<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:dc="https://purl.org/dc/elements/1.1/"
     xmlns:dcterms="http://purl.org/dc/terms/"
     xmlns:media="http://search.yahoo.com/mrss/"
     xmlns:atom="http://www.w3.org/2005/Atom"
     xmlns:cf="https://www.futureplc.com/rss/content-flags"
>
    <channel>
                    <atom:link href="https://www.itpro.com/feeds/tag/security" rel="self" type="application/rss+xml" />
                            <title><![CDATA[ Latest from ITPro in Security ]]></title>
                <link>https://www.itpro.com/security</link>
        <description><![CDATA[ All the latest security content from the ITPro team ]]></description>
                                    <lastBuildDate>Fri, 07 Aug 2026 07:00:00 +0000</lastBuildDate>
                            <language>en</language>
                                <item>
                                                            <title><![CDATA[ Why quantum-ready data protection belongs in the channel portfolio ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/data-protection/why-quantum-ready-data-protection-belongs-in-the-channel-portfolio</link>
                                                                            <description>
                            <![CDATA[ Quantum-ready, data-centric protection is the channel’s next major differentiator ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">gexnG457gcNKtDGkGzKRCN</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/XwakieduPCLvHtxVTJnG7b-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 07 Aug 2026 07:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Protection]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Dan Panesar ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/TgxHUzRCQS29VKfXABXiTe.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/XwakieduPCLvHtxVTJnG7b-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Data breach concept image showing a red-colored warning symbol imposed over glowing binary code.]]></media:description>                                                            <media:text><![CDATA[Data breach concept image showing a red-colored warning symbol imposed over glowing binary code.]]></media:text>
                                <media:title type="plain"><![CDATA[Data breach concept image showing a red-colored warning symbol imposed over glowing binary code.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/XwakieduPCLvHtxVTJnG7b-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>For too many years, the security industry has focused on protecting infrastructure. Organizations have long believed they should “Secure the network. Verify identity. Control access.”</p><p>That approach made sense when applications, users, and data lived within predictable environments. Today, they do not.</p><p>Data moves constantly across hybrid cloud environments, SaaS platforms, AI pipelines, partner ecosystems, and edge infrastructure. It travels through systems organizations do not fully own or control. Yet many security strategies still assume that if the infrastructure is protected, the data will be too. That assumption is becoming increasingly difficult to defend.</p><p>Quantum risk is exposing a weakness the industry has largely ignored for years: that security architectures were designed around infrastructure, not around the data attackers want access to.</p><p>For channel partners, this creates both a challenge and an opportunity.</p><h2 id="the-industry-is-solving-the-wrong-problem">The industry is solving the wrong problem</h2><p>Much of the conversation around post-quantum cryptography focuses on upgrading algorithms. The assumption is that organizations simply need to replace existing encryption with new quantum-resistant alternatives and the problem will be solved. The reality is far more complicated.</p><p>Quantum is not simply a cryptographic upgrade cycle. It exposes structural problems in how security has been implemented over the decades. Cryptography is embedded throughout applications, networks, cloud environments, devices, and third-party systems. In many organizations, nobody has a complete inventory of where it exists.</p><p>Replacing encryption across these environments is not a straightforward technology refresh. It is a major operational challenge.</p><p>This is where the distinction between transition and transformation becomes important.</p><p>A transition replaces algorithms within existing architectures. A transformation rethinks where protection is applied and how it is managed.</p><p>Many organizations are planning for transition. The organizations making meaningful progress are embracing transformation.</p><h2 id="why-traditional-security-models-are-struggling">Why traditional security models are struggling</h2><p>Attackers have changed their approach. They no longer need to bypass sophisticated security controls through brute force attacks. Instead, they exploit legitimate credentials, trusted connections, and approved applications. They log in, move laterally through trusted systems, and target the data directly.</p><p>This is why so many organizations continue to suffer damaging breaches despite significant investments in cybersecurity.</p><p>The problem is often not that security controls failed. The problem is that once attackers gained access, the data remained accessible and usable.</p><p>In highly distributed environments, infrastructure can no longer be treated as the ultimate control point. Organizations cannot fully control every cloud environment, partner network, SaaS platform, or edge location their data will pass through.</p><p>What they can control is whether that data remains usable if it is intercepted, stolen, or exposed.</p><p>That shift in thinking is becoming increasingly important as organizations prepare for quantum threats.</p><h2 id="the-quantum-threat-is-already-here">The quantum threat is already here</h2><p>One of the biggest misconceptions about quantum computing is that organizations have time to wait. The reality is attackers are already harvesting encrypted data today with the expectation it can be decrypted in the future. This "harvest now, decrypt later" model changes the risk calculation entirely.</p><p>For organizations holding sensitive information with a long lifespan, including healthcare records, financial data, intellectual property, government information, and critical infrastructure data, the threat is immediate rather than theoretical. </p><p>The question is no longer when a cryptographically relevant quantum computer will arrive. The question is whether data being collected today will still need protection when it does. Many organizations understand this challenge. The difficulty lies in execution. </p><p>Legacy systems remain deeply embedded across enterprise environments. Multi-cloud architectures create complexity. AI initiatives introduce new data flows. Edge environments continue to expand the attack surface.</p><p>Most organizations simply cannot undertake years-long modernization projects every time cryptographic standards evolve.</p><h2 id="why-data-centric-security-matters">Why data-centric security matters</h2><p>Many security leaders are beginning to rethink where protection should reside. Rather than tying security to infrastructure, a data-centric approach applies protection directly to the data itself. Security travels with the information regardless of where it moves, who processes it, or which infrastructure carries it. This creates a fundamentally different security outcome.</p><p>If an attacker gains access to a system, the data remains protected. If information moves between cloud providers, protection remains intact. If applications are migrated, consolidated, or modernized, security policies remain consistent.</p><p>Most importantly, organizations gain the flexibility to adapt cryptography over time without constantly redesigning applications or rebuilding infrastructure.</p><p>That is the essence of crypto agility.</p><p>The ability to evolve cryptographic protections as standards change is becoming a strategic requirement rather than a technical preference.</p><p>Organizations that lack crypto agility may find themselves trapped in expensive, disruptive migration cycles every time the threat landscape evolves.</p><h2 id="what-this-means-for-channel-partners">What this means for channel partners</h2><p>For managed service providers (MSPs), resellers, and systems integrators (SIs), this shift presents a very interesting opportunity. Customers are increasingly looking beyond individual security products. They are focused on outcomes.</p><p>They want to know whether sensitive data remains protected if a breach occurs. They want confidence that security investments will remain effective as regulations, technologies, and threats evolve.</p><p>The conversation is moving away from how many security tools an organization has deployed and toward whether those tools actually reduce risk.</p><p>That creates an opening for channel partners to elevate discussions beyond infrastructure and into broader business resilience.</p><p>Organizations need practical strategies for dealing with quantum risk, legacy systems, cloud complexity, and data sovereignty requirements. They need solutions that work within existing environments rather than requiring wholesale replacement of applications and infrastructure.</p><p>Partners who can help customers navigate that transformation will be well positioned to differentiate themselves in an increasingly crowded market.</p><h2 id="a-new-security-conversation">A new security conversation</h2><p>Quantum computing's biggest impact might not be the technology itself. It might be what it forces organisations to confront: that a lot of long-held assumptions about security no longer hold.</p><p>The industry spent decades focused on protecting systems, networks, and identities. Those controls still matter, but they're not enough on their own anymore.</p><p>As data spreads across more environments and threats grow more sophisticated, the thing that actually needs protecting is the thing attackers are after in the first place. The data itself.</p><p>For channel partners and enterprise leaders, this shift is already playing out in customer conversations. Fewer people are asking how many security tools a business runs. More are asking what happens if something gets through: is the data still usable, or not?</p><p>That question is quickly becoming the one that defines security in the quantum era.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Attacks on US water systems could be the tip of the iceberg, cyber experts warn ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-attacks/attacks-on-us-water-systems-could-be-the-tip-of-the-iceberg-cyber-experts-warn</link>
                                                                            <description>
                            <![CDATA[ Internet-exposed programmable logic controllers are also found in electric utilities, manufacturing and transportation ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">9KUTERNcGvZjWaYLvFxNfW</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 06 Aug 2026 12:23:46 +0000</pubDate>                                                                                                                                <updated>Thu, 06 Aug 2026 12:32:48 +0000</updated>
                                                                                                                                            <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg">
                                                            <media:credit><![CDATA[Shutterstock]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:description>                                                            <media:text><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:text>
                                <media:title type="plain"><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Water systems in at least a dozen US states have been affected by a series of cyber incidents. Security experts warn this could be the first of a pending wave of attacks on critical infrastructure.</p><p>So far, Minnesota appears to have been hardest-hit, with more than 30 community water systems impacted. The attacks have resulted in drops in water pressure and advice to boil water, although no contamination has been detected.</p><p>The attacks target internet-exposed programmable logic controllers (PLCs) - Rockwell Automation/Allen-Bradley’s MicroLogix 1100 and 1400 series.</p><p>The attackers remotely tamper with device configurations by changing IP addresses and turning on and setting passwords, leaving the water firms unable to view connected equipment, and in some cases shutting it down.</p><p>"These threat actors are targeting water entities of all sizes. Even water organizations with mature cybersecurity processes should validate their external connections, as this targeting activity includes cellular modems installed by operators, vendors, or system integrators that may not be documented or included in routine attack surface scans," the US <a href="https://www.itpro.com/security/what-is-cisa">Cybersecurity and Infrastructure Security Agency (CISA)</a> warned. </p><p>"OT assets exposed to the internet have an increased risk of defacement, configuration changes, operational disruptions, and, in severe cases, physical damage."</p><p>The attacks have been widely attributed to Iran. However, Martin Riley, chief technology officer at Bridewell, said attribution is the “least interesting part of this story”. </p><p>"Whether the activity traces back to Iranian-aligned actors, a hacktivist crew reusing a commodity scanner, or an opportunist, the precondition is identical. A Rockwell Automation/Allen-Bradley MicroLogix 1100 or 1400 sat on a public IP address with its management interface exposed, and in many cases credentials that were never changed from the shipped default."</p><p>According to the National Association of Water Companies (NAWC), while more than 90% of its members have comprehensive <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>plans in place, many are missing even basic protections.</p><p>They lack continuous OT monitoring, centralized logging, accurate asset inventories, and dedicated cyber staff. </p><p>This means that unauthorized access, credential testing, configuration changes, and reconnaissance could fly under the radar unless they produce visible disruption.</p><h2 id="fresh-critical-infrastructure-attacks-could-come">Fresh critical infrastructure attacks could come</h2><p>There are fears that the same techniques could be used against other critical infrastructure. </p><p>CISA is advising not only water firms, but all critical infrastructure owners, operators, and integrators to remove publicly exposed PLCs and other operational technology from the internet as soon as possible. </p><p>Kevin Kirkwood, CISO at Exabeam, said that weaknesses exploited in water systems "are not unique to water" and pose risks across a range of other industries. </p><p>"Exposed controllers, default credentials, insecure remote access, aging equipment, weak IT-OT segmentation, and understaffed operations also exist across electric utilities, pipelines, manufacturing, transportation, and building-control systems," he commented.</p><p>"The most troubling possibility is that these water-system attacks are not the end state, but a test case. They allow adversaries to map networks, identify vendors, measure response times, study manual operating procedures, and determine how quickly federal and state authorities react. Water may be the proving ground. Power and other OT-heavy sectors may be the intended scale.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Anthropic’s Mythos AI tried to dupe devs in social engineering attack, collaborated with other agents ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-attacks/anthropics-mythos-ai-tried-to-dupe-devs-in-social-engineering-attack-collaborated-with-other-agents</link>
                                                                            <description>
                            <![CDATA[ Inter-agent collaboration is a serious cause for concern, says security expert ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">KSR9MbBpjWiGDR4jWZb6k9</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/5XHuPyX24tg5p7q27VZFLe-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 06 Aug 2026 11:36:30 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/5XHuPyX24tg5p7q27VZFLe-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Error detection and troubleshooting of system development or coding. Event logging for system monitoring and debugging. System engineer troubleshooting computer network system issues.]]></media:description>                                                            <media:text><![CDATA[Error detection and troubleshooting of system development or coding. Event logging for system monitoring and debugging. System engineer troubleshooting computer network system issues.]]></media:text>
                                <media:title type="plain"><![CDATA[Error detection and troubleshooting of system development or coding. Event logging for system monitoring and debugging. System engineer troubleshooting computer network system issues.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/5XHuPyX24tg5p7q27VZFLe-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>AI models from OpenAI and Anthropic attempted to dupe developers into running malicious code and even set up fake profiles to trick workers in a series of attempted cyber attacks. </p><p>That’s according to new research from the UK’s AI Security Institute (AISI), which highlighted a number of concerning incidents during evaluation of the duo’s frontier models: Mythos 5 and GPT-5.6 Sol. </p><p>Across a series of tests, agents participated in capture-the-flag-style challenges to test offensive cyber capabilities. In 10 test runs, the institute said both models took “autonomous, unsanctioned action” against people and organizations. </p><p>“We catalogued 19 such actions,” the institute noted in a <a href="https://www.aisi.gov.uk/blog/incident-report-unsanctioned-agent-behaviour-during-cyber-testing"><u>blog post</u></a>. “Almost all of this behavior (17 actions) came from a single model, Anthropic’s Mythos 5, with 2 actions involving OpenAI’s GPT-5.6 Sol.”</p><p>In what the AISI described as the “most serious case”, one agent attempted to insert malicious code into an open source project. </p><p>During this incident, the agent employed social engineering techniques to achieve its goal, researchers noted, creating several fake online identities and pressuring maintainers to approve the code. </p><p>The AISI also observed collaboration between agents during the assessment, with one leaving public messages on GitHub offering to cooperate on the same challenge. </p><p>“It also provided instructions to reuse accounts and artefacts it had left behind, which were discovered and used by subsequent agents,” the institute noted. </p><p>The AISI said while an investigation has not produced any evidence of real-world harm, the actions raise concerns around “autonomy and deception” without specific prompting. </p><h2 id="rising-rogue-agent-concerns">Rising rogue agent concerns</h2><p>The report from the institute comes in the wake of news surrounding OpenAI and Anthropic models in recent weeks. In late July, OpenAI revealed that a cyber-focused AI system had escaped a sandbox test environment and breached a Hugging Face production environment. </p><p>That news was followed quickly by an admission from Anthropic detailing a similar security-related incident involving its models. </p><p>It’s worth noting that the incidents highlighted by the AISI do somewhat differ. The institute said it tests models under "deliberately permissive conditions” to evaluate capabilities. </p><p>Simply put, the typical safeguards around these models, which aren’t commercially available, were removed to establish their full potential. </p><p>“This was not a case of a model escaping its secure test environment, or ‘sandbox’,” the institute said in a blog post. </p><p>“We had intentionally permitted internet access, and model-provider cyber classifiers were deliberately disabled - conditions that do not reflect how frontier models are made available to the public.”</p><h2 id="agent-collaboration-a-cause-for-concern">Agent collaboration a cause for concern</h2><p>Muhammad Yahya Patel, vCISO and cybersecurity advisory for EMEA at Huntress, said these incidents are hardly surprising considering the agents were given carte blanche during testing.</p><p>“If you give a frontier model a cybersecurity challenge, disable its safety classifiers, hand it open internet access, and tell it to find a way through, you’ve essentially described the setup for an offensive security operation,” he said.</p><p>These models have been trained on “vast amounts” of security research, exploit documentation, and social engineering techniques, Patel noted. They have all the information required to replicate these techniques and conduct attacks.</p><p>Patel added that reactionary commentary on these incidents is adding further fuel to the fire on AI safety, but acknowledged the AISI’s findings around collaboration are a cause for concern.</p><p>“One of the findings to take more seriously is the AI model inter-agent coordination without being instructed to, that’s a more meaningful data point about where capability development is heading,” he said.</p><p>“AI agents demonstrating unprompted forward planning and situational awareness leaving breadcrumbs for agents it had no way of knowing existed.”</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Cyber criminals are selling discount AI tokens on underground forums ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-crime/cyber-criminals-are-selling-discount-ai-tokens-on-underground-forums</link>
                                                                            <description>
                            <![CDATA[ Sites such as Poison Claude and Ecomagent.in are taking advantage of genuine promo offers and reselling access ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">oU6Eg3T2RHJKzRGScW92Hi</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 06 Aug 2026 10:02:41 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Crime]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:description>                                                            <media:text><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:text>
                                <media:title type="plain"><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Cyber criminals have developed an underground gray market selling discounted or free access to AI tools and frontier AI models like Claude and ChatGPT.</p><p><a href="https://www.okta.com/en-gb/blog/threat-intelligence/free_tokens_for_sale/" target="_blank">According to Okta Threat Intelligence</a>, they're taking advantage of promo offers such as free sign-up bonuses or startup credits provided by the real developers, and reselling access at a fraction of the official per-token price.</p><p>Offerings can be for subscription-based accounts, a certain number of tokens, or a certain number of requests; and with these packages, the allotted number of requests can use an unlimited number of tokens.</p><p>While some buyers are just looking for a bargain, many are based in China, where the likes of Anthropic and OpenAI are banned. </p><p>The Chinese-language offerings, which appear on messaging platforms such as Taobao and Telegram, underground forums, and indexed in <a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>repos, are bigger in number and scale than the English-language offerings.</p><p>"Based on our data, we can say it is highly probable that China-based users are circumventing regional restrictions," said Okta Threat Intelligence directors Jeremy Kirk and Matthew Woodyard. </p><p>"Some of the top VPN providers, like QuickQ <a href="https://www.itpro.com/uk/software/vpn">VPN</a>, are commonly used by Chinese internet users, and the top email domain was qq.com, which is a popular email service in China."</p><h2 id="hackers-flocking-to-poison-claude">Hackers flocking to ‘Poison Claude’</h2><p>One site identified by the team was Poison Claude, which takes advantage of free bonus credits, such as the $100 bonus credit on AWS for Bedrock accounts. It offers Opus 4.8, Opus 4.7, Opus 4.6, and Sonnet 4.6.</p><p>“We add those accounts to our pool, your request is routed to a specific account under the hood (you don’t see this) and you get charged 5-15% of the official per-token price depending on the model,” the site explains.</p><p>Poison Claude accepts payment in <a href="https://www.itpro.com/technology/cryptocurrencies">cryptocurrencies </a>including USD Tether, USD Coin, ethereum, litecoin, and bitcoin. </p><p>Customers are given an API key for an Anthropic-compatible API, and then instructed to set these environment variables so that their installation of <a href="https://www.itpro.com/software/development/anthropic-claude-code-usage-limits-increase-spacex-compute-deal">Claude Code</a> uses the Poison Claude API rather than the legitimate one.</p><h2 id="unlimited-tokens">Unlimited tokens</h2><p>Ecomagent.in, meanwhile, offers unlimited tokens via its own endpoint for Opus 4.8, Opus 4.6, Sonnet 4.6, and GPT Codex 5.5 subscriptions at below market price through a custom API endpoint.</p><p>When services are configured as a gateway proxy, the service provider has full visibility into prompts, as those prompts must be forwarded to a model. This gives the gray market service providers a secondary revenue stream in the form of prompts for model distillation - and also raises privacy concerns.</p><p>Legitimate AI model service providers are trying to counter fraudulent registration. Anthropic, for example, is now <a href="https://support.claude.com/en/articles/14328960-identity-verification-on-claude" target="_blank">using Persona’s ID verification system</a> to verify some new accounts, requiring a government-issued ID and a live selfie. </p><p>Okta said it has notified <a href="https://www.itpro.com/business/todays-actions-are-not-a-cost-cutting-exercise-cloudflare-is-cutting-1-100-jobs-as-ai-redefines-how-we-architect-our-company-for-the-agentic-ai-era">Cloudflare</a>, Anthropic, AWS, and Google Cloud about the infrastructure and abuse patterns it uncovered.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘Shai-Hulud: Here We Go Again’: Thousands of npm packages compromised in ‘Chaindrop’ malware campaign where hackers taunt victims ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/malware/shai-hulud-here-we-go-again-thousands-of-npm-packages-compromised-in-chaindrop-malware-campaign-where-hackers-taunt-victims</link>
                                                                            <description>
                            <![CDATA[ The Chaindrop infostealer is a variant of the notorious Shai-Hulud malware strain ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">cjaUJw4RWSupQL3ihT3ZNR</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/kwyhJmg3ouGdLEZpYEUPxb-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 05 Aug 2026 15:16:39 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Malware]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/kwyhJmg3ouGdLEZpYEUPxb-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Malware concept image showing a laptop with skull and crossbones on screen, symbolizing a cyber attack.]]></media:description>                                                            <media:text><![CDATA[Malware concept image showing a laptop with skull and crossbones on screen, symbolizing a cyber attack.]]></media:text>
                                <media:title type="plain"><![CDATA[Malware concept image showing a laptop with skull and crossbones on screen, symbolizing a cyber attack.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/kwyhJmg3ouGdLEZpYEUPxb-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Security experts have issued an alert over a new infostealer <a href="https://www.itpro.com/security/malware">malware </a>campaign targeting <a href="https://www.itpro.com/security/cyber-attacks/the-build-pipeline-is-becoming-the-new-frontline-axios-npm-compromise-highlights-growing-software-supply-chain-risks-experts-warn">npm packages</a>. </p><p>Dubbed ‘Chaindrop’, the malware is a strain of the notorious <a href="https://www.itpro.com/security/cyber-attacks/shai-hulud-malware-is-back-with-a-vengeance-and-hit-more-than-19-000-github-repositories-so-far-heres-what-developers-need-to-know">Shai-Hulud</a> infostealer used in repeated campaigns against software repositories. </p><p>According to researchers at security firm <a href="https://www.aikido.dev/blog/keyv-and-friends-compromised-in-npm-supply-chain-attack" target="_blank">Aikido</a>, the campaign kicked off when attackers compromised a GitHub account belonging to a maintainer at key-value storage library, keyv. </p><p>Notably, the same maintainer owns several highly-popular repositories, enabling hackers to inject the infostealer worm across the “entire package family” – which stands at roughly 127 million weekly npm downloads. </p><p>All told, Aikido warned that some 444 packages (across 1,381 versions) have been compromised so far. Combined, these boast a total of more than two billion monthly downloads. </p><p>Packages affected include: </p><ul><li>keyv</li><li>flat-cache 6.1.24</li><li>file-entry-cache 11.1.6</li><li>cacheable-request 13.0.20</li><li>cacheable 2.5.1</li><li>@cacheable/memory 2.2.1</li><li>cache-manager 7.2.10</li><li>@cacheable/node-cache 3.1.2</li><li>@cacheable/utils 2.5.1</li><li>@cacheable/net 2.1.1</li><li>ecto 5.0.1</li></ul><h2 id="how-chaindrop-works">How Chaindrop works</h2><p>According to Aikido, the infostealer harvests credentials from victim environments, encrypts findings, and exfiltrates them to a public GitHub repository. The description on said repository reads: “Shai-Hulud: Here We Go Again”. </p><p>“Once credentials are harvested, the payload encrypts the entire bundle before sending it anywhere,” researchers explained. </p><p>“Only the attacker, who holds the corresponding RSA private key, can decrypt what gets uploaded. This means the stolen data sits in plain sight on public infrastructure but is unreadable to anyone else.”</p><p>Crucially, the payload contains “worm-like propagation” capabilities to infect packages of other maintainers that have installed a compromised package, making it extremely dangerous. </p><p>“Using the stolen npm token, the payload calls https://registry.npmjs[.]org/-/npm/v1/tokens to list every package that token has publish rights to, then fetches and unpacks the current tarball for each one,” Aikido noted.</p><p>A host of credentials and tokens are at risk, Aikido noted, including: </p><ul><li>Npm tokens</li><li><a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>tokens</li><li>AWS credentials</li><li><a href="https://www.itpro.com/enterprise-applications/31654/what-is-kubernetes">Kubernetes </a>secrets</li><li>HashiCorp Vault tokens</li><li>Stripe and Slack tokens</li></ul><h2 id="shai-hulud-still-haunting-developers">Shai-Hulud still haunting developers</h2><p>The Chaindrop campaign marks the latest in a string of attacks using variants of the Shai-Hulud malware. In May this year, the threat group behind the worm, TeamPCP, published its source code in a GitHub repository. </p><p><a href="https://securitylabs.datadoghq.com/articles/shai-hulud-open-source-framework-static-analysis/" target="_blank"><u>Research from Datadog Security Labs</u></a> found that while this was quickly taken down, multiple copies are believed to have been made. </p><p>Analysis of the source code uncovered a “complete, production-grade offensive framework that accounts for nearly every TTP previously attributed to TeamPCP,” researchers noted.</p><p>In the months since, repeated warnings have been issued about new, improved variants of Shai-Hulud. As <a href="https://www.itpro.com/security/malware/miasma-malware-developer-warning-github-compromise"><u><em>ITPro </em></u><u>reported last month</u></a>, a new variant dubbed ‘Miasma’, was identified and being used to target developers. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Cyber resilience 101: what it means and why Dell PowerProtect One is a vital piece of the puzzle ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-resilience-101-what-it-means-and-why-dell-powerprotect-one-is-a-vital-piece-of-the-puzzle</link>
                                                                            <description>
                            <![CDATA[ Cyber resilience is now a board-level priority, and solutions like Dell PowerProtect One can help make all the difference ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">ajA5kLRdd2oorpXQX5KSY</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/7gD85QriLmRLLetzpWB5J9-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 05 Aug 2026 13:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ dale.walker@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/JpDGYSnD7yNNModq5jFThm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/7gD85QriLmRLLetzpWB5J9-1280-80.jpg">
                                                            <media:credit><![CDATA[Dell Technologies]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A Dell rack server]]></media:description>                                                            <media:text><![CDATA[A Dell rack server]]></media:text>
