The White House has launched a new cybersecurity clearinghouse for vulnerability coordination, a move that could reshape how critical infrastructure defenders handle the gap between flaw discovery and remediation.
A UK sentencing linked to a 2024 attack on Transport for London shows how cybercrime cases can move from network incident to courtroom outcome, even when the technical path remains undisclosed.
A mounting military buying ban is drawing attention to a risk that has nothing to do with broken software: trust can be withdrawn even when no technical failure is publicly identified.
A White House coordination effort ties AI developers and essential-service operators together, signaling that vulnerability response is becoming a government-led operational function, not just a policy slogan.
The Pentagon has paused phase two of CMMC, turning a certification dispute into a sharper question: how much security can smaller defense suppliers realistically afford?
Italy’s annual communications review puts spoofing, platform rules, piracy blocking, and journalistic content protection on the same page, showing how trust in media now depends on both networks and governance.
U.S. officials named First VPN Service and two individuals in a sanctions action tied to alleged support for ransomware actors and other cybercriminal activity.
The U.S. Treasury Department has sanctioned two individuals and one entity over ransomware-related activity affecting U.S. organizations, but the full technical path behind the case remains limited in public detail.
The Pentagon has suspended CMMC Phase 2 while a new review and reform task force examines the program, putting contractor cybersecurity rules back under the microscope.
A global police operation spanning 97 countries shows that arrests are only part of the pressure point - the financial side of cybercrime is now in the crosshairs too.
Apple's lawsuit against OpenAI puts a familiar cyber problem back in the spotlight: when valuable engineering knowledge moves with people, the real security test is offboarding, logging, and access control.
A prison sentence for a former ransomware negotiator shows how sensitive case intelligence can become operational leverage for extortion crews.
A 70-month prison sentence underscores a painful lesson for defenders: in ransomware cases, the most valuable data may be the details exchanged during negotiations.
U.S. policymakers are weighing new limits on Chinese AI technology, a move that could reshape how companies buy, deploy, and govern models across the AI stack.
A 70-month U.S. prison sentence tied to BlackCat-related conduct spotlights a rarely discussed attack surface: the people and processes that surround ransomware negotiations.
A 70-month prison sentence tied to BlackCat shows how ransomware response roles can become a security risk when trust is abused.
Interpol’s Operation First Light 2026 closed with thousands of arrests and a reported $293 million in seized illicit assets, underscoring how enforcement can strike the financial backbone of cross-border crime.
A consultation on 21 proposed changes points to a narrower compliance debate with a wider goal: keeping critical infrastructure rules relevant as AI changes how cyber risk is measured.
Ireland, Spain, France and the Netherlands are now in the enforcement spotlight for leaving the EU’s NIS2 cybersecurity directive untransposed well past deadline.
France, Spain, Ireland and the Netherlands have been referred to the Court of Justice over NIS2, underscoring how cybersecurity compliance can become a legal issue, not just an administrative one.