massive financial, legal, and reputational risk. Attackers know this value, and the data bears that out.â SonicWallâs Professional Services Protect Brief draws on data from SonicWallâs global network of more than one million security sensors to document the specific attack patterns, exploitation vectors and ransomware campaigns defining the professional services threat landscape in the first half of 2026. Key Findings from the 2026 SonicWall Professional Services Protect Brief An MSP Breach Is Never Just One Breach

Airtel ropes in ITI Limited to fast-track digital transformation for enterprises

Airtel Business, the business arm of Bharti Airtel that offers connectivity and technology communications solutions, and Bengaluru-based ITI Limited, post-independent India’s first PSU, have entered into a strategic collaboration to help enterprises in India fast-track their digital transformation and unlock new opportunities for growth, resilience, and innovation. The collaboration will combine the complementary strengths and engineering excellence of ITI and Airtel Business to help businesses modernise legacy systems, improve operational efficiency, strengthen security, and respond faster to changing business demands. Rajesh Rai, Chairman and Managing Director, ITI Limited, said, “This collaboration will pave the way for joint identification and fulfilment of our customer needs in terms of their digital transformation, extremely ubiquitous and faster connectivity, hyper scale data centres, cybersecurity solutions, IoT, and a lot more while leveraging the complementary strengths of both organisations in terms of business orientation, customer reach and manufacturing capabilities.’’ Through an integrated suite of future-ready and scalable digital solutions across enterprise connectivity, data centre & sovereign cloud services, IoT, AI-powered solutions, LEO satellite services, cybersecurity, and more, the partnership would enable businesses to overcome legacy complexity, strengthen digital resilience, and build for the future to unlock new growth opportunities. Sharat Sinha, CEO, Airtel Business, said, “As India accelerates into its next phase of digital growth, building a foundation that is resilient, sovereign, and regulatorily compliant is imperative. We have partnered with ITI to create future-ready technology solutions that strengthen business continuity, unlock innovation, and support India’s secure digital-first future.” By bringing together their respective digital capabilities, the collaboration is expected to help businesses across industries to address key challenges of fragmented legacy environments, rising cybersecurity risks, growing data demands, and the need for greater operational agility. The partnership would deliver nationwide digital and telecom infrastructure, combining high-speed enterprise connectivity through Optical Fibre Cable, Gigabit Passive

Crytica Security Launches RDAi™

Crytica Security Launches RDAi™ - the First Deterministic Software That Sits Inside Critical Operational Technology Devices and Rapidly Detects Threats Published Tuesday, Aug. 11, 2026 | 9:47 a.m. Updated Tuesday, Aug. 11, 2026 | 9:47 a.m. RENO, Nev.--(BUSINESS WIRE)--Aug 11, 2026-- As cyber threats increasingly target operational technology (OT), the embedded systems and connected devices that underpin critical infrastructure, national security and healthcare, Crytica Security has developed a patented solution that delivers rapid deterministic detection that operates non-disruptively inside of each protected device. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260810630373/en/ The need is becoming increasingly urgent as cybersecurity moves toward machine speed. IBM’s Cost of a Data Breach Report 2026 found AI-driven attacks increased 56% year over year, while 50% of organizations with security operations centers (SOCs) have already deployed AI agents in production. As attackers and defenders increasingly operate at machine speed, confidence in the underlying security signal becomes more important. Cybersecurity technologies provide essential visibility into networks, communications, assets, vulnerabilities, and behavior. Crytica complements those technologies by addressing what external visibility alone cannot determine: whether a device itself remains in a trusted operating state. Crytica’s Rapid Detection, Alert, and isolation (RDAi™) system operates from inside each protected device, detecting unauthorized changes to the device’s instruction sets and providing deterministic evidence of those changes. This high-confidence evidence augments existing SOC, SIEM, XDR and AI-assisted security workflows without requiring organizations to replace their existing cybersecurity investments. “Cybersecurity has become extraordinarily good at observing what is happening around and external to a device, but ultimately, for detection to be truly effective, it must take place inside of each device itself,” said Dr. C. Kerry Nemovicher, CEO & Co-Founder of Crytica Security. “If an attacker changes a device’s instruction set and/or any of the other ‘static’ data, such

Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing

Cybersecurity researchers have discovered a new version of the Kimwolf/AISURU Android and Internet of Things (IoT) botnet that comes with significant improvements to improve its operational resilience and conduct distributed denial-of-service (DDoS) attacks. The new version, tracked as Kimwolf v7, was discovered by Palo Alto Networks Unit 42 in February 2026. "Kimwolf v7 adds an HTTP/2-based DDoS flood that constructs complete browser fingerprints," researchers Asher Davila, Chris Navarrete, and Doel Santos said. "This makes attack traffic more difficult to distinguish from legitimate browsing." The botnet also aims to make its command-and-control (C2) infrastructure more resistant to takedown efforts by using a tiered mechanism that employs Ethereum Name Service (ENS) to obtain the C2 address, a hard-coded Tor .onion hidden service, and a local proxy for routing between clearnet and Tor, while removing all scanning, exploitation, and brute-force functionality. The removal of the scanner and exploit modules is an indication that the threat actors behind the operation have split the propagation pipeline from the core payload, offloading the task to an external loader for initial access, while the Kimwolf binary handles DDoS attacks and proxy relay. Kimwolf is known to target Android TV boxes since August 2025, while its Linux counterpart, AISURU, primarily focuses on Linux IoT devices. The botnet has been active since at least mid-2024. The botnet typically abuses residential proxy services to reach Android TVs that ship with Android Debug Bridge (ADB) enabled on port 5555 on local networks and install malware capable of conducting DDoS attacks and acting as a relay to ferry malicious traffic. Once launched, the malware attempts to mask itself as seemingly legitimate Android system processes (e.g., "netd_service") to fly under the radar. Some of the newly observed features in the new version are as follows - - Carry out HTTP/2 flood attacks powered

ITI Ltd, Airtel Business enter strategic partnership for digital transformation

New Delhi: State-run telecom and technology company ITI Limited has entered into a strategic partnership with Airtel Business to help enterprises accelerate digital transformation and adopt secure, scalable technology solutions. Follow The PSUWatch Channel on WhatsApp The collaboration will combine the capabilities of the two companies across enterprise connectivity, data centres and sovereign cloud services, Internet of Things (IoT), artificial intelligence (AI)-powered solutions, cybersecurity and Low Earth Orbit (LEO) satellite services. Under the partnership, the companies will offer high-speed enterprise connectivity solutions, including optical fibre cable (OFC), GPON, SD-WAN and private 4G/5G networks, along with secure data centre and sovereign cloud services. The solutions are aimed particularly at regulated sectors such as banking and public sector undertakings. Follow PSU Watch on LinkedIN The partnership will also focus on industrial IoT, AI-powered analytics and end-to-end cybersecurity solutions. ITI and Airtel Business will additionally explore opportunities to support India’s defence and security requirements, with an emphasis on Make in India and Atmanirbhar Bharat. ITI Chairman and Managing Director Rajesh Rai said the collaboration will leverage the complementary strengths of the two companies in customer reach, business capabilities and manufacturing to address emerging requirements in digital transformation, connectivity, data centres, cybersecurity and IoT. While Airtel Business CEO Sharat Sinha said the partnership will focus on building resilient, sovereign and compliant digital infrastructure to help enterprises simplify legacy environments and scale digitisation. (PSU Watch is India's Business News centre that places the spotlight on PSUs, Bureaucracy, Defence and Public Policy. 👉 Click to join our channel now: PSUWatch WhatsApp Channel. Prefer LinkedIn? Follow PSU Watch on LinkedIN. Click to stay connected on Twitter here and stay updated)