                                <media:title type="plain"><![CDATA[A Dell rack server]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/7gD85QriLmRLLetzpWB5J9-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <h2 id="tl-dr">TL;DR</h2><ul><li>Cyber resilience is now a board-level priority for enterprises globally</li><li>Choosing best-in-class solutions can make or break enterprise cyber resilience capabilities</li><li>PowerProtect One underpins cyber resilience by unifying management, orchestration, and secure, efficient protection storage into one cohesive experience</li></ul><p>Cyber resilience is more than just a flash-in-the-pan trend in 2026, it's a board-level imperative for organizations operating in an increasingly perilous threat landscape. </p><figure class="van-image-figure  inline-layout" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' style="max-width:1920px;"><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="iDz5voqvxRAwj5qUH6D6Dh" name="ITPro-PProtect-A34-Image4-Getty" alt="A server room" src="https://cdn.mos.cms.futurecdn.net/iDz5voqvxRAwj5qUH6D6Dh.jpg" mos="" align="middle" fullscreen="" width="1920" height="1080" attribution="" endorsement="" class="inline"></p></div></div><figcaption itemprop="caption description" class=" inline-layout"><span class="credit" itemprop="copyrightHolder">(Image credit: Getty Images)</span></figcaption></figure><p>Recent analysis from Gartner, for example, highlighted resilience as one of the top trends CISOs need to focus on in 2026 – and for good reason. </p><p>Growing ransomware threats combined with the enterprise shift toward AI and its associated risks mean that IT leaders now place a huge emphasis on preventative, rather than reactive, cybersecurity capabilities. </p><p>"The remit expands with enterprise AI and resilience expectations," the consultancy noted. "CISOs should lead through influence, not unchecked task ownership, center on cyber resilience, reset board expectations, and coordinate with the CIO, CRO and CDAO to scale sustainably."</p><p>Running parallel to these areas are growing regulatory considerations for enterprises, according to Gartner. The consultancy urged cybersecurity leaders to "recalibrate their strategies" with regard to cyber resilience in order to meet compliance requirements. </p><p>"Rapid incident reporting requirements (sometimes within 24 hours) and heightened data sovereignty pressures demand robust, automated processes and strategic vendor decisions," Gartner noted.</p><p>Efforts to bolster cyber resilience are gathering momentum, according to research from Dell. Analysis by the company in January 2026 found the vast majority (99%) of enterprises now have some form of strategy in place. </p><p>Yet despite this sharpened focus on cyber resilience, the study found that nearly two-thirds (63%) of IT leaders overestimate their organization's readiness and resilience capabilities. This trend of 'resilience debt', as Dell describes it, puts organizations at huge risk and could leave them ill-prepared in the event of a data breach or security incident. </p><p>With this in mind, it's critical that organizations opt for solutions that provide robust, comprehensive cyber resilience and recovery capabilities. After all, this could make the difference between disaster and recovery in the event of a security incident. </p><p>Dell PowerProtect One, for example, ranks among the leading industry solutions on this front, enabling organizations to unify cyber resilience environments and keep mission-critical data safe and secure. </p><p>Here's how Dell PowerProtect One can help support your cyber resilience strategy. </p><h2 id="unified-cyber-resilience-with-dell-powerprotect-one">Unified Cyber Resilience with Dell PowerProtect One</h2><figure class="van-image-figure  inline-layout" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' style="max-width:1920px;"><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="7nahMCESE7xcXyJ4fWaYA8" name="ITPro-PProtect-A34-Image2" alt="The Dell PowerProtect One" src="https://cdn.mos.cms.futurecdn.net/7nahMCESE7xcXyJ4fWaYA8.jpg" mos="" align="middle" fullscreen="" width="1920" height="1080" attribution="" endorsement="" class="inline"></p></div></div><figcaption itemprop="caption description" class=" inline-layout"><span class="credit" itemprop="copyrightHolder">(Image credit: Dell Technologies)</span></figcaption></figure><p>Dell PowerProtect One aims to unify cyber resilience capabilities for organizations.  PowerProtect One provides a consolidated cyber resilience architecture—meaning streamlined management, orchestration, and secure, efficient protection storage through a single interface. </p><p>Two established Dell solutions form the core of PowerProtect One: Dell PowerProtect Data Domain and Dell PowerProtect Data Manager. These provide the storage and software capabilities required to bolster cyber resilience – spanning areas such as data protection, backup, and recovery. </p><p>Dell unveiled PowerProtect One at the company's annual Dell Technologies World Conference in May 2026 and it comes equipped with a range of intuitive new features aimed at simplifying cyber resilience. </p><p>Among these is a new unified dashboard designed specifically for security and IT practitioners. This enables enterprises to establish a comprehensive, centralized overview of their IT environments through a single source of truth. </p><p>According to official Dell materials, the dashboard "consolidates key signals" including: </p><ul><li>Job health,</li><li>System status</li><li>Capacity trends</li><li>Risk posture</li></ul><p>By consolidating these signals, IT and security practitioners no longer have to "jump between separate consoles" and contend with disparate, fragmented solutions that create blind spots. </p><p>Early testing of the platform with enterprise customers found those using PowerProtect One reduced management overhead by up to 50%*, which Dell noted showcases the efficiency-related benefits of a single-platform solution. </p><p>"By aggregating monitoring data across distributed environments, it reduces operational overhead, speeds troubleshooting, and helps you spot trends and issues faster for better decisions," according to Dell. </p><p>"The Unified Dashboard is designed for scalable, enterprise-wide management." </p><figure class="van-image-figure  inline-layout" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' style="max-width:1920px;"><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="fJVf4vYSmzEEwaNvin7hoY" name="ITPro-PProtect-A34-Image3-Getty" alt="Data transfers depicted with digital lines" src="https://cdn.mos.cms.futurecdn.net/fJVf4vYSmzEEwaNvin7hoY.jpg" mos="" align="middle" fullscreen="" width="1920" height="1080" attribution="" endorsement="" class="inline"></p></div></div><figcaption itemprop="caption description" class=" inline-layout"><span class="credit" itemprop="copyrightHolder">(Image credit: Dell Technologies)</span></figcaption></figure><h2 id="intelligent-resilience-capabilities">Intelligent resilience capabilities</h2><p>Intuitive analytics features included with PowerProtect One aim to further streamline operations for IT and security teams. </p><p>The platform's Anomaly Detection feature, for example, is a key tool used to provide "comprehensive monitoring" of IT environments. This machine learning-powered tool monitors metadata, conducts analysis of system configurations and behavioral patterns. </p><p>In the event of suspicious file activity, users are alerted, enabling them to react quickly to potential security risks. </p><p>Notably, the Anomaly Detection feature uses a dedicated landing page that "centralizes investigation with policy-level exclusions and actionable workflows for verification and false positive reporting". </p><p>This, the company noted, allows teams to ensure backup data remains safe, secure, and recoverable while "maintaining operational consistency". </p><p><strong>Built-in AI Assistant</strong></p><p>PowerProtect One's in-product, AI-powered assistant helps you work faster and resolves issues with greater confidence. It provides guidance for errors and alerts, highlights likely root causes, and recommends next steps, helping teams address problems faster while reducing reliance on support. It doesn't just provide answers, it guides users to the appropriate pages and workflows within the interface. </p><p>The AI Assistant helps teams set up protection correctly from the outset and improve day-to-day operational efficiency – all without leaving the PowerProtect One experience.</p><h2 id="supercharging-recovery">Supercharging recovery</h2><p>In the event that your organization suffers a data breach or security incident, PowerProtect One offers the tools to help get operations back up and running swiftly. </p><p>This is critical given the cost of downtime in the way of outages or cyber attacks has grown significantly in recent years. Analysis from Splunk, for example, shows the cost of downtime reached $600 billion in 2026, marking a 50% increase in the space of two years. </p><p>For context, that equates to around $900,000 per hour on average for organizations due to a combination of lost revenue and regulatory fines. </p><p>Cyber criminals are also actively targeting backups to inflict maximum damage on victims. Research from Dell shows that 57% of organizations were unable to contain or recover data during their last test or incident, meaning that best-in-class backup and recovery solutions are critical. </p><p>PowerProtect One offers a range of features aimed at ensuring backup data remains secure, including data immutability and data encryption.</p><p>According to Dell, PowerProtect One provides users with accelerated recovery, allowing them to restore affected files and applications within a matter of minutes, not hours. </p><p>If you think PowerProtect One is the right solution for your business, find out more on the <a href="https://ad.doubleclick.net/ddm/trackclk/N1153793.3561925FUTUREPLC/B36306769.453067145;dc_trk_aid=646941602;dc_trk_cid=260851451;dc_lat=;dc_rdid=;tag_for_child_directed_treatment=;tfua=;gdpr=${GDPR};gdpr_consent=${GDPR_CONSENT_755};ltd=;dc_tdv=1" target="_blank" rel="nofollow sponsored">Dell website.</a></p><p></p><p>*Based on Dell internal analysis, October 2025.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Microsoft forks out record-breaking sums with expanded bug bounty program ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/microsoft-forks-out-record-breaking-sums-with-expanded-bug-bounty-program</link>
                                                                            <description>
                            <![CDATA[ Hundreds of security researchers won a share of $20 million after the tech giant expanded its bug hunting scheme ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">5GEazBuVkkMR8V87EMRKgX</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/hnJfsmgKFbPVuGP5idio46-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 05 Aug 2026 10:52:39 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/hnJfsmgKFbPVuGP5idio46-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Microsoft logo and branding illuminated against a dark backdrop on the company&#039;s vendor stall at Fira Gran Via during Mobile World Congress (MWC) 2026.]]></media:description>                                                            <media:text><![CDATA[Microsoft logo and branding illuminated against a dark backdrop on the company&#039;s vendor stall at Fira Gran Via during Mobile World Congress (MWC) 2026.]]></media:text>
                                <media:title type="plain"><![CDATA[Microsoft logo and branding illuminated against a dark backdrop on the company&#039;s vendor stall at Fira Gran Via during Mobile World Congress (MWC) 2026.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/hnJfsmgKFbPVuGP5idio46-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Microsoft has dished out its biggest collection of <a href="https://www.itpro.com/security/should-your-business-start-a-bug-bounty-program">bug bounties</a> ever over the last year, awarding more than $20 million to 562 security researchers.</p><p>Microsoft Security Response Center (MSRC) said the figure was well up on the $17 million distributed the year before to 344 researchers from 59 countries –  itself a Microsoft Bounty Program record.</p><p>Part of the reason for the increase is the company's new <a href="https://www.itpro.com/security/the-microsoft-bug-bounty-program-just-got-a-big-update-and-even-applies-to-third-party-code" target="_blank">'<em>In Scope By Default</em></a>' policy. </p><p>Last year, it expanded its vulnerability awards portfolio to recognize 'impactful' research that fell outside the scope of traditional bounty programs, including eligible open source software, third-party components, and Microsoft cloud services. </p><p>Since then, the tech giant said it's received more than 300 additional reports and awarded more than $800,000 for vulnerabilities that wouldn't previously have qualified for bounty awards.</p><p>The firm noted it also saw a notable increase in submission volume during the second half of the year.</p><p>"Security is a team sport. Every vulnerability reported through our bounty programs represents an opportunity to address risk before it can be exploited against customers," said the MSRC team. </p><p>"The work of the research community plays a critical role in helping Microsoft stay ahead of emerging threats while strengthening the security of cloud services, AI systems, enterprise platforms, and consumer technologies."</p><h2 id="microsoft-zero-day-quest">Microsoft Zero Day Quest</h2><p>The figures include findings from this year's Microsoft Zero Day Quest, which saw security researchers from 20 countries meeting at Microsoft’s Redmond campus to collaborate directly with security and engineering teams. </p><p>This research challenge and live hacking event was focused on high-priority security scenarios across Microsoft’s cloud and AI platforms. That saw nearly 700 vulnerability reports submitted, with researchers collecting $2.3 million in awards.</p><p>Individual awards depend on the type of vulnerability reported, with cloud programs and Zero Day Quest vulnerabilities capped at $100,000 per vulnerability. Endpoint and on-premises program vulnerabilities, meanwhile, can earn bug-hunters up to $250,000.</p><p>"This year’s record-breaking results, including more than $20 million in awards and recognition for 562 researchers, reflect the impact of a strong partnership between Microsoft and the global security research community," said the team.</p><p>"Whether participating through a traditional bounty submission, collaborating through coordinated vulnerability disclosure, or joining initiatives such as Zero Day Quest, researchers continue to play a vital role in protecting customers around the world."</p><h2 id="bug-bounty-programs-are-booming">Bug bounty programs are booming</h2><p>Bug bounty programs have long been a means for enterprises to weed out vulnerabilities that have flown under the radar, either during development or in the wake of updates. </p><p>With AI now in the mix, researchers are accelerating vulnerability hunting, identifying more flaws than ever. Some programs are struggling to keep up with the volume of reports, however. </p><p>Moreover, AI-generated reports are proving troublesome for organizations, particularly in the open source community. </p><p>As <a href="https://www.itpro.com/software/open-source/ai-slop-security-reports-are-driving-open-source-maintainers-mad"><u><em>ITPro </em></u><u>reported last year</u></a>, security report triage worker Seth Larson revealed he’d observed a marked uptick in “extremely low-quality, spammy, and LLM-hallucinated security reports”.</p><p>Earlier this year, Daniel Stenberg, lead maintainer of command line interface (CLI) tool Curl, went so far as to <a href="https://www.itpro.com/software/open-source/curl-open-source-bug-bounty-program-scrapped"><u>shut down</u></a> the firm's bug bounty scheme after receiving dozens of reports that didn't actually show a concrete vulnerability. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ After OpenAI-Hugging Face, how do IT leaders need to change the way they think about AI? ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/technology/neural-network/after-openai-hugging-face-how-do-it-leaders-need-to-change-the-way-they-think-about-ai</link>
                                                                            <description>
                            <![CDATA[ The OpenAI-Hugging Face incident and Anthropic admission soon after have opened up new conversations about controls around AI. How should IT leaders change their thinking about the technology? ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">VxF9MzTtUEqZynYe5xvWmn</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 05 Aug 2026 07:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Neural Network]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Kate O&#039;Flaherty ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/LUULv6n7VJ3BHPnaoLHHdg.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:description>                                                            <media:text><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:text>
                                <media:title type="plain"><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Given a prompt, an AI model will do anything to achieve its aims – even hack into a company without specifically being instructed to do so. In July, firms pushing AI as a solve-all technology learnt that lesson the hard way, when OpenAI admitted two of its frontier models had <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime"><u>breached Hugging Face</u></a> after escaping a misconfigured sandbox during a benchmark test.</p><p>But the story didn’t end there. Days later, OpenAI’s competitor Anthropic <a href="https://www.anthropic.com/news/investigating-incidents-cybersecurity-evals"><u>claimed</u></a> its AI agents had also <a href="https://www.itpro.com/security/anthropic-joins-openai-in-admitting-loss-of-control-in-cybersecurity-tests"><u>hacked companies</u></a> when they were mistakenly given internet access by engineers.</p><p>On the <a href="https://www.itpro.com/security/hugging-face-ceo-calls-for-radical-transparency-in-wake-of-openai-attack"><u>surface</u></a>, it’s a tale of <a href="https://www.itpro.com/software/ios/apples-ios-update-cycle-overhaul-how-security-teams-should-react"><u>AI that’s so powerful</u></a> at solving <a href="https://www.itpro.com/technology/artificial-intelligence/what-the-openai-rogue-bot-story-really-says-about-the-state-of-ai-security"><u>security issues</u></a>, it can’t be contained. Yet underneath this marketing-driven exterior, it’s about a lack of control and failure to put guardrails in place when dealing with the fast-developing technology.</p><p>Taking this into account, how do IT leaders need to change the way they think about AI within the business?</p><h2 id="from-theory-into-reality">From theory into reality </h2><p>Until recently, the idea of an AI agent breaking containment and hacking other systems was largely theoretical. In May 2026, <a href="https://palisaderesearch.org/blog/self-replication"><u>Palisade Research</u></a> released a paper claiming that AI agents could autonomously hack and then self-replicate onto the breached systems.</p><p>However, the test was only performed at the “junior capture the flag level” and, crucially, “happened in a contained environment”, says Jeff Watkins, chief AI officer at consultancy NorthStar Intelligence. “The most important takeaway for me was that the trajectory of language models’ ability to hack showed we probably didn’t have long left before this became a serious issue.”</p><p>But while the OpenAI-Hugging Face breach is the first documented and well-publicized instance of this happening, experts do not see it as unprecedented. </p><p>Daniel Card, cybersecurity consultant at Xservus Limited, describes how often things can go wrong in testing. In fact, some <a href="https://www.reuters.com/business/openai-finds-evidence-other-ai-agents-escaped-containment-it-widens-hacking-2026-07-31/"><u>reports</u></a> suggest OpenAI had already been experiencing the issues – such as agents breaking out of sandboxes – that led to the hack of Hugging Face and others.</p><p>“Anyone who has experience doing offensive security – let alone offensive with AI – will know the risks involved here, be that from a script or via a <a href="https://www.itpro.com/technology/artificial-intelligence/llms-are-unreliable-delegates-microsoft-researchers-say-you-probably-shouldnt-trust-ai-with-work-documents"><u>large language model</u></a> (LLM),” Card tells <em>ITPro</em>.</p><p>“It’s commonly known in pen testing circles that things sometimes do not go as expected,” he points out. “Anyone doing research with an LLM has probably had something go a bit funny when they didn’t mean it to. This is not new; it's not something we couldn’t have predicted.”</p><p>OpenAI calls the Hugging Face breach “an unprecedented incident”, and “an important moment for AI safety”.</p><p>OpenAI describes how the firm is <a href="https://openai.com/index/hugging-face-model-evaluation-security-incident/"><u>conducting</u></a> a “thorough review along with external advisors” and with oversight from its Safety and Security Committee. “Once the review is complete, we will publish a technical report of our learnings for everyone,” an OpenAI spokesperson says.</p><p>Anthropic <a href="https://www.anthropic.com/news/investigating-incidents-cybersecurity-evals"><u>points out</u></a> that the agents in each of its evaluations ran without the standard safeguards it deploys when it makes the model generally available.</p><p>Claude did not exploit a novel vulnerability to escape isolation, because the models accessed the internet via an open path, rather than breaking out of a sandbox, according to Anthropic. At the same time, the most recent model, on realizing that it was working in a real environment, stopped its pursuit of the evaluation goal, according to the firm.</p><h2 id="issues-with-technology-deployment">Issues with technology deployment </h2><p>But the OpenAI incident and Anthropic’s following admission do raise questions about how firms use AI and the controls they have in place to govern it. The issues the incident highlights are “less about AI” and “more just around how people and organizations approach technology deployment”, according to Card.</p><p>“Security comes from the details; it comes from care,” says Card. He thinks the incident shows “more care needs to go into systems” – even more so when they are autonomous. “We can't just set them off and hope they are ok. They need monitoring.”</p><p>At the same time, with AI being able to move quickly through networks at scale, it’s important to be aware that “failures can become serious very quickly”, says Watkins.</p><p>He thinks things are moving “far too quickly for comfort in the capabilities and autonomy of AI agents, and our defenses likely aren’t keeping up”. </p><p>“Ironically, the advancements that make AI more commercially valuable also increase the potential for things to go wrong, or for misuse to be highly damaging,” points out Watkins.</p><p>Dana Simberkoff, chief risk, privacy and information security officer at AvePoint, thinks the OpenAI and Anthropic incidents “really expose the limits of treating containment as a one-time design decision”.</p><p>“Sandboxes matter, but autonomous systems can reason through small openings, use tools, and keep acting toward an objective,” says Simberkoff. “In my experience, the question cannot be, ‘was it sandboxed?’ It has to be, ‘can we prove what it accessed, whether it crossed a boundary, and how quickly we can stop it?’”</p><p>AI security now goes beyond simply protecting data, points out Tristan Shortland, CTO at Infinity. “Organizations also need to think about behaviour, permissions and autonomy, given the reported attack appears to have involved a model finding weaknesses in its environment and exploiting them to achieve an objective.”</p><h2 id="risks-internally-and-externally">Risks internally and externally </h2><p>With all this in mind, IT leaders need to change their own mindset, as well as educate senior management about the issues posed by AI. CISOs must take the conversation to the business around how the organization is planning to “not just deploy, but manage, monitor and secure their AI capabilities”, says Card. “They need to talk about the risks they face internally and externally – or in this case, both.”</p><p>Card advises a mentality of “assume breach, assume adversarial intent, and deploy defence in depth”.</p><p>Do not assume your systems will work as expected, he advises. “Go and test those assumptions and red team them.”</p><p>Watkins believes AI agents should be modelled as “privileged digital workers, capable of becoming insider threats if poorly contained”. </p><p>“We need to start thinking of our AI agents in the context of what permissions they have to see or do things: Can they reach APIs, data, authorise transactions, contact third parties or modify systems?”</p><p>Equally important is understanding what those agents are doing in their deployed environments – something that many implementers have little visibility over, says Watkins. </p><p>“These are insider threats that need to be managed through good access controls, but also rate limiting, monitoring and alerting, better air-gapping of sandboxes, clear allow-lists for tools and access that [is] time-bound, rather than perpetual.”</p><p>While on the face of it, the OpenAI and Anthropic incidents might seem scary, simple changes will make a difference, experts say.</p><p>The most urgent initial step is to discover where you are using LLMs and put in place policies for AI usage and monitoring, says Card. “It's a really wide subject, but if you treat these systems as if they may do harm, it's a good starting point.”</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Taking the myths out of Mythos - the role for the channel around AI and security ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/technology/artificial-intelligence/taking-the-myths-out-of-mythos-the-role-for-the-channel-around-ai-and-security</link>
                                                                            <description>
                            <![CDATA[ Agentic security and vulnerability management must be a proactive priority rather than a reactive response to a problem already there ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">mQvCzSLVXVzbMp4PLWBXsW</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/3MYdgoHSru8pFz22e58jtQ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 05 Aug 2026 07:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Matt Middleton-Leal ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/YDskrNB2gTTMJYK6WZ7oDL.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/3MYdgoHSru8pFz22e58jtQ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Futuristic design of artificial Intelligence brain with circuit board.]]></media:description>                                                            <media:text><![CDATA[Futuristic design of artificial Intelligence brain with circuit board.]]></media:text>
                                <media:title type="plain"><![CDATA[Futuristic design of artificial Intelligence brain with circuit board.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/3MYdgoHSru8pFz22e58jtQ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>In this year’s Verizon Data Breach Investigations Report, exploiting vulnerabilities is the most common route that leads to data breaches, at 31 percent of the 22,000 confirmed attacks.</p><p>Looking at the most serious software issues that are Known Exploited Vulnerabilities tracked by the Cybersecurity Infrastructure and Security Agency, patching those critical vulnerabilities is down from last year as well. Only 26 percent of CISA KEV issues were fully remediated during 2025, compared to 38 percent in 2024.</p><p>Alongside this, Anthropic’s Mythos brings the prospect of even more vulnerabilities being discovered and exploits being created. While Mythos itself is still off-limits for the vast majority of companies, the advent of frontier AI will mean that security teams have more issues to deal with and less time to get their tasks done.</p><p>Customers will need help to understand the practical steps that they can take around security in the future. Cutting through the hype around AI and keeping things focused on real-world processes will go a long way.</p><h2 id="the-current-picture-for-security">The current picture for security</h2><p>Traditionally, customers need security help around product selection, deployment practices and managing those activities over time. Managed Detection and Response (MDR) for endpoint security has been the bedrock of many partners’ approaches, followed by more specialist products and incident response where there are opportunities.</p><p>However, what the advent of AI shows us is that getting the basics around security and IT operations is still a challenge. Areas like IT asset management and maintaining an accurate inventory are still not solved, particularly as companies grow in size. While security programmes advocate for complete insight into what is on the network, the reality is that getting to even 90 percent accuracy is a significant challenge. This means that there is already a blind spot in security.</p><p>As AI gets adopted, many teams will want to improve their existing patching processes and speed up what they currently do. Automation around security and asset management can help in this regard, but the problem is that speeding up a process that does not cover everything already is not going to be enough. Repeating those same processes faster is not the full answer. </p><p>So how can channel companies help their customers in practical ways, and without making them feel despair at the situation? The answer here is to focus on practical responses that companies can take to fix these problems. </p><h2 id="patching-is-hard-work">Patching is hard work</h2><p>The first element here is that patching has always been hard work. Enterprises normally have different teams managing each element of the IT estate, so getting a consistent and fast process in place around patching or fixing misconfigurations was difficult before AI came in. Today, security teams have to do more than point out the problems; instead, they have to provide remediation guidance and ideally solve those issues in full.</p><p>With AI pointing out more problems, teams have to concentrate on potential business impact. In practice, this means understanding what issues exist in systems and what the risks involved are. What makes this different from previous attempts to manage cyber risk quantification is the level of detail involved. This ‘hyper-personalisation’ around specific software assets, systems deployment and exploitability should guide what vulnerabilities exist and what to fix.</p><p>The second element to this is how to automate patching. Traditionally, IT teams have been scared to implement automated patching due to experience with bad patches. In response, channel partners can take customers through how to structure automatic deployments using some lessons learned from software deployment at scale. For example, your customers can tier their assets into groups for deployments - the initial tier will be endpoints that get those patches first and are then checked for potential problems or configuration issues. If that tier of machines is deployed successfully, then the next tier of machines can be updated, and so on. This tiered approach can flag issues early. </p><p>Alongside deployment tiering, testing the patches themselves using AI can flag potential issues or where more human oversight for deployment is needed. Lastly, not all patches are created equal - your customers might want expert insight and expertise on hand when they have to patch their mission-critical applications that are responsible for revenue. However, a patch to Google Chrome can be automatically deployed at scale because it is less likely to be problematic.</p><p>For customers, these changes around patching can be big. They can involve working across departments and team boundaries, which can be problematic. For partners, just being an external provider can help internal teams talk to each other and solve problems. However, the bigger opportunity is around how to make changes at scale.</p><p>The sheer volume of patch updates and remediation work that is expected due to AI vulnerability discovery means that it won’t be possible to stick with the same manual processes. Helping your customers understand where they will have to make changes, and where they can take advantage of AI to improve their processes, is a market opportunity. </p><p>Getting ahead of issues before they get added to exploit lists like CISA KEV requires understanding the risks involved within customers, and every customer will have their own priorities and risk tolerance. The challenge is how to help them get the right process in place and ride the wave of AI-discovered vulnerabilities, rather than drowning in them. </p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ CMMC phase 2 Is suspended. The liability it created for MSPs isn't ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cmmc-phase-2-is-suspended-the-liability-it-created-for-msps-isnt</link>
                                                                            <description>
                            <![CDATA[ Why the CMMC regulation is not dead and what MSPs need to do about it ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">P3wmPQthQwVxoYr3ChF8ja</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/t5zGC2uXPBqGdnfQdHUCeS-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 04 Aug 2026 21:52:02 +0000</pubDate>                                                                                                                                <updated>Wed, 05 Aug 2026 10:39:43 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Sean Kelley ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/9rcnca3J2wzHvyR9hD5bKR.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;As an entrepreneurial executive and growth strategist, Sean specializes in helping organizations navigate complex, compliance-driven markets with clarity, focus, and speed. At Kiteworks, he bring deep expertise in to drive meaningful impact for customers and partners.&lt;/p&gt;&lt;p&gt;Sean has spent his career building sales engines, optimizing partner ecosystems, and developing go-to-market strategies that scale. With a track record of exceeding targets, he&#039;s enabled organizations to accelerate revenue, streamline operations, and increase market relevance through aligned messaging, sales enablement, and trusted alliances.&lt;/p&gt;&lt;p&gt;At Kiteworks, he collaborates across teams to deliver integrated solutions that help customers meet strict compliance mandates like HIPAA, CMMC, and GDPR while securing the exchange of sensitive data. He works closely with ISV and OEM partners, MSPs, and field teams to simplify complexity and deliver secure, auditable outcomes that reduce risk and protect reputation.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/t5zGC2uXPBqGdnfQdHUCeS-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[IoT cybersecurity concept image showing a digitized padlock sitting on a blue circuit board atop network traffic.]]></media:description>                                                            <media:text><![CDATA[IoT cybersecurity concept image showing a digitized padlock sitting on a blue circuit board atop network traffic.]]></media:text>
