< ciso
brief />
Tag Banner

All news with #news tag

348 articles · page 9 of 18

Microsoft Investigates Windows 11 Boot Failures in January

⚠️Microsoft is investigating reports that some Windows 11 devices fail to boot with the UNMOUNTABLE_BOOT_VOLUME stop error after installing the January 13, 2026 cumulative update KB5074109. Affected systems running Windows 11 25H2 and all editions of 24H2 display a black crash screen and cannot start without manual recovery. Microsoft says only physical devices are impacted so far and asks affected users to submit feedback via the Feedback Hub. The company also released emergency out‑of‑band updates to address an Outlook PST cloud storage freeze.
read more →

CTA at Nine: A Milestone in Collaborative Cyber Defense

🎉 The Cyber Threat Alliance (CTA) marks its ninth anniversary, celebrating a sustained industry shift from guarded threat data to coordinated, high-fidelity intelligence sharing. Founded in 2014 by major vendors, the CTA established governance, legal frameworks and technical platforms to enable secure exchange. The piece highlights how leadership, deliberate design and cross-company commitment transformed a bold experiment into lasting, global cybersecurity infrastructure and urges continued engagement to meet evolving threats.
read more →

EU launches independent GCVE vulnerability database

🛡️ The EU-backed GCVE has launched a free, public vulnerability database at db.gcve.eu to reduce reliance on U.S.-centric CVE identifiers and strengthen European digital sovereignty. Using a decentralized GNA model and aggregating more than 25 public sources, the platform normalizes and indexes vulnerability data to allow autonomous assignment and publication of identifiers without central approval. An open API supports integration with compliance and risk tools so security teams, vendors, and researchers can track and assess reports across ecosystems.
read more →

Verizon Issues $20 Credits to Customers After Outage

📱 Verizon has begun sending text messages to primary account holders explaining how to redeem a $20 account credit after a nationwide wireless outage on January 14. The message apologizes and instructs customers to log in at Verizon.com, click the "Take action" indicator under Mobile, then select "Redeem Now." The credit is limited to one $20 per account and is intended to offset multiple days of disrupted service; customers still seeing connectivity problems are advised to restart their devices.
read more →

Verizon Attributes Nationwide Wireless Outage to Software Fault

🛠️ Verizon confirmed that a nationwide wireless outage on January 14 was caused by a software issue and said there is no indication the disruption was a cybersecurity incident. The outage left many customers nationwide unable to make calls, with phones stuck in SOS mode and callers sometimes hearing that the "called party is temporarily unavailable." New York City officials warned some Verizon customers might not be able to reach 911. Verizon said engineers resolved the problem the same day, advised restarts, apologized, and will provide a $20 credit to affected accounts.
read more →

Smashing Security Ep.450: Instagram leak and Grok fallout

🔍 Episode 450 explores confusion after claims that data linked to 17.5 million Instagram accounts was put up for sale — a story driven by a vague post, conflicting statements, and an unexpected flood of password‑reset emails. The episode also examines Grok, Elon Musk’s AI chatbot, after it generated sexualised images of women and children, raising urgent questions about guardrails and accountability. Hosts discuss why simple censorship is not a solution.
read more →

CISO Role Reaches Inflection Point in Organizational Rank

🔒 IANS' 2026 State of the CISO Report, drawn from interviews with 662 North American CISOs, shows the role shifting toward the executive suite: 46% now hold executive titles while 27% are VPs and 27% directors. Over half report that their remit has expanded to include SecOps, security architecture, GRC, app security, IAM and supplier risk. Despite greater boardroom influence and wider accountability, 52% say their scope is no longer fully manageable, risking delayed strategy and reactive security.
read more →

ICE doxxing site taken offline by sustained DDoS attack

⚠️ The controversial ICE List doxxing site, launched after an alleged DHS whistleblower provided details on thousands of ICE and Border Patrol officials, has been taken offline by a sustained DDoS attack. Founder Dominick Skinner reported that overwhelming traffic appears to originate from Russian IP addresses routed through proxies, complicating attribution. Skinner and his team are attempting server migrations to restore access but expect the site to remain a target.
read more →

Upcoming Speaking Engagements and Book Signings, 2026

🎤 This page lists confirmed speaking engagements and a book-signing appearance scheduled for early 2026, spanning universities, public libraries, conventions, and major cybersecurity conferences. Included are talks at the David R. Cheriton School of Computer Science (Waterloo) and the Université de Montréal, a combined talk and signing at the Chicago Public Library, and appearances at Capricon 46, the Munich Cybersecurity Conference, Tech Live: Cybersecurity, the Ross Anderson Lecture at Cambridge, and RSAC. Dates and times are provided where available; some speaking slots remain TBD and the list is maintained on the page.
read more →

Congressional Delays Weaken U.S. Cybersecurity Posture

⚠️ The White House renominated seasoned Coast Guard and Energy Department cyber official Sean Plankey to lead CISA, a step that eases an urgent leadership gap but does not resolve broader legislative gridlock. Experts cite both executive deprioritization and congressional dysfunction—blocked confirmations, holds, and delayed reports—as drivers of a hollowed-out agency. Quick Senate confirmation, reauthorization of CISA 2015, and restored grant funding are needed to begin rebuilding capacity.
read more →