A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular <b>IoT</b> Devices

A malicious SIM card can order the device it sits in to run commands of the attacker's choosing. On the cellular modules built into electric-vehicle chargers, industrial routers, and car telematics units, that is enough to take the whole device over. Researchers at the University of Birmingham and the security firm Fuzzware tested 26 phones and cellular modules for the capability, found it switched on in 9 of them, and used it to run their own code on a commercial EV charger. Six of the eight cellular modules they tested accepted the command. Only 3 of 18 phones did: the OPPO Find X5, the OPPO Reno 14 F 5G, and the ASUS Zenfone 9. No iPhone or Pixel was among them. The exposure is in machine-to-machine hardware. Five of the six were Quectel parts, three of them pulled from an EV charger, an industrial router, and a car's telematics control unit. Knowing the victim's number is not enough: every attack starts with a hostile card already in the slot, swapped by hand, slipped in as a thin interposer, pushed out by a compromised operator, or subverted in software or on the production line. Unattended IoT gear with an accessible SIM tray and few other exposed interfaces is exactly where that trade is worth making. There is no single patch. Every one of the nine devices that accepted the command runs a Qualcomm communication processor. Five other Qualcomm-based handsets in the survey did not accept it, which the paper suggests is down to vendor customisation. Qualcomm told the researchers it has built a hardened configuration that switches the interface off by default. Quectel says it has mitigated the file-access flaw and is still working on the interface itself. Neither has published an advisory, and the module maker's vulnerability portal requires a

ServiceNow Unveils Autonomous Cyber Defence Security Vision

ServiceNow Unveils Autonomous Cyber Defence Security Vision Building off its Autonomous Security vision, ServiceNow will offer six unified solutions to deliver AI-native cyber defence, expected to be available in December 2026, with a focus on prevention over reaction. The solutions will span cyber-physical security, agentic incident response, cyber risk and compliance, unified exposure management, identity and access security and continuous vulnerability detection. Following 82.8% of organisations reporting AI projects are already underway or planned for release within the next year, governing agents multiplies exposure faster than a human team can handle. But without proper integration of AI tools, insights and automations risk fragmentation, leaving enterprises in no better position than teams without proper agentic AI tools. According to ServiceNow's Shift Zero brief, the average enterprise runs more than 367 applications across the employee experience alone, each with its own data model, security perimeter and governance logic. Since AI agents can only execute as well as the data infrastructure underneath them, enterprise AI maturity is declining by 20% year after year. “As AI exposures compound exponentially, security teams operate on a human clock. Machine identities double every 18 months. Fragmented security tools can't match the curve AI is creating,” says Yevgeny Dibrov, SVP and GM of Cybersecurity and Risk at ServiceNow. “Organisations need autonomous security and governance that matches machine speed.” The six pillars for ServiceNow's AI Control Tower ServiceNow's Unified Exposure Management consolidates vulnerability findings across all sources into a single stream. Enriched with Early Warning threat intelligence, it prioritises remediation and uses a Vulnerability Resolution AI Specialist to execute low-risk patches at scale. To address risks across code, cloud and infrastructure, Continuous Vulnerability Detection provides a single platform for risk governance. It extends threat modelling to AI-generated code, validates runtime vulnerabilities using Dynamic Application Security Testing (DAST) and identifies

LG Electronics Opens Door to Self-Conduct European RED <b>Cybersecurity</b> Testing

LG Electronics Opens Door to Self-Conduct European RED Cybersecurity Testing LG Electronics (066570) has secured the qualification to directly conduct cybersecurity certification testing for wireless communication products sold in Europe at its own research laboratory. By dramatically streamlining the previously complex procedure of sending new product prototypes to overseas testing agencies for certification, the company can now significantly reduce both the time and cost from product development to market launch. LG Electronics announced on the 11th that its SW Certified Testing Laboratory, operating under the Chief Technology Officer (CTO) division, has obtained designated testing laboratory status from global certification body TÜV Rheinland for cybersecurity regulations under the European Radio Equipment Directive (RED). A qualification ceremony held on the 10th at TÜV Rheinland Korea's headquarters was attended by Shim Woo-gon, head of LG Electronics' SW Engineering Research Institute; Kim Dong-wook, head of the SW Center; and Frank Juettner, CEO of TÜV Rheinland Korea. The RED is a regulation requiring high-level security and safety standards for products incorporating wireless communication technologies such as Wi-Fi and Bluetooth that are distributed in the European market. Since last year, related standards have been significantly strengthened, mandating security features capable of protecting networks and personal information from external cyberattacks and preventing financial fraud. With this qualification, LG Electronics can now perform the security testing required for RED certification at its own testing laboratory. Under this arrangement, LG Electronics conducts tests according to prescribed standards and submits the results to TÜV Rheinland, which then reviews the data and issues certification without requiring separate duplicate testing. LG Electronics explained that this will reduce the time and costs associated with logistics and external testing, while also lowering the possibility of security information about products under development being leaked externally. The company expects particularly significant benefits in business-to-business (B2B) sectors