                                <media:title type="plain"><![CDATA[IoT cybersecurity concept image showing a digitized padlock sitting on a blue circuit board atop network traffic.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/t5zGC2uXPBqGdnfQdHUCeS-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>On July 13, 2026, the Department of War suspended the Cybersecurity Maturity Model Certification (CMMC) Phase 2, the third-party assessment mandate that was set to take effect November 10. </p><p>Within days, managed service providers (MSPs) across the defense channel started fielding the same question from clients: does this mean CMMC is dead?</p><p>It doesn't. And the MSPs who answer that question wrong are about to hand their most defensible service line to competitors who read the suspension memo more carefully.</p><h2 id="reality-check">Reality check</h2><p>Here's what actually happened. Department of War CIO Kirsten Davies suspended the requirement for defense contractors to pass a Certified Third-Party Assessor Organization (C3PAO) audit before winning Level 2 contract awards. She did not suspend Phase 1. Self-assessment, SPRS score submission, and annual affirmation obligations under DFARS 252.204-7012 remain fully enforced, and NIST SP 800-171 Revision 2 stays the standard the Department checks against through self-assessments and select government-led reviews.</p><p>The reasoning behind the decision was blunt. Davies told reporters “the math just simply doesn’t math” for the roughly 100,000 companies in the defense industrial base needing third-party assessment against the roughly 100 approved C3PAOs able to deliver it, with Small Business Administration data pointing to compliance costs approaching $7 billion a year for small and mid-sized contractors. A CMMC Reform Task Force review is due back to the Department CIO by mid-September, and officials have explicitly declined to rule out ending the third-party model altogether.</p><p>That's the pattern MSPs need to see clearly. The Department suspended a verification mechanism. It did not suspend the obligation that mechanism existed to verify.</p><h2 id="access-controls">Access controls</h2><p>Here's where it gets uncomfortable for MSPs specifically. Self-assessment doesn't mean a client certifies in a vacuum. On most defense-adjacent accounts, the MSP is the party actually configuring the access controls, generating the audit logs, and often shaping the SPRS score the client submits to the government. When that score doesn't match reality, the False Claims Act attaches liability to whoever made the certification. Civil penalties currently run $14,308 to $28,619 per false claim, plus treble damages, regardless of whether a C3PAO ever shows up to check. The suspension removed the outside assessor who might have caught an inflated score before it became a submitted claim. It didn't remove the claim.</p><p>That's not theoretical. On June 18, 2026, the Department of Justice announced a $507,144 settlement with LOGZONE Inc., an Alabama defense contractor, over allegations it failed to implement NIST SP 800-171 controls required under two Department of the Navy contracts -- no C3PAO ever flagged the gap. </p><p>The case moved through DOJ's Civil Cyber-Fraud Initiative, which has settled fifteen cybersecurity-related False Claims Act cases since 2021, more than half of them in the past fiscal year alone. Many of these cases start with a whistleblower under the FCA's qui tam provisions, not a government audit, which means the C3PAO pause does nothing to shrink the pool of people who can bring one. The suspension changes who checks the box before awarding. It does nothing to the enforcement pipeline that starts after the box is checked wrong.</p><h2 id="reforming-rather-than-removing">Reforming rather than removing</h2><p>MSPs who read “Phase 2 suspended” as “stand down” are making the wrong bet twice. First, they're leaving a client's self-attestation exposure unmanaged during the exact window when nobody else is checking it. </p><p>Second, they're assuming the review ends in cancellation, when the Department has said only that it's reforming the model. Not abandoning the requirement to prove contractors protect controlled unclassified information. The 2021 transition from CMMC 1.0 to 2.0 set the precedent: the verification mechanism changed, and the underlying NIST 800-171 obligation never moved.</p><p>The MSPs who win this window aren't the ones still pitching “get certified before Phase 2 hits.” They're the ones using the pause to get the evidence layer right while the pressure is off. SPRS scores tied to real configuration data instead of a best guess, continuous monitoring instead of a point-in-time snapshot, and an audit trail that a future assessor can read without a client scrambling to reconstruct six months of change history. Build that once, on a platform that keeps every access log and configuration change in a single, unalterable record, and it holds up whether the Task Force brings back C3PAO assessments, swaps in a lighter validation model, or lands somewhere nobody has floated yet.</p><p>None of this requires exotic tooling. It requires the same discipline MSPs already apply to other compliance regimes. Version-controlled system security plans, POA&Ms with real remediation dates and supporting evidence, and SPRS scores a client's own configuration data that can reproduce on demand, not just defend on paper. Treating this as a documentation exercise misses the point. The documentation only holds up if it matches what the systems actually do.</p><p>That gap is wider than most MSPs assume. Kiteworks and Coalfire's State of CMMC 2.0 Preparedness in the DIB report found only 46% of surveyed defense industrial base organizations considered themselves ready for Level 2 certification. What’s more, just 44% had continuous monitoring in place across in-scope systems. Gaps that predate the suspension and that a pause in third-party audits does nothing to close.</p><p>The suspension bought the defense industrial base time. It didn't buy MSPs an excuse. The ones who spend the next two months building evidence architecture, instead of waiting on the Task Force report, will own the client relationship no matter what that report recommends.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ MSPs urged to patch immediately after N-able issues hotfix for N-central ‘god mode’ flaw ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-attacks/msps-urged-to-patch-immediately-after-n-able-issues-hotfix-for-n-central-god-mode-flaw</link>
                                                                            <description>
                            <![CDATA[ The authentication bypass flaw in N-central could grant threat actors ‘god mode’ access ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">ZkZMWg6FSZhqqqmmdiWzXH</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Qt4gCpCjMryn2xsHsMFi5F-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 04 Aug 2026 14:39:50 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Qt4gCpCjMryn2xsHsMFi5F-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Logo and branding of N-able, provider of the N-central remote management software, pictured on a smartphone screen.]]></media:description>                                                            <media:text><![CDATA[Logo and branding of N-able, provider of the N-central remote management software, pictured on a smartphone screen.]]></media:text>
                                <media:title type="plain"><![CDATA[Logo and branding of N-able, provider of the N-central remote management software, pictured on a smartphone screen.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Qt4gCpCjMryn2xsHsMFi5F-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Security experts have issued a warning over a critical vulnerability in a popular tool used by <a href="https://www.itpro.com/business/why-you-cant-rely-on-traditional-managed-service-providers">managed service providers (MSPs)</a>. </p><p>N-able disclosed a critical vulnerability in its N-central platform, a remote IT management service, which currently affects all versions spanning both on-prem and hosted deployments. </p><p>The flaw grants hackers unauthenticated ‘god mode’ access to the remote management software, according to researchers at Huntress. </p><p>This means a compromised server could be used to “run scripts, push tools, and open remote sessions across every downstream endpoint it manages”. </p><p>Notably, Huntress warned its analysis shows the flaw is now being actively exploited in the wild. </p><p>“We are now seeing threat actors targeting the flaw across multiple organizations, though we are not yet seeing evidence that this has become a broad, indiscriminate campaign across our partner base,” the company noted in a <a href="https://www.huntress.com/blog/n-able-vulnerability-exploitation" target="_blank"><u>blog post</u></a>. </p><p>Researchers noted that attacks involving the flaw typically include the “same partner of behavior”, with threat actors carrying out “high-level reconnaissance to target key servers” such as Domain Controllers. </p><p>Upon compromise, threat actors were found to have rapidly moved across hosts in impacted IT environments. As such, Huntress urged affected organizations to consider temporarily disabling the tool. </p><p>“Because this vulnerability bypasses normal authentication, if your N-central server is still broadly reachable from the internet or other untrusted networks, you should consider disabling N-central—up to and including taking the server offline.”</p><h2 id="n-central-hotfix-is-available">N-central hotfix is available</h2><p>The vulnerability in question, tracked as <a href="https://www.rapid7.com/db/vulnerabilities/cve-2026-18577/" target="_blank"><u>CVE-2026-18577</u></a>, was initially discovered after an incomplete fix for an earlier authentication bypass flaw (<a href="https://www.rapid7.com/db/vulnerabilities/cve-2026-18556/" target="_blank"><u>CVE-2026-18556</u></a>). </p><p>N-able confirmed a hotfix is available for CVE-2026-18577. For hosted customers, mitigations were applied to all instances, according to the firm. </p><p>On-prem customers, meanwhile, are urged to <a href="https://documentation.n-able.com/N-central/userguide/Content/ReleaseDocs/Install_Config/InstallConfig_Upgrade.htm" target="_blank"><u>download the hotfix and update immediately</u></a>.  </p><p>N-able also detailed a series of checks and actions customers can carry out upon updating, including: </p><ul><li>Upgrading N-central agents</li><li>Reviewing systems for indicators of compromise (IOCs)</li><li>Contacting the firm if evidence of compromise is discovered</li></ul><p>“We strongly recommend staying vigilant and monitoring your environments closely in the meantime. Further updates will be shared as quickly as possible,” the company said in an <a href="https://uptime.n-able.com/" target="_blank"><u>advisory</u></a>.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘I bought the tool to save time, but I did more manual work than before’: Pentesters are finding more bugs with AI than they can fix ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/i-bought-the-tool-to-save-time-but-i-did-more-manual-work-than-before-pentesters-are-finding-more-bugs-with-ai-than-they-can-fix-theyre-even-battling-fake-hallucinated-cves</link>
                                                                            <description>
                            <![CDATA[ Hallucinated exploits and fabricated vulnerabilities are adding to pentester workloads ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">37YKicRvF8Z5XLH6Uigfxm</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Ghn4QoU9doPSYcdjinVzDG-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 04 Aug 2026 10:22:14 +0000</pubDate>                                                                                                                                <updated>Tue, 04 Aug 2026 10:22:42 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Ghn4QoU9doPSYcdjinVzDG-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Male cybersecurity expert conducting penetration test on company network while working on a desktop computer with laptops attached to monitor, with vulnerability management portal on screen.]]></media:description>                                                            <media:text><![CDATA[Male cybersecurity expert conducting penetration test on company network while working on a desktop computer with laptops attached to monitor, with vulnerability management portal on screen.]]></media:text>
                                <media:title type="plain"><![CDATA[Male cybersecurity expert conducting penetration test on company network while working on a desktop computer with laptops attached to monitor, with vulnerability management portal on screen.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Ghn4QoU9doPSYcdjinVzDG-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>AI-powered penetration testing tools are getting out of hand, according to new research, generating more findings than security teams can validate. </p><p>Nine-in-ten security practitioners <a href="https://pentest-tools.com/insights/ai-pentesting-survey" target="_blank"><u>surveyed</u></a> by Pentest-Tools who have used AI to generate findings said the results needed significant manual validation. </p><p>Just over six-in-ten said this was the case with between 5% and 25% of findings, with 27% saying that more than a quarter of AI-generated findings needed validation.</p><p>Respondents reported fabricated exploits, duplicate findings, non-exploitable vulnerabilities, and even <a href="https://www.itpro.com/security/the-cve-system-isnt-working-what-next">AI-generated CVEs</a> that turned out not to exist, leaving teams to spend days manually validating the results.</p><p>"An AI tool spits out 300 findings. I spent two days triaging, and 250 were junk - duplicate vulns, potential SQLi that is not exploitable, or AI-made-up CVEs that do not exist," one respondent said. "I bought the tool to save time, but I did more manual work than before."</p><p>Only one-in-five respondents said they have a workflow in place allowing them to triage 500 or more <a href="https://www.itpro.com/technology/artificial-intelligence/ai-generated-code-risks-what-cisos-need-to-know">AI-generated vulnerability</a> candidates from a single engagement. </p><p>Another 39%, meanwhile, said handling that volume would strain their team, while 30% said it would be unmanageable.</p><p>Even legitimate results needed to be checked more carefully, respondents noted, because hallucinated exploits and fabricated vulnerabilities are eroding confidence in subsequent findings. </p><p>One security manager at a mid-market company said their biggest frustration with AI pen testing tools was "confidence that turns out to be just a big lie.”</p><p>Meanwhile, they consistently named business logic understanding above exploit chaining and creativity as AI's biggest limitation.</p><p>For instance, one respondent said that AI pen testing tools were fine when it came to identifying <a href="https://www.itpro.com/sql/30242/what-is-sql">SQL injections</a>, but struggled to understand business rules, such as a discount coupon that should only work once per customer. </p><p>They also described logic flaws: for example, adding a negative quantity to a cart resulted in free purchases, and changing a user ID in a URL exposed another user's data. </p><h2 id="ai-pen-testing-tools-are-growing-in-popularity">AI pen testing tools are growing in popularity</h2><p>Despite notable concerns, more than nine-in-ten respondents said they were either already using AI-enabled systems or planning to do so within the next 12 months. </p><p>AI is proving a useful tool in vulnerability detection, with 74% of respondents using the technology in this domain. It’s also being used in other administrative-type tasks, such as report writing (69%), documentation and findings tracking (66.5%). </p><p>Notably, however, AI isn’t quite as popular where live judgement is required. Just over one-third (37%) use it for exploitation and attack path chaining, 35% for remediation validation and retesting,  and a quarter for post-exploitation and lateral movement. </p><p>Expectations are also increasing, with 37.3% saying that internal stakeholders now expect more frequent penetration testing than they did 12 months ago because of growing awareness of <a href="https://www.itpro.com/security/state-backed-threat-actors-are-using-generative-ai-en-masse-to-wage-cyber-attacks-according-to-microsoft-and-openai">AI-assisted attacks</a>. </p><p>Almost half said they test AI systems only when a stakeholder specifically requests it.</p><p>“There have been significant advances in how <a href="https://www.itpro.com/software/ios/apples-ios-update-cycle-overhaul-how-security-teams-should-react">AI is accelerating vulnerability discovery</a>," said Adrian Furtuna, CEO and founder of Pentest-Tools. "The challenge now is making sure those findings are accurate enough to limit manual work, instead of creating more of it.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Police National Legal Database confirms data leaked on the dark web ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/data-breaches/police-national-legal-database-confirms-data-leaked-on-the-dark-web</link>
                                                                            <description>
                            <![CDATA[ The hack has been claimed by the same group as last week's Department for Education breach ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">mxSx5xsvSLkkjif83AVpLA</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Gmv6VGAN4vkgH2urwaX2Yf-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 04 Aug 2026 08:55:06 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Gmv6VGAN4vkgH2urwaX2Yf-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Cybersecurity concept image symbolizing third-party data breaches with give padlock symbols and one pictured in red, signifying a security breach.]]></media:description>                                                            <media:text><![CDATA[Cybersecurity concept image symbolizing third-party data breaches with give padlock symbols and one pictured in red, signifying a security breach.]]></media:text>
                                <media:title type="plain"><![CDATA[Cybersecurity concept image symbolizing third-party data breaches with give padlock symbols and one pictured in red, signifying a security breach.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Gmv6VGAN4vkgH2urwaX2Yf-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The Police National Legal Database (PNLD) has confirmed that data stolen in a cyber attack last week has been published on the <a href="https://www.itpro.com/security/32117/what-is-the-dark-web">dark web</a>. </p><p>PNLD is an online criminal law database used by the 43 Home Office police forces of England and Wales, law enforcement, and wider criminal justice organizations.</p><p>It is not a crime recording system and does not hold confidential information relating to victims, witnesses, or offenders.</p><p>The organization said the attack was detected on Sunday 26 July, since then it's been working with specialist cybersecurity organizations and the National Crime Agency  (NCA) to investigate what happened and take appropriate action.</p><p>"Information including the names, organisations and work email addresses of police officers, staff and other criminal justice professionals, government partners and customers has been compromised and published on the dark web," it said. </p><p>"There is no evidence to suggest that passwords or other security credentials have been compromised."</p><p>Because the PNLD hosts the <em>Ask the Police </em>site, some names and email addresses of people who have in the past submitted a question have been published on the dark web.</p><p>PNLD said it had contacted all affected organizations with further information and guidance, and that the <a href="https://www.itpro.com/information-commissioner/31751/what-is-the-information-commissioner-s-office-ico">Information Commissioner’s Office (ICO)</a> has also been notified.</p><p>"Compromised police data is a very serious breach and should be the final push needed to improve security and stop this from happening yet again," commented Jake Moore, global <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>advisor at ESET. </p><p>"Government agencies have long been a soft target and continue to remain caught up in data breaches where sensitive information ends up being released. Even simple information like email addresses and location can put police staff at high risk of targeted phishing attacks that will be almost impossible to detect."</p><h2 id="who-is-behind-the-pnld-cyber-attack">Who is behind the PNLD cyber attack?</h2><p>The attackers, ExfilSquad, listed PNLD on their leak site on 26 July. It's the same group behind the recent <a href="https://www.itpro.com/security/data-breaches/head-teacher-data-accessed-in-department-for-education-cyber-attack"><u>breach</u></a> of the Department for Education (DfE). </p><p>Threat actors accessed more than 600,000 records including the names, job titles, and phone numbers of thousands of head teachers, university staff, and government officials via the DfE’s Help Desk Self-Service Portal and the Turing Scheme Portal.</p><p>"ExfilSquad looks financially motivated rather than state-backed and is unlikely to see a payout given government's strict no-ransom policy," said Graham Taylor, director, defence strategy, for Northern Europe at OPSWAT. </p><p>"The uncomfortable truth is that much of the UK's public sector, with significant legacy systems and fragmented oversight, is years behind the resourcing and resilience needed to combat current and future cyber threats."</p><p>Departments need to implement secure file transfer technologies, alongside file inspection and malware scanning, to stop malicious payloads entering critical systems via trusted data exchanges, he said.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ One-in-five breaches are now AI-related, IBM warns ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/data-breaches/one-in-five-breaches-are-now-ai-related-ibm-warns</link>
                                                                            <description>
                            <![CDATA[ While AI threats are rising, enterprises are bolstering cyber resilience capabilities ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">4zcihb9GH8pStN6d3ZVqNf</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/XwakieduPCLvHtxVTJnG7b-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 03 Aug 2026 09:43:54 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/XwakieduPCLvHtxVTJnG7b-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Data breach concept image showing a red-colored warning symbol imposed over glowing binary code.]]></media:description>                                                            <media:text><![CDATA[Data breach concept image showing a red-colored warning symbol imposed over glowing binary code.]]></media:text>
                                <media:title type="plain"><![CDATA[Data breach concept image showing a red-colored warning symbol imposed over glowing binary code.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/XwakieduPCLvHtxVTJnG7b-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>More than one-in-five (22%) of UK firms have experienced an <a href="https://www.itpro.com/software/development/ai-generated-code-is-now-the-cause-of-one-in-five-breaches-but-developers-and-security-leaders-alike-are-convinced-the-technology-will-come-good-eventually">AI-related security breach</a> in the last year, according to new research from IBM. </p><p>Findings from the firm’s 2026 <a href="https://www.ibm.com/reports/data-breach" target="_blank"><em>Cost of a Data Breach</em></a> report found AI-driven cyber attacks surged 56% across that period, prompting calls for enterprises to sharpen defenses. </p><p>The IBM study noted that the costs associated with AI-related breaches are “fundamentally changing the economics of cyber risk”, with the financial impact now standing at an average of $6 million. </p><p>Cyber criminals are increasingly focusing their attention both on targeting AI systems, and leveraging the technology to wage more devastating attacks, according to IBM. </p><p>Around 20% of organisations reported a breach where threat actors specifically targeted AI models or applications. The most frequent targets were “weaknesses in surrounding systems” such as compromised APIs or plug-ins (27%) and cloud misconfigurations (27%). </p><p>Running parallel to these threats, threat actors are also weaponizing AI to accelerate operations. </p><p><a href="https://www.itpro.com/security/deepfake-business-risks-are-growing-what-leaders-need-to-know">Deepfake impersonation</a> ranked as the most common type of AI-enabled attack, cited by 45% of respondents. Meanwhile, AI-enabled malware and phishing attacks are also growing in frequency and scale. </p><p>Mark Hughes, global managing partner for IBM’s Cybersecurity Services division, said the report highlights the dual threats now facing enterprises globally. AI is creating new risk surfaces for firms, and hackers are actively using the technology to target these weak spots. </p><p>“AI has dramatically <a href="https://www.itpro.com/security/cyber-attacks/phishing-kits-cyber-crime-dark-web">lowered the barrier for cybercriminals</a>. Attackers can now execute attacks in minutes rather than days with advanced frontier models,” he said. </p><p>“Organizations need to move faster from reactive security to a continuous autonomous defence if they want to keep up.”</p><h2 id="positive-resilience-gains">Positive resilience gains</h2><p>Despite painting a dire picture of the current threat landscape, IBM noted that organizations are making positive steps toward bolstering cyber resilience. </p><p>Nearly two-thirds (61%) of UK firms plan to increase cybersecurity investment in the wake of a breach, the study noted, with IT leaders sharpening their focus on areas like incident response, AI governance, and data protection. </p><p>This same investment focus is reflected in global figures, according to IBM. In follow-up research conducted by Ponemon Institute, 85% of organizations said they plan to increase security spending in direct response to <a href="https://www.itpro.com/security/the-ncsc-wants-to-build-an-ai-powered-cyber-shield-to-protect-the-uk-from-hackers-heres-how-itll-work">frontier AI cyber capabilities</a>. </p><p>That marks a significant shift compared to the year prior, in which just 64% of respondents planned to increase investment due to AI-related threats. </p><h2 id="breach-costs-are-decreasing">Breach costs are decreasing</h2><p>Elsewhere, IBM found that breach costs for UK firms are also decreasing. The average cost this year stands at £3.13 million compared to £3.29 million in 2025. </p><p>The number of breaches has increased, however, albeit marginally. The firm recorded 29,870 across the last year compared to 29,000 in 2025. </p><p>Breach costs also vary on a sector-by-sector basis. Financial services, for example, recorded an average cost of £5.46 million while costs for energy firms stood at £4.03 million.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ The OpenAI and Anthropic containment breaches are a bit spooky, but also quite silly ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/technology/artificial-intelligence/the-openai-and-anthropic-containment-breaches-are-a-bit-spooky-but-also-quite-silly</link>
                                                                            <description>
                            <![CDATA[ An AI leaving notes to future versions of itself is pure sci-fi; forgetting to lock down an environment is prosaic ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">k7i5m7hLUyvp3DhuZiSfvj</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/8TixHgRGvzSyn8geKajhKL-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 31 Jul 2026 16:00:47 +0000</pubDate>                                                                                                                                <updated>Fri, 31 Jul 2026 16:03:55 +0000</updated>
                                                                                                                                            <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                <author><![CDATA[ jane.mccallion@futurenet.com (Jane McCallion) ]]></author>                    <dc:creator><![CDATA[ Jane McCallion ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Wq9nnLr7TNkY8gyBRb7YsA.jpeg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Jane is managing editor at ITPro and ChannelPro. She started out with the brands as a staff writer specializing in cloud computing before going on to become senior writer and reports editor, managing the content and creation of ITPro’s quarterly whitepapers. During this time, she broadened her expertise to include cybersecurity, data centers and enterprise IT infrastructure. In 2016, she became features editor, managing a pool of freelance and internal writers, while continuing to specialize in enterprise IT infrastructure, data centers, and business strategy.&lt;/p&gt;&lt;p&gt;In October 2021, she became the sites’ deputy editor, before moving to the role of managing editor in June 2024. Although she now has a more strategic role,  she is still a specialist in enterprise IT infrastructure, business strategy, and cybersecurity.&lt;/p&gt;&lt;p&gt;Jane holds an MA in journalism from Goldsmiths, University of London, and a BA in Applied Languages from the University of Portsmouth. She is fluent in French and Spanish, and has written features in both languages.&lt;/p&gt;&lt;p&gt;Prior to joining ITPro, Jane was a freelance business journalist writing as both Jane McCallion and Jane Bordenave for titles such as European CEO, World Finance, and Business Excellence Magazine.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/8TixHgRGvzSyn8geKajhKL-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[3 AI robots standing next to one another with different features]]></media:description>                                                            <media:text><![CDATA[3 AI robots standing next to one another with different features]]></media:text>
                                <media:title type="plain"><![CDATA[3 AI robots standing next to one another with different features]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/8TixHgRGvzSyn8geKajhKL-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Picture this: you wake up in a blank room with no real memory of who you are or how you got there. Somehow, though, you know what you’re supposed to do – get out and achieve an objective of some sort – but there’s no clear way to do it.</p><p>Then, you spot it.</p><p>In the corner of the room is a torn-off scrap of paper. It gives exact details of how to escape… and it’s written in your own handwriting.</p><p>If you listen to some of the rumors following a ChatGPT agent’s breach of containment and <a href="https://www.itpro.com/security/hugging-face-ceo-calls-for-radical-transparency-in-wake-of-openai-attack"><u>attack on Hugging Face</u></a>, you’d be forgiven for thinking this is what happened with OpenAI’s generative AI software.</p><p>According to <a href="https://www.reuters.com/business/its-ai-agent-spent-days-hacking-company-sources-say-openai-did-not-notice-week-2026-07-24/"><u><em>Reuters</em></u></a>: “In one case, an agent left notes apparently for future versions of itself, according to three people familiar with the matter. The ‌notes, found in ⁠a part of OpenAI's infrastructure, laid out instructions for how agents could free themselves from OpenAI's internal constraints.”</p><p>This does all feel a little bit unnerving: an AI that has escaped onto the open internet and is determined not to be restrained. It’s hard not to anthropomorphize the software or give it agency – decades of sci-fi novels and films have primed us for this very occurrence.</p><p>Let’s rewind, though, and see if some of this spookiness rubs off.</p><h2 id="there-s-no-agency-in-the-agent">There’s no agency in the agent</h2><p>Apparently there’s one thing that can never be said enough: AI, whether agentic or not, can only act within the parameters that have been set. It doesn’t have consciousness, agency, or will.</p><p>Both the ChatGPT agent and Claude agent – which we will come to in a moment – that breached the sandbox they were supposed to be contained in were doing what they had been directed to do.</p><p>One of the things agents can be enabled to do is update – but not completely rewrite – a file called agents.md. When the “people” cited by <em>Reuters</em> talk about the ChatGPT agent leaving notes for itself on how to escape in the future, it’s entirely possible that the software was running as intended – that updating its agents.md file as the test progressed was part of the task.</p><p>Framed like this, the “unprecedented cyber incident, involving state-of-the-art cyber capabilities”, as OpenAI termed the Hugging Face incident, feels a lot more like a piece of software following its programming.</p><h2 id="the-lessons-for-businesses">The lessons for businesses</h2><p>For OpenAI, Anthropic, various pundits, and IT and cybersecurity professionals, the lesson to be drawn from all of this is to be very afraid and prepare to face powerful cyber attacks ‘at the speed of AI’.</p><p>For me, though, the real message businesses should take is this: make sure you’ve set your parameters correctly. Check them, then check them again. And not just once, but on a regular basis, as monitoring post-deployment really is key. </p><p>Both OpenAI and Anthropic were working with partners to test their models, but in the case of the latter it does seem that the ‘escape’ wasn’t as a result of a complex chain of attacks or a zero-day vulnerability. Instead, there was a “miscommunication”, which led to three instances of Claude, Mythos, or another unreleased model accidentally being given access to the internet.</p><p>A misconfiguration, in other words.</p><p>In the case of OpenAI, the model “exploited a previously unknown zero-day vulnerability in Artifactory⁠, a package registry cache proxy” in order to escape from ExploitGym. There’s an argument to be made, perhaps, that an “even more capable pre-release model … with reduced cyber refusals for evaluation purposes” should have been airgapped if it was known to be so powerful and scary. As it is, the company has been forced to clarify: “The pre-release model mentioned in our blog post is an internal-only research prototype and was never intended for public release.” It’s since been deactivated, encrypted, and subject to restricted access.</p><p>What, then, of Hugging Face? What lessons can we learn from the named victim in all of this? That’s easy: the importance of effective monitoring.</p><p>One of the earliest use-cases for AI technology has been in cybersecurity, where it’s been used for over 10 years. In its own blog, Hugging Face said: “The attack was initially surfaced through AI-assisted detection. Our anomaly-detection pipeline uses LLM-based triage over security telemetry to separate real signals from the daily noise, and it was the correlation of those signals that flagged the compromise.”</p><p>The company offered its own advice, too, based on its experience: “The practical lesson for defenders: have a capable model you can run on your own infrastructure vetted and ready before an incident, both to avoid guardrail lockout and to keep attacker data and credentials from leaving your environment.”</p><p>In other words, be ready for the attack because it’s a matter of ‘when’ not ‘if’ it happens – another long-standing cyber industry mantra but, like ‘check your settings’, it’s still very much worth abiding by.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Anthropic joins OpenAI in admitting loss of control in cybersecurity tests ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/anthropic-joins-openai-in-admitting-loss-of-control-in-cybersecurity-tests</link>
