< ciso
brief />
Tag Banner

All news with #news tag

348 articles · page 6 of 18

March 2026 security roundup — Tony Anscombe key takeaways

🔒 In the March 2026 edition Tony Anscombe reviews several high-impact incidents and trends that should shape organizational defenses. He summarizes the reported Stryker intrusion claimed by the Iran-linked Handala group, new research from the Google Threat Intelligence Group showing a rise in data theft tied to ransomware, Instagram's plan to stop encrypting private messages in May, and a Europol-led takedown of the Tycoon 2FA phishing platform. Watch the video for practical lessons and related coverage.
read more →

Sustained Global Collaboration to Disrupt Cybercrime

🌐 Cybercrime functions as an industrialized ecosystem, with specialized actors and services that enable attacks to scale across borders. The RSAC panel highlighted the need to move from episodic takedowns to continuous, coordinated campaigns and showcased the Cybercrime Atlas as a tool to map actors, infrastructure, and financial flows. Operationalizing collaboration requires secure intelligence sharing, defined roles across industry and law enforcement, and repeatable governance to shift the economics of cybercrime.
read more →

Anti-Piracy Coalition Shuts Down AnimePlay App, 5M Users

🔒 The Alliance for Creativity and Entertainment (ACE) has shut down AnimePlay, a major illegal anime streaming platform that hosted over 60 terabytes of TV shows and movies and had more than 5 million registered users, mostly in Indonesia. ACE said it seized 15 domains, hosting servers, full source code, 29 GitHub repositories, databases, advertising tools, and other backend systems, taking the service offline. The developer and admin surrendered control of the backend ecosystem, and ACE said the action restricts the operator's ability to rebuild or relaunch the platform.
read more →

Kali Linux 2026.1 Released with New Tools and BackTrack Mode

🛡️ Kali Linux 2026.1 is now available, introducing eight new tools, a refreshed visual theme, and a BackTrack mode for Kali-Undercover. The update adds 25 new packages, updates 183 others, and upgrades the kernel to 6.18, while polishing the installer, boot, and login experiences. New network-repository tools include AdaptixC2, Atomic-Operator, Fluxion, GEF, MetasploitMCP, SSTImap, WPProbe, and XSStrike. The release also delivers Kali NetHunter fixes and recommends WSL 2 for GUI support.
read more →

UK Police Arrest Over 500 in Major Fraud Crackdown

🔎Operation Henhouse V saw UK police and partners carry out a large-scale fraud crackdown, resulting in 557 arrests, 172 voluntary interviews and 249 cease-and-desist notices. Law enforcement secured account-freezing orders of £9m and seized £18.1m in cash and assets. The operation, led by the NCA and City of London Police, targeted online and offline scams and identified overseas call centres, demonstrating strengthened coordination amid rising digital fraud.
read more →

Dmytro Kuleba to Headline Infosecurity Europe 2026 Keynote

🎤 Infosecurity Europe has named former Ukrainian Foreign Minister Dr. Dmytro Kuleba as a headline keynote for its 2–4 June 2026 conference at ExCeL London. Kuleba will speak on 3 June at 10:05 about 'Ukraine's Hybrid War and the New Cyber Frontline,' sharing lessons on coordinated cyber‑kinetic attacks, disinformation and why Western enterprises are increasingly the primary cyber frontline. Attendees will hear practical insights for resilience.
read more →

Team Mirai's Digital Democracy: AI Transforming Elections

🤖 Japan’s recent election highlighted Team Mirai, a new political party that used AI-driven engagement tools to deepen civic participation and shape policy. Its AI Interviewer walked voters through issues, while the gamified Action Board mobilized volunteers and the open-source Gikai portal summarized legislation. Mirai collected tens of thousands of public inputs and converted them into a manifesto focused on democratic reform rather than traditional left‑right politics.
read more →

NCA Chief Warns Teens Are Being Radicalized into Cybercrime

🚨 The head of the UK's National Crime Agency, Graeme Biggar, warned at the launch of the NCA's National Strategic Assessment that online platforms and algorithms are 'radicalizing' teenagers into cybercrime, alongside other harms. He said technology is reshaping crime and that tech companies must take responsibility. Biggar highlighted rising UK-based attackers, surges in online fraud and sextortion, and the creation of the Online Crime Centre to speed data sharing across government and industry.
read more →

International Takedown Disrupts Four Major IoT Botnets

🚨 U.S., German, and Canadian authorities dismantled command-and-control infrastructure used by the Aisuru, KimWolf, JackSkid, and Mossad IoT botnets, seizing virtual servers, domains, and related assets. The Justice Department says the four botnets had ensnared more than three million devices and issued hundreds of thousands of DDoS commands, including record-setting attacks by Aisuru. Private firms such as Akamai assisted, warning the campaigns disrupted ISP services and even targeted government IPs including DoDIN.
read more →

Tycoon2FA Phishing-as-a-Service Persists After Takedown

🛡️ On March 4, 2026, Europol coordinated a technical disruption that seized 330 domains tied to Tycoon2FA, a subscription-based phishing-as-a-service platform that enabled adversary-in-the-middle (AITM) attacks to bypass multifactor authentication. CrowdStrike observed an immediate drop in activity followed by a return to pre-disruption campaign volumes as operators reconstituted infrastructure and continued using established TTPs. Defenders should maintain layered controls across phishing, DNS resolution, cloud authentication, and Exchange inbox protections while leveraging Falcon and Falcon Complete for detection and response support.
read more →