LG Electronics wins EU nod to self-test wireless device <b>cybersecurity</b>

LG Electronics can now conduct certification tests in-house that are required for Europe's wireless device cybersecurity regulations. By reducing the step of sending prototypes to external certification bodies, the company is expected to cut the time and expense from development to launch. LG Electronics said on the 11th that its software accredited testing lab under the chief technology officer (CTO) has obtained designation as a notified testing body for cybersecurity regulations under the European Radio Equipment Directive (RED) from global certification body TÜV Rheinland. The European Radio Equipment Directive is a regulation that applies security and safety standards to products with wireless communication functions. Since last year, cybersecurity requirements have been strengthened to protect networks and personal information from external attacks and to prevent financial fraud. With this designation, LG Electronics can carry out the tests needed for related certifications in-house. TÜV Rheinland will review the test results and data that LG Electronics conducts on its own and then issue certificates. The company can reduce procedures such as sending prototypes to overseas certification bodies for separate testing, as it did before. LG Electronics said it can reduce the time and expense required for certification while also lowering the risk that security-sensitive product information is exposed externally. For business-to-business (B2B) products such as vehicle components and heating, ventilation and air conditioning (HVAC), the company plans to use this to shorten the period from reflecting client requirements in products to completing certification. The LG Electronics software accredited testing lab earned international accredited testing organization status in 2019 from the Korea Laboratory Accreditation Scheme (KOLAS) in the field of system and electrical and electronic software quality measurement. It then expanded its testing scope to system software functional safety in 2020, automotive software functional safety in 2021–2022, and home appliance functional safety in 2023.

News by CNBC TV18 on TradingView, 2026-08-10 — cnbctv:0658a3612094b:0

ITI shares jump over 4% after pact with Airtel Business for digital solutions Shares of state-run telecom equipment maker ITI jumped as much as 4.75% to ₹295.80 on the NSE on Monday, August 10, after it announced a strategic partnership with Airtel Business to offer digital and telecom solutions to enterprises. Under the partnership, ITI and Airtel Business will collaborate on enterprise connectivity, data centre and sovereign cloud services, Internet of Things (IoT), artificial intelligence (AI)-powered solutions, cybersecurity and low-Earth orbit (LEO) satellite services. The companies said the partnership will focus on helping businesses modernise legacy systems, improve operational efficiency and strengthen digital security. The collaboration will cover connectivity solutions including optical fibre connectivity (OFC), GPON, SD-WAN and private 4G/5G networks, along with secure data centres and sovereign cloud services. The solutions are also expected to target regulated sectors such as banking and public sector undertakings, with offerings including industrial IoT-based asset tracking, AI-powered analytics and cybersecurity solutions. ITI said the collaboration will also explore solutions for India's defence and security requirements, with a focus on domestic manufacturing and the government's Make in India and Atmanirbhar Bharat initiatives. ITI's BSNL order The development comes after ITI last month secured an ₹856.39 crore work order from Bharat Sanchar Nigam Ltd (BSNL) for the Phase IX expansion of the telecom operator's 4G mobile network in West India. The order covers the planning, engineering, supply, installation, testing and commissioning of the 4G network on a turnkey basis across 7,613 sites in the West Zone, according to ITI. The BSNL project is part of the government's Atmanirbhar Bharat initiative, under which BSNL is deploying indigenous 4G telecom equipment to strengthen self-reliance in the telecom sector.

Airtel, ITI to jointly deliver connectivity, cloud, <b>cybersecurity</b> services for enterprises

Airtel, ITI to deliver connectivity, cloud, cybersecurity services for enterprises Indian operator Airtel, through its Airtel Business unit, has partnered with ITI, a government-owned telecoms and technology manufacturer, to provide digital and telecom services to businesses in India. The partnership will combine the capabilities of Airtel Business and ITI to help enterprises update legacy systems and strengthen cybersecurity.