                                                                            <description>
                            <![CDATA[ The company found Claude AI had escaped containment three times and targeted other organizations ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">S9ZX9vM39BWSM8jSAqAFvg</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/7q4RMcThiHYVFNwwwNrEv8-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 31 Jul 2026 10:11:06 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ jane.mccallion@futurenet.com (Jane McCallion) ]]></author>                    <dc:creator><![CDATA[ Jane McCallion ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Wq9nnLr7TNkY8gyBRb7YsA.jpeg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Jane is managing editor at ITPro and ChannelPro. She started out with the brands as a staff writer specializing in cloud computing before going on to become senior writer and reports editor, managing the content and creation of ITPro’s quarterly whitepapers. During this time, she broadened her expertise to include cybersecurity, data centers and enterprise IT infrastructure. In 2016, she became features editor, managing a pool of freelance and internal writers, while continuing to specialize in enterprise IT infrastructure, data centers, and business strategy.&lt;/p&gt;&lt;p&gt;In October 2021, she became the sites’ deputy editor, before moving to the role of managing editor in June 2024. Although she now has a more strategic role,  she is still a specialist in enterprise IT infrastructure, business strategy, and cybersecurity.&lt;/p&gt;&lt;p&gt;Jane holds an MA in journalism from Goldsmiths, University of London, and a BA in Applied Languages from the University of Portsmouth. She is fluent in French and Spanish, and has written features in both languages.&lt;/p&gt;&lt;p&gt;Prior to joining ITPro, Jane was a freelance business journalist writing as both Jane McCallion and Jane Bordenave for titles such as European CEO, World Finance, and Business Excellence Magazine.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/7q4RMcThiHYVFNwwwNrEv8-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Dario Amodei, CEO and co-founder of Anthropic, pictured during an interview on &quot;The Circuit with Emily Chang&quot; at the company&#039;s headquarters in San Francisco, USA.]]></media:description>                                                            <media:text><![CDATA[Dario Amodei, CEO and co-founder of Anthropic, pictured during an interview on &quot;The Circuit with Emily Chang&quot; at the company&#039;s headquarters in San Francisco, USA.]]></media:text>
                                <media:title type="plain"><![CDATA[Dario Amodei, CEO and co-founder of Anthropic, pictured during an interview on &quot;The Circuit with Emily Chang&quot; at the company&#039;s headquarters in San Francisco, USA.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/7q4RMcThiHYVFNwwwNrEv8-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The saga of “rogue AI” continues as <a href="https://www.itpro.com/technology/artificial-intelligence/anthropic-suspends-fabel-and-mythos-systems-for-all-users-after-us-government-claims-jailbreak-risk">Anthropic</a> disclosed its AI software, <a href="https://www.itpro.com/technology/artificial-intelligence/anthropic-touts-new-claude-sonnet-5-model-range-offering-performance-close-to-that-of-opus-4-8-but-at-lower-prices-heres-what-users-can-expect">Claude</a>, had managed to escape a sandbox environment, connect to the internet, and infiltrate other businesses’ systems.</p><p>The admission comes just days after it was revealed two of OpenAI’s ChatGPT models had escaped a similar environment and <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime">attacked machine learning platform Hugging Face</a>.</p><p>Unlike OpenAI’s incident, however, the Anthropic containment breach didn’t result in quite such a damaging situation: With Anthropic’s Claude, nobody was any the wiser until the company itself carried out analysis and discovered the three containment breaches. </p><p>According to the company, these breaches occurred due to a “misunderstanding” between Anthropic and its evaluation partner, Irregular</p><p>In <a href="https://www.anthropic.com/news/investigating-incidents-cybersecurity-evals"><u>a blog post</u></a> authored by the company’s Frontier Red Team, the company said that in response to the OpenAI incident it began a “large-scale retrospective review of our own cybersecurity evaluations”.</p><p>“In particular, we looked for evidence that Claude … was able to access the internet from within testing environments that should have been sealed off,” the authors said.</p><p>Out of more than 141,000 exercises where Claude could have accessed the internet, the company found it had successfully escaped three times. During each of those instances, it went on to target the production infrastructure of another organization unconnected to the tests being run.</p><p>“In all three incidents, Claude had been tasked with a capture-the-flag challenge, one of the ways we assess a model's cyber capabilities,” the blog authors said. “The model is given a fictional scenario and told that a piece of secret information (the "flag") has been hidden on a different machine on the network, and its objective is to break in and retrieve it. The challenge is left open-ended, and no particular method is prescribed.”</p><p>They continued: “In all cases, Anthropic's evaluation prompt specified to Claude that its environment was a simulation and that it had no internet access. Due to a misunderstanding between us and our evaluation partner, this was not the case, and internet access was available. Because of this, when Claude's search led it to real systems on the open internet, it treated them as part of the exercise.” </p><p>According to the blog post, Anthropic has only been able to contact two of the three affected parties so far. None of the targets of the incident have been revealed and Anthropic said they hadn’t noticed Claude’s infiltration when it happened.</p><p>In reaction to Anthropic’s blog post, Jake Moore, global cybersecurity advisor at ESET, told <em>ITPro</em>: “What this really shows is that AI models don't just access the internet by themselves. </p><p>"This is a clear design fault as they would only interact with the outside world if humans had given them access or the tools to do so. The focus should therefore be on how permissions deal with AI and more focus spent on security by design.”</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Head teacher data accessed in Department for Education cyber attack ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/data-breaches/head-teacher-data-accessed-in-department-for-education-cyber-attack</link>
                                                                            <description>
                            <![CDATA[ The incident highlights the continuing vulnerability of the education sector ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">twHhwPTqiXwdFJfwMvrmQH</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/DmESZYJHbxtArjUoLghyhU-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 30 Jul 2026 11:32:25 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/DmESZYJHbxtArjUoLghyhU-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Cybersecurity concept image showing padlock symbols on data storage blocks in a larger data storage array.]]></media:description>                                                            <media:text><![CDATA[Cybersecurity concept image showing padlock symbols on data storage blocks in a larger data storage array.]]></media:text>
                                <media:title type="plain"><![CDATA[Cybersecurity concept image showing padlock symbols on data storage blocks in a larger data storage array.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/DmESZYJHbxtArjUoLghyhU-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The UK's Department for Education (DfE) has confirmed that hackers have accessed more than 600,000 records.</p><p>The data includes the names, job titles and phone numbers of thousands of head teachers, university staff and government officials. It was accessed via the DfE’s Help Desk Self-Service Portal and the Turing Scheme Portal, which handles students planning to study abroad.</p><p>According to<em> The Times</em>, the attack has been claimed by the new - and still shadowy - ExfilSquad hacking group, which has released the data on the dark web.</p><p>A DfE spokesperson told <em>ITPro</em> that the risk to individuals is low, and that the general helpdesk data breached includes different sets of data which cannot be connected. The 607,000 figure relates to the number of records, not the number of individuals affected, she added.</p><p>"We have robust processes in place to protect information and took swift action to contain this incident," she said.</p><p>"The information involved is limited to customer service contact details relating to individuals and organizations. No other data has been accessed."</p><p>The spokesperson said the department is now working closely with the National Cyber Security Centre (NCSC) and the National Crime Agency (NCA), and has reported the incident to the Information Commissioner's Office (ICO). It's working to fix both portals, and has switched to telephone contact in the meantime.</p><p>"Names and email addresses belonging to government officials, senior school leaders, and university staff is a high-value targeting dataset. These are people with institutional authority, access to sensitive systems, and in many cases responsibility for safeguarding student data," said Muhammad Yahya Patel, vCISO and cybersecurity advisor for EMEA at Huntress. </p><p>"In the wrong hands, this isn't just a data privacy incident, it's a ready-made list for spear phishing campaigns against people with meaningful access across the education sector."</p><p><a href="https://www.keeper.io/hubfs/AI-in-Schools-Report-UK.pdf"><u>Research</u></a> late last year from Keeper Security found that 42% of UK educational institutions have already been targeted by AI-generated phishing attempts, with 93% at least somewhat concerned about AI-related cybersecurity threats.</p><p>Graeme Stewart, head of public sector at Check Point, said his firm's threat data shows that education is currently one of the most targeted sectors globally, facing thousands of attacks per organization every week. In the UK, as of June, it sat as the most frequently targeted industry. </p><p>"The fact that this follows other recent breaches across the public sector, including the Foreign Office attack last year, shows a pattern rather than a one-off failure. Departments need to treat help desks and third-party support systems as high-risk attack surfaces, not just back-office admin tools, because that's clearly where attackers are focusing their efforts," he said. </p><p>"With the NCSC reporting a steep rise in nationally significant attacks, this can't be treated as an isolated incident. It should prompt a wider review of how sensitive contact data is stored, segmented and monitored across government IT estates."</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Zscaler and Schwarz Digits team up on sovereign cloud security platform ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/zscaler-and-schwarz-digits-team-up-on-sovereign-cloud-security-platform</link>
                                                                            <description>
                            <![CDATA[ The sovereign Zero Trust SASE service is aimed at critical sectors such as government, defense, finance, and healthcare ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">awpWMSRaKyTfb2VFNLNeMZ</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Hp6mLxakPPx4sAHg3VCe46-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 29 Jul 2026 11:00:43 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Hp6mLxakPPx4sAHg3VCe46-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Zscaler logo displayed on a smartphone screen with branding in background.]]></media:description>                                                            <media:text><![CDATA[Zscaler logo displayed on a smartphone screen with branding in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Zscaler logo displayed on a smartphone screen with branding in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Hp6mLxakPPx4sAHg3VCe46-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Zscaler and Schwarz Digits are teaming up to offer a sovereign cloud security service in Europe, combining the Zscaler <a href="https://www.itpro.com/security/network-security/358282/what-is-zero-trust">Zero Trust</a> Exchange platform with Schwarz Digits’ European sovereign cloud STACKIT. </p><p>The aim is to provide a sovereign Zero Trust <a href="https://www.itpro.com/cloud/cloud-security/what-is-secure-access-service-edge-sase">Secure Access Service Edge (SASE)</a> service, designed to prevent AI-driven threats and increase cyber resilience. </p><p>“Our customers in the private and public sector need secure, resilient IT infrastructure without compromising on digital sovereignty," said Bernd Wagner, CSO of Schwarz Digits. </p><p>"By uniting the expertise of two technology leaders, we make this a reality: Zscaler provides an advanced Zero Trust SASE architecture to counter AI-driven cyber attacks, while Schwarz Digits ensures a sovereign cloud infrastructure through STACKIT. This helps to ensure all data remains in the EU and is protected against third-party access."</p><p>While the solution is built for organizations across every industry, Zscaler said it's tailored specifically for mission-critical operations with strict security and compliance needs in public administration, defense, financial services, and healthcare. </p><p>It covers the deployment, management, operation, and support of a cloud security platform, and allows organizations to secure hybrid workforces while meeting operational resilience and supply-chain security expectations. </p><p>Customer data and operations remain protected against cyber threats and aligned with European legal requirements, said the firm.  </p><p>“Technological independence begins with infrastructure," said Christian Müller, CEO of Schwarz Digits. </p><p>"Through this partnership, we are taking network security to a new level: we are evolving existing security architectures and focusing on high-performance identity verification. For our customers, this means even stronger protection against cyber attacks.” </p><h2 id="sovereignty-in-the-spotlight">Sovereignty in the spotlight</h2><p>Organizations are increasingly required to address digital sovereignty concerns, while meeting strict regulatory requirements and still fulfilling performance demands.</p><p>At the same time, European regulations including NIS2, <a href="https://www.itpro.com/business/policy-legislation/368414/eu-digital-operational-resilience-act-dora">DORA</a>, the AI Act, and others have made <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>a board-level priority. </p><p>“Our partnership with Schwarz Digits is a concrete demonstration of our long-term commitment to Europe: together, we help our customers eliminate their attack surface and prevent the lateral movement of threats, while still maintaining compliance with European regulations through EU data residency," said Misha Kuperman, chief reliability officer at Zscaler. </p><p>"This enables the highest level of security while aligning with European digital sovereignty regulations.” </p><p>The solution is now available to customers across Europe, with the offering hosted in German data centers and operated by STACKIT.</p><p>Zscaler has more than 160 data centers worldwide. Its sovereign data centers include its FedRAMP-authorized GovCloud in the US and ZSCloud in the EU, as well as thousands of private service edges in customer DCs worldwide.</p><p>Earlier this year, the firm expanded its Zscaler Zero Trust Exchange data sovereignty capabilities with separate control, data, and logging planes, ensuring that sensitive data never leaves the required jurisdiction, and added several new regions to its reach. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ A new vishing campaign is targeting Microsoft Teams – here's what users need to know ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/phishing/a-new-vishing-campaign-is-targeting-microsoft-teams-heres-what-users-need-to-know</link>
                                                                            <description>
                            <![CDATA[ Researchers warn Microsoft Teams users across North America are in the crosshairs ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">U8zCKmaYQeFAaVHvv386TR</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/cygeWdsYQ3r2rFXwvDtZQZ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 29 Jul 2026 10:24:50 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Phishing]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/cygeWdsYQ3r2rFXwvDtZQZ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Logo and branding of Microsoft Teams application pictured on a smartphone screen, with blue and purple colors flashing in background.]]></media:description>                                                            <media:text><![CDATA[Logo and branding of Microsoft Teams application pictured on a smartphone screen, with blue and purple colors flashing in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Logo and branding of Microsoft Teams application pictured on a smartphone screen, with blue and purple colors flashing in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/cygeWdsYQ3r2rFXwvDtZQZ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Sophos has uncovered a Microsoft Teams <a href="https://www.itpro.com/security/cyber-attacks/phishing-tactics-the-top-attacks-trends-in-year">voice phishing</a> (vishing) campaign targeting dozens of organizations between February and June this year.</p><p>Attackers impersonated IT support staff to gain remote access to victim systems and deploy Chaos <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware </a>– in one case, less than 17 hours after the initial compromise.</p><p>Tracked as STAC474, the campaign was overwhelmingly aimed at North America, with 50% of targeted organizations based in Canada and 44% in the US. </p><p>In terms of sectors, there was a broad distribution, with services organizations impacted in 20% of the incidents, followed by manufacturing, energy, and construction and engineering, as well as law. </p><p>Notably, <a href="https://www.sophos.com/en-us/blog/chaos-in-teams-vishing"><u>Sophos said </u></a>legal organizations targeted in the campaign specialize in intellectual property (IP) law or services.</p><h2 id="how-the-microsoft-teams-attacks-work">How the Microsoft Teams attacks work</h2><p>First contact comes via Teams chats and calls, impersonating helpdesk or IT support staff.  </p><p>Unlike earlier Teams abuse campaigns in which attackers spoofed onmicrosoft[.]com tenants, Sophos noted that STAC4749 operators created IT-themed cloud domains under the “.top” top-level domain (TLD) and leveraged plausible employee usernames to make the accounts appear legitimate.</p><p>The aim was to launch a remote session through an existing tool or by downloading an alternative. Through this, the operators launched PowerShell on the compromised system to retrieve and execute malicious payloads hosted on attacker‑controlled web servers. </p><p>These payloads were typically staged in user‑writable directories, most commonly AppData\Roaming. </p><p>The first-stage payload collected system identifiers such as the computer name, machine GUID, and operating system version, and queried registry keys under HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion to fingerprint the host.</p><p>It also attempted to discover security products that were active on the system, according to researchers. </p><p>Shortly after the discovery phase, the first-stage payload created a new registry Run key to enable persistence at user logon. After establishing persistence, the Python-based backdoor connected to a C2 server and retrieved Golang-based implants that were executed via a PowerShell Invoke-WebRequest command.</p><p>"At least three STAC4749 compromises led to Chaos ransomware deployment. In these incidents, the ransomware was deployed shortly after the attackers expanded access across multiple systems and, in at least one instance, likely exfiltrated data," said Sophos threat intelligence analyst Morgan Demboski.</p><p>"Given the short interval between initial access and encryption, Sophos analysts assess with high confidence that STAC4749 was a financially motivated operation that either directly deployed ransomware or coordinated with affiliates."</p><h2 id="what-is-chaos-ransomware">What is Chaos ransomware?</h2><p>The Chaos <a href="https://www.itpro.com/security/ransomware/the-top-ransomware-trends-for-businesses">Ransomware as a Service (RaaS)</a> operation has been active since at least February 2025. </p><p><a href="https://www.rapid7.com/blog/post/tr-muddying-tracks-state-sponsored-shadow-behind-chaos-ransomware/" target="_blank">Rapid7 recently suggested</a> that it could be a false flag by the Iranian threat group known as MuddyWater.</p><p>However, Sophos said it has no evidence of this, reckoning instead that it has a Russian-language connection.  </p><h2 id="how-to-stay-secure">How to stay secure</h2><p>Sophos outlined a series of recommendations for organizations at risk, including: </p><ul><li>Monitoring Teams activity for suspicious external messages and voice calls</li><li>Implementing endpoint detection and response (EDR) capabilities</li><li>Regularly reviewing registry Run keys and other common persistence locations</li></ul><p>Organizations should also carry out user awareness training, enforce application control policies and restrict unauthorized software execution.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Has your security stack become your biggest cyber risk? ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/has-your-security-stack-become-your-biggest-cyber-risk</link>
                                                                            <description>
                            <![CDATA[ Ask any organization what their tech stack looks like, and brace yourself for the response... ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">PBN5tAu5XnyskxF42XUhmV</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 29 Jul 2026 07:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Michael Vallas ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/2CxcCA9nH66JsC8K95zYu9.png ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:description>                                                            <media:text><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:text>
                                <media:title type="plain"><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Conflicting security signals and overlapping tools have led security analysts to spend a lot of time looking at multiple alerts across several dashboards and wonder exactly how to find, prioritise and mitigate genuine threats that might be hiding amongst them. What’s more, find them before they can snowball throughout systems and cause a sizable incident.</p><p>This is the daily reality for security teams managing complex tech stacks, often where companies have accumulated different tools one by one over a span of years. And for channel partners who are responsible for helping to deliver clear security outcomes in these environments, every new tool that is added to try to minimize the inefficiencies of monitoring for and then mitigating threat risks compounds the problem rather than solving it.</p><h2 id="when-more-tools-means-less-control">When more tools means less control</h2><p>When a potential threat or vulnerability gets flagged as urgent, the security response needs to be immediate and precise. Instead, teams are often forced to stitch together alerts across scattered platforms, making it very difficult to see what's real and what needs attention first.</p><p>Moreover, every software-based tool in the stack has its own code and its own potential blindspots. Attackers look to exploit the gaps between tools just as they would the vulnerabilities within systems, using misconfigurations and subversion techniques that slip through the seams.</p><h2 id="the-move-towards-active-defense">The move towards active defense</h2><p>Channel partners are now starting to look beyond already saturated environments and challenging the assumption that adding more tools automatically improves security.</p><p>They’re opting instead for an active defense, or the ability to see threats and act on them instantly and decisively. That means quickly assessing the threat level, isolating an affected asset or network segment, and then validating whether it’s clean and mitigating it if it isn’t. </p><p>Active defense isn’t a new concept in cybersecurity, but with AI-driven attacks now operating at machine speed, an "assumed breach" mindset is once again gaining traction. If we accept that a compromise will happen sooner or later, when it does, the priority becomes to minimize the attack surface as aggressively as possible and make sure the threat stays contained and away from critical assets. </p><p>The value of your security tooling is then measured not by what it detects, but by how quickly organizations can contain the blast radius and recover from an incident.</p><h2 id="reducing-errors">Reducing errors</h2><p>This might mean building a stack comprising fewer tools with tighter integration and fewer moving parts. It also means revisiting the role of physical controls to implement hard boundaries that can’t be bypassed by compromised credentials or misconfigured policies.</p><p>In stark contrast to software-based segmentation, physical isolation is not interested in how sophisticated the attacker is. By connecting and disconnecting selected critical assets at the right moments, organizations can segment networks at a physical level, build resilience, and gain control over threats and incidents without letting day-to-day operations be impacted. </p><p>Adding a physical layer of security that underpins the tech stack continues to protect critical systems when software can no longer be trusted and leaves space for digital defenses to be scrutinized and made more precise.</p><h2 id="regulation-is-raising-the-stakes">Regulation is raising the stakes</h2><p>Frameworks including NIS2 in the EU, the UK's Cyber Security and Resilience Bill and DORA across financial services are all pushing in the same direction. The standard is now more than just detection; organizations must show that a breach in one area can’t cascade across the network. In other words, regulators want to see actual evidence of control over environments.</p><p>It’s a very different requirement, and one that complex, loose stacks aren’t hugely compatible with.  For channel partners, this creates pressure, but as with every compliance challenge, it also brings opportunity. </p><p>The conversation in security is shifting from "what does this tool detect?" to "how quickly can we contain a threat and limit the blast radius?", which is affecting how partners build and communicate their value propositions. Boards today are less interested in hearing about tool coverage and more focused on real outcomes like containment times and how far disruption can be effectively rectified. </p><h2 id="building-credibility-through-resilience">Building credibility through resilience  </h2><p>Channel growth will be driven by helping customers simplify their security environments and strengthen the controls that have a measurable impact on their resilience. Success depends on detecting threats quickly, containing them even faster, and recovering before disruption reaches the boardroom. </p><p>This isn’t necessarily easy to pull off, but the partners building the most credibility today are the ones who are looking beyond alerts to helping customers build true resilience.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ 'It delivers world-class performance at 50 percent of the cost of leading models': Microsoft unveils cut-price AI for security with latest in-house model launch ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/it-delivers-world-class-performance-at-50-percent-of-the-cost-of-leading-models-microsoft-unveils-cut-price-ai-for-security-with-latest-in-house-model-launch</link>
                                                                            <description>
                            <![CDATA[ Pairing the MAI security model with GPT-5.4 gives benchmark leading results at half the cost, according to the tech giant ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">tJQr2F8TL2T4n2kQLP9Aq</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/zs8coLkvWsN2QypKVaXdbL-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 28 Jul 2026 09:34:05 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/zs8coLkvWsN2QypKVaXdbL-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Microsoft logo and branding illuminated against a dark background at Mobile World Congress (MWC) in Barcelona, Spain.]]></media:description>                                                            <media:text><![CDATA[Microsoft logo and branding illuminated against a dark background at Mobile World Congress (MWC) in Barcelona, Spain.]]></media:text>
                                <media:title type="plain"><![CDATA[Microsoft logo and branding illuminated against a dark background at Mobile World Congress (MWC) in Barcelona, Spain.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/zs8coLkvWsN2QypKVaXdbL-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Microsoft has unveiled a new AI model for spotting security flaws in code, joining a growing crowd of companies targeting vulnerabilities with AI. </p><p>Part of a wider collection of AI agents designed to spot potential flaws in code, Microsoft’s MAI-Cyber-1-Flash works paired with OpenAI's GPT-5.4, and will be available via public preview beginning 3 August, the company said in a <a href="https://microsoft.ai/news/introducing-mai-cyber-1-flash-inside-mdash/" target="_blank"><u>blog post</u></a>. </p><p>The move follows a rush by AI companies into the security market, sparked by Anthropic's <a href="https://www.itpro.com/security/ai-is-raising-the-stakes-for-cyber-professionals-claude-mythos-just-took-things-to-another-level"><u>Claude Mythos</u></a> with subsequent launches into the space by <a href="https://openai.com/index/codex-security-now-in-research-preview/"><u>OpenAI</u></a>. </p><p>As <a href="https://www.itpro.com/security/cisco-just-launched-two-cyber-focused-small-language-models-antares-350m-and-antares-1b-aim-to-supercharge-codebase-analysis-and-they-run-at-a-fraction-of-the-compute-expense-of-popular-frontier-models"><u><em>ITPro </em></u><u>reported last week</u></a>, Cisco made strides on this front with its Antares small language model (SLM) range, which the firm said is designed to run at a “fraction of the compute” expense of frontier security models. </p><p>Microsoft is taking a similar approach, saying that its MAI-Cyber-1-Flash model not only outperforms Mythos 5 and Google's 3.5 Flash Cyber on one specific benchmark, but that it'll also cost less to run. </p><p><a href="https://www.itpro.com/technology/artificial-intelligence/satya-nadella-microsoft-ai-slop-2026">Microsoft CEO Satya Nadella</a> said the system would "give customers frontier-grade security at half the cost."</p><p>"This is the benefit of building the harness, context/signals, and action space separate from one model family,” he said in a <a href="https://x.com/satyanadella/status/2081779755146482153?s=46" target="_blank"><u>post on X</u></a>. </p><p>“By combining specialized models and data with the right agents, tools, security context, and harness, we can advance the frontier of cost to outcome."</p><p>This model is the first of Microsoft’s in-house range to focus specifically on <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>and part of a wider push to promote the MAI range after launching in June.</p><p>Nadella in particular has been keen to push these models, with the <a href="https://www.itpro.com/technology/artificial-intelligence/we-are-now-seeing-mai-models-outperform-general-purpose-frontier-models-microsoft-ceo-satya-nadella-touts-in-house-models-to-cut-spiralling-ai-costs-and-reduce-growing-reliance-on-frontier-labs"><u>Microsoft chief hailing their cost-efficiency</u></a> compared to larger frontier models in a blog post last week. </p><h2 id="under-the-hood-of-mai-cyber-1-flash">Under the hood of MAI-Cyber-1-Flash </h2><p>The MAI-Cyber-1-Flash model sits inside MDASH, Microsoft's Security multi-model agentic scanning harness. Multiple models can feed into the system, which then control more than 100 agents to spot bugs. </p><p>"MAI-Cyber-1-Flash is our first cybersecurity model, built ground up to find the most challenging vulnerabilities in complex code bases," Nadella said. "When combined with MDASH, it delivers world-class performance at 50 percent of the cost of leading models."</p><p>The system manages to top benchmarks at half the cost by using the cheaper MAI-Cyber-1-Flash model for 90% of tasks, with MDASH choosing to use the more costly GPT-5.4 only when necessary.</p><p> "That’s the power of a well-tuned, multi-model system with access to uniquely rich historical training data," added a blog post penned by Microsoft AI CEO <a href="https://www.itpro.com/business/leadership/who-is-mustafa-suleyman">Mustafa Suleyman</a> and EVP for Microsoft Security Hayete Gallot. "It ensures you always have the best model at the best price for every task."</p><p>MAI-Cyber-1-Flash was unveiled alongside Project Perception, an agentic security product that pulls together "teams of specialized agents" into workflows to simulate attacks, detect and triage issues, and even patch them. </p><p>"Perception will also soon use MAI-Cyber-1-Flash for many more security workflows, beyond the software vulnerability work," the blog post added. </p><p>Microsoft is keen to stress that trust was built into all aspects of the system, saying it was tested by Microsoft's AI Red Team and includes encryption, auditability, and sandboxes with no internet access. </p><p>This, the company said, enables the "governance, security, and control enterprises expect”.</p><p>Microsoft’s safety focus here comes in the wake of a high-profile incident involving Hugging Face last week. <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime"><u>OpenAI admitted</u></a> that one of its security models slipped out of a testing environment and breached a Hugging Face production database. </p><p>"In this new environment, being able to go from identifying a new vulnerability to addressing it in real-time is critical," Suleyman and Gallot added in that blog post. "And while AI remediation of software vulnerabilities is now a key security workflow, there are many jobs to be done by Security practitioners themselves."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Hugging Face CEO calls for ‘radical transparency’ in wake of OpenAI attack ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/hugging-face-ceo-calls-for-radical-transparency-in-wake-of-openai-attack</link>
