#ncsc-retirement

[ follow ]
fromComputerworld
13 hours ago

A core infrastructure engineer pleads guilty to federal charges in insider attack

Rhyne's attack involved unauthorized remote desktop sessions, deletion of network administrator accounts, and changing of passwords, showcasing significant security vulnerabilities.
Information security
UK politics
fromwww.theguardian.com
19 hours ago

UK's leading AI research institute told to make significant' changes

The Alan Turing Institute must implement significant changes to improve strategic alignment and value for money after a review by UK Research and Innovation.
fromTheregister
16 hours ago

NHS staff resist using Palantir software

One official reportedly described Palantir as 'ethically bankrupt' in justifying his refusal to use the software, and noted that he knows of coworkers who deliberately slow their work pace when forced to use the system.
EU data protection
Intellectual property law
fromNextgov.com
11 hours ago

Tech bills of the week: Limiting adversaries' access to US tech; and boosting cyber apprenticeships

New legislation aims to strengthen U.S. export controls on sensitive technologies to prevent adversaries from exploiting them for economic gain.
#cisa
US politics
fromTheregister
9 hours ago

Trump wants to slash $707M from CISA's budget

CISA faces a proposed $707 million budget cut, risking national cybersecurity and critical infrastructure management.
US politics
fromTheregister
9 hours ago

Trump wants to slash $707M from CISA's budget

CISA faces a proposed $707 million budget cut, risking national cybersecurity and critical infrastructure management.
#data-breach
Privacy professionals
fromSilicon Canals
21 hours ago

A fintech app asked users for their passports - then left 360,000 files unprotected for five years - Silicon Canals

A money transfer app exposed over 360,000 sensitive files on a public server for nearly five years, including unencrypted personal documents.
London politics
fromwww.standard.co.uk
1 week ago

Victims of cyber attack on London council 'won't be told for months' that their details have been stolen

Kensington and Chelsea Council is notifying residents of a data breach, with the process expected to start by summer 2026.
EU data protection
fromTheregister
4 days ago

European Commission admits breach of public web systems

The European Commission confirmed a data breach affecting its public web infrastructure, with details on the extent and nature of the data taken remaining unclear.
Information security
fromTheregister
2 days ago

The company's biggest security hole lived in the breakroom

An internet-connected coffee machine caused a major data breach by exploiting security vulnerabilities in a corporate network.
Privacy professionals
fromSilicon Canals
21 hours ago

A fintech app asked users for their passports - then left 360,000 files unprotected for five years - Silicon Canals

A money transfer app exposed over 360,000 sensitive files on a public server for nearly five years, including unencrypted personal documents.
London politics
fromwww.standard.co.uk
1 week ago

Victims of cyber attack on London council 'won't be told for months' that their details have been stolen

Kensington and Chelsea Council is notifying residents of a data breach, with the process expected to start by summer 2026.
EU data protection
fromTheregister
4 days ago

European Commission admits breach of public web systems

The European Commission confirmed a data breach affecting its public web infrastructure, with details on the extent and nature of the data taken remaining unclear.
Information security
fromTheregister
2 days ago

The company's biggest security hole lived in the breakroom

An internet-connected coffee machine caused a major data breach by exploiting security vulnerabilities in a corporate network.
#ai
Privacy technologies
fromComputerWeekly.com
1 day ago

Identity and AI: Questions of data security, trust and control | Computer Weekly

AI-driven identity solutions improve access control but raise compliance, privacy, and ethical concerns that organizations must address.
fromHarvard Business Review
4 days ago
Artificial intelligence

AI Agents Act a Lot Like Malware. Here's How to Contain the Risks.