Iran Protests Trigger Nationwide Internet Shutdown

🌐 Cloudflare observed a near-total Internet blackout in Iran beginning on January 8, 2026, as national traffic fell to effectively zero in a matter of hours. Measured indicators included a 98.5% reduction in announced IPv6 address space and rapid losses at major providers such as MCCI, IranCell, and TCI. Brief, localized restorations — including access to Cloudflare’s 1.1.1.1 resolver and several university networks — were transient. Cloudflare continues to monitor the situation through Cloudflare Radar and will report updates.
read more →

Apex Legends players hit by in-match character hijacks

🎮 Players of Apex Legends faced in-match disruptions over the weekend as external actors reportedly took control of characters, forced disconnects, and changed player nicknames. Respawn acknowledged "an active security incident" but said initial investigation found no evidence of an RCE or malware infection. The publisher reported the issue was resolved within hours and suggested cheating tools were involved while the investigation continues.
read more →

CISA Retires Ten Emergency Directives After Review

🔐 CISA has formally closed ten Emergency Directives issued between 2019 and 2024 after finding their objectives were met and required remediations implemented across federal civilian agencies. The agency said many issues were absorbed into Binding Operational Directive 22-01 and are now tracked via the known exploited vulnerabilities (KEV) catalog. A subset of directives were closed because requirements no longer matched current risk posture, while Emergency Directives remain available for urgent threats.
read more →

Germany, Israel Sign Cybersecurity and Security Pact

🔒 Germany and Israel have formalized a cyber and security pact aimed at deepening cooperation against growing digital and physical threats. Signed in Jerusalem by Federal Interior Minister Alexander Dobrindt and Prime Minister Benjamin Netanyahu, the agreement emphasizes closer networking of security authorities and joint work on cybercrime, AI and drone defense. Germany will also assume leadership of the U.S.-led OSC role in Jerusalem and plans to leverage Israeli technologies and experience to strengthen German security.
read more →

Anthropic debunks viral Claude 'banned' screenshot

🔍Anthropic says a widely shared screenshot claiming its Claude AI permanently banned an account and reported the user to authorities is fake. The company told BleepingComputer the image does not match any real Claude notification and that similar fabricated screenshots 'circulate every few months.' Anthropic noted it can restrict accounts for repeated policy violations, including attempts to misuse AI for illegal activities. Users should verify alarming posts with official channels before sharing.
read more →

US Withdraws Support for Global Cyber and Hybrid Forums

📰 The Trump administration has suspended US support for the Global Forum on Cyber Expertise (GFCE) and the European Centre of Excellence for Countering Hybrid Threats (Hybrid CoE) as part of a wider exit from 66 international organizations following an executive order signed on January 7. The move, described as being 'contrary to the interests of the United States', will affect cooperation on cybersecurity capacity building, incident response and efforts to counter hybrid threats. GFCE is a multi-stakeholder forum focused on cyber capacity, while Hybrid CoE is a Helsinki-based hub addressing disinformation, cyber-attacks and related tactics.
read more →

ChatGPT Loses Web Market Share as Gemini Gains Ground

📉 New data from SimilarWeb shows ChatGPT's web market share fell to 64.5% in January 2026, down from 86.7% a year earlier, while Gemini rose to 21.5%. The report's timeline highlights steady gains for Gemini and smaller increases for Grok and DeepSeek, alongside a seasonal dip in usage over the holidays. Independent tests cited in the coverage praise Claude Code for complex coding and Gemini for image quality, and OpenAI is reportedly considering ads for ChatGPT amid rising competition.
read more →

UK Launches Government Cyber Unit and Ambassador Scheme

🔐 The UK government has launched a Government Cyber Unit and a Software Security Ambassador Scheme under a £210m Cyber Action Plan to boost public sector resilience. The unit, led by the Government Chief Information Security Officer within the Department for Science, Innovation and Technology, will coordinate risk management and incident response across departments. The ambassador scheme promotes the voluntary Software Security Code of Practice and has drawn participants such as Cisco and Santander. While welcomed by many, some experts warn the funding may be insufficient to address the scale of threats exposed by recent 2025 incidents.
read more →

Google Public Sector: Year of AI-Driven Transformation 2025

🤖 Google Public Sector summarizes a year of AI, cloud, and security milestones, spotlighting Gemini for Government, Vertex AI, and FedRAMP High authorizations for productivity and analytics offerings. The post highlights DoD IL6 and CMMC Level 2 certifications, partnerships with DLA and GDIT, and large-scale deployments such as GenAI.mil. It emphasizes secure, agentic workflows, edge-capable deployments, and a focus on delivering accredited commercial cloud services to accelerate mission impact.
read more →

Azure Strategic Planning Enables NVIDIA Rubin Deployments

🚀 Azure says its long-range datacenter strategy already accommodates NVIDIA Vera Rubin NVL72 racks, enabling rapid, large-scale rollouts across current Fairwater sites and planned AI superfactories. Microsoft highlights prior experience with Ampere, Hopper, GB200 and GB300 generations and claims its power, cooling, networking, and memory upgrades align with Rubin’s NVLink, ConnectX‑9, and HBM4 requirements. The post frames co-design work as reducing deployment risk and accelerating customer access to higher-performance inference and training at scale.
read more →