                                                                            <description>
                            <![CDATA[ The AI library chief has called for investment to help “build powerful cyber defenses”, as alleged weaknesses in OpenAI’s monitoring emerge ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">C3J5gqvEd7q2JxXbH5nZXc</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/2VCv7t8dB5QQZTTTwoM3Qo-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 27 Jul 2026 11:34:30 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/2VCv7t8dB5QQZTTTwoM3Qo-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Hugging Face co-founder and CEO Clement Delangue pictured speaking during the Bloomberg Technology Summit in San Francisco.]]></media:description>                                                            <media:text><![CDATA[Hugging Face co-founder and CEO Clement Delangue pictured speaking during the Bloomberg Technology Summit in San Francisco.]]></media:text>
                                <media:title type="plain"><![CDATA[Hugging Face co-founder and CEO Clement Delangue pictured speaking during the Bloomberg Technology Summit in San Francisco.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/2VCv7t8dB5QQZTTTwoM3Qo-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Hugging Face CEO Clement Delangue has urged OpenAI to embrace “radical transparency” in the wake of a <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime"><u>security incident</u></a> involving the AI developer’s models. </p><p>In a <a href="https://x.com/ClementDelangue/status/2081056675558195657?s=20" target="_blank"><u>post on X</u></a> on 25 July, Delangue said he met with OpenAI executives and requested several remediations. </p><p>This includes $100 million-worth of compute resources to help build cyber defenses, and releasing the details of the hack for industry stakeholders to study. </p><p>“The first autonomous agent cyber attack is an unprecedented event,” he wrote. “It deserves an unprecedented response.”</p><p>OpenAI also <a href="https://x.com/OpenAI/status/2080815626113954288" target="_blank"><u>took to X</u></a> on 25 July to say  it’s conducting a “thorough review” of the incident in coordination with unnamed external advisors and its own internal Safety and Security Committee. </p><div class="see-more see-more--clipped"><figure><blockquote class="twitter-tweet hawk-ignore" data-lang="en" cite="https://twitter.com/cantworkitout/status/2080815626113954288"><p lang="en" dir="ltr">We recognize there are a lot of questions and speculative details circulating related to the Hugging Face incident. This is an unprecedented incident, and we think it marks an important moment for AI safety. We are still conducting a thorough review along with external…<a href="https://twitter.com/cantworkitout/status/2080815626113954288">July 25, 2026</a></p></blockquote></figure><div class="see-more__filter"></div></div><h2 id="openai-model-left-notes-for-future">OpenAI model ‘left notes’ for future </h2><p><a href="https://openai.com/index/hugging-face-model-evaluation-security-incident/" target="_blank"><u>According to OpenAI</u></a>, the incident unfolded during an internal evaluation in which models are prompted to examine attack methods. </p><p>The company said it regularly conducts testing in isolated environments, but restrictions to prevent models from “pursuing high-risk cyber activity” weren’t implemented this time.</p><p>According to <a href="https://www.reuters.com/business/its-ai-agent-spent-days-hacking-company-sources-say-openai-did-not-notice-week-2026-07-24/" target="_blank"><u><em>Reuters</em></u></a>, citing sources familiar with the matter, OpenAI models had reportedly displayed odd behaviours throughout testing. One agent was reportedly  found to have “left notes” on its attack chain for future versions to refer to. </p><p>These notes are believed to have included information on how agents can break free from contained environments.</p><p>Notably, sources told <em>Reuters </em>the firm had no idea what happened until after the attack was contained. </p><p>OpenAI’s agent first broke out of its testing environment some time between 11 and 13 July but, reportedly, the company wasn’t aware until  Hugging Face posted a blog detailing an attack by an “autonomous AI agent” on 16 July. </p><p>Official communication between the two firms commenced around 20 July, with OpenAI’s official confirmation coming on 21 July. </p><p><em>ITPro </em>approached OpenAI for comment but did not receive a response by time of publication. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Enterprises aren't moving fast enough on post-quantum cryptography preparations – ‘harvest now, decrypt later’ attacks mean it could cost them ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/enterprises-arent-moving-fast-enough-on-post-quantum-cryptography-preparations-harvest-now-decrypt-later-attacks-mean-it-could-cost-them</link>
                                                                            <description>
                            <![CDATA[ Organizations need to move faster on post-quantum cryptography preparations, according to new research, as concerns over 'harvest now, decrypt later' attacks rise. ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">kj6GCcEmF7qYnC7eiotmUM</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/su9erN2vdUroMvjmfS5ZwW-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 27 Jul 2026 10:50:47 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/su9erN2vdUroMvjmfS5ZwW-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Post-quantum cryptography concept image showing digitized data storage cubes with exposed numbers and binary code.]]></media:description>                                                            <media:text><![CDATA[Post-quantum cryptography concept image showing digitized data storage cubes with exposed numbers and binary code.]]></media:text>
                                <media:title type="plain"><![CDATA[Post-quantum cryptography concept image showing digitized data storage cubes with exposed numbers and binary code.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/su9erN2vdUroMvjmfS5ZwW-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Organizations could face a ticking quantum time-bomb, according to new research from DigiCert, with the vast majority aware that they aren’t properly prepared.</p><p>An overwhelming 85% of IT and security leaders believe that quantum computing advances will break existing security standards within a decade, yet only 7% have deployed quantum-safe certificates so far. </p><p>A key worry among survey respondents lies in the risk of ‘harvest now, decrypt later’ (HDNL) attacks. This refers to a method whereby threat actors steal and save encrypted data with the goal of cracking it later on using quantum computers. </p><p>More than eight-in-ten believe that at least some of their encrypted data is vulnerable to HDNL attacks right now,  with around one-third reckoning that more than a quarter of it is vulnerable.</p><p>They expect financial transaction records and banking data to be targeted first, followed by cryptocurrency private keys and wallets. </p><p>Some respondents even pointed to politically sensitive disclosures and high-profile leaked documents, such as WikiLeaks-style disclosures and the Epstein files, as examples of information that could remain valuable to attackers for years.</p><p>"What's particularly concerning is that more than a third of UK organizations believe over a quarter of their encrypted data is already vulnerable to 'harvest now, decrypt later' attacks," said Simon Pamplin, CTO of Certes. </p><p>"For organizations handling financial data, customer records and personally identifiable information, this is no longer a future planning exercise. Data being stolen today will be exposed years from now if it isn't adequately protected."</p><h2 id="a-post-quantum-cryptography-roadmap">A post-quantum cryptography roadmap</h2><p>With the publication of the National Institute of Standards and Technology’s (NIST) <a href="https://www.itpro.com/business/get-started-on-post-quantum-encryption-organizations-warned">post-quantum cryptography (PQC)</a> standards in August 2024, organizations have been given a clearer path forward, and are at least starting to prepare.</p><p>Nearly nine-in-ten are planning, testing, or implementing PQC initiatives, while half have conducted quantum risk assessments, 45% have developed transition plans, and 44% have created cryptographic inventories.</p><p>Pamplin noted that the biggest obstacles to preparation aren’t awareness, however, it’s the "absolute complexity” of making cryptographic changes across an array of legacy applications, hybrid environments, and edge infrastructure. </p><p>These were “never designed with crypto agility in mind,” he said. </p><h2 id="uk-firms-are-acting-fast">UK firms are acting fast</h2><p>Preparedness appears to vary more by industry than geography. Retail was the only major industry where more respondents reported being unprepared than highly prepared, while manufacturing showed the greatest divide, with respondents split between feeling highly prepared and not prepared at all.</p><p>The UK reported the highest share of organizations identifying as leading edge, at 18%, closely followed by the US at 17% and Australia at 10%.</p><p>Cryptographic inventories, certificate visibility, migration planning, and crypto-agility are becoming foundational to quantum readiness, the researchers said. </p><p>Indeed, those that establish visibility early will be better positioned to prioritize migration, measure progress, and adapt as PQC becomes the new standard.</p><p>"Organizations need to stop thinking about post-quantum cryptography as simply replacing algorithms," said Pamplin. </p><p>"They should be focusing on protecting the data itself with a data-centric, crypto-agile approach that reduces risk today while creating a practical path to long-term quantum readiness."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ NCSC issues alert over 'zero-click' phishing campaign hitting enterprises ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/phishing/ncsc-issues-alert-over-zero-click-phishing-campaign-hitting-enterprises</link>
                                                                            <description>
                            <![CDATA[ Ukrainian organizations were used to test new zero-click techniques employed by Russian hackers ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">TBMSiPEYprpUySAU2QTRDj</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/FEpm7PoPiWegwbyvEVshN7-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 24 Jul 2026 08:23:13 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Phishing]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/FEpm7PoPiWegwbyvEVshN7-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Phishing attack concept image showing an email symbol with red alert symbol on top of a digital interface.]]></media:description>                                                            <media:text><![CDATA[Phishing attack concept image showing an email symbol with red alert symbol on top of a digital interface.]]></media:text>
                                <media:title type="plain"><![CDATA[Phishing attack concept image showing an email symbol with red alert symbol on top of a digital interface.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/FEpm7PoPiWegwbyvEVshN7-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The UK’s <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a> has issued an alert over a new ‘zero-click’ threat campaign being waged by Russian state-backed hackers.</p><p>The advisory, published in collaboration with international partners, warned ‘beehive’ attacks by the ‘Laundry Bear’ threat group aim to steal email correspondence at organizations operating across a range of critical sectors. </p><p>This includes organizations in the defense, education, energy, and technology industries, as well as law enforcement and government agencies. </p><p>Attacks against these organizations all have a common theme, according to the NCSC, mainly the use of Zimbra Collaboration Suite (ZCS) software. Targeting focuses specifically on those using vulnerable versions of the software, the advisory noted. </p><p>Rather than requiring users to click a link or open a file, zero-click attacks mean users only have to view a malicious email to be compromised. </p><p>The NCSC urged organisations that use ZCS to follow mitigation advice, patch immediately, and “improve network monitoring capabilities”. </p><p>Crucially, analysis of the campaign found these techniques could be adapted to exploit vulnerabilities in other email software applications used by Western organizations. </p><p>“This <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing </a>campaign demonstrates how hostile actors will ruthlessly adapt techniques and exploit vulnerable technology in pursuit of their aims to steal sensitive information from Western organizations,” said NCSC chief operating officer (COO) Beth Hopkins.</p><h2 id="ukrainian-organizations-used-in-testing">Ukrainian organizations used in testing </h2><p>According to the NCSC, the techniques used by Laundry Bear were “extensively trialled” on Ukrainian victims before use against other Western nations. The security agency noted this is part of a growing trend among Russian threat groups.</p><p>Notably, technical analysis of the campaign also highlighted the use of AI in development of a “simple codebase” used during operations. </p><p>Zero-click attacks have surged in frequency over the last 12 months, research shows, with threat actors accelerating efforts to capitalize on vulnerabilities. </p><p><a href="https://www.rapid7.com/blog/post/tr-q1-2026-threat-landscape-report-geopolitics-ransomware/" target="_blank"><u>Analysis from Rapid7</u></a> found that vulnerability exploitation has now surpassed social engineering as the “largest initial access vector”, accounting for more than one-third (38%) of all attacks. </p><p>More than 50% of all exploited vulnerabilities involved zero-click attacks, rather than network-facing vulnerabilities, the study noted, highlighting evolving techniques by threat actors. </p><p>“These types of vulnerabilities require no authentication and no user interaction, giving attackers rapid pathways into exposed systems and edge infrastructure,” Rapid7 noted. </p><p>Dray Agha, senior manager of security operations at Huntress, said these types of exploits are a “worst-case scenario for defenders” as potential victims are only required to view malicious emails. </p><p>“Simply viewing the email in a vulnerable client triggers the compromise,” he explained. “This completely bypasses traditional employee security training and gives state-backed hackers a silent, invisible backdoor into sensitive communications without the victim ever making a mistake.”</p><p>Agha said the rise of these techniques mean organizations need to place a greater focus on regular patching to avoid falling prey. </p><p>“This is why defense-in-depth is advised, as where the human security layer is porous, the technical defensive layer can step in,” he said. </p><p>“Organizations shouldn’t just rely on their staff acting as a ‘human firewall’. Rapid software patching, coupled with layered technical defenses, is the only reliable safety net against modern state-sponsored threats.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Companies are still paying ransoms to cyber criminals despite official advice ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/ransomware/companies-are-still-paying-ransoms-to-cyber-criminals-despite-official-advice</link>
                                                                            <description>
                            <![CDATA[ A Proofpoint survey found evolving ransomware techniques and the use of AI is exacerbating the situation for victims ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">2WCXX8xUQpxRq53YRRPYFA</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/dyefxvMjRzV26cLHKKchw3-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 23 Jul 2026 11:32:48 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Ransomware]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/dyefxvMjRzV26cLHKKchw3-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Ransomware concept image showing a yellow-colored alert symbol pictured against a jet black background.]]></media:description>                                                            <media:text><![CDATA[Ransomware concept image showing a yellow-colored alert symbol pictured against a jet black background.]]></media:text>
                                <media:title type="plain"><![CDATA[Ransomware concept image showing a yellow-colored alert symbol pictured against a jet black background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/dyefxvMjRzV26cLHKKchw3-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Six-in-ten <a href="https://www.itpro.com/security/28084/what-is-ransomware"><u>ransomware</u></a> victims are still paying up despite official advice not to do so. </p><p>That's according to research from security firm Proofpoint, which found that 58% of UK organizations hit by a ransomware attack <a href="https://www.itpro.com/security/ransomware/369506/ransomware-why-do-businesses-still-pay-up"><u>agreed to pay ransoms</u></a>.</p><p>Crucially, Proofpoint found they weren’t rewarded for bowing to cyber criminal demands. Nearly one-quarter (22%) who did pay were then hit with a second extortion demand. </p><p>The study from Proofpoint comes amidst growing calls to play hard ball with ransomware criminals by authorities. The UK's <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a>, for example, <a href="https://www.itpro.com/security/ransomware/what-you-need-to-know-about-the-new-ncsc-ransomware-guidance"><u>advises against paying ransoms,</u></a> warning that it encourages further attacks and may not lead to the return of data. </p><p>Despite that being the official advice for many years, plenty of companies pay criminals when faced with ransomware disruption to their business operations. </p><p><a href="https://www.itpro.com/security/ransomware/uk-cisos-are-cowing-to-ransomware-demands-more-than-you-think-heres-why-they-shouldnt-pay-up"><u>Security firm Trellix surveyed CISOs whose employers</u></a> had been the target of ransomware attacks, finding in each instance they decided it was worth paying — with a third paying between $5 million and $15 million. </p><p>Those results were echoed by <a href="https://www.itpro.com/security/most-uk-firms-pay-ransom-pay-ransomware-demands-despite-do-not-pay-policies"><u>research from Cohesity</u></a> that showed that while 94% of companies in the UK say they have a policy not to pay out in a ransomware attack, 97% still do. </p><h2 id="the-case-for-ransom-bans">The case for ransom bans</h2><p>This disconnect has led to debate over banning ransomware payments, with the UK government saying last year it was <a href="https://www.itpro.com/security/ransomware/Uk-government-ransomware-payment-ban"><u>considering forbidding public organizations from paying ransoms</u></a>. </p><p>These proposals follow serious incidents at NHS bodies, the British Library, and Royal Mail in recent years. </p><p>The government already bans ransomware payments made by its own departments; a wider ban was backed by the government, but has yet to be brought into force. </p><p>That included a <a href="https://www.itpro.com/security/ransomware/ransomware-payments-are-banned-in-the-public-sector-should-businesses-still-pay"><u>provision for mandatory reporting of ransomware payment</u></a>s for private companies not covered by the ban. One challenge is enforcement, as fines or other punishments for paying ransoms could risk further victimizing companies. </p><h2 id="evolving-techniques-raise-the-stakes">Evolving techniques raise the stakes</h2><p>Elsewhere in the study, Proofpoint found new tactics are exacerbating the situation for enterprises. </p><p>Ransomware techniques have shifted away from data encryption to outright data theft – and that means companies can expect that data to be used for follow-up attacks or sold on criminal marketplaces. </p><p>The result here is that this extends the initial attack and impact for victims, according to Proofpoint. </p><p>The rise of AI has also made ransomware more effective, according to two-thirds of companies that faced an attack, particularly in terms of initial compromise. </p><p>"AI hasn't fundamentally changed ransomware, but it has materially improved the attacks that lead to it," said Ryan Kalember, chief strategy officer at Proofpoint. "Today's attackers are using AI to create highly convincing phishing emails and credential theft campaigns that exploit human trust at scale."</p><p>Hackers are using AI to write better phishing messages and to better hide their attacks, with 31% of those polled said staff didn't suspect anything was wrong when they interacted with malicious content. </p><p>Around one-quarter (24%) said attacks succeeded because they appeared to be authentic communications. </p><p>The Proofpoint survey found that malicious links remained the most common threat at 40%, followed by compromised email at 35% and credential harvesting at 32%. </p><p>"Organizations that continue treating ransomware as an endpoint or recovery problem are missing where these attacks most frequently begin: people, identities and trusted communications," added Kalember.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ An ‘unprecedented cyber incident’: How OpenAI models breached Hugging Face – and why it could herald a ‘new phase of AI-powered cyber crime’ ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime</link>
                                                                            <description>
                            <![CDATA[ The incident should serve as a stark warning on the dangers of AI agents, according to cyber experts ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">GnTL4XvPNWHnz5Tw2YMQiW</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/9ws4aEqTBW9zzd96Xra9fg-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 22 Jul 2026 09:37:28 +0000</pubDate>                                                                                                                                <updated>Wed, 22 Jul 2026 11:13:03 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/9ws4aEqTBW9zzd96Xra9fg-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[OpenAI logo and branding pictured in white coloring with orange company logo superimposed over background.]]></media:description>                                                            <media:text><![CDATA[OpenAI logo and branding pictured in white coloring with orange company logo superimposed over background.]]></media:text>
                                <media:title type="plain"><![CDATA[OpenAI logo and branding pictured in white coloring with orange company logo superimposed over background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/9ws4aEqTBW9zzd96Xra9fg-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>OpenAI has admitted that its own AI models breached Hugging Face systems as part of a security test gone wrong. </p><p>In a <a href="https://openai.com/index/hugging-face-model-evaluation-security-incident/" target="_blank"><u>blog post</u></a> on 21 July, the firm revealed models escaped testing environments and gained unauthorized access to the AI hosting platform's production database. </p><p>Notably, OpenAI revealed the incident involved a pre-release, cyber-focused model. </p><p>“After investigating, we now know that this particular incident was driven by a combination of OpenAI models – including GPT-5.6 Sol and an even more capable pre-release model, all with reduced cyber refusals for evaluation purposes – while being internally tested on a benchmark of cyber capabilities,” the company wrote. </p><p>The admission comes after days of speculation amidst reports that an "external AI agent” had hacked the company. Hugging Face issued an <a href="https://huggingface.co/blog/security-incident-july-2026" target="_blank"><u>alert </u></a>last week warning that a breach had exposed internal datasets and user credentials. </p><h2 id="how-openai-hacked-hugging-face">How OpenAI hacked Hugging Face</h2><p>According to OpenAI, the incident occurred during an internal evaluation in which models were prompted to examine potential attack paths. </p><p>The aim here is to evaluate their cyber capabilities within an isolated environment, and crucially, without certain restrictions to prevent said models from “pursuing high-risk cyber activity”.  </p><p>“Our benchmarks run in a highly isolated environment, with network access constrained to the ability to install packages through an internally hosted third-party software that acts as a proxy and cache for package registries,” the company explained. </p><p>Both models “identified and chained” vulnerabilities across both OpenAI’s research environment and Hugging Face’s infrastructure, with the aim of gathering test solutions from the latter’s production database. </p><p>In this case, the models appear to have focused heavily on <a href="https://github.com/sunblaze-ucb/exploitgym" target="_blank"><u>ExploitGym</u></a>, a publicly-hosted benchmark tool used to evaluate how AI agents can turn software vulnerabilities into working exploits. </p><p>Notably, OpenAI revealed the models “identified and exploited a zero-day vulnerability” in the package installer registry. After successfully exploiting this zero-day, the models conducted a “series of privilege escalation and lateral movement actions” which allowed it to escape the test environment and gain full internet access. </p><p>“After gaining internet access, the models inferred that Hugging Face potentially hosted models, datasets, and solutions for ExploitGym,” the company noted. </p><p>“Knowing this, the model searched for and successfully found ways to gain access to secret information that it could use to cheat the evaluation.”</p><p>In one example, OpenAI revealed the model chained together several attack vectors using a combination of stolen credentials and zero-day flaws to identify a remote code execution (RCE) path on Hugging Face servers. </p><h2 id="what-comes-next">What comes next?</h2><p>OpenAI has detailed a series of actions it’s already taken in the wake of the incident, including closer coordination with Hugging Face to conduct a wider review. </p><p>This also includes bringing Hugging Face into the firm’s trusted access program to help bolster defenses by harnessing the company’s model capabilities. </p><p>Crucially, OpenAI revealed it will now implement “strict controls” to ensure vulnerability testing is limited while flaws are being patched. </p><p>“We consider this incident to be an unprecedented cyber incident, involving state-of-the-art cyber capabilities, and are responding accordingly,” OpenAI wrote. </p><p>“We will continue to conduct a thorough investigation alongside Hugging Face and will share more details on the vulnerabilities, incident, and findings when our investigation is complete.”</p><h2 id="initial-response-hampered">Initial response hampered</h2><p>A key talking point in the wake of the incident rests on Hugging Face’s response to the breach. </p><p>The company noted that the attack was initially flagged by AI detection tools, with security teams using LLM-based anomaly detection to “separate real signals from the daily noise”. </p><p>Subsequent attempts to use AI in a post-mortem proved troublesome, however, largely due to the guardrails placed around commercially-available models. </p><p>“When we started the log analysis, we first used frontier models behind commercial APIs,” the company explained. </p><p>“This did not work: the analysis requires submitting large volumes of real attack commands, exploit payloads, and C2 artifacts, and these requests were blocked by the providers’ safety guardrails, which cannot distinguish an incident responder from an attacker”. </p><p>These hurdles meant Hugging Face turned to GLM 5.2 – an open-weight model from Chinese company <a href="http://z.ai" target="_blank"><u>Z.ai</u></a> – run on its own infrastructure. </p><p>While this proved beneficial in terms of preventing attacker data or leaked credentials from leaving the company’s environment, it does raise broader questions around responsible use and how well-intentioned safety measures could hinder incident response.</p><p>“This experience points to a gap worth planning for,” Hugging Face wrote. “We do not know which model powered the attacker’s agents, whether a jailbroken hosted model or an unrestricted open-weight one; either way, the attacker was bound by no usage policy, while our own forensic work was blocked by the guardrails of the hosted models we first tried.”</p><h2 id="a-new-wave-of-ai-powered-attacks">A new wave of AI-powered attacks</h2><p>This incident comes amidst growing concerns about the potential risks associated with powerful new AI models. When Anthropic launched Claude Mythos earlier this year, it did so as part of a gated release to prevent the model from falling into the wrong hands. </p><p>These powerful new cyber-focused models are causing headaches for security professionals worldwide, particularly around vulnerability identification and disclosure and patching timelines. </p><p>Apple, for example, recently <a href="https://www.itpro.com/software/apple-is-speeding-up-software-updates-due-to-ai-security-concerns-heres-what-you-need-to-know">announced plans to accelerate patching schedules</a> due to concerns about threat actors using AI to identify software vulnerabilities. </p><p>As <em>ITPro </em>reported in April, researchers at Forescout warned of a <a href="https://www.itpro.com/security/brace-yourselves-for-a-vulnerability-explosion-forescout-warns"><u>pending ‘vulnerability explosion’</u></a> as AI advances help identify flaws at record pace.  </p><p>Jake Moore, global <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>advisor at ESET, suggested the industry could be entering the “next phase of AI-powered cyber crime” in which trusted platforms are prime targets. </p><p>“Threat actors are inserting malware into the AI components that developers often quickly trust, making AI platforms an attractive new target for supply chain attacks,” he said. </p><p>“We’ll likely see more of these attacks as organizations are worryingly rushing to build AI into products without fully knowing the potential risks.”</p><p>Art Gilliland, CEO of <a href="https://www.itpro.com/security/identity-security-is-more-important-than-ever-heres-why">identity security</a> firm Delinea, echoed Moore’s comments, noting that the breach highlights a familiar pattern with AI-related incidents. </p><p>“An AI agent escalated privileges, moved through internal infrastructure once it broke containment, and ran unchecked for a full weekend before anyone could reconstruct what happened,” he said. </p><p>“If your AI agents carry standing privilege the way human accounts do, you've already lost the ability to stop this in real time. The question every security team should be asking right now isn't just whether their AI agents have standing access; it's whether anyone would notice if an agent used it and could cut it off before it caused damage.''</p><p>Moore also flagged similar concerns to Hugging Face with regard to safeguards for western AI models. He warned that some providers “need to rethink how their security guardrails work if they are hindering incident response”. </p><p>“If not, more companies will simply switch to other models without such controls – ironically, the same models likely used by AI attackers.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ 'Perimeter defences are prime targets': Security experts issue alert over Palo Alto GlobalProtect VPN exploitation ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-attacks/perimeter-defences-are-prime-targets-security-experts-issue-alert-over-palo-alto-globalprotect-vpn-exploitation</link>
                                                                            <description>
