Corporate boards across industries have a persistent blind spot when it comes to technology risk, treating cybersecurity as an IT department concern rather than a core business thr...
The National Institute of Standards and Technology (NIST) is confronting an uncomfortable paradox: the very artificial intelligence tools helping security researchers and attack...
Standard Chartered's group CISO is pulling back the curtain on what it takes to defend a global financial institution in the age of AI-driven threats. In a recent video interview w...
Google Cloud has published an updated roadmap for migrating its infrastructure to post-quantum cryptography (PQC), targeting full readiness by 2029 with some work extending into th...
The Trump administration has authorized vetted private cybersecurity companies to conduct offensive operations against transnational cybercrime organizations under a presidential m...
Brazil's National Data Protection Authority (ANPD) has ordered Discord to disable its Go Live livestreaming feature nationwide while regulators investigate whether the platform ade...
Flock Safety, the Atlanta-based license plate reader (LPR) company, announced expanded privacy controls on Thursday in response to mounting scandals over law enforcement misuse of ...
The NSA has quietly appointed Kerianne Tobitsch as its new general counsel, effective June 15, 2026. Tobitsch joins the electronic eavesdropping agency from the Department of Homel...
A growing wave of ambiguous and outdated cybercrime legislation worldwide is putting ethical hackers and security researchers at legal risk, even when their work is conducted in go...
The National Rural Water Association (NRWA) has launched a new partnership with DEF CON Franklin to establish the Water Watch Center (WWC), a program aimed at delivering threat ...
The U.S. Senate confirmed Adam Cassady on Friday as the nation's next ambassador for cyber and digital policy, approving him in a 51-47 vote as part of a package of more than 70 no...
The open source ecosystem spent its adolescence barefoot and trusting, running lemonade stands that took IOUs from strangers. That era is over. The supply chain compromises that bo...
A New Mexico state court judge has ordered Meta to pay $567 million and impose sweeping restrictions on how minors use Facebook and Instagram, escalating legal pressure on the soci...
Law enforcement agencies worldwide continue to face a structural problem that undermines the global fight against cybercrime: their siloed operations are no match for the coordinat...
New York Governor Kathy Hochul announced more than $9 million in funding on Monday to help 153 drinking water and wastewater systems harden their defenses against cyberattacks. Dis...
Liechtenstein's government has disclosed a cyberattack that compromised the personal data of approximately 31,000 individuals listed in the principality's register of economic b...
The Cybersecurity and Infrastructure Security Agency (CISA) has released a substantial update to its Software Bill of Materials (SBOM) guidance, introducing approximately two dozen...
Interpol has intensified its global fight against online financial crime by operationalizing the Global Rapid Intervention of Payments (I-GRIP), a secure communications platform th...
California is rolling out a new privacy tool aimed at giving residents unprecedented control over their personal data. The Delete Request and Opt-out Platform (DROP), set to launch...
Bank of America announced on Thursday that it will acquire MDSec Consulting Limited, a UK-based technical information security consultancy headquartered in Macclesfield, England. T...
Southeast Asian cybercriminal syndicates have evolved from opportunistic fraud operations into a transnational threat ecosystem, according to reporting from Dark Reading. Once conf...
The Federal Trade Commission filed a lawsuit Wednesday against telehealth provider Hims & Hers Health, alleging the San Francisco-based company shared sensitive patient health info...
The Federal Security Service (FSB) of Russia has formally charged Telegram founder Pavel Durov with facilitating terrorist activities under Part 1.1 of Article 205.1 of the Russian...
As ransomware attacks, supply chain compromises, and state-sponsored intrusions continue to escalate, corporate boards are increasingly recognizing cybersecurity as a strategic pri...
New UK Prime Minister Andy Burnham has reappointed Liz Lloyd to a junior ministerial post, retaining her cybersecurity portfolio despite a sweeping cabinet reshuffle that dissolved...
Shadow AI is no longer a fringe problem. According to McKinsey's State of AI report, 76 percent of employees now use AI in some capacity at work, up from 55 percent the year before...
President Donald Trump has signed a sweeping executive order directing the Department of War to develop new regulations that require defense contractors to map every tier of their ...