Feds Disrupt Four IoT Botnets Behind Massive DDoS Attacks

🛡️ The U.S. Justice Department, with Canadian and German partners, dismantled infrastructure for four major IoT botnets — Aisuru, Kimwolf, JackSkid and Mossad — that compromised more than three million devices and launched hundreds of thousands of DDoS attacks. The action targeted U.S.-registered domains and virtual servers and aimed to stop further infections and future attacks. Law enforcement credited nearly two dozen tech firms for assisting in the operation.
read more →

Navia data breach exposes personal details of 2.7M

🔒 Navia Benefit Solutions says an unauthorized actor accessed its systems between December 22, 2025 and January 15, 2026, potentially exposing records for nearly 2.7 million people. The company discovered the activity on January 23, 2026 and launched an investigation, which found the actor acquired names, dates of birth, Social Security numbers, phone numbers, email addresses, plus HRA, FSA and COBRA enrollment details. Navia says claims and financial account information were not exposed. Affected individuals are being offered 12 months of identity protection and credit monitoring through Kroll, and federal law enforcement has been notified; no ransomware group has claimed responsibility.
read more →

UK Cyber Monitoring Centre Plans US Expansion by 2027

🌐 One year after its 2025 founding, the UK-based Cyber Monitoring Centre (CMC) is preparing to establish a US counterpart to quantify the economic and financial impact of major cyber incidents using its 0–5 category scale. In 2025 the CMC analysed two major events — the Marks & Spencer/Co‑op disruption (Category 2; estimated loss £270m–£440m) and the Jaguar Land Rover attack (the costliest, £1.6bn–£2.1bn). The nonprofit says it will appoint a US technical committee, set up a legal entity, run an incubation period to adapt its data-analytics methodology for the US economy, and expects formal establishment in 2027.
read more →

Microsoft Exchange Online outage blocks mailbox access

📧Microsoft is investigating an ongoing Exchange Online outage that is preventing customers from accessing mailboxes and calendars. The company acknowledged the incident at 06:42 AM UTC and reported problems across Outlook on the web, Outlook desktop, Exchange ActiveSync, and other Exchange Online connection protocols. Microsoft said telemetry shows recovery for some users while engineers apply configuration changes and continue to monitor service health.
read more →

OpenAI: ChatGPT Ads Limited to US for Now, Says Company

ℹ️ OpenAI told BleepingComputer that references to ads in its updated privacy policy do not indicate a global rollout — ads are currently limited to the United States. Ads launched in the US on February 9, 2026, and appear below answers for logged-in Free and Go users. OpenAI says ads run on separate systems, are clearly labeled, may be personalized, and that advertisers do not access chat content.
read more →

Upcoming Speaking Engagements: Schneier's Spring 2026 Tour

📅 Bruce Schneier lists his confirmed speaking appearances for March–May 2026, spanning academic, industry, policy, and rights-focused forums. Highlights include the Ross Anderson Lecture at Cambridge, RSAC in San Francisco, the SANS AI Cybersecurity Summit, and RightsCon in Lusaka, along with several virtual events. These talks will address AI security, policy, and democratic resilience. The schedule is maintained on his events page.
read more →

BCI’s Seven NSE 8 Engineers Define Real-World Mastery

🔒 BCI has seven Fortinet NSE 8 engineers, the highest concentration among partners globally, demonstrating hands-on mastery of design, implementation, and troubleshooting in complex security environments. These engineers come from diverse career paths but meet a single standard of practical execution under pressure. BCI positions NSE 8 as an operational benchmark that reduces architectural risk, accelerates response, and sustains long-term operability.
read more →

Fortinet at RSA 2026: Security Fabric Demos & Sessions

🔒 Fortinet will have a prominent presence at the RSA Conference (March 23–26, 2026) in San Francisco, showcasing the Fortinet Security Fabric at booth #N5762 and in featured sessions. Attendees can join three highlighted sessions addressing agentic AI defenses, APT abuse of networking devices, and large-scale cybercrime disruption. The booth features 40+ presentations, six interactive demo kiosks, an Experts Bar, and one-on-one meeting options. Fortinet customers can access complimentary Expo Hall passes or discounted full-conference registration.
read more →

Global Police Sinkhole 45,000 IPs in Cybercrime Sweep

🔍 An Interpol-led operation, Operation Synergia III, sinkholed tens of thousands of IP addresses and seized servers linked to global cybercrime between July 2025 and January 2026. Authorities from 72 countries made 94 arrests and seized 212 electronic devices, disrupting thousands of phishing and fraud sites including a large 33,000-site network identified in Macau. The action builds on earlier Synergia efforts and highlights the importance of international cooperation and private-sector partnerships to dismantle criminal infrastructures.
read more →

Law Enforcement Dismantles SocksEscort Proxy Network

🔒Operation Lightning dismantled the malicious proxy service SocksEscort, which investigators say compromised hundreds of thousands of routers and IoT devices globally. The service marketed thousands of proxy endpoints that enabled criminals to hide originating IPs and carry out bank and cryptocurrency account takeovers, fraudulent unemployment claims, ransomware operations, DDoS attacks and distribution of CSAM. Authorities seized domains and servers, froze cryptocurrency assets, and urged users and vendors to regularly update device firmware and apply security patches.
read more →