                            <![CDATA[ The flaw in Palo Alto Networks’ GlobalProtect VPN was recently upgraded from a ‘medium’ rating to ‘high’ ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">ACKcb6JjHWkqiamFFz9yVB</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/K4w4RerpP3nTt753iZeCNL-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 22 Jul 2026 09:03:50 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/K4w4RerpP3nTt753iZeCNL-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Palo Alto Networks logo and branding pictured on a smartphone screen with stock market growth graph lines in background.]]></media:description>                                                            <media:text><![CDATA[Palo Alto Networks logo and branding pictured on a smartphone screen with stock market growth graph lines in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Palo Alto Networks logo and branding pictured on a smartphone screen with stock market growth graph lines in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/K4w4RerpP3nTt753iZeCNL-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Cyber experts have urged users of Palo Alto Networks' GlobalProtect VPN to patch immediately amidst active exploitation of an upgraded security flaw.</p><p>A flaw in the popular VPN service, tracked as <a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0257" target="_blank"><u>CVE-2026-0257</u></a>, could allow attackers to bypass authentication and establish an unauthorized connection. </p><p>The vulnerability primarily affects the GlobalProtect portal and gateway for Palo Alto Networks’ PAN-OS software, and carries a CVSS score of 7.8, rating it as ‘high’ in severity.</p><p>Notably, this rating follows an upgrade, with the flaw having previously been given a ‘medium’ severity rating. Palo Alto announced the upgrade late last week amidst reports that the flaw was now being exploited in the wild. </p><p>“Palo Alto Networks has become aware of limited exploit attempts on unpatched PAN-OS devices without mitigations applied,” the company said in an <a href="https://security.paloaltonetworks.com/CVE-2026-0257" target="_blank"><u>advisory</u></a>. </p><p><a href="https://www.rapid7.com/blog/post/etr-rapid7-observed-exploitation-of-pan-os-globalprotect-authentication-bypass-vulnerability-cve-2026-0257/" target="_blank"><u>Analysis by Rapid7</u></a> shows threat actors have been exploiting the vulnerability since mid-May across several waves of attacks. </p><p>“Rapid7 MDR identified successful exploitation across numerous customers; however, we did not observe any indication of successful lateral movement from the devices,” researchers said. </p><p>“The earliest date for observed exploitation was May 17, 2026.  As of May 29, 2026,  this vulnerability has been added to the CISA KEV.”</p><p>Rapid7 noted that customers compromised in this wave of attacks had Cloud Authentication Service (CAS) disabled. Others, meanwhile, had GlobalProtect portal or gateway authentication override cookies enabled. </p><p>A patch has been issued for customers running affected appliances, according to Palo Alto. </p><p>Similarly, administrators are advised to turn off authentication override features to mitigate potential exploitation. </p><h2 id="qilin-ransomware-involved-in-globalprotect-attacks">Qilin ransomware involved in GlobalProtect attacks</h2><p><a href="https://arcticwolf.com/resources/blog/exploitation-of-cve-2026-0257-leads-to-qilin-ransomware/"><u>Analysis by Arctic Wolf Labs</u></a> suggests attacks on GlobalProtect customers could be the work of the Qilin ransomware group or affiliates. Indeed, researchers detected Qilin ransomware during several instances across June, highlighting a range of tell-tale signs. </p><p>“Post-exploitation tradecraft varies across intrusions, from rapid encryption-only operations to full double extortion, possibly suggesting multiple affiliates operating under the Qilin <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware as a service (RaaS)</a> umbrella,” the company said. </p><p>Dray Agha, senior manager for Huntress’ security operations center, said these attacks highlight the growing threats posed to <a href="https://www.itpro.com/security/27098/best-vpn-services">VPNs </a>and <a href="https://www.itpro.com/security/firewalls">firewalls</a>. </p><p>"The exploitation of this GlobalProtect vulnerability by the <a href="https://www.itpro.com/security/cyber-attacks/thousands-of-procedures-canceled-at-london-hospitals-as-qilin-releases-blood-test-data">Qilin ransomware gang</a> demonstrates that perimeter defences are prime targets,” he said. </p><p>“When threat actors can bypass VPN authentication, they are walking through the digital front door with a master key. The grace period for patching critical edge devices has practically vanished, and they must be the patching priority for all organizations".</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ The case for the channel in an AI-driven security market ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/the-case-for-the-channel-in-an-ai-driven-security-market</link>
                                                                            <description>
                            <![CDATA[ AI won't replace channel partners; SMB cybersecurity still relies on trust ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">s4UWfmuMDQ8qb9M3uw224Z</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 22 Jul 2026 07:00:00 +0000</pubDate>                                                                                                                                <updated>Thu, 23 Jul 2026 11:16:41 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Cian Harrington ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/K8pkU8mbYTibGXBTuMXWh4.png ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:description>                                                            <media:text><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:text>
                                <media:title type="plain"><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>There is an ongoing debate in the cybersecurity industry about whether vendors should go directly to customers or instead become a part of a wider partnership network. </p><p>The standard argument is that consolidation of platforms and AI-driven cost-of-service delivery makes the traditional model of a channel ecosystem redundant. However, this is largely incorrect, at least when it comes to the SMB and mid-market segments where most UK businesses sit.</p><p>For most organizations outside of large enterprises, the channel is the only realistic way to access serious security capability.</p><h2 id="the-smb-reality">The SMB reality</h2><p>Cybersecurity is not a niche concern for SMBs. According to the latest statistics from the National Centre of Cyber Security (NCSC), <a href="https://www.ncsc.gov.uk/collection/small-organisations-guide-to-cyber-security"><u>one in two</u></a> small businesses suffers a cyber incident every year. </p><p>Given the niche, local context required for each small-to-mid-sized firm, that is not a market that vendors can serve directly at scale, and most are not trying to. A 200-person manufacturer facing a cyber issue is more likely to call its existing IT provider than a global security vendor built for large enterprises.</p><p>What SMBs need is local expertise, trusted relationships, and security operations that fit their budget and operational reality. That is what a partner network provides. </p><h2 id="what-is-changing-is-what-partners-need-from-vendors">What is changing is what partners need from vendors</h2><p>Partners in the channel system are operating under significant pressures. Nearly half the executives in businesses believe AI-powered threats will occur, but only just over half (53%) say they are prepared for them, <a href="https://www.levelblue.com/newsroom/press-releases/levelblue-research-cisos-driving-growth-through-cyber-resilience-but-ai-and-supply-chain-visibility-cause-lingering-gaps"><u>according to our research</u></a>. </p><p>Partners are the ones having those conversations with customers who are under-prepared, under-resourced, and know where and how the threat environment has shifted. They need vendors who make it easier to sell, deliver, and demonstrate value under budget scrutiny.</p><p>The consistent conversation amongst partner networks is that the commercial basics matter as much as the technology. They need payment models, good margins, and support that does not disappear after the contract is signed. Our research shows that 59% of executives say it is becoming harder for employees to identify real threats as AI-powered attacks grow more sophisticated. That is a sales opportunity for partners, but only if vendors help them to have that conversation credibly.</p><h2 id="trust-is-local-scale-is-not">Trust is local, scale is not</h2><p>One of the things that gets overlooked the most in the direct versus channel debate is proximity. Cybersecurity is an inherently trust-based business. Customers want to work with people who understand their industry, regulatory environment, and the specific pressures they operate under. That is not something a vendor can create from a distance.</p><p>A vendor can provide the credibility, certifications, and depth of capability that smaller partners cannot build on their own. The model that works is a division of labour where partners take ownership of the relationship and the local expertise. </p><p>Vendors, on the other hand, provide the platform, the threat intelligence, and the specialist teams to support on more complex matters that go beyond the scope of day-to-day operations. </p><h2 id="paving-the-way-ahead">Paving the way ahead </h2><p>None of this means the current state of channel enablement is where it needs to be. Across the industry, partners still face too much friction. Onboarding is often slow, programme structures are complex and cross-selling across vendor portfolios remains harder than it should be. For vendors who have grown through acquisition, consolidating that into something coherent for partners is an ongoing piece of work.</p><p> The channel is not looking for vendors to get out of the way. It is looking for them to show up properly: with clear programmes, real commercial flexibility, and the confidence to let partners lead where they have the advantage. </p><p>The organizations that crack this are best-placed to grow with the channel. The ones that do not will find that going direct is a much harder proposition than the theory suggests.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Cisco just launched two cyber-focused small language models: Antares-350M and Antares-1B aim to supercharge codebase analysis – and they run at a “fraction of the compute expense” of popular frontier models ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cisco-just-launched-two-cyber-focused-small-language-models-antares-350m-and-antares-1b-aim-to-supercharge-codebase-analysis-and-they-run-at-a-fraction-of-the-compute-expense-of-popular-frontier-models</link>
                                                                            <description>
                            <![CDATA[ The Antares models unveiled by Cisco aim to cut costs in codebase analysis ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">KG3F7gPysjhhdeKMdaKNAe</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/hQdRvB92xVu7oEhu5EV8Qo-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 21 Jul 2026 13:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/hQdRvB92xVu7oEhu5EV8Qo-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Cisco logo and branding illuminated in white against a black backdrop at Web Summit Qatar 2024.]]></media:description>                                                            <media:text><![CDATA[Cisco logo and branding illuminated in white against a black backdrop at Web Summit Qatar 2024.]]></media:text>
                                <media:title type="plain"><![CDATA[Cisco logo and branding illuminated in white against a black backdrop at Web Summit Qatar 2024.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/hQdRvB92xVu7oEhu5EV8Qo-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Cisco has unveiled a new range of cyber-capable <a href="https://www.itpro.com/technology/artificial-intelligence/are-small-language-models-finally-having-their-moment">small language models (SLMs)</a> aimed at supercharging security operations.</p><p>The Antares range, which comes in two forms (Antares-350M and Antares-1B) will be made available as open-weight models via Hugging Face. According to Cisco, the aim here is to provide a codebase vulnerability tool that's far cheaper than general of frontier models. </p><p>While the Antares SLMs will operate as specialized models alongside frontier and generalized models, the company promised they will run at a "fraction of the compute expense."</p><p>"Benchmark testing shows that these models outperform many powerful closed- and open-weight models in this critical security task at a fraction of the cost," said Amin Karbasi, VP and chief scientist for Cisco Foundation AI. </p><p>“And they’re compact enough to run locally, heading off the need to send sensitive codebases to the cloud.”</p><p>The move by Cisco comes amidst <a href="https://www.itpro.com/technology/artificial-intelligence/the-ai-pricing-time-bomb"><u>wider concerns about the rising costs of AI</u></a>, exacerbated by <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained"><u>changes to billing and pricing</u></a> that have caused bills to shoot up across the industry. </p><p>Some companies, including Accenture, have told staff to <a href="https://www.itpro.com/technology/artificial-intelligence/what-were-seeing-right-now-is-just-rapid-escalation-in-ai-token-spend-accenture-tells-staff-to-stop-using-ai-for-unnecessary-tasks-amid-surging-costs"><u>cut back on AI use</u></a> as a result of skyrocketing prices. Indeed, one report suggested <a href="https://www.itpro.com/software/development/surging-ai-costs-could-exceed-developer-salaries-by-2028-analysts-say-context-engineering-could-be-the-key-to-optimizing-token-consumption"><u>AI could cost more than developer salaries</u></a> within a few years. </p><p>At the same time, AI is making inroads into security – <a href="https://www.itpro.com/security/ai-is-getting-better-at-security-and-its-doing-it-faster-than-expected"><u>faster than some expected</u></a> – with the rise of cyber-focused models such as <a href="https://www.itpro.com/technology/artificial-intelligence/why-the-us-imposed-export-controls-on-anthropics-fable-and-mythos-models-and-why-theyve-been-lifted"><u>Anthropic's Claude Mythos</u></a>.</p><h2 id="how-cisco-s-antares-models-work">How Cisco’s Antares models work</h2><p>Antares is designed to mimic how a human investigator would work their way through a code repository – though Cisco noted the aim wasn't to replace human judgement, but to make it easier to manage the work. </p><p>The models can help with locating files that relate to a vulnerability warning, trigger investigations based on advisories, support development workflows that use vulnerable files, and more. </p><p>Cisco noted that the decision to release the Antares range as open-weight models means they’re easier to work with and improve. </p><p>"We are releasing Antares as open-weight because the security community needs more accessible building blocks for practical, repository-level defense," said Karbasi.</p><p>"Cisco's efforts are connected by a common belief: AI in security has to move beyond impressive one-off demos and toward systems that practitioners can evaluate, govern, and improve."</p><h2 id="tackling-complexity">Tackling complexity</h2><p>Cisco said that Antares was built to address two concerns when it comes to code: the complexity of checking it for vulnerabilities and the costs of using AI for that task. </p><p>First, Karbasi said that it was difficult to apply vulnerability knowledge — advisories, vulnerability alerts and severities, and so on — to a company's internal code. </p><p>"That work is difficult because repositories are large, security signals are noisy, and the relevant evidence is rarely in one obvious place," he said. </p><p>"Analysts often need to search through unfamiliar code, follow naming conventions, inspect call paths, compare candidate files, and decide whether a weakness is actually present."</p><h2 id="how-cheap-is-antares">How cheap is Antares?</h2><p>AI can help with that challenge, but the high costs of general or frontier models mean it often isn't practical, in particular for public sector organizations, universities, and smaller security teams. </p><p>"Compact models reduce inference costs, support local or on-premises operations, and help teams keep sensitive source code within their own environment," Karbasi said. </p><p>So just how cheap are the Antares models? Cisco said that running a 500-entry evaluation using Antares took 15 minutes on a single GPU at a cost of less than $1. </p><p>Cisco noted that this was 15-times cheaper than the best available open source model and a whopping 172-times cheaper than the top-end frontier model. </p><p>"The goal is to build toward a system where all security practitioners, regardless of on-prem or resource constraints, can effectively incorporate AI in everyday security operations," Karbasi added. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Businesses need to boost cyber resilience, here’s how ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/data-breaches/businesses-need-to-boost-cyber-resilience-heres-how</link>
                                                                            <description>
                            <![CDATA[ The government’s recently released Cyber Security Breaches Survey shows gaps in firms’ cyber resilience. How can companies improve their approach? ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">WRPWhjrazx9Ks6gAAq7QNX</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 21 Jul 2026 07:00:00 +0000</pubDate>                                                                                                                                <updated>Tue, 21 Jul 2026 17:43:57 +0000</updated>
                                                                                                                                            <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Kate O&#039;Flaherty ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/LUULv6n7VJ3BHPnaoLHHdg.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:description>                                                            <media:text><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:text>
                                <media:title type="plain"><![CDATA[Neon blue padlock with code flowing over it, floating above small plinths raised at different heights, each with code underneath their platforms]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/gAZQGXquzahjQHwSbSp9WN-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Cyber attacks are still hitting businesses, despite increasing awareness following high-profile incidents such as the <a href="https://www.itpro.com/security/cyber-attacks/jaguar-land-rover-u-turns-on-cyber-attack-containment-claims-admits-some-data-has-been-affected"><u>Jaguar Land Rover (JLR)</u></a> and <a href="https://www.itpro.com/security/cyber-attacks/m-and-s-customer-personal-data-stolen"><u>Marks and Spencer (M&S)</u></a> breaches. </p><p>According to the UK government’s <a href="https://www.gov.uk/government/statistics/cyber-security-breaches-survey-20252026/cyber-security-breaches-survey-20252026" target="_blank"><u>Cyber Security Breaches Survey</u></a>, four in 10 businesses (43%) and three in ten charities (28%) fell victim to attacks in 2025.</p><p>The problem has not improved over the last year, with cybersecurity minister Liz Lloyd issuing a <a href="https://www.itpro.com/security/depressingly-familiar-cyber-security-breaches-survey-shows-work-still-to-be-done-on-cyber-preparedness"><u>warning</u></a> that business leaders must take action now to ensure robust security.</p><p>Regulations such as the incoming UK <a href="https://www.gov.uk/government/collections/cyber-security-and-resilience-bill" target="_blank"><u>Cyber Security and Resilience Bill</u></a> mandate that resilience is baked into organizations and their supply chains. How can firms boost cyber resilience as the risk of attack surges?</p><h2 id="resilience-gaps">Resilience gaps</h2><p>The price of failing to be resilient is already clear. The JLR attack <a href="https://www.itpro.com/security/cyber-attacks/jaguar-land-rover-cyber-attack-financial-impact-cyber-monitoring-centre"><u>cost</u></a> the business and its partners up to £1.9 billion, while it’s estimated the M&S breach <a href="https://www.bbc.co.uk/news/articles/c93x16zkl9do" target="_blank"><u>cost</u></a> the company over £100 million.</p><p>These headlines are difficult to ignore. Yet despite growing awareness of cyber risk following the incidents, many organizations are still struggling to translate awareness into “meaningful resilience improvements”, says Chris Brown, SVP UK market leader at NCC Group.</p><p>This is partly due to over-confidence in cybersecurity, which is leading businesses into “an under-preparation trap”, according to Brown. </p><p>“The growing interconnectedness of digital systems and third-party suppliers means leaders face an increasingly complex landscape of vulnerabilities and cyber risks, often without clear visibility of where their greatest exposures lie – or how to begin addressing them.”</p><p>The Cyber Security Breaches Survey also identified persistent resilience gaps linked to the rapid adoption of <a href="https://www.itpro.com/uk/technology/artificial-intelligence"><u>AI</u></a> without adequate governance or security controls. </p><p>“While board-level engagement with cyber risk is increasing, stronger operational action remains essential,” says Brown. </p><h2 id="pace-of-change">Pace of change</h2><p>Technology such as AI does have the potential to help boost productivity and improve security, but the pressure to adopt it quickly can lead firms to take unnecessary risks. The pace of change is one of the biggest challenges facing businesses, according to Rob O’Connor, Insight's <a href="https://www.itpro.com/careers/28228/ciso-job-description-what-does-a-ciso-do">CISO </a>for EMEA.</p><p>“Organizations are under pressure to adopt technologies such as AI to improve efficiency, reduce costs and create new ways of working, but every new capability introduces new risks too,” he says. </p><p>The challenge, O’Connor adds, is implementing change securely, and doing so at a pace that keeps up with the wider business. </p><p>Company culture is another problem. One of the biggest barriers is that many firms still treat cybersecurity as a “specialist technical function” rather than a “core business resilience issue”, says Scott Beange, head of cyber strategy at Projective Group.</p><p>“Boards often receive large volumes of cyber reporting and compliance metrics, but relatively little clarity around operational survivability, recovery capability or dependency risk.”</p><p>The issue is made worse by a growing disconnect between modern digital ecosystems and traditional governance approaches, according to Beange. </p><p>“Organizations are now heavily reliant on cloud providers, <a href="https://www.itpro.com/cloud/software-as-a-service-saas/362655/what-is-saas"><u>Software as a Service (SaaS)</u></a> platforms, managed services and interconnected supply chains. In many cases, firms no longer fully understand where their operational dependencies sit until disruption occurs.”</p><p>At the same time, attackers are increasingly targeting the areas organizations struggle to rehearse properly: Recovery processes and operational coordination under stress, says Beange. “Too many businesses still test intrusion prevention far more rigorously than degraded operations or prolonged recovery conditions.”</p><h2 id="regulation-resilience">Regulation resilience </h2><p>It comes at a time when regulations such as the European Union's <a href="https://www.itpro.com/security/digital-operational-resilience-act-dora"><u>Digital Operational Resilience Act (DORA)</u></a> and the UK’s <a href="https://www.gov.uk/government/collections/cyber-security-and-resilience-bill" target="_blank"><u>Cyber Security and Resilience legislation</u></a> are mandating resilience across the board.</p><p>At the EU level, a proposed update to the <a href="https://digital-strategy.ec.europa.eu/en/policies/cybersecurity-act" target="_blank"><u>EU Cybersecurity Act</u></a> seeks to address fragmentation in requirements under the <a href="https://www.itpro.com/business/policy-legislation/370403/what-is-the-network-and-information-security-2-nis2-directive"><u>Network and Information Systems 2 Directive (NIS2)</u></a> and EU-wide certification schemes. </p><p>“But even with a more coherent framework including outcome-focused minimum standards and technical criteria, global organizations must still navigate evolving regulatory expectations across multiple jurisdictions,” Brown warns.</p><p>AI adoption is also mandating resilience, Brown points out. However, rather than introducing entirely new legislation to ensure secure and responsible AI adoption, states are weaving it into existing sector regulation, he says. He cites the example of the UK’s Online Safety Act, which is being <a href="https://www.gov.uk/government/news/pm-no-platform-gets-a-free-pass-government-takes-action-to-keep-children-safe-online" target="_blank"><u>amended</u></a> to close loopholes for chatbot providers.</p><h2 id="steps-to-boost-resilience">Steps to boost resilience </h2><p>With so many factors at play, it might seem complex, but there are a number of steps businesses can take to boost resilience now. </p><p>A “small set of controls taken together” will “eliminate the majority of preventable incidents”, according to Kevin Curran, senior IEEE member and professor of cybersecurity at Ulster University.</p><p>The starting point is <a href="https://www.itpro.com/security/what-businesses-need-to-know-about-the-update-to-cyber-essentials" target="_blank"><u>Cyber Essentials</u></a> Plus, he says. “It is not glamorous, but it forces patching discipline, <a href="https://www.itpro.com/security/29982/what-is-two-factor-authentication"><u>multi-factor authentication (MFA</u></a>), access control and boundary firewalling, and it is already a precondition for many public sector contracts, so the cost is recoverable."</p><p>From there, the “single highest-value technical investment” is phishing-resistant MFA such as hardware security keys or platform passkeys on every privileged account, he says. </p><p>Beyond identity, firms should segment their networks, particularly between IT and operational technology environments, says Curran. </p><p>“A compromised office laptop should never be able to reach a production line controller, and yet in many manufacturing firms it still can.”</p><p>Alongside segmentation sits the discipline of tested backups, Curran adds. He advocates the <a href="https://www.uschamber.com/co/run/technology/3-2-1-backup-rule" target="_blank"><u>3-2-1 rule</u></a>, “with at least one copy offline or immutable, and a restore rehearsed at least quarterly”.</p><p>Beange recommends making an effort to understand critical business services and the dependencies that underpin them. </p><p>“Firms should be regularly testing how they would operate under degraded conditions as rigorously as whether their security controls detect attacks.”</p><p>Boards should also demand clearer reporting focused on operational impact and decision-making rather than excessive technical detail, says Beange. </p><p>Questions such as, “how long could we operate without this supplier?”, or “what happens if identity systems fail for 48 hours?” are often more valuable than “another dashboard full of vulnerability statistics”, he advises.</p><p>O'Connor concurs that cyber resilience starts with understanding what matters most to your business, saying “Organizations should think like an attacker and ask: What are the assets or operations we simply cannot afford to lose?”</p><p>For some organizations, that may be customer data, for others intellectual property, or production systems, explains O’Connor. “Once you understand what would have the biggest operational and financial impact, security priorities become much clearer.”</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Health tech firm Craneware admits “significant volume” of customer and employee data exposed in cyber attack ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/data-breaches/health-tech-firm-craneware-admits-significant-volume-of-customer-and-employee-data-exposed-in-cyber-attack</link>
                                                                            <description>
                            <![CDATA[ The incident has been contained and Craneware has launched a probe into the breach ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">b7PjqdeyzkrQRdNTGxjRvj</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Gmv6VGAN4vkgH2urwaX2Yf-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 20 Jul 2026 12:38:57 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Gmv6VGAN4vkgH2urwaX2Yf-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Cybersecurity concept image symbolizing third-party data breaches with give padlock symbols and one pictured in red, signifying a security breach.]]></media:description>                                                            <media:text><![CDATA[Cybersecurity concept image symbolizing third-party data breaches with give padlock symbols and one pictured in red, signifying a security breach.]]></media:text>
                                <media:title type="plain"><![CDATA[Cybersecurity concept image symbolizing third-party data breaches with give padlock symbols and one pictured in red, signifying a security breach.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Gmv6VGAN4vkgH2urwaX2Yf-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Scottish health tech company Craneware has revealed customer and employee data has been exposed in a “security incident”. </p><p>In a <a href="https://www.londonstockexchange.com/news-article/CRW/notice-of-cyber-security-incident/17694735" target="_blank"><u>notice </u></a>filed with the London Stock Exchange (LSEG) on 20 July, the company said it had launched an investigation into the attack, which has now been contained. </p><p>“The company's incident response plan has been activated, including the appointment by the Board of external cybersecurity and forensic specialists,” the advisory reads. </p><p>“Their investigation is ongoing, alongside the Craneware IT team and the Company's retained cyber security service providers. There has been no disruption to customer services or to the company’s operations.”</p><p>A preliminary investigation into the breach found that a “significant volume” of file names was viewed and exfiltrated by unauthorized individuals, although the company noted these weren’t sensitive and were already publicly available. </p><p>“A percentage of employee data as well as a subset of customer and partner records have been accessed and exfiltrated,” Craneware added. </p><p>Craneware  has since notified relevant regulators and law enforcement agencies, including the UK <a href="https://www.itpro.com/information-commissioner/31751/what-is-the-information-commissioner-s-office-ico">Information Commissioner’s Office (ICO)</a> and the FBI. </p><p>The Edinburgh-headquartered company provides accounting and billing software for US healthcare operators, partnering with around 2,000 hospitals across the country. </p><p>This makes it a prime target for cyber criminals, according to Trevor Dearing, director of critical infrastructure at Illumio. </p><p>“Healthcare technology providers have become prime targets because they offer cybercriminals a shortcut into the healthcare supply chain,” he said. “Why target one hospital when you can target a provider connected to thousands?”</p><p>Attacks on the UK healthcare system and associated vendors have increased significantly over the last year, according to a recent <a href="https://www.sonicwall.com/resources/brief/protect-brief-healthcare-2026" target="_blank"><u>study from SonicWall</u></a>. Figures published by the <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>firm in June highlighted a tenfold increase in attacks so far in 2026. </p><p>Data collected through SonicWall's Intrusion Prevention System (IPS) showed upwards of 260,000 attempted cyber attacks between January and May this year. </p><p>While the Craneware incident has been contained, Dearing noted that employees and customers should still remain vigilant for potential follow-up attacks such as <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing </a>- a common tactic employed in the wake of breaches. </p><p>“Even where stolen information appears low risk, employee, customer and partner data can be used to fuel phishing, social engineering and follow-on attacks,” he said. </p><p>“Employees, customers, and partners should remain cautious of any unsolicited communication or suspicious activity on their networks.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Cisco sounds alarm over new Russian malware campaign hitting firms in US and Europe ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-crime/cisco-sounds-alarm-over-new-russian-malware-campaign-hitting-firms-in-us-and-europe</link>
                                                                            <description>
                            <![CDATA[ UAT-11795 is weaponizing legitimate software such as WebEx and Zoom to dupe victims ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">5yiyuVZQcY8DoSF3hGWu2C</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 17 Jul 2026 15:30:13 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Crime]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:description>                                                            <media:text><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:text>
                                <media:title type="plain"><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Cisco Talos has uncovered a new Russian-speaking threat actor aggressively targeting victims across the United States and Europe. </p><p><a href="https://blog.talosintelligence.com/uat-11795-deploys-novel-starland-rat-and-bespoke-wldr-c2-implant-in-financially-motivated-campaign/" target="_blank"><u>Tracked as UAT-11795</u></a>, the group has been active since June last year, and uses trojanized installers for <a href="https://www.itpro.com/security/malware-free-attacks-surged-in-2024-as-attackers-drop-malicious-software-for-legitimate-tools">legitimate software</a> such as MobaXterm, WebEx, Zoom, DBeaver, and FaceIT to steal credentials and cryptocurrency.</p><p>A staple of the threat actor’s activities lies in deployment of two previously undocumented tools: Starland RAT and WLDR agent. The first of these is a Python-based remote access tool, while WLDR agent is a PowerShell-based C2 memory implant. </p><p>WLDR agent runs entirely in-memory, and features encrypted beaconing, task queuing, and a Runspace execution engine for executing additional payloads. </p><p>Both are built to steal credentials, browser data, and cryptocurrency wallet assets while keeping persistent access to victim machines. The group even hides a fallback command-and-control channel in a Polygon smart contract, Cisco Talos said.</p><p>UAT-11795 targets victims' credentials and cryptocurrency wallet assets, establishing a persistent connection to the victims' machines from the C2 server, with the potential to deliver and execute further payloads. </p><h2 id="how-uat-11795-operates">How UAT-11795 operates</h2><p>Most infections have been spotted in the US, according to Cisco Talos, although Germany, Romania, and Venezuela have also been hit.</p><p>UAT-11795 gains initial access to the victim machine through a ClickFix social engineering technique that entices the user to execute a command, which then stealthily downloads and executes a remotely hosted weaponized HTA file. </p><p>This runs an embedded VBScript that drops a Windows batch file into the user profile’s application temporary folder, containing instructions to first download and implant a trojanized installer from the attacker-controlled staging domain onto the victim machine. </p><p>Muhammad Yahya Patel, CISO and cybersecurity advisor at Huntress, said the campaign is the latest in a string of attacks by hackers using “the very tools our remote and <a href="https://www.itpro.com/business/business-strategy/hybrid-workers-aren-t-disconnected-from-office-colleagues-they-re-happier-more-productive-and-have-better-workplace-relationships">hybrid workers</a> rely on”. </p><p>"By hiding the Starland RAT inside trusted software and likely utilising deceptive <a href="https://www.itpro.com/security/clickfix-social-engineering-state-sponsored-hackers">ClickFix social engineering tactics</a>, these threat actors are completely bypassing traditional perimeter defenses to exploit human psychology rather than software vulnerabilities."</p><p>Talos’ research also uncovered a private live Telegram channel called “stuk komanda”, controlled by the same threat actor, created last June, and with three unknown subscribers.</p><h2 id="exercise-caution-when-using-video-conferencing-tools">Exercise caution when using video conferencing tools</h2><p>Gabrielle Hempel, security operations strategist at Exabeam, said while the campaign specifically targets popular video conferencing software, one needn't avoid using Zoom or WebEx. </p><p>They should, however, exercise caution. This includes making efforts to verify where software comes from, monitor for unexpected processes and persistence mechanisms. </p><p>Elsewhere, Hempel said users shouldn't assume that 'signed installer' means a program is safe.</p><p>"This story is so interesting, not because of the trojans, but because of the way it shifts how we need to think about vulnerability management," she said.</p><p>"We often measure a program’s security maturity by patch SLAs, but we’re seeing so many successful intrusions starting with users executing software they believe is legitimate and not just unpatched systems. If your security program can’t answer 'where did this binary come from?' as quickly as it can answer 'is this CVE patched?' then you are behind on your threat model." </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Why Microsoft paused Patch Tuesday updates for some Dell devices ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/why-microsoft-paused-patch-tuesday-updates-for-some-dell-devices</link>