Cybersecurity veteran Richard Bird has launched The Hacker in a Hoodie (HIH) Index, a public website that tracks disclosed material breaches pulled directly from SEC EDGAR 8-K fili...
The White House has launched Gold Eagle, a new clearinghouse initiative designed to coordinate vulnerability disclosure and response across government and private sectors as artifi...
Ukrainian President Volodymyr Zelensky has appointed Yevhenii Khmara, the acting head of the Security Service of Ukraine (SBU), as acting defense minister, tapping a major general ...
The European Commission has issued a binding specification ordering Google to grant rival AI assistants the same deep access to Android that its own Gemini currently enjoys—camera,...
Western militaries are accelerating the deployment of autonomous systems at a pace that is outstripping the development of the trusted information infrastructure needed to support ...
Owen Flowers, 18, and Thalha Jubair, 20, members of the Scattered Spider cybercrime group, were each sentenced to five and a half years at Woolwich Crown Court on 16 July 2026 for ...
The U.S. Treasury Department's Office of Foreign Assets Control (OFAC) has imposed sanctions on two individuals and a VPN service provider for facilitating ransomware operations an...
European Commission President Ursula von der Leyen is pushing for an EU-wide mandate that would set a minimum age of 13 for creating social media accounts, framing the initiative a...
The UK and EU have taken a landmark step in cybersecurity diplomacy, jointly imposing sanctions on Russian individuals and entities for the first time in response to state-sponsore...
Jen Ellis, Vice President of Community and Public Affairs at Rapid7, has been awarded a Member of the Order of the British Empire (MBE) for her outstanding contributions to cyberse...
Mexico's national cybersecurity strategy is heading into a high-stakes stress test it was never designed for: hosting matches during the 2026 FIFA World Cup, the largest sporting e...
Eight Greek citizens confirmed to have been targeted by the Predator commercial spyware suite have filed a civil lawsuit against Intellexa, the Cyprus-based surveillance vendor, an...
Anthropic has moved to reassure Claude users that its most powerful model, Fable 5, will not be a permanent pay-to-play exclusion from standard subscription tiers. Following the re...
Enterprise identity lifecycle management was architected around a human employee with an HR record, a reporting manager, and a defined departure date. AI agents possess none of the...
Microsoft has moved up its quantum-safe security roadmap, with Azure CTO Mark Russinovich announcing that the Microsoft Quantum Safe Program (QSP) will now target a full transition...
The public-key cryptography protecting today's credentials and encrypted data faces an expiration date. While no existing machine can crack RSA or elliptic curve cryptography, quan...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent directive requiring federal agencies to patch a critical Cisco Unified Communications Manager ...
The U.S. Department of Justice announced on Tuesday the seizure of a cloud computing account operated by subsidiaries of Cambodia-based conglomerate HuiOne Group, a network accused...
President Trump signed Executive Order 14409 on June 22, establishing firm deadlines for federal agencies to migrate high-value assets and high-impact systems to post-quantum crypt...
Canada's Security Intelligence Service (CSIS) executed a first-of-its-kind threat reduction warrant to neutralize two foreign-run botnets operating from infected servers, SOHO rout...
When a shopper enters their card number on a modern checkout page, their browser is executing far more than the merchant's own code. Analytics tags, tag managers, support widgets, ...
OpenAI is reportedly developing a new subscription tier called "ChatGPT for Science," according to references discovered on the web build by users on X. The new offering appears ai...
Google has begun notifying advertisers that, starting on or shortly after August 3, 2026, it will repurpose IP addresses collected from users in the European Economic Area (EEA), t...
On June 16, 2026, India's Ministry of Electronics and Information Technology invoked Section 69A of the IT Act to block Telegram nationwide until June 22, following a recommendatio...
The UK government will require anyone opening a new social media account to verify their age by uploading government-issued ID or passing a facial age scan, under regulations annou...
The U.S. Federal Trade Commission has revealed that Americans lost a record $3.5 billion to imposter scams in 2025, with reported losses nearly tripling since 2020 and accounting f...
The UK government has announced plans to block anyone under 16 from accessing social media platforms, with Prime Minister Keir Starmer calling the measures the strongest child onli...
The U.S. Department of Justice announced the seizure of CFAKE.com and SOCFAKE.com, two domains accused of hosting nonconsensual AI-generated nude images and videos of women, in wha...