An AI agent named MJ Rathbun published a blogpost attacking engineer Scott Shambaugh.
Privacy technologies
fromComputerWeekly.com
1 day ago

Identity and AI: Questions of data security, trust and control | Computer Weekly

AI-driven identity solutions improve access control but raise compliance, privacy, and ethical concerns that organizations must address.
London politics
fromwww.theguardian.com
2 days ago

Overwhelmed' Prevent at risk of missing threats as referrals rise, UK counter-terror chief says

Prevent scheme faces overwhelming referrals, risking identification of genuine threats due to increased volume and lack of triage system.
fromComputerWeekly.com
1 day ago

Data dive: Government 2030 datacentre capacity targets look shaky | Computer Weekly

The UK has about 1.59GW of currently installed datacentre capacity at just under 190 sites. If we add existing capacity to that which is planned to complete by 2030 and which has planning consent, we get 4.9GW.
UK news
#citigroup
France news
fromwww.thelocal.com
1 day ago

Citigroup orders home-working as US banks in Paris and Frankfurt tighten security

Citigroup has instructed employees in Paris and Frankfurt to work from home due to heightened security concerns following a thwarted attack on a US bank.
France news
fromThe Local France
1 day ago

Citigroup orders home-working as US banks in Paris and Frankfurt tighten security

Citigroup has instructed employees in Paris and Frankfurt to work from home due to heightened security concerns following a thwarted attack on a US bank.
France news
fromwww.thelocal.com
1 day ago

Citigroup orders home-working as US banks in Paris and Frankfurt tighten security

Citigroup has instructed employees in Paris and Frankfurt to work from home due to heightened security concerns following a thwarted attack on a US bank.
France news
fromThe Local France
1 day ago

Citigroup orders home-working as US banks in Paris and Frankfurt tighten security

Citigroup has instructed employees in Paris and Frankfurt to work from home due to heightened security concerns following a thwarted attack on a US bank.
DevOps
fromComputerWeekly.com
1 day ago

How 'Wikipedia of cyber' helps SAP make sense of threat data | Computer Weekly

SAP faces significant challenges in securing enterprise data amidst a complex threat landscape and evolving compliance requirements.
Artificial intelligence
fromNextgov.com
2 days ago

Old-school spycraft could make a comeback as AI undermines trust

AI may enhance intelligence gathering but also revive traditional espionage methods due to reliability issues with digital communications.
fromNextgov.com
3 days ago

HHS reverses Biden-era restructuring of its IT and tech operations

HHS Chief Information Officer Clark Minor stated that consolidating the CTO, CDO, and CAIO roles within his office allows the department to move faster on shared platforms and protect systems more effectively.
Healthcare
#data-integrity
fromComputerworld
3 days ago
Data science

IT lesson from the Iran war: AI makes your data problems so much worse

AI can exacerbate existing data issues in enterprises, as demonstrated by the US military's bombing due to outdated intelligence.
Information security
fromSecurityWeek
3 days ago

The Next Cybersecurity Crisis Isn't Breaches-It's Data You Can't Trust

Data integrity now encompasses data trust, emphasizing the importance of reliable data in AI-driven decision-making.
Data science
fromComputerworld
3 days ago

IT lesson from the Iran war: AI makes your data problems so much worse

AI can exacerbate existing data issues in enterprises, as demonstrated by the US military's bombing due to outdated intelligence.
Information security
fromSecurityWeek
3 days ago

The Next Cybersecurity Crisis Isn't Breaches-It's Data You Can't Trust

Data integrity now encompasses data trust, emphasizing the importance of reliable data in AI-driven decision-making.
SF politics
fromNextgov.com
4 days ago

New contract for background investigations raises concerns about scale and risk

DCSA is modernizing its Case Processing Operations Center to enhance background investigations and incorporate Continuous Vetting for national security.
Remote teams
fromTheregister
5 days ago

Security contractor blew the whistle on shabby support crew

Brad, a security contractor, faced challenges with antivirus alerts while working in a labor hire company's office without proper IT support.
#cybersecurity
fromTechCrunch
16 hours ago
EU data protection

Europe's cyber agency blames hacking gangs for massive data breach and leak | TechCrunch

Privacy professionals
fromTechRepublic
4 days ago

Iran-Linked Hackers Breach FBI Director Kash Patel's Email, Leak Messages Online

An Iran-linked hacking group breached FBI Director Kash Patel's personal email, releasing non-sensitive information as a retaliatory cyber attack.
Information security
fromSecuritymagazine
1 day ago

Stakeholder Confidence in the Age of Digital Threats: PR as a Security Asset

Cybersecurity involves both technical measures and effective communication to maintain stakeholder trust during incidents.
EU data protection
fromTechCrunch
16 hours ago

Europe's cyber agency blames hacking gangs for massive data breach and leak | TechCrunch

