Federal Cuts Put Local, State Agencies at Cyber-Risk
Federal Cuts Put Local, State Agencies at Cyber-Risk Summary Federal budget and staffing cuts to organisations such as CISA and the centres that house MS-ISAC and EI-ISAC are hitting state…
Federal Cuts Put Local, State Agencies at Cyber-Risk Summary Federal budget and staffing cuts to organisations such as CISA and the centres that house MS-ISAC and EI-ISAC are hitting state…
Embracing the Next Generation of Cybersecurity Talent Summary There is a severe global shortfall in cybersecurity labour — NIST estimates a 3.4 million gap — at a time when organisations…
Anyone Using Agentic AI Needs to Understand Toxic Flows Summary The article warns that the rush to deploy agentic AI across enterprises is creating a new class of cyber-resilience risks…
Secretive MaaS Group ‘TAG-150’ Develops Novel ‘CastleRAT’ Summary Researchers have mapped a young malware-as-a-service (MaaS) cluster labelled TAG-150 that centres on a loader called CastleLoader (aka CastleBot) and new remote…
Proof-of-Concept in 15 Minutes? AI Turbocharges Exploitation Summary An AI-driven offensive research pipeline developed by two Israeli security researchers — Nahman Khayet and Efi Weiss — used prompts to a…
Scammers Are Using Grok to Spread Malicious Links on X Summary Bad actors on X are exploiting Grok — X’s native AI assistant — to republish malicious links hidden in…
Anyone Using Agentic AI Needs to Understand Toxic Flows Summary This article explains why organisations adopting agentic AI need to pay attention to “toxic flows” — risky combinations of agent…
How Has IoT Security Changed Over the Past 5 Years? Summary Over the last five years IoT adoption has grown strongly across industries, but security progress has been incremental rather…
Secretive MaaS Group ‘TAG-150’ Develops Novel ‘CastleRAT’ Summary Researchers have tracked an emerging malware-as-a-service (MaaS) cluster centred on a loader called CastleLoader and an associated service dubbed CastleBot. The operation,…
Critical SAP S/4HANA Vulnerability Under Attack, Patch Now Summary A critical code-injection vulnerability (CVE-2025-42957) in SAP S/4HANA — rated 9.9 CVSS — is being exploited in the wild. The flaw…