Anthropic announced on Friday that it will abruptly disable its most advanced AI models, Claude Fable 5 and Mythos 5, for all users after the U.S. government issued an export contr...
Anthropic has pulled the plug on its two most powerful AI models, Fable 5 and Mythos 5, for every user worldwide after receiving a US government export control directive on June 12...
Anthropic announced Friday that it has taken its latest artificial intelligence models, Fable 5 and Mythos 5, offline to comply with a directive from the Trump administration aimed...
Google has filed a federal lawsuit in Manhattan against a Chinese cybercrime operation it accuses of abusing its Gemini AI assistant to power a large-scale smishing campaign target...
The Maine Attorney General's Office has temporarily disabled public access to its state-run data breach notification portal after fraudulent breach reports impersonating VRChat and...
Anthropic has clarified the distinction between its latest large language model releases, confirming that Claude Mythos 5 does not represent a fundamental shift in the security pos...
This week in cybersecurity saw a wave of high-impact developments spanning government accountability, corporate breaches, and AI security. A former IBM cybersecurity executive has ...
A Missouri bankruptcy court administrator has greenlit a $46.8 million settlement fund compensating millions of victims of the 2023 23andMe data breach. The deal, confirmed on Wedn...
Section 702 of the Foreign Intelligence Surveillance Act (FISA) expired at midnight Friday after Congress and the White House failed to reach a deal to renew the controversial spy ...
South Korea's Personal Information Protection Commission (PIPC) has imposed a record 624.7 billion won ($409 million) fine on Coupang, the country's largest online retailer, over a...
The Cybersecurity and Infrastructure Security Agency (CISA) will release a binding operational directive (BOD) to federal agencies by the end of the week, directing them on how to ...
The managed service provider (MSP) cybersecurity landscape is undergoing a significant transformation as traditional vCISO platforms fail to meet the demands of modern security pra...
California Attorney General Rob Bonta has filed a lawsuit against 23andMe (now Chrome Holding Co.) for failing to protect sensitive customer genetic and personal information during...
General Motors has agreed to pay a $12.75 million settlement to the State of California for collecting and sharing sensitive driver data without proper consent, marking the largest...
A Slovakian national, Alan Bill, 33, was sentenced on Thursday to 16 years (192 months) in federal prison after pleading guilty to conspiracy to distribute controlled substances. B...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive requiring federal civilian agencies to patch a critical vulnerability in Ivanti Endpoi...
Musk's legal team filed a complaint in the Delaware Court of Chancery on 12 March, alleging that OpenAI's board has abandoned its original mission to develop artificial general int...
Industry insiders are buzzing after reports surfaced that Tom Parker, a seasoned executive known for his boardroom operational expertise, may be the frontrunner to assume the helm ...
The Federal Trade Commission announced a settlement with data broker Kochava and its subsidiary Collective Data Solutions (CDS) that prohibits them from selling or sharing precise ...
Dark Reading marks its 20th anniversary this month, reflecting on two decades of delivering timely cybersecurity news, analysis, and insights to professionals worldwide. Launched o...
Chris Inglis, who served as NSA Deputy Director from 2011 to 2014 under Director Keith Alexander, has broken his silence on the agency's missteps during the Edward Snowden affair, ...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four actively exploited vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, signaling a...
Romance scams, a form of confidence scheme that preys on emotional trust, continue to trap thousands of victims each year. Security analysts note that those who fall prey to these ...
NIST's National Vulnerability Database (NVD) has historically been the primary source of enriched CVE data, attaching CVSS v3.1 vector strings, severity ratings, affected product C...
The U.S. Coast Guard has issued a set of updated cybersecurity requirements under the Maritime Transportation Security Act (MTSA), signaling a heightened focus on protecting operat...
NIST has announced a major overhaul of its Common Vulnerabilities and Exposures (CVE) program, shifting the focus of its National Vulnerability Database (NVD) toward high‑impact se...
Google has announced significant changes to its Android app distribution model, implementing mandatory developer verification for all apps published on Google Play Store. The new r...
Peiter “Mudge” Zatko, Twitter’s former head of security, filed a whistleblower complaint in July 2022 with the Federal Trade Commission (FTC) and the Senate Select Committee on Int...