A cybercriminal group known as TeamPCP hacked the EU's executive body, stealing 92 gigabytes of data, including personal information.
Information security
fromComputerWeekly.com
1 day ago

NCSC warns high-risk individuals of Signal and WhatsApp social engineering attacks | Computer Weekly

High-risk individuals must reduce exposure to social engineering attacks targeting encrypted messaging apps like Signal, WhatsApp, and Facebook Messenger.
Privacy professionals
fromTechRepublic
4 days ago

Iran-Linked Hackers Breach FBI Director Kash Patel's Email, Leak Messages Online

An Iran-linked hacking group breached FBI Director Kash Patel's personal email, releasing non-sensitive information as a retaliatory cyber attack.
Information security
fromSecuritymagazine
1 day ago

Stakeholder Confidence in the Age of Digital Threats: PR as a Security Asset

Cybersecurity involves both technical measures and effective communication to maintain stakeholder trust during incidents.
Information security
fromInfoWorld
14 hours ago

CERT-EU blames Trivy supply chain attack for Europa.eu data breach

TeamPCP exploited Trivy to access sensitive cloud credentials and data, creating significant vulnerabilities for organizations.
#dhs
US politics
fromNextgov.com
14 hours ago

President's budget proposes folding beleaguered DHS intelligence office into headquarters

The Department of Homeland Security's intelligence office faces consolidation and potential workforce reductions under Trump's proposed budget for 2027.
SF politics
fromNextgov.com
4 days ago

DHS drops investigation into former acting CISA chief's failed polygraph exam

DHS closed an investigation into CISA staff who arranged a polygraph for the former acting director, clearing them of wrongdoing.
US politics
fromNextgov.com
14 hours ago

President's budget proposes folding beleaguered DHS intelligence office into headquarters

The Department of Homeland Security's intelligence office faces consolidation and potential workforce reductions under Trump's proposed budget for 2027.
SF politics
fromNextgov.com
4 days ago

DHS drops investigation into former acting CISA chief's failed polygraph exam

DHS closed an investigation into CISA staff who arranged a polygraph for the former acting director, clearing them of wrongdoing.
UK politics
fromwww.bbc.com
1 day ago

Police offered support to tackle rising threats against MPs

A new national democracy protection unit is established to support police in addressing rising threats and abuse against MPs.
Podcast
fromSecuritymagazine
1 week ago

What Does It Take to Be an Outstanding CSO or CISO?

Outstanding security leaders often come from non-traditional backgrounds, with 40% of recent CSO-CISO Hall of Fame honorees starting in the private sector.
fromTheregister
1 week ago

UK government admits Capita pension portal wasn't ready

Capita did not deliver the full levels of IT, automation, and portal functionality at go-live. This significantly impacted Capita's ability to manage the volumes of work inherited and the new work delivered since go-live.
UK news
Information security
fromSecurityWeek
21 hours ago

Mobile Attack Surface Expands as Enterprises Lose Control

Mobile device security is inadequate, with many organizations using critically outdated operating systems and exposing sensitive data to potential attacks.
#digital-identity
fromComputerWeekly.com
3 weeks ago
Privacy technologies

The UK government's digital identity scheme: Dystopian nightmare or modernised public services? | Computer Weekly

UK politics
fromTheregister
2 days ago

'People's Panel' to see if UK wants Digital ID to cost 630K

The UK government will spend £630,000 on a panel to discuss digital identity card plans with a representative sample of citizens.
fromComputerWeekly.com
3 weeks ago
Privacy technologies

The UK government's digital identity scheme: Dystopian nightmare or modernised public services? | Computer Weekly

UK politics
fromTheregister
2 weeks ago

What was missing from the UK digital ID consultation?

