News
Okta made a nightmare micromanager for your AI agents
Identity access and management platform Okta announced the general availability of its Okta for AI Agents, which will give customers the ability to do three things: locate agents, see what they’re doing, and shut them down if need be.…
State snoops and spyware vendors planting info-stealing malware on iPhones, Google warns
A new exploit kit targeting iPhone users and stealing their sensitive data is being abused by "multiple" spyware vendors and suspected nation-state goons, security researchers said on Wednesday.…
Amazon security boss says crims abused max-security Cisco firewall flaw weeks before disclosure
Ransomware criminals exploited CVE-2026-20131, a maximum-severity bug in Cisco Secure Firewall Management Center software, as a zero-day vulnerability more than a month before Cisco patched the hole, according to Amazon security boss CJ Moses.…
North Korea's 100,000-strong fake IT worker army rake in $500M a year for Kim Jong Un
Researchers at IBM X‑Force and Flare Research have uncovered data that sheds light on how North Korea's fake IT worker schemes operate and infiltrate companies in order to funnel money back to the regime and steal sensitive information.…
Britain's satellite-watching gap to be plugged with £17.5M eyeball in Cyprus
The Ministry of Defence (MoD) plans to spend £17.5 million on a remotely-operated satellite monitoring facility in Cyprus, partly to protect the UK's secure communications system Skynet.…
Iran's cyberattack against med tech firm is 'just the beginning'
Businesses should expect that Iran will conduct more aggressive cyber-ops as the war escalates, according to security analysts.…
Linux Foundation kicks off effort to shield FOSS maintainers from AI slop bug reports
Half a dozen Big Tech players have together delivered $12.5 million in grants towards a project that aims to help maintainers of open source projects to cope with AI slop bug reports.…
Japan to allow ‘proactive cyber-defense’ from October 1st
Japan’s government yesterday decided to allow its Self-Defense Force to conduct offensive cyber-operations, starting on October 1st.…
World<s>Coin</s>'s newest pitch: Scan your eyeballs to prove AI agents really represent you
Sam Altman has cooked up a plan to make his cryptocurrency/identity/eyeball-scanning-orb venture more useful by – you guessed it – adding agentic AI to the mix. Now the technology behind it will be used to identify the human behind bots.…
EU sanctions Iranian cyber front over election meddling, Charlie Hebdo breach
The Council of the European Union sanctioned Emennet Pasargad on Monday, a company used as a front for a series of Iranian cyberattacks.…
Too big to ignore, too small to be served: the midmarket security gap
Partner Content The midmarket matters. JP Morgan estimates approximately 300,000 organizations generating $13T in annual revenue. Yet they occupy an awkward position in the security landscape. They're large enough to be attractive targets with complex digital estates, significant revenue, and valuable data, but not large enough to have the headcount, budget maturity, or tooling sophistication of an enterprise security team.…
Switzerland built a secure alternative to BGP. The rest of the world hasn't noticed yet
Feature BGP, the Border Gateway Protocol, was not designed to be secure. It was designed to work – to route packets between the thousands of autonomous systems that make up the internet, quickly and at scale.…
Gartner suggests Friday afternoon Copilot ban because tired users may be too lazy to check its mistakes
Gartner analyst Dennis Xu has half-jokingly suggested banning use of Microsoft’s Copilot AI on Friday afternoons, because he fears at that time of week users may be too lazy to properly check its possibly offensive output.…
Bank built its own threat hunting agent because vendors can’t keep pace with new threats
Australia’s Commonwealth Bank built its own agentic AI threat hunting tools, because vendors are too slow to develop tools that can cope with emerging AI-powered threats, according to General Manager of Cyber Defence Operations Andrew Pade.…
Robotics surgical biz Intuitive discloses phishing attack
Robotics-assisted surgical tech firm Intuitive said that unauthorized intruders gained access to some of its internal IT business applications after stealing an employee's credentials during a phishing attack.…
Cybercrime has skyrocketed 245% since the start of the Iran war
Cybercrime has skyrocketed since the start of the Iran war, according to Akamai, which reports a 245 percent increase in everything from credential harvesting attempts to automated reconnaissance traffic aimed at banks and other critical businesses.…
AI finally delivers those elusive productivity gains... for cybercriminals
AI is apparently good for the bottom line if your business is crime. Financial fraud schemes carried out with the help of artificial intelligence are 4.5 times more profitable than those that aren't enhanced, according to Interpol's latest estimates.…
Flaw in UK's corporate registry let directors rummage through rival records
Companies House was forced to pull down its record-filing platform for the entire weekend to rectify a "security issue" that exposed the personal details of company directors and other data to any logged in users.…
Outsourcer Telus admits to attack – may have lost a petabyte of data to ShinyHunters
Infosec In Brief Canadian outsourcer Telus Digital has admitted it fell victim to a cyberattack.…
Credential-stealing crew spoofs VPN clients from Cisco, Fortinet, and others
A group of cybercriminals tracked as Storm-2561 is using fake enterprise VPN clients from CheckPoint, Cisco, Fortinet, Ivanti, and other vendors to steal users' credentials, according to Microsoft.…