CISA has released a roadmap establishing four overarching broad goals, with five more specific lines of effort that appear to indicate concrete immediate priorities. Defensive AI cybersecurity measures and plans for critical infrastructure adoption are repeating themes.
New FCC rules will essentially force a new set of procedures and checks on the customer service employees that are targeted by the criminal hackers that engage in SIM swapping.
While cybersecurity practitioners have uncovered many ways that the predictive technology can benefit security teams, threat actors have also been swift to adopt generative AI as the newest tool in their arsenals for launching sophisticated attacks.
Samsung has disclosed a year-long data breach impacting UK online store customers. The cybersecurity incident which took placed in July 2019 - June 2020 was only disclosed in November 2023.
Third party data breach of two relocation services providers may have exposed the passports, financial information and other personal information of Canadian government employees dating back to 1999.
The new New York cybersecurity regulations require healthcare facilities to appoint a CISO, implement incident response plans, and to face new breach reporting requirements. They will also have access to a total of $500 million in new funding from the state.
A very rough year of cyber attacks prompted quick and dramatic legislative action in Australia, and the latest development is the announcement of a new national cybersecurity plan to be funded with A$587 million.
The British Library has confirmed that the October cyber attack disrupted services and leaked employee's personal data listed for sale on the dark web by the Rhysida ransomware gang.
IntelBroker claims to have broken into General Electric (GE) and stolen sensitive military files belonging to DARPA. GE has yet to confirm the data theft, only saying that it is still investigating the incident.
Pro-Russian hacktivists breached the Idaho nuclear lab and stole sensitive employee data after compromising a federally-approved third-party vendor system.