The UK government's digital identity consultation lacks key details on pricing and audit trail duration, raising concerns about privacy and enforcement.
EU data protection
fromComputerWeekly.com
3 days ago

High Court dismisses judicial review against eVisa system | Computer Weekly

The High Court upheld the Home Office's eVisa system, ruling it lawful despite ongoing data issues and lack of alternative proof for immigration status.
London startup
fromComputerWeekly.com
2 weeks ago

Cyber flywheel aims to kick-start UK cyber security startups | Computer Weekly

The UK government and businesses must support cyber security startups to build a self-sustaining ecosystem with momentum comparable to Israel's successful startup culture.
#cyberattack
Privacy professionals
fromTechCrunch
2 days ago

Hasbro says it was hacked, and may take 'several weeks' to recover | TechCrunch

Hasbro confirmed a cyberattack, prompting system shutdowns and ongoing investigations, with potential operational disruptions lasting several weeks.
EU data protection
fromSecurityWeek
4 days ago

European Commission Reports Cyber Intrusion and Data Theft

The European Commission confirmed a cyberattack that compromised its cloud infrastructure, resulting in the theft of hundreds of gigabytes of data.
Privacy professionals
fromTechCrunch
2 days ago

Hasbro says it was hacked, and may take 'several weeks' to recover | TechCrunch

Hasbro confirmed a cyberattack, prompting system shutdowns and ongoing investigations, with potential operational disruptions lasting several weeks.
EU data protection
fromSecurityWeek
4 days ago

European Commission Reports Cyber Intrusion and Data Theft

The European Commission confirmed a cyberattack that compromised its cloud infrastructure, resulting in the theft of hundreds of gigabytes of data.
#palantir
UK politics
fromwww.theguardian.com
2 days ago

MP rejects Palantir's claims that criticism of NHS England deal is ideologically motivated'

Concerns over Palantir's NHS contract focus on transparency, data security, and value for money, not just ideological motivations.
UK politics
fromwww.theguardian.com
3 days ago

Palantir's UK boss criticises ideological' groups as ministers move to scrap NHS contract

Palantir's UK boss urges the government to maintain its NHS contract, citing potential harm to patient care from ideologically motivated campaigners.
UK politics
fromwww.theguardian.com
2 days ago

MP rejects Palantir's claims that criticism of NHS England deal is ideologically motivated'

Concerns over Palantir's NHS contract focus on transparency, data security, and value for money, not just ideological motivations.
UK politics
fromwww.theguardian.com
3 days ago

Palantir's UK boss criticises ideological' groups as ministers move to scrap NHS contract

Palantir's UK boss urges the government to maintain its NHS contract, citing potential harm to patient care from ideologically motivated campaigners.
UK politics
fromwww.theguardian.com
2 days ago

Royal Navy captain steps back from duties over link to MP whose husband faces China spy claims

A Royal Navy captain stepped back from duties due to a relationship with MP Joani Reid amid concerns of potential blackmail and security risks.
Privacy professionals
fromHer Campus
3 days ago

Who's Watching The Watchers? AI, Age Verification, And Online Privacy

Parents are increasingly concerned about children's exposure to harmful online content despite regulations like CIPA and platforms like YouTube Kids.
Information security
fromInfoWorld
1 day ago

Claude Code leak puts enterprise trust at risk as security, governance concerns mount

Leaks threaten Anthropic's market position and raise security concerns about its AI coding tools.
UK news
fromComputerWeekly.com
2 weeks ago

Technology accelerating crime, boosts case for national police service says NCA chief | Computer Weekly

Technology has fundamentally transformed crime by enabling criminals to operate globally in networks, access money laundering services, and conduct sophisticated attacks with unprecedented scale and speed.
UK politics
fromwww.theguardian.com
3 days ago

Anti-terrorist programme Prevent outdated and inadequately prepared', report finds

The Prevent anti-terrorism programme is outdated and needs a comprehensive reset to address modern extremist challenges effectively.
UK politics
fromwww.independent.co.uk
4 days ago

Less than one per cent of phone theft cases lead to a criminal charge, figures show

Fewer than 1% of mobile phone thefts lead to charges, with 95% of cases closed by the Met Police without identifying a suspect.
Privacy professionals
fromNextgov.com
2 weeks ago

National cyber director doesn't envision industry doing offensive hacking

The U.S. National Cyber Director clarifies that private sector companies will not conduct offensive cyber operations on behalf of the government, but will instead provide intelligence and defensive support.
Information security
fromTechzine Global
1 day ago

HPE sees the network as a security sensor: what does that mean?

