International Cyber Expo International Cyber Expo

Featured

The latest collection of expert opinions, news analysis and featured contributions from the IT security community

Why hostile state cyber activity is now a day-to-day business risk

Christopher Clark, Cyber Security Incident Response Team Director, Thrive  Geopolitical escalation can become a cyber security problem for businesses far more quickly than many boards expect. The National Cyber Security Council (NCSC) has warned that UK critical infrastructure faced more than 200 cyber incidents over the past year, with around three-quarters believed to be linked to state actors. Analysis of the conflict involving Iran has also found cyber retaliation following military escalation within hours, bringing...

Read moreDetails
AI is finding vulnerabilities faster. Who is funding the people expected to fix them?

Artificial intelligence is changing vulnerability discovery. At OpenSSL, we are seeing that change first-hand. A year ago, our security address received around nine separate reports and enquiries a month. It now receives around 70. AI tools can examine source code and identify potential security issues at a scale that would previously have required significant human effort. In many ways, that's positive. Finding vulnerabilities is an essential part of making software more secure. But there is...

Read moreDetails
Q&A: Viasat Tests Satellite Resilience With AI as Cyber Expert Warns an Attack Could ‘Hurt an Entire Country’

An AI-assisted platform has been used to test whether Viasat’s satellite communications links can meet operational thresholds under interference and adversarial jamming.  Announced this month, the work with Atalanta has renewed scrutiny of the vulnerabilities exposed by Russia’s 2022 attack on Viasat’s KA-SAT network, which disrupted communications across Ukraine and several European countries.  Gil Baram, PhD, is a cybersecurity strategy and policy researcher specialising in cyber warfare, intelligence and space security. She is a Senior Lecturer and...

Read moreDetails
Leeds Digital Festival

KnowBe4 is set to explore the growing challenge of determining what organisations can trust in the age of AI at an exclusive cybersecurity briefing during Leeds Digital Festival 2026. Taking place on 1 October, CyberSecure Leeds: Who Do You Trust Now? Human Judgement in the Age of AI will examine how the growing role of AI agents in business processes is changing the security landscape and creating new questions around identity, decision making and human...

Read moreDetails
Compliance teams have gone continuous, but their evidence-gathering hasn’t caught up

The perception that compliance is a once-a-year scramble is out of date, according to a new survey of 201 security and compliance practitioners published by Pentest-Tools.com. The research finds that continuous compliance has effectively already arrived inside most organisations, but the automation needed to support it has not. The study, carried out in July 2026 and drawn from IT managers, compliance and GRC leads, security engineers, DevSecOps professionals and security specialists, set out to test...

Read moreDetails
Protecting Against Zero-Click Attacks

By Aimee Steele, threat intelligence analyst at Talion Cyber Security Last month, the UK’s National Cyber Security Centre (NCSC) issued an advisory around a new phishing campaign targeting organisations in the West that was being carried out by the Russian state-sponsored threat actor known as Laundry Bear. The campaign, saw the threat actors exploiting a zero-day vulnerability in Zimbra Collaboration Suite in order to compromise networks, before gaining persistence, accessing emails, stealing sensitive data and...

Read moreDetails
Hijacked ScreenConnect Installs Are Spreading Malware Like a Worm, Huntress Warns

Cybersecurity firm Huntress has uncovered a wave of malicious installations of ScreenConnect, a widely used remote-support tool, that spread between machines without any further action from a victim or an attacker, a self-propagating attack chain researchers likened to a computer worm. In a blog post published this week, Huntress said its Security Operations Center (SOC) had flagged the same unusual pattern of activity across several unrelated customer environments in late August. Investigators later found the...

Read moreDetails
attack chaining

Filigran has launched a new attack chaining capability for its OpenAEV platform, designed to help security teams test how multiple weaknesses can be combined to create a viable path through an organisation’s environment. Released as part of OpenAEV v3, Attack Chaining allows penetration tests and red team exercises to adapt dynamically based on what a simulated attack discovers. Rather than testing individual techniques in isolation or following a fixed sequence, the platform can use findings...

Read moreDetails
Hackers Actively Exploiting Pre-Auth RCE Flaw in PaperCut Print Software

Attackers are actively exploiting a critical, unauthenticated remote code execution (RCE) vulnerability in PaperCut NG and PaperCut MF, widely used print management software, security researchers at Huntress have confirmed. The flaw allows an attacker to remotely take control of a PaperCut server's configuration without needing any login credentials, ultimately enabling arbitrary code execution on the underlying system. PaperCut published an “urgent security advisory” on 27 August, warning customers that the vulnerability was being exploited in...

Read moreDetails
Huntress Uncovers Five Cases of North Korean Operatives Posing as Remote IT, Sales and Healthcare Workers

Cybersecurity firm Huntress has confirmed five separate incidents this year in which suspected North Korean operatives were successfully hired into legitimate organisations under false identities, in a wave of activity researchers say shows how the country's so-called "remote IT worker" scheme has expanded well beyond IT roles. The cases, disclosed in a new advisory, involved workers placed in healthcare, financial services, and sales and marketing positions across partner organisations. Unlike traditional cyberattacks, the threat does...

Read moreDetails
Page 3 of 106 1 2 3 4 … 106