Data & infrastructure
-
Ofcom details the telecoms resilience bar
Ofcom’s updated guidance sets operational expectations for UK communications providers across network design, monitoring, incident handling, third-party operations, and backup power.
-
Anthropic suspension exposes AI dependency
A US directive forced Anthropic to suspend access to Fable 5 and Mythos 5 for foreign nationals, exposing dependency risk around frontier AI security tools.
-
UK tests AI in cyber defence
A UK government pilot found 407 security findings across nine organisations using frontier AI models, showing defensive potential and governance pressure.
-
Zurich deal reshapes specialty risk market
Zurich’s proposed acquisition of Beazley would create a UK-headquartered specialty insurance leader with consequences for cyber insurance capacity and underwriting.
-
Moxa fix leaves encryption gap
Moxa has disclosed an incomplete remediation affecting industrial computers, where invasive physical access could still expose LUKS disk encryption keys.
-
Naxclow IoT flaws lack a fix
INCIBE has warned of critical Naxclow IoT platform vulnerabilities affecting device identity, control traffic, credential exposure, and unauthorised access.
-
Siemens bulletin tests industrial patch discipline
Siemens’ June industrial security bulletin covers critical and high-severity flaws across automation, networking, HMI, engineering, and operational technology products.
-
Finland tests accountability for cable damage
Finnish prosecutors have charged two ship officers over alleged Baltic subsea cable damage, bringing telecoms resilience, maritime risk, and jurisdiction into court.
-
Universities face a student-platform security reckoning
Recent exploitation activity and the Nottingham incident have renewed attention on student records platforms, where universities concentrate identity, finance, academic, alumni, and international-campus data.
-
Velvet Ant hid inside Linux authentication
Sygnia says a China-nexus actor maintained long-term access to an isolated network by backdooring Linux PAM and OpenSSH authentication components.