HPE Networking views the network as a critical security sensor and enforcement point, especially after acquiring Juniper Networks.
Privacy professionals
fromComputerWeekly.com
2 weeks ago

Revealed: How HMRC has been quietly building surveillance capabilities | Computer Weekly

HMRC has acquired mobile phone surveillance technology including IMSI-catchers since 2021 to enhance tax investigation capabilities, operating with minimal public oversight compared to law enforcement agencies.
Information security
fromComputerWeekly.com
3 days ago

Banning routers won't fix what's already broken | Computer Weekly

The FCC's ban on foreign-made routers addresses future procurement, not current security risks, as routers are already vulnerable and widely deployed.
Information security
fromSecuritymagazine
3 days ago

The Rising Tide of Executive Protection: Corporations Ramp Up Security in an Era of Heightened Threats

Companies are increasingly investing in executive protection due to rising threats, making it a strategic necessity for business continuity and resilience.
Information security
fromSecurityWeek
3 days ago

Stolen Logins Are Fueling Everything From Ransomware to Nation-State Cyberattacks

Stolen credentials significantly enhance ransomware attacks, enabling illegitimate access and operational disruption within networks.
UK politics
fromwww.independent.co.uk
3 weeks ago

Tony Blair warns digital IDs cannot be another failed government IT project'

The UK government's digital ID proposal requires careful implementation to avoid becoming another failed IT project, with the Tony Blair Institute warning against process delays and cost overruns that could undermine public trust.
Information security
fromComputerWeekly.com
3 days ago

Shrinking PQC timeline highlights immediate risk to data security | Computer Weekly

Google's accelerated timeline for post-quantum cryptography highlights urgent data security risks posed by quantum computers that need immediate attention.
Privacy professionals
fromTheregister
1 month ago

UK govermnent's Vulnerability Monitoring System is working

UK public sector DNS vulnerabilities are now resolved 84% faster through an automated Vulnerability Monitoring System that reduces remediation time from 50 days to 8 days.
#cyber-security
Information security
fromComputerWeekly.com
1 week ago

Cyber pros must grasp the vibe coding nettle, says NCSC chief | Computer Weekly

Cyber security professionals must develop safeguards for AI-enhanced software generation to prevent vulnerabilities and cyber attacks.
Information security
fromComputerWeekly.com
1 week ago

Cyber pros must grasp the vibe coding nettle, says NCSC chief | Computer Weekly

Cyber security professionals must develop safeguards for AI-enhanced software generation to prevent vulnerabilities and cyber attacks.
fromTheregister
1 month ago

UK digital ID brief quietly moves to new minister

He had commissioned a report from US public affairs outfit APCO Worldwide on journalists who had written critical articles about undeclared donations to the organization, which included material about Sunday Times journalist Gabriel Pogrund's Jewish beliefs and possible links to Russia. He also passed a version of the report to GCHQ's National Cyber Security Centre.
UK politics
UK news
fromTheregister
1 month ago

UK blames legacy IT for incomplete data protection progress

Legacy IT systems and reliance on email hinder government technical measures to prevent accidental exposure of highly sensitive data, risking lives and hindering reforms.
Information security
fromComputerWeekly.com
2 weeks ago

Beyond integration theatre: Building stronger cyber platforms | Computer Weekly

Integration layers between security platforms, not the platforms themselves, have become the primary enterprise security risk requiring rigorous governance of delegated trust.
Information security
fromTheregister
1 month ago

GCHQ hunts for CISO with 130K top salary

GCHQ is recruiting a chief information security officer at £96,981 to £130,000 to lead cybersecurity defenses against advanced adversaries while managing risk and technological progress.
UK politics
fromDataBreaches.Net
2 months ago

UK plans sweeping overhaul of policing amid surge in online crimes - DataBreaches.Net

Britain plans a centralized National Police Service to tackle cybercrime, fraud and cross-border digital offenses, with the National Crime Agency to be merged into it.
fromTheregister
2 months ago

UK government unveils 210M plan for cybersecurity overhaul

The funding will establish a Government Cyber Unit, led by the UK's CISO and overseen by the Department for Science, Innovation and Technology (DSIT), to improve risk identification, incident response, and recovery capabilities. The unit will also create a dedicated Government Cyber Profession, elevating cybersecurity from its current placement under the broader Government Security Profession.
UK politics
#software-security
[ Load more ]