Decoding the world of cybersecurity

News

  • G7 sets cyber resilience priorities

    G7 sets cyber resilience priorities

    The European Commission has backed a G7 cybersecurity declaration focused on post-quantum migration, AI security, telecoms resilience, SMEs, and software supply chain transparency.

    read more

  • France contains Tchap account compromise

    France contains Tchap account compromise

    French officials say an account compromise affected public conversations in Tchap, the government messaging service, while private encrypted conversations remained protected.

    read more

  • ENISA ties SBOM adoption to CRA

    ENISA ties SBOM adoption to CRA

    ENISA says the Cyber Resilience Act is accelerating SBOM adoption, moving software component transparency deeper into procurement, vulnerability management, supplier assurance, and product-risk governance.

    read more

  • EU cyber package moves forward

    EU cyber package moves forward

    EU telecoms ministers have advanced work on the Digital Networks Act and Cybersecurity Act 2, bringing infrastructure resilience, ENISA’s role, certification, ICT supply chain risk, and NIS2 simplification into scope.

    read more

  • OpenAI expands ChatGPT Lockdown Mode

    OpenAI expands ChatGPT Lockdown Mode

    OpenAI has expanded Lockdown Mode across logged-in ChatGPT users, giving organisations a concrete control for reducing prompt-injection data-exfiltration paths.

    read more

  • SolarWinds flaw enters exploitation list

    SolarWinds flaw enters exploitation list

    CISA has added a SolarWinds Serv-U denial-of-service vulnerability to its exploited catalogue, putting file-transfer resilience and exposed enterprise infrastructure back under scrutiny.

    read more

  • WhatsApp asks court to sanction NSO

    WhatsApp asks court to sanction NSO

    Meta says WhatsApp disrupted NSO-linked spear-phishing attempts and is asking a US court to hold the spyware vendor in contempt of a permanent injunction.

    read more

  • Shai-Hulud hits scientific Python packages

    Shai-Hulud hits scientific Python packages

    A new Shai-Hulud wave has compromised science-focused PyPI packages, putting developer secrets, research workflows, and bioinformatics environments back in the software supply chain spotlight.

    read more

  • Microsoft repo incident exposes agent risk

    Microsoft repo incident exposes agent risk

    A reported Miasma supply chain compromise affecting Microsoft-linked GitHub repositories shows how AI coding tools can turn development environments into credential-exfiltration paths.

    read more

  • NHS warns on exploited VPN flaw

    NHS warns on exploited VPN flaw

    NHS England has issued a high-severity alert after Check Point confirmed active exploitation of a critical VPN authentication bypass affecting legacy IKEv1 remote-access configurations.

    read more

×