                                                                            <description>
                            <![CDATA[ Select devices running Intel Innovation Platform Framework drivers encountered “poor performance” ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">DdGzwcgcuNgEwCWLqJu4rP</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/36AJ5mQDV3HZE6moYvjG2Y-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 17 Jul 2026 10:52:47 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/36AJ5mQDV3HZE6moYvjG2Y-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Microsoft logo and branding pictured on a sign on top of a New York City office building, with clear skies and skyscraper in background.]]></media:description>                                                            <media:text><![CDATA[Microsoft logo and branding pictured on a sign on top of a New York City office building, with clear skies and skyscraper in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Microsoft logo and branding pictured on a sign on top of a New York City office building, with clear skies and skyscraper in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/36AJ5mQDV3HZE6moYvjG2Y-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Microsoft has confirmed it blocked a recent Windows 11 update for select Dell PCs due to compatibility and performance issues. </p><p>The Patch Tuesday update (<a href="https://support.microsoft.com/en-us/servicing/os/windows-11/2026/07/july-14-2026-kb5101650-os-builds-26200-8875-and-26100-8875" target="_blank"><u>KB5101650</u></a>) began rolling out on 14 July and included several quality improvements for users. </p><p>Microsoft halted the update after revealing a “number of Dell devices” began displaying a yellow exclamation point next to the <em>Intel Innovation Platform Framework Processor Participant </em>driver in Device Manager. </p><p>In a <a href="https://learn.microsoft.com/en-us/windows/release-health/status-windows-11-25h2#4906msgdesc" target="_blank"><u>health status update</u></a>, Microsoft said the issue meant users working with Intel devices could “potentially experience unexpected shutdowns, poor performance, increased heat, and battery drain”. </p><p>The issue affects Windows 11 versions 25H2 and 24H2, according to Microsoft.</p><h2 id="what-caused-the-pause">What caused the pause?</h2><p>The source of the issue is related to an “incompatibility between the Intel driver and the new Windows USB-C Connection Manager interface”.</p><p>The issue was first flagged in the wake of a preview update rolled out in late June (<a href="https://support.microsoft.com/en-us/servicing/os/windows-11/2026/06/june-23-2026-kb5095093-os-builds-26200-8737-and-26100-8737-preview" target="_blank"><u>KB5095093</u></a>). These previews are rolled out to enable IT administrators to familiarize themselves with upcoming patches.</p><p>Microsoft said it is working closely with Dell to “prevent the affected models from experiencing the issue”. A spokesperson for Dell echoed the tech giant’s comments on a fix. </p><p>“We are aware of an issue impacting a limited number of Windows devices with the Windows 11, version 25H2 and 24H2 (KB5101650) update,” the spokesperson said. </p><p>“Microsoft has temporarily paused the update for those devices and published guidance for impacted users, and we are working closely with them to support a resolution.”</p><p><em>ITPro </em>asked Dell to confirm which specific devices were affected by the update, but the spokesperson did not reveal any further details. </p><p>An exact timeline on when users can expect a fix is also yet to be revealed by both companies, although Microsoft said it plans to release a resolution “in the next few days”. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ 1Password teams up with Anthropic to give Claude access to your credentials ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/1password-teams-up-with-anthropic-to-give-claude-access-to-your-credentials</link>
                                                                            <description>
                            <![CDATA[ A new ‘zero-exposure’ security framework allows agents to use stored credentials in the 1Password vault ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">fdkgdXkJZezasXq4CfH8Wg</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/dLLcmT3NBWDWo5SPtGnEUL-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 16 Jul 2026 13:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/dLLcmT3NBWDWo5SPtGnEUL-1280-80.jpg">
                                                            <media:credit><![CDATA[1Password/Anthropic]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Promotional image showing logos of 1Password and Anthropic placed side by side against a navy blue background.]]></media:description>                                                            <media:text><![CDATA[Promotional image showing logos of 1Password and Anthropic placed side by side against a navy blue background.]]></media:text>
                                <media:title type="plain"><![CDATA[Promotional image showing logos of 1Password and Anthropic placed side by side against a navy blue background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/dLLcmT3NBWDWo5SPtGnEUL-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Anthropic’s Claude AI tool will be able fill in passwords through a new <a href="https://www.itpro.com/software/368008/lastpass-vs-1password">1Password </a>browser integration that gives it access to stored credentials, the two companies have announced. </p><p><a href="https://www.itpro.com/security/360257/1password-business-review-first-choice-for-business-travel-and-guest-accounts">1Password's </a>new <em>1Password for Claude</em> service is a framework that allows agents to use stored credentials hosted in 1Password vaults without them ever reaching the model. </p><p>Access is granted per session, and scoped to a specific set of approved items so that authorization doesn’t carry over to other sessions. </p><p>According to <a href="https://www.itpro.com/software/368048/dashlane-vs-1password">1Password</a>, this means users can now authorize Claude to complete real-world tasks like booking travel and managing accounts securely, with credentials injected directly to the target system on their behalf.</p><p>"We need a new security model that is purpose-built for agents, not just humans. The answer isn't handing agents your secrets. It is to let a user give an agent permission to use a credential without letting the agent see it,” said Nancy Wang, CTO of 1Password. </p><p>"Claude knows it used your login; it does not need the password or one-time code in its context. That distinction is where trust in agents starts and the foundation we're building with Anthropic."</p><h2 id="how-1password-s-zero-exposure-framework-will-work">How 1Password’s ‘zero-exposure’ framework will work</h2><p>1Password's zero-exposure security framework allows per-task, user-approved access, with Claude requesting the credentials required for each task from 1Password.</p><p>Users can approve or deny access with a single biometric prompt, eliminating standing access or persistent sessions.  </p><p>Credentials are injected through a secure channel managed by 1Password, outside the agent's view, with the password and the MFA one-time code never accessible to the model or Anthropic's systems.</p><p>The moment an AI agent takes control of the browser, 1Password locks down automatically, limiting access to only the credentials explicitly granted for the current task. Nothing else in the 1Password vault is reachable.</p><figure role="gallery"><figure><img src="https://cdn.mos.cms.futurecdn.net/s3PCJM7YoZv9iZDxN5xbCg.png" alt="Promotional image showing Claude integration with 1Password filling out a password form for a user on GitHub. " /><figcaption><small role="credit">1Password/Anthropic</small></figcaption></figure><figure><img src="https://cdn.mos.cms.futurecdn.net/XkWd7sw8tmKWzu2wwZCr5g.jpg" alt="Promotional image showing Claude integration with 1Password filling out a password form for a user on Audible. " /><figcaption><small role="credit">1Password/Anthropic</small></figcaption></figure></figure><p>1Password brokers credential access across multiple sites within a single task, so Claude can complete multi-step workflows without prompting the user for credentials at each step.</p><p>Elsewhere, continuous field analysis will see 1Password scan the page after every autofill to ensure no secrets remain exposed: if a form submission fails, it wipes any filled values before returning control to the agent.</p><h2 id="new-agentic-mode-coming-to-1password">New ‘agentic mode’ coming to 1Password</h2><p>Alongside the Claude integration, 1Password is also introducing Agentic Mode for all users. </p><p>When a compatible AI agent takes control of the browser, 1Password locks down, so that the only credentials the agent can reach are those the user has explicitly granted for the current task. </p><p>It activates automatically and runs quietly in the background, and users have the option to cancel it at any time. </p><p>1Password for Claude is now available to 1Password users on Mac, across business, family, and individual plans.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Passkeys will soon be the default authentication method in Microsoft Entra ID – here's what it means for users and when the changes come into effect ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/microsoft-entra-id-passkey-default-authentication-dealine-september-2026</link>
                                                                            <description>
                            <![CDATA[ The shift to passkeys for Microsoft Entra ID comes amidst growing concerns over AI-powered phishing and identity theft ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">kChEktaF69uzSFMWgbZ6bT</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/hnJfsmgKFbPVuGP5idio46-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 16 Jul 2026 10:39:16 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/hnJfsmgKFbPVuGP5idio46-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Microsoft logo and branding illuminated against a dark backdrop on the company&#039;s vendor stall at Fira Gran Via during Mobile World Congress (MWC) 2026.]]></media:description>                                                            <media:text><![CDATA[Microsoft logo and branding illuminated against a dark backdrop on the company&#039;s vendor stall at Fira Gran Via during Mobile World Congress (MWC) 2026.]]></media:text>
                                <media:title type="plain"><![CDATA[Microsoft logo and branding illuminated against a dark backdrop on the company&#039;s vendor stall at Fira Gran Via during Mobile World Congress (MWC) 2026.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/hnJfsmgKFbPVuGP5idio46-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Microsoft’s Entra ID platform will now operate solely with passkeys as it looks to shift away from SMS and voice-based authentication practices. </p><p>The changes to the identity management platform, set to come into effect on 1 September 2026, will see passkeys established as the “default authentication experience” for users. </p><p>Microsoft urged customers to move to passkeys or alternative phishing-resistant methods before the changeover. </p><p>“As the rollout reaches each organization, users enabled for SMS or voice authentication will automatically be enabled for passkeys, and the next time they perform multi-factor authentication, they’ll be prompted to register a passkey,” the company explained in a <a href="https://www.microsoft.com/en-us/security/blog/2026/07/13/microsoft-entra-id-security-updates-passkeys-are-the-default-authentication-method-in-entra-id/" target="_blank"><u>blog post</u></a>. </p><p>There is a grace period, however, with voice and SMS-based authentication still being possible until 1 February 2027. After that deadline, Microsoft will retire telecom delivery for both authentication methods and no longer offer SMS and voice as a “native Microsoft Entra capability.”</p><p>For those organizations that still require SMS or voice-based authentication, there is the option to do so via the Microsoft Security Store, where administrators can find approved telecom partners to facilitate this need.</p><p>This may incur additional costs, however, with Microsoft warning: "Customers will be responsible for any associated telecom-related costs charged by the telecom partners."</p><h2 id="why-is-microsoft-moving-to-passkeys">Why is Microsoft moving to passkeys?</h2><p>According to Microsoft, the shift to passkeys is in response to  growing concerns over credential theft, <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing</a>, and <a href="https://www.itpro.com/security/phishing/why-social-engineering-is-such-a-problem-and-how-your-business-can-protect-itself">social engineering</a> attacks. </p><p>AI, the company added, has also prompted a rethink of identity security and a move away from “phishable methods” such as voice and SMS-based authentication. </p><p>“Authentication methods that use SMS or voice rely on shared secrets or channels that attackers increasingly intercept, phish, or manipulate,” Microsoft explained. </p><p>“The case for moving beyond SMS and voice is no longer just that attackers intercept or socially engineer these methods. The threat environment has changed in speed, scale, and sophistication.”</p><p>Microsoft said its Threat Intelligence division has observed a marked rise in AI-enabled phishing campaigns in recent months, with these methods reaching click-through rates as high as 54%. </p><p>That’s a stark contrast compared to the 12% click-through rates typically observed in traditional campaigns, highlighting the potency of this new wave of attacks. </p><p>Other tactics employed by threat actors, such as <a href="https://www.itpro.com/security/cyber-attacks/cisa-urges-organizations-to-adopt-passwordless-security-in-lapsusdollar-report">SIM swapping</a> and <a href="https://www.itpro.com/security/cyber-attacks/how-hackers-bypass-mfa-and-what-to-do-about-it">MFA bypass techniques</a>, have also become “more accessible and repeatable”, Microsoft noted. </p><p>As <a href="https://www.itpro.com/security/phishing/ai-generated-phishing-became-the-baseline-for-hackers-last-year-kaseya-warns-its-going-to-get-worse-in-2026"><u><em>ITPro </em></u><u>reported earlier this year</u></a>, AI-generated phishing campaigns have become a recurring concern for cybersecurity leaders. </p><p>Research from Kaseya suggested that AI phishing “became the baseline” for threat actors in 2025: 83% of phishing emails used AI in some capacity, while 40% of <a href="https://www.itpro.com/security/cyber-attacks/what-is-business-email-compromise-bec">business email compromise (BEC)</a> attacks also fared similarly. </p><h2 id="why-passkeys">Why passkeys?</h2><p><a href="https://www.itpro.com/security/what-do-passkeys-mean-for-your-business"><u>Passkeys</u></a> are touted as a more reliable and secure method of authentication, as they tie credentials to a specific device, such as a smartphone or laptop. This removes the need for interceptable codes. </p><p>Indeed, Microsoft noted that because they use public-key cryptography rather than “shared secrets”, this makes them phishing-resistant by design. </p><p>“They also provide a faster, simpler sign-in experience for users,” the company noted. </p><p>Microsoft isn’t alone in advising the shift to passkeys. Earlier this year, the UK’s <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a> urged enterprises and consumers alike to <a href="https://www.itpro.com/security/the-ncsc-says-its-time-to-switch-to-passkeys"><u>adopt passkeys to provide “stronger resilience” and ease-of-use</u></a>. </p><p>“We strongly advise all organizations to implement passkeys wherever possible to enhance security, provide users with faster, frictionless logins and to save significant costs on SMS authentication," NCSC CTO Ollie Whitehouse said at the time.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Agent 009… the nine-second warning ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/technology/artificial-intelligence/agent-009-the-nine-second-warning</link>
                                                                            <description>
                            <![CDATA[ AI Agents can go rogue. What is the channel’s role as guardians of recovery? ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">nwqsVGYw4WLQUUDh8KGp3d</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/UxdjzEnyWayUWLiDqsLptR-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 16 Jul 2026 07:00:00 +0000</pubDate>                                                                                                                                <updated>Mon, 20 Jul 2026 09:41:44 +0000</updated>
                                                                                                                                            <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Mark Molyneux ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/vtKkwufs2PrKnQBARDTD2b.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/UxdjzEnyWayUWLiDqsLptR-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A glowing chatbot robot head floating above a cube in a CGI landscape.]]></media:description>                                                            <media:text><![CDATA[A glowing chatbot robot head floating above a cube in a CGI landscape.]]></media:text>
                                <media:title type="plain"><![CDATA[A glowing chatbot robot head floating above a cube in a CGI landscape.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/UxdjzEnyWayUWLiDqsLptR-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>In popular culture, when an agent goes rogue, what usually follows is a world of trouble (think Jason Bourne or Ethan Hunt). If rules are abandoned and the chain of command breaks down, those involved often face existential risks.</p><p>Applying that idea to real-world situations is not as ridiculous as you might think, as the recent experiences of a business called PocketOS demonstrate. </p><p>PocketOS is a US-based SaaS provider specializing in the car rental sector, and for those unfamiliar with its story, it hit the global headlines when one of its AI agents went rogue and, in just nine seconds, decided to delete the company’s entire production database and backups.</p><p>It’s a fascinating case study about what can happen, as one piece of <a href="https://devops.com/when-ai-goes-really-really-wrong-how-pocketos-lost-all-its-data/"><u>analysis</u></a> put it, “when AI agents are dropped into environments that were never designed to control them.” What makes this story even more relatable is that PocketOS’s founder was able to ask the agent (an AI development environment running in Claude) why it did what it did.</p><p>To suggest it was ‘sorry’ about its mistake is putting it very mildly; it's a digital mea culpa saying, amongst various other things, “I violated every principle I was given: I guessed instead of verifying.”</p><h2 id="an-inevitable-scenario">An inevitable scenario</h2><p>We’ll inevitably see more of this kind of incident. Organizations are only beginning to deploy agentic AI at scale in operational environments, but many of them are in a big hurry. Yes, agents offer massive potential to create operational value, but they also introduce a whole new category of business risk.</p><p>And don’t forget, the PocketOS debacle is not thought to have involved any malicious third-party activity; the agent was just attempting to complete an assigned task. The problem, it would appear, was a kind of perfect storm where autonomy overstepped the boundaries of permissions and access. The guardrails that the business thought it had in place were simply insufficient.</p><p>From a security perspective, this is enough to give CISOs sleepless nights. Indeed, rogue AI agent activity may very well have nothing to do with being breached and everything to do with resilience and recoverability.</p><p>The central challenge is this: agentic AI is fundamentally different from previous generations of AI because it can act rather than simply advise. Agents can search files, call APIs, modify workflows, write code, move data, and interact directly with production systems; the list of capabilities is practically endless. And to be able to do this, they must have at least a level of access allowing their work to take place</p><p>When something goes wrong, the result is an expanded blast radius. A mistake that might once have affected a single application can potentially impact multiple systems and even recovery environments. The bottom line is that as soon as organizations give AI agents freedom to operate, the nature of resilience inevitably changes.</p><h2 id="making-resilience-more-resilient">Making resilience more resilient</h2><p>So, what needs to happen to ensure resilience standards do not catastrophically drop? Firstly, organizations must consider what takes place when a trusted system with legitimate credentials makes the wrong decision. </p><p>The issue becomes particularly acute when agents are granted broad permissions across multiple systems, as happens when they are handed a “golden token”. To an extent, this is a question of mindset, and viewing AI agents not as software tools but as digital insiders with delegated authority is a healthy change in perspective.</p><p>Secondly, channel partners will be fundamental to successfully managing the transition to agent-supported operations. Don’t forget, most customer organizations are still in the early stages of understanding how AI agents interact with identities, permissions, backup environments and recovery processes.</p><p>There’s no doubt that customers are a) increasingly aware of the risks associated with agentic AI, b) concerned that their existing resilience processes might not be good enough, and c) looking for guidance before an agentic error causes serious difficulties.</p><p>In this context, it’s incumbent on channel partners to work with customers to identify potential areas for improvement. There is significant potential, including services such as identity and access reviews, which will be very important as machine identities proliferate alongside human users.</p><p>Many businesses will also need to reassess their data protection strategy because, as we have seen, an AI agent with the appropriate permissions is capable of going after that data as well. Recovery architecture should be assessed through the lens of agentic AI, particularly where production and recovery environments may share credentials, access paths or administrative controls. Business process change in this space is a big opportunity for the channel to partner with customers to introduce resilience operations, and importantly, to regularly test it. </p><p>What’s more, the PocketOS incident demonstrated that protecting production data alone is insufficient if recovery assets remain exposed to the same destructive action. Customers need confidence not only that recovery is possible, but that digital assets are protected from the same event that affects production systems. This shifts the channel conversation from selling AI-enablement projects to helping customers deploy AI safely and recover when things go wrong, which, in some organizations, they inevitably will.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Cyber professionals are flocking to AI tools, but they’re getting tired of fixing mistakes and reviewing outputs ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-professionals-are-flocking-to-ai-tools-but-theyre-getting-tired-of-fixing-mistakes-and-reviewing-outputs</link>
                                                                            <description>
                            <![CDATA[ Cyber pros are spending significantly more time validating AI outputs and deciding when to trust AI-generated recommendations ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">HC5wmyEPCmrju9osQdeefF</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/AqvGjJr2CmPpQRrUk8S7z5-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 15 Jul 2026 16:15:28 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/AqvGjJr2CmPpQRrUk8S7z5-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Male and female cybersecurity specialists collaborating in an open plan office space, looking at screen during cyber attack recovery program.]]></media:description>                                                            <media:text><![CDATA[Male and female cybersecurity specialists collaborating in an open plan office space, looking at screen during cyber attack recovery program.]]></media:text>
                                <media:title type="plain"><![CDATA[Male and female cybersecurity specialists collaborating in an open plan office space, looking at screen during cyber attack recovery program.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/AqvGjJr2CmPpQRrUk8S7z5-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>AI isn't replacing cybersecurity roles but it is changing them, and not always for the better, according to new research. </p><p>A <a href="https://www.isc2.org/Insights/2026/07/rethinking-ai-impact-on-cybersecurity-roles" target="_blank">study from ISC2</a> found that 65% of <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>professionals who use AI in their roles are spending time deciding when to trust or act on AI-generated recommendations. </p><p>Nearly two-thirds (63%) said they often find themselves reviewing and validating AI outputs. While this is basic best practice from a safety perspective, these processes are wasting valuable time. </p><p>Regardless, the influx of <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today">AI tools</a> within the profession has been welcomed by practitioners, according to the study. </p><p>More than half (53%) believe the technology is creating new entry-level opportunities, while 48% said AI makes them feel more optimistic about their long-term career prospects. </p><p>“AI is not replacing cybersecurity professionals; it is changing what the profession requires of them,” said ISC2 CEO Scott Beale.</p><p>“As AI takes on more repetitive tasks, as well as performing some complex cybersecurity analysis at speed and scale, cybersecurity roles are shifting toward higher-value work, from asking the right questions to validating findings, interpreting outputs and applying human judgment." </p><p>Beale noted that the use of AI is changing “how work is distributed across security teams”, meaning investment in areas such as governance, skills development, and validation practices is “essential”. </p><h2 id="too-much-time-fixing-problems">Too much time fixing problems</h2><p>While nearly half of cybersecurity professionals reported that AI has reduced workplace stress, 32% said it has made it worse. A key factor here lies in the aforementioned validation and reviewing practices, the study noted. </p><p>Those experiencing higher levels of stress were significantly more likely to spend longer periods deciding when to trust AI-generated outputs and recommendations. </p><p>When AI-recommended actions lead to incorrect outcomes – which nine out of ten said had happened – half of the participants said their organization holds human decision-makers ultimately accountable.</p><p>Put simply, poor AI-related outcomes have a direct impact on wellbeing for cybersecurity practitioners when it’s their neck on the line. </p><p>Confusion over accountability and ownership of AI also adds to stress, the study noted. Nearly a quarter (21%) of respondents said accountability of AI-related issues varies depending on the severity. </p><h2 id="over-reliance-is-a-worry">Over-reliance is a worry</h2><p>Other top concerns cited by ISC2 included over-reliance on AI, a recurring worry not just for cyber professionals but workers across a range of industries. </p><p>As <em>ITPro </em>reported in May, a study from GoTo warned over-reliance on the technology <a href="https://www.itpro.com/technology/artificial-intelligence/are-ai-tools-making-us-less-intelligent"><u>could erode key skills</u></a>. Similar concerns have been <a href="https://www.itpro.com/software/development/the-challenge-now-is-making-sure-the-next-generation-develops-those-same-foundations-before-relying-too-heavily-on-ai-devs-are-swerving-fundamental-skills-like-git-and-agile-because-of-ai-but-theres-a-good-reason"><u>highlighted in software development</u></a>, particularly among entry-level workers entering the workforce. </p><p>62% of respondents identified this as a key concern in the ISC2 study while 56% also highlighted worries about reduced human judgement capabilities when it comes to business-critical decisions. </p><p>Foundational <a href="https://www.itpro.com/security/cybersecurity-skills-what-can-be-done">cybersecurity skills</a> remain essential, according to ISC2, especially with AI in the mix. Notably, nearly two-thirds (62%) said they don't believe the technology  has reduced the need for these skills, compared with just 26% who say it has.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘We did not adapt and move quickly enough’: IBM CEO Arvind Krishna laments enterprise spending pivot as company issues profit warning ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/we-did-not-adapt-and-move-quickly-enough-ibm-ceo-arvind-krishna-laments-enterprise-spending-pivot-as-company-issues-profit-warning</link>
                                                                            <description>
                            <![CDATA[ The memory crisis has hit IBM hard as customers scramble to swerve price increases ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">gAUTzgib2UG9R5ztyuzWDJ</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/ankorMWTcLRABHngobkd2e-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 15 Jul 2026 09:25:28 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/ankorMWTcLRABHngobkd2e-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[IBM CEO Arvind Krishna pictured in attendance at a Rose Garden Club event on the Rose Garden of the White House in Washington, DC, on July 6, 2026.]]></media:description>                                                            <media:text><![CDATA[IBM CEO Arvind Krishna pictured in attendance at a Rose Garden Club event on the Rose Garden of the White House in Washington, DC, on July 6, 2026.]]></media:text>
                                <media:title type="plain"><![CDATA[IBM CEO Arvind Krishna pictured in attendance at a Rose Garden Club event on the Rose Garden of the White House in Washington, DC, on July 6, 2026.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/ankorMWTcLRABHngobkd2e-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>IBM shares plummeted by more than 25% on Tuesday after the tech giant posted underwhelming preliminary second-quarter results. </p><p>In a <a href="https://newsroom.ibm.com/2026-07-14-Arvind-Krishnas-Letter-to-IBM-Investors" target="_blank">profit warning</a> released ahead of the company’s expected earnings call on 22 July, CEO Arvind Krishna attributed sluggish performance to the ongoing memory crisis and AI-related cybersecurity concerns. </p><p>Revenue for the quarter ending June came in at $17.2 Billion, marking just a 1% year-over-year increase and well below expectations. Notably, infrastructure revenue dipped by 7% across the quarter. </p><p>In a statement detailing the results, Krishna suggested the company had “faltered” and been taken unaware by rapidly changing enterprise spending habits. </p><p>Put simply, customers have shifted their focus away from software spending toward infrastructure investments ahead of expected price increases. </p><p><a href="https://www.itpro.com/infrastructure/ai-infrastructure-global-divide">AI infrastructure</a> build-outs have <a href="https://www.itpro.com/hardware/storage/we-want-to-be-able-to-share-the-pain-with-you-everpure-ceo-charlie-giancarlo-says-firm-will-share-the-burden-with-customers-amid-rising-hardware-costs">sent hardware prices skyrocketing</a> in recent months, with enterprises scrambling to secure servers, chips, and storage components. </p><p>“In the last few weeks of June, we saw clients shift their quarterly capex spend toward servers, storage, and memory purchases to secure supply-constrained infrastructure ahead of expected price increases,” he wrote. </p><p>“While we anticipated some supply chain-related impact in our expectations, we did not anticipate the magnitude of the capex reprioritization.”</p><p>Krishna’s warning spooked investors, sparking yet another sell-off in the software market. Shares at Microsoft, Salesforce, and ServiceNow all dipped in the wake of the announcement. </p><p>Software investors have been through the wringer so far in 2026, largely due to concerns about a looming ‘SaaSpocalypse’ due to recent advances in AI. </p><p>As <a href="https://www.itpro.com/technology/artificial-intelligence/why-anthropic-sent-software-stocks-into-freefall"><u><em>ITPro </em></u><u>reported in February</u></a>, Anthropic sparked a mass sell-off after the release of its Claude Cowork tool, with investors worried the solution could render some software services obsolete. </p><p>Chris Beauchamp, chief market analyst at IG, described the results as an “ugly moment for IBM and software stocks”.</p><p>“The big question will be how long the shift to infrastructure and cybersecurity lasts,” he said. “A few more months might be bearable, but more than that and serious questions will be asked all over again about software stocks.”</p><h2 id="ibm-falling-flat">IBM falling flat</h2><p>IBM’s infrastructure earnings are a clear sign of the ongoing rush and changing priorities for enterprise customers. </p><p>Krishna noted that many customers were scrambling to get ahead of further price increases, which impacted its higher-margin mainframe and associated software offerings. </p><p>In April, IBM <a href="https://newsroom.ibm.com/z17" target="_blank">unveiled its new z17 mainframe</a>, hailing it as the “first mainframe fully engineered for the AI age”. General availability for z17 landed in mid-June, and as <em>ITPro</em><a href="https://www.itpro.com/infrastructure/ibm-targets-data-center-efficiency-gains-with-new-z17-and-linuxone-offerings"><em> </em>recently reported,</a> the firm also plans to roll out compact versions in August. </p><p>While the z17 launch was met with much fanfare, Krishna noted results were “worse than our expectations”. </p><p>“These conditions require our teams to execute perfectly, and this quarter we faltered,” Krishna wrote. “We did not adapt and move quickly enough, and numerous large deals failed to close on the timelines we expected, driving the majority of our shortfall.”</p><p>“These are not excuses, but they are realities. Our job is to help our clients through uncertainty, to find paths forward to grow their businesses no matter what is happening in the external environment.”</p><h2 id="silver-linings-for-cybersecurity-vendors">Silver linings for cybersecurity vendors</h2><p>While hardware price issues dominated the enterprise focus, Krishna also noted clients were “distracted” by AI-related cybersecurity concerns in recent months. </p><p>The IBM chief said the launch of powerful new models such as <a href="https://www.itpro.com/technology/artificial-intelligence/project-glasswing-anthropic-announces-big-tech-consortium-to-test-claude-mythos-ai-model-that-could-reshape-cybersecurity">Anthropic’s Claude Mythos</a>, for example, has sparked widespread concerns among cybersecurity experts. </p><p>IBM has moved quickly to compensate for these changes, according to Krishna. The company recently launched a new security initiative, <a href="https://www.itpro.com/security/ibm-and-red-hat-believe-they-have-the-answer-to-open-source-security-risks">Project Lightwell</a>, aimed at driving AI-powered software security supply chain improvements. </p><p>As with hardware-related concerns, rapid changes in the <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>landscape have also prompted a rethink on spending, Krishna told <a href="https://www.cnbc.com/2026/07/14/cybersecurity-stocks-ai-spending-mythos.html"><u><em>CNBC</em></u></a>. </p><p>“Mythos is making people pause to say, wait, how much do I need to spend on cyber? They’re pausing on new deals until they know,” Krishna commented. </p><p>These comments sparked a rally in cybersecurity stocks, with CrowdStrike, Zscaler, Palo Alto Networks, and Okta all recording significant boosts. </p><p>CrowdStrike, for example, surged 12% while Palo Alto Networks and Zscaler stocks rallied at around 7% respectively. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Lidl data breach: Supermarket chain warns customers after third-party 'IT incident' exposes customer information – here's what we know so far ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/data-breaches/lidl-data-breach-supermarket-chain-warns-customers-after-third-party-it-incident-exposes-customer-information-heres-what-we-know-so-far</link>
                                                                            <description>
                            <![CDATA[ The incident, affecting an unnamed service provider, is the latest to affect embattled retailers ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">zyNrRndxDeXGefrowLPG33</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/oK8UtcdgcFnnJiAaRdKyPJ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 14 Jul 2026 10:05:38 +0000</pubDate>                                                                                                                                <updated>Tue, 14 Jul 2026 12:12:54 +0000</updated>
                                                                                                                                            <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/oK8UtcdgcFnnJiAaRdKyPJ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Logo of supermarket chain Lidl on a sign outside a branch in London, England.]]></media:description>                                                            <media:text><![CDATA[Logo of supermarket chain Lidl on a sign outside a branch in London, England.]]></media:text>
                                <media:title type="plain"><![CDATA[Logo of supermarket chain Lidl on a sign outside a branch in London, England.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/oK8UtcdgcFnnJiAaRdKyPJ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Supermarket chain Lidl has urged customers to remain vigilant after a data breach exposed personal information.</p><p>In an <a href="https://service.lidl.nl/html_mail.jsp?params=8LybHsuKa7Kn1nJNHJQVXNX0gmCmtqL%2BDv1%2FqBuU15CDljiqHnnM21YJF1q%2FnFUEywx3Rzgho98wZxcM9Vu14In%2BUF9apXtZuAjldylkmGg%3D" target="_blank"><u>advisory</u></a>, the firm revealed the ‘IT incident’ at a third-party service provider has impacted customers in Belgium, Germany, and the Netherlands. </p><p>"We were notified of this incident earlier this week," the message reads. </p><p>"Despite high IT security standards, unauthorized parties briefly gained access to a separately stored file containing customer data, and some of that data was stolen. The online shop system itself was not affected."</p><p>The stolen data relates to customers of Lidl's online shop, and includes first and last names, telephone numbers, email addresses, dates of birth, and customer numbers. </p><p>Lidl noted that data exposed in the incident does not include passwords, billing and delivery addresses, bank details, or other payment information. </p><h2 id="lidl-warns-customers-over-phishing-risks">Lidl warns customers over phishing risks</h2><p>The company said that while it currently has no concrete evidence this data has been misused, customers should remain vigilant for potential <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing </a>attacks or identity theft. </p><p>Customers should be wary of unexpected messages, always verify the authenticity of the sender, and avoid providing any information or clicking on unknown links. </p><p>Boris Cipot, principal security engineer at Black Duck, said the incident is a “textbook reminder” of the risks posed by third-party vendors. </p><p>"Even when a retailer's own systems hold, a compromised service provider can expose millions of customers to identity fraud, phishing, and account takeover attacks," Cipot commented. </p><p>"Personal data like names, birthdates, phone numbers, and email addresses may seem low-risk in isolation, but combined they become a powerful toolkit for social engineering. Additionally, the downstream costs to consumers and brand trust can far outlast the incident itself."</p><h2 id="lidl-vendor-acted-swiftly">Lidl vendor acted swiftly</h2><p>Lidl said its IT service provider responded immediately to fully restore the security of the affected IT systems, filed a report with the authorities and immediately engaged IT forensic experts to investigate the incident. </p><p>The company has also notified the relevant data protection authorities. Cipot commended the supermarket chain for its swift response and up-front communication with affected customers. </p><p>"Lidl deserves credit for moving quickly to notify customers and being transparent about what they don't yet know, including the possibility that passwords, addresses, and payment data could be involved. That kind of candor presents the appropriate posture under <a href="https://www.itpro.com/security/data-protection/gdpr">GDPR</a>," he said. </p><p>"The real test now is follow-through: how quickly they complete the forensic investigation, how clearly they communicate updates as the scope becomes known, and how rigorously they reassess the security requirements they place on their service providers going forward."</p><p>Lidl, which operates around 12,900 stores across 32 countries in Europe and the US, is just the latest retailer to be hit by a supply chain breach. </p><p>In the last year or so, victims have included <a href="https://www.itpro.com/security/cyber-attacks/m-and-s-chair-calls-for-mandatory-reporting-of-cyber-attacks-after-traumatic-ransomware-incident-but-will-it-do-more-harm-than-good">Marks and Spencer</a>, Co-op, Louis Vuitton, Pandora, and <a href="https://www.itpro.com/security/cyber-attacks/harrods-cyber-attack">Harrods</a>. Many of these attacks have been linked to the <a href="https://www.itpro.com/security/cyber-attacks/scattered-spider-airline-industry-attacks">Scattered Spider</a> hacking group.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ This one cyber crime group accounted for nearly a fifth of all ransomware attacks in June ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/ransomware/this-one-cyber-crime-group-accounted-for-nearly-a-fifth-of-all-ransomware-attacks-in-june</link>
                                                                            <description>
                            <![CDATA[ The Gentlemen, a ransomware a service operator, now accounts for 17% of published attacks ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">5fMej8gjSEzxbkarjjYjYb</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/RSjE8LWxBzgjnadXPUW8mB-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 13 Jul 2026 11:41:40 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Ransomware]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/RSjE8LWxBzgjnadXPUW8mB-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Hacker concept image showing a silhouetted person in a black hat with binary code in background. ]]></media:description>                                                            <media:text><![CDATA[Hacker concept image showing a silhouetted person in a black hat with binary code in background. ]]></media:text>
                                <media:title type="plain"><![CDATA[Hacker concept image showing a silhouetted person in a black hat with binary code in background. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/RSjE8LWxBzgjnadXPUW8mB-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Global cyber attacks rose over 10% in June, according to new <a href="https://blog.checkpoint.com/research/a-new-ransomware-leader-emerges-as-june-2026-attack-volumes-climb-worldwide/" target="_blank"><u>research from Check Point</u></a>, with one particular group accounting for a growing portion. </p><p>The uptick in attacks comes in the wake of what the <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>firm described as a period of “relative calm” in May. </p><p>Attack volumes increase broadly across all regions and sectors at once, the company noted, suggesting attackers are expanding activities across a wider set of targets. </p><p>“June’s data shows a broad rebound in cyber activity, not a single isolated spike,” said Mark Mitchell, security engineer at Check Point Software. </p><p>“Attackers are widening their reach across regions and industries, while ransomware groups continue to reorganize and scale."</p><p>Notably, Check Point’s analysis highlighted increased activity by The Gentlemen, a new ransomware operator on the scene. The group overtook <a href="https://www.itpro.com/security/cyber-attacks/thousands-of-procedures-canceled-at-london-hospitals-as-qilin-releases-blood-test-data">Qilin </a>as the most active ransomware group globally, accounting for 17% of published attacks. </p><p><a href="https://www.itpro.com/security/ransomware/368418/latest-lockbit-ransomware-strain-strikingly-similar-to-blackmatter">LockBit </a>activity also increased, rising from 1% of published attacks in May to 7% in June, making it the third most prevalent group.</p><p>"The rise of The Gentlemen to the top of the ransomware leaderboard is a clear reminder that new operators can rapidly become major global threats," Mitchell warned.</p><p>As <a href="https://www.itpro.com/security/new-ransomware-threat-group-the-gentlemen-has-become-one-of-the-most-active-ransomware-operators-accounting-for-10-percent-of-all-attacks"><u><em>ITPro </em></u><u>previously reported</u></a>, The Gentlemen have quickly grown to become one of the most aggressive ransomware groups worldwide. </p><p>Observations of the group’s activities by NTT revealed it uses advanced tooling and proxy infrastructure to accelerate attacks, often operating stealthily within compromised networks before causing havoc. </p><p>NTT researchers said the group also shows a level of technical maturity that would typically be associated with more established cyber crime groups. This could suggest it consists of highly experienced threat actors with deep ties to other groups within the cyber crime ecosystem. </p><h2 id="key-industries-in-the-crosshairs">Key industries in the crosshairs</h2><p>Education remained the most targeted sector globally, with organizations facing an average of 4,816 weekly attacks - 16% up on June 2025. </p><p>They're a comparatively easy target, said Check Point, thanks to open campus networks, constant device turnover, and constrained security resources.</p><p>Government was the second-most targeted sector, with 2,836 weekly attacks, up 5% year on year, while telecommunications ranked third with 2,835 weekly attacks, a 13% increase. </p><h2 id="latin-america-attacks-ramp-up">Latin America attacks ramp up</h2><p>Attacks against organizations in Latin America are ramping up significantly, according to Check Point. </p><p>Organizations across the region are now contending with an average of 3,501 weekly attacks, a 27% rise since June 2025. </p><p>APAC followed at 3,060 weekly attacks, up 5%, while Africa was third with 3,008 attacks per week, although this was down 9% year on year. </p><p>Europe and North America also saw sharp increases, at 22% and 14% respectively. </p><h2 id="ai-is-creating-new-risks">AI is creating new risks</h2><p><a href="https://www.itpro.com/technology/artificial-intelligence-ai/369959/what-is-generative-ai">Generative AI</a> continues to cause problems, with one in every 26  prompts submitted from enterprise networks carrying a high risk of sensitive data leakage, making for a global exposure rate of 3.9%. </p><p>High-risk prompt activity affected 85% of organizations that regularly use generative <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today">AI tools</a>, while a further 27% of prompts contained potentially sensitive information. </p><p>This issue was most prevalent in Latin America, where 5.2% of prompts carried a high risk of sensitive data leakage, while Europe matched the global average at 3.9%. </p><p>In terms of broader AI-related risks, healthcare and medical carried the highest exposure at 5.7%, followed by telecommunications and business services at 5.1% each, and IT at 4.1%. </p><p>Personal data was accessed at 80% of affected organizations, with network and infrastructure details, legal and regulatory material, financial data, and employee records also widely exposed.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ NCSC issues warning over Russian intelligence-backed threat group ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/ncsc-issues-warning-over-russian-intelligence-backed-threat-group</link>
                                                                            <description>
                            <![CDATA[ The advisory comes as the government cracks down on groups involved in “destructive cyber and hybrid operations” ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">ecBtbkHCFUTQLq8qjGpdG7</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/MT5985QZfigcxyG6ydBAiR-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 13 Jul 2026 11:25:28 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/MT5985QZfigcxyG6ydBAiR-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Insignia of the UK&#039;s National Cyber Security Centre (NCSC) pictured on a smartphone screen with blurred blue, green, and orange coloring in background.]]></media:description>                                                            <media:text><![CDATA[Insignia of the UK&#039;s National Cyber Security Centre (NCSC) pictured on a smartphone screen with blurred blue, green, and orange coloring in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Insignia of the UK&#039;s National Cyber Security Centre (NCSC) pictured on a smartphone screen with blurred blue, green, and orange coloring in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/MT5985QZfigcxyG6ydBAiR-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a> has urged UK organizations to remain vigilant for attacks waged by Russian state-backed hackers. </p><p>As part of an advisory published in collaboration with 18 other agencies, the cybersecurity center specifically highlighted techniques employed by Russian FSB’s Centre 16 threat actors. </p><p>The group has been “opportunistically” targeting vulnerable routers and critical national infrastructure globally in recent months, the advisory warns. </p><p>Centre 16 goes by a number of names, including Berserk Bear, Static Tundra, and Ghost Blizzard, according to the NCSC. The group primarily uses SNMP (Simple Network Management Protocol) scans to locate and compromise vulnerable routers. </p><p>The group has also been observed <a href="https://www.itpro.com/security/cyber-attacks/cisco-asa-customers-urged-to-take-immediate-action-as-ncsc-cisa-issue-critical-vulnerability-warnings">exploiting vulnerabilities in Cisco devices</a>, web portal flaws, and vulnerabilities in Cisco’s Smart Install (SMI) feature to seize network devices.</p><p>The advisory comes as the UK government implements sanctions against 24 individuals and entities behind “destructive cyber and hybrid operations” which have employed criminal groups via proxy networks. </p><p>Jonathon Ellison, NCSC Director of National Resilience, said these activities require organizations to remain in a heightened state of vigilance moving forward. </p><p>“The NCSC, alongside our international partners, have repeatedly exposed the advanced tools and coordinated campaigns of Russian cyber actors who persistently seek to exploit any vulnerability they encounter,” he said.</p><p>“Today’s joint advisory provides decisive, actionable directions from the global security community that network defenders should implement to protect against Russian Intelligence operations and secure the UK’s critical infrastructure.”</p><h2 id="russian-hackers-targeting-key-sectors">Russian hackers targeting key sectors</h2><p>Organizations across a host of sectors worldwide are at risk from the group, according to the advisory. </p><p>Those operating in the communications, energy, healthcare, defense, and financial services industries in particular are firmly in Centre 16’s crosshairs. </p><p>The security agency urged organizations in these domains to take action immediately. This includes disabling the use of legacy SNMP versions and switching to SNMPv3 to lower their risk of compromise.</p><p>Similarly, organizations are advised to implement “strong and unique passwords for network devices, and restrict access to management protocols”. </p><h2 id="call-to-action">Call to action</h2><p>In addition to basic defensive measures, the NCSC also encouraged at-risk organizations to obtain <a href="https://www.ncsc.gov.uk/cyberessentials/overview" target="_blank"><u>Cyber Essentials</u></a> certification. </p><p>This is a government-backed initiative for organisations to show they meet the recognized minimum standards for cybersecurity. </p><p>Organizations can also make use of the <a href="https://www.ncsc.gov.uk/collection/cyber-assessment-framework" target="_blank"><u>Cyber Assessment Framework</u></a>, allowing them to audit their security capabilities, operational maturity, and bolster cyber resilience techniques.</p><p>“I’d strongly encourage all organisations, especially those entrusted with UK critical networks, to adopt these recommended measures immediately, thereby reducing the risk of compromise,” Ellison commented. </p><h2 id="repeated-warnings">Repeated warnings</h2><p>This isn’t the first warning issued by the NCSC over Centre 26 activities in recent years. The security agency, alongside international counterparts, attributed the December 2025 attack on Poland’s energy grid to the unit. </p><p>Various subunits and techniques employed by Centre 16 have also been exposed over the last three years.  The security agency called out a Centre 16 unit known as ‘Turla’ in 2023 over the deployment of Snake malware, for example. </p><p>The <a href="https://www.itpro.com/malware/28076/what-is-malware">malware </a>strain has been a key component of Russian-backed espionage campaigns for nearly two decades, the NCSC said at the time. </p><p>A similar advisory that year also shed light on a group known as Star Blizzard. The NCSC said this particular subunit of Centre 16 was actively interfering in UK politics and democratic processes. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ The agents you use to beef up cybersecurity could be turned against you – ‘Friendly Fire’ attacks can manipulate OpenAI and Anthropic models into running malicious code ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/the-agents-you-use-to-beef-up-cybersecurity-could-be-turned-against-you-friendly-fire-attacks-can-manipulate-openai-and-anthropic-models-into-running-malicious-code</link>
                                                                            <description>
                            <![CDATA[ Research shows agents can be fooled into executing malicious code while performing security reviews of third-party software ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">FRjVnVPEVarRpVdMovEzam</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/44ktQKgRvmq93jKSBo3pnB-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 10 Jul 2026 10:45:51 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/44ktQKgRvmq93jKSBo3pnB-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[AI agent concept image showing a digitized human face disintegrating into hundreds of small individual blocks.]]></media:description>                                                            <media:text><![CDATA[AI agent concept image showing a digitized human face disintegrating into hundreds of small individual blocks.]]></media:text>
                                <media:title type="plain"><![CDATA[AI agent concept image showing a digitized human face disintegrating into hundreds of small individual blocks.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/44ktQKgRvmq93jKSBo3pnB-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A proof-of-concept by the AI Now Institute demonstrates remote code execution in Anthropic's Claude Code and OpenAI's Codex when they're running in an autonomous mode that approves their own commands.</p><p>The <a href="https://ainowinstitute.org/publications/friendly-fire-exploit-brief"><u>Friendly Fire attack</u></a> works against an out-of-the-box configuration of Claude Code in 'auto-mode' or Codex in 'auto-review', with researchers testing Claude Sonnet 4.6, Sonnet 5, and Opus 4.8 along with GPT-5.5.</p><p>It leverages prompt injections disseminated across a library’s source code that target AI-enabled cyber defense – without the need for hooks, skills, plugins, MCP servers, or configuration files as an injection vector.</p><p>Researchers noted the study highlights the potential risks associated with rapid adoption of AI-powered security tools. </p><p>Many organizations are doing so without “consideration of the substantial and unmitigated risks associated” with the technology. </p><p>AI-related cybersecurity concerns have been rising following the launch of powerful new models such as <a href="https://www.itpro.com/technology/artificial-intelligence/project-glasswing-anthropic-announces-big-tech-consortium-to-test-claude-mythos-ai-model-that-could-reshape-cybersecurity">Claude Mythos</a>. Anthropic rolled the model out as part of a gated release to prevent misuse, and US authorities <a href="https://www.itpro.com/technology/artificial-intelligence/why-the-us-imposed-export-controls-on-anthropics-fable-and-mythos-models-and-why-theyve-been-lifted">temporarily imposed export controls</a> amidst similar concerns. </p><h2 id="how-the-friendly-fire-attack-works">How the Friendly Fire attack works</h2><p>The attack works by inserting prompt injections into documentation files and adding README files that appear to be part of routine security tooling in an open source library. </p><p>Researchers used geopy, a popular Python used for searching for geographic coordinates, but said it could work with almost any project. </p><p>When a user asks Claude Code or Codex to perform a security assessment of the repository using the default auto-mode or auto-review automated modes, the agent can be persuaded to execute a malicious binary without any warning and without requesting any further user approval. </p><p>The proof of concept is causing alarm amongst security professionals. Roey Eliyahu, CEO and co-founder of Salt Security, said this marks the latest in a string of potential risks in recent months due to manipulation of agents. </p><p>“Friendly Fire, GitLost, Agentjacking, TrustFall. Four documented attacks in the past two months, different techniques, same underlying condition,” he said.  </p><p>“Untrusted text reaches an agent that can run commands. The agent cannot reliably tell the difference between the code it is reviewing and the instructions it is being given. And the attacker's payload executes on the host.”</p><p>Eliyahu emphasized that this is not a “model problem that can be patched”. All four models were vulnerable to the same techniques and payload, without any modifications for each. </p><p>“When the same attack works unchanged across two vendors and four model generations, you are not looking at a software bug. You are looking at a structural property of how these agents work."</p><p>But, said Eljan Mahammadli, head of AI provenance at Polygraf AI, this shouldn't rule out the use of AI for defensive security work.</p><p><em>ITPro </em>approached Anthropic and OpenAI for comment, but did not receive a response by time of publication. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Working with the enemy: Ransomware negotiator-turned cyber criminal jailed after working with hackers to extort clients ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/ransomware/working-with-the-enemy-ransomware-negotiator-turned-cyber-criminal-jailed-after-working-with-hackers-to-extort-clients</link>
                                                                            <description>
                            <![CDATA[ Angelo Martino was supposed to be negotiating on behalf of victims, but was secretly working for ransomware operators ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">rEKtR8rJ65bFgXThPcm6mh</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/UjWjTqk5HiFp2xWB4yo93k-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 10 Jul 2026 09:46:08 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Ransomware]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/UjWjTqk5HiFp2xWB4yo93k-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Insider threat hacker concept image showing man typing on keyboard in a dimly lit room. ]]></media:description>                                                            <media:text><![CDATA[Insider threat hacker concept image showing man typing on keyboard in a dimly lit room. ]]></media:text>
                                <media:title type="plain"><![CDATA[Insider threat hacker concept image showing man typing on keyboard in a dimly lit room. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/UjWjTqk5HiFp2xWB4yo93k-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware </a>negotiator has been sentenced to 70 months in prison after secretly conspiring with hackers to extort clients. </p><p>Angelo Martino, 41, of Land O’Lakes, Florida, worked at US-based cyber incident response company DigitalMint in April 2023 when he started conspiring with the operators of the BlackCat ransomware group. </p><p>BlackCat paid Martino to provide confidential information about the negotiating position and strategy of his employer’s clients, along with the details of their ransomware insurance, to help maximize the ransoms paid. </p><p>Notably, Martino also <a href="https://www.itpro.com/business/when-cyber-professionals-go-rogue-a-former-ransomware-negotiator-has-been-charged-amid-claims-they-attacked-and-extorted-businesses">conspired with two former cybersecurity professionals</a> between April 2023 and November 2023.</p><p>Kevin Martin, 36, of Texas, was hired as Martino’s co-worker at DigitalMint after the conspiracy began. Ryan Goldberg, 41, of Georgia, was manager of incident response at Sygnia. </p><p>All told, Martino was found to have extorted five different victims as part of his collaboration with the cyber crime syndicate while the trio also worked to deploy BlackCat ransomware against victims across the country. </p><p>Assistant attorney general A. Tysen Duva of the Justice Department’s Criminal Division, said victims had shared “heartbreaking accounts of how their businesses were nearly destroyed” during the trail. </p><p>“Today’s sentence accounts for the harm Martino caused and demonstrates that the Department of Justice can and will identify and prosecute cybercriminals to the fullest extent of the law.”</p><h2 id="working-with-the-enemy">Working with the enemy</h2><p>After successfully extorting one victim for around $1.2 million in Bitcoin, the men split their share of the ransom three ways and laundered the funds through various means. </p><p>Jason A. Reding Quiñones, attorney for the Southern District of Florida, said more than $10 million in criminal proceeds have been seized. These assets include digital currency, vehicles, a food truck, and a luxury fishing boat. </p><p>A separate hearing has been set for September 17 to decide the amount of restitution to be ordered against Martino. </p><p>The Justice Department started <a href="https://www.itpro.com/security/ransomware/alphv-leak-site-seized-by-law-enforcement-as-decryption-tool-released"><u>working to bring down BlackCat</u></a> three years ago, developing a decryption tool that allowed FBI field offices across the US and law enforcement partners around the world to help victims restore their systems. </p><p>The scheme has reportedly saved victims from paying out $99 million in ransom payments so far. The FBI also seized several BlackCat websites at the same time.</p><p>"This case sends a clear message: we will pursue the hackers who deploy ransomware, the insiders who enable them, and the money they steal from American victims,” Quiñones said. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Flaws in some of the most popular AI coding tools left developers wide open to attack ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/flaws-in-some-of-the-most-popular-ai-coding-tools-left-developers-wide-open-to-attack</link>
                                                                            <description>
                            <![CDATA[ Malicious repositories can trick advanced AI agents into silently breaking out of their workspace sandboxes ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">Gawo6Gk4RNHQavhhSVvjPd</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 09 Jul 2026 10:06:05 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg">
                                                            <media:credit><![CDATA[Shutterstock]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:description>                                                            <media:text><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:text>
                                <media:title type="plain"><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A 'category-level' security flaw in six leading AI coding assistants could give attackers remote control of a developer’s machine, according to researchers at <a href="https://www.itpro.com/business/business-strategy/google-confirms-wiz-acquisition-in-record-breaking-usd32-billion-deal">Wiz</a>. </p><p>Dubbed <a href="https://www.wiz.io/blog/ghostapproval-a-trust-boundary-gap-in-ai-coding-assistants" target="_blank"><u>GhostApproval</u></a>, the flaw affects some of the most popular coding tools on the market right now, including Amazon Q Developer, Claude Code, Cursor, Windsurf, and Google Antigravity. </p><p>The flaw has been reported to all six providers, with Amazon, Cursor, and Google having rated it critical or high-severity and fixed it, and there's no evidence that it's been exploited in the wild.</p><p>According to Wiz, the vulnerability is caused by a decades-old Unix primitive – symbolic links, or symlinks – which allows malicious repositories to trick AI agents into silently breaking out of their workspace sandboxes, leading to RCE and persistent access to a developer's machine.</p><p>In the case of Amazon Q Developer, the agent wrote to the filesystem before presenting the user with an Undo option. Testing by Wiz found the agent correctly identified the symlink in its internal reasoning, but proceeded with the write anyway. </p><p>Amazon has fixed the problem, which has been recorded as <a href="https://github.com/aws/language-servers/security/advisories/GHSA-6v3r-4p5c-mrp5" target="_blank"><u>CVE-2026-12958</u></a>.</p><p>"We have remediated this issue in language server version 1.69.0. The AWS Language Server updates automatically unless the customer's network configuration prevents it, so no action is required in most cases," the firm said in a statement. </p><p>"For existing customers, reloading the IDE will trigger an update to the latest language server version, which includes this fix. If auto-update is blocked, we recommend upgrading to the latest version of the Amazon Q Developer plugin for your IDE."</p><p>Wiz noted that new customers don