Cyber Insider
-
Residential proxies are breaking trusted traffic
A Dutch botnet takedown shows how residential proxy abuse is weakening old assumptions about trusted traffic, with consequences for IP reputation, geolocation, identity controls, and fraud detection.
-
The security stack now needs its own controls
Recent Fortinet and Trend Micro disclosures show how endpoint management and security platforms have become privileged infrastructure, requiring governance that goes beyond patching and product trust.
-
Microsoft exposes npm dependency campaign
Microsoft has identified 33 malicious npm packages abusing dependency confusion. The campaign profiled developer environments and targeted the weak boundary between internal code and public package registries.
-
GlobalProtect flaw is under attack
Palo Alto Networks has updated its GlobalProtect vulnerability advisory again. The affected PAN-OS issue can allow unauthorised VPN connections in specific configurations and is now marked as attacked.
-
Google binds sessions to devices
Google has made device-bound session credentials generally available for Workspace. The Chrome security change addresses session-cookie theft, one route attackers use to work around multi-factor authentication.
-
UK cyber bill nears Commons vote
The UK cyber resilience bill is nearing another Commons stage. The legislation would expand regulated-sector coverage and bring suppliers, data centres, and managed services closer to statutory cyber oversight.
-
GCHQ sets out AI defence case
GCHQ has linked AI-enabled cyber defence to national resilience strategy. Its annual lecture placed cyber defence, data infrastructure, and public-service continuity inside the same strategic frame.
-
Italy reports sustained phishing pressure
CERT-AGID recorded 94 malicious campaigns in one reporting week alone. The data shows persistent identity, malware, and public-service impersonation pressure across a major European market.
-
Dutch police disrupt vast botnet
Dutch police have disrupted botnet infrastructure controlling millions of devices. The operation exposed how compromised consumer and edge systems can become criminal infrastructure at European scale.
-
ENISA maps NIS2 sector maturity
ENISA has published its latest NIS360 sector maturity assessment report. The report gives European regulators and operators a benchmark for cyber resilience across high-criticality sectors covered by the NIS2 Directive.









