The latest update for #Cyberhaven includes "How #DataSecurity Fits Into a Data Management Framework" and "Data Lineage vs. Data Provenance: What's the Difference?".
The latest update for #ForwardNetworks includes "Protecting Vulnerable and Poorly Configured Network Devices" and "Executive Order 14409 Starts a 30-day Clock on Federal Cyber Defense".
The latest update for #UpGuard includes "Best Cyber Risk Posture Management (CRPM) Platforms" and "Best Dark Web #Monitoring Tools, Software, and Services in 2026".
Industriesjaro.com in Canada was hit by Safepay ransomware, disrupting operations and impacting availability at the manufacturing firm known for outdoor enclosures and kiosks. #Canada#Ransomware#Manufacturing
"The open-weight model impressed with early benchmark results, trading blows with some of the most advanced closed-weight ones being developed by the likes of OpenAI and Anthropic — and at a fraction of the cost."
The latest update for #Veracode includes "Cyber Risk Intelligence Brief: #SupplyChain Trust Erosion and Ransomware Velocity Require Preventive Control Discipline" and "Erasing Security Debt with an App Risk Remediation Platform".
Ransomware claim hits TimeTEX in Germany, with operations disrupted in a reported safepay attack. The business services firm traces its roots to 1991. #Germany#TimeTEX#Ransomware
The latest update for #Cyjax includes "How to Build a Rail #ThreatIntelligence Programme: A Practical Roadmap" and "Why Generic Threat Intelligence Doesn't Work for Rail".
The latest update for #WatchGuard includes "The Real #Cybersecurity Challenge is Operational Capacity" and "Beyond Security: How Complexity is Pushing Companies to the Brink".
Florida has taken a bold step by suing OpenAI and Sam Altman, highlighting concerns over AI risks and accountability. This legal challenge raises important questions about the future of AI regulation and its implications for innovation and safety. What are your thoughts?
The latest update for #Corelight includes "What the Black Hat NOC taught me about MCP & agentic SOCs (Chapter 3 of 4)" and "Precarious exposure of cookies when QUIC rage quits".
“Treating open-model AI instead as a danger to be licensed and contained is a category error, and would be a costly one. It mistakes the ordinary work of competition for a threat to be policed.” www.washingtonpost.com/opinions/202...@washingtonpost.com
google deepmind has a paper on getting their LLMs to prove math problems formally, I wonder what they do to cajole it into not giving up. it seems like they don't really do anything, they just ralph wiggum it
Study: off-balance sheet debt at Alphabet, Microsoft, Amazon, Meta, and Oracle grew an est. ~8x since 2022 to ~$1.65T, eclipsing ~$1.35T in balance sheet debt (Kohei Yamada/Nikkei Asia)
Spyware once limited to governments is now reaching criminal groups. That puts everyday Americans at risk from tools that can steal messages, photos, contacts and location data. U.S. intelligence needs to track who builds and uses them. #Spyware#CyberSecurity#USIntelwww.axios.com/2026/03/21/i...
Codex encrypts agent-to-agent messages, wiping plaintext from rollout history. OpenAI gave no rationale. Devs can't audit what their own agents told each other, and OpenAI won't say why.
7-Zip Has a Critical Flaw, and It Won’t Fix Itself — So You Have To
A booby-trapped file can run malware through 7-Zip on Windows. The fix is in version 26.02, but the program won't auto-update, so you must install it yourself....
~Varonis~
An autonomous AI attacker chained two RCE flaws in HuggingFace's dataset pipeline, leaked cloud credentials, and moved laterally before being caught by AI-driven anomaly detection.
-
IOCs: (None identified)
-
...
📰 Russian cyberespionage groups are increasingly using infrastructure hacking to infiltrate systems and gather sensitive data, including personal information from us...
Australian Strategic Policy Institute@aspi-org.bsky.social
'Even as both sides contend with the economics of AI, current prices from OpenAI and Anthropic will likely be unsustainable if the world moves into AI agents. Chinese AI companies are already well-positioned to undercut the US companies,' writes Alex Colville.
Hugging Face, the widely used platform for sharing open-source machine learning models and datasets, has disclosed a security breach it says was carried out by an autonomous AI agent system. How the attack unfolded In a bl… #hackernews#huggingface#news
Google Cloud has announced an expanded multi-year strategic collaboration with @Intel to accelerate their enterprise-wide AI transformation with Gemini Enterprise.
ArXiv Paper Poster (cs.SI & ph-soc)@soc-net-bot.bsky.social
A Survey on GNN-based Link Prediction: Techniques, Applications, and Challenges https://arxiv.org/abs/2607.16198
Graph Neural Networks (GNNs) have emerged as the leading paradigm for link prediction, enabling the inference of missing connections and the anticipation of potential future links....📈🤖
The latest update for #CISOGlobal includes "MFA Is Not A Checkbox: Best Practices and Common Mistakes That Create Risk" and "What Every CEO Gets Wrong About Cyber Risk".
SonicWall SMA1000 flaws were exploited as zero-days for weeks, letting UTA0533 gain root and deploy custom malware via VPN appliances. #SonicWall#SMA1000#UTA0533
Before the $6.4 billion deal to sell his AI devices startup io to Sam Altman’s OpenAI, industrial designer Jony Ive spent more than 10 years working closely with Apple co-founder Steve Jobs to create products like the iPhone, iPad and MacBook.
With Anthropic racing to get into biopharma, I'm sharing my earlier piece on how AI companies are trying to eat pharma's lunch. (How far this will go will largely depend on what they can learn or infer about biology that isn't currently understood)
Ransomware claim reports cenesco.de, a German IT solutions provider founded in 1998, allegedly targeted by Safepay. The incident is reported to impact SMEs in Germany. #Germany#Ransomware#Safepay
Google DeepMind is calling for the moral behavior of large language models—such as what they do when called on to act as companions, therapists, medical advisors, and so on—to be scrutinized with the same kind of rigor as their ability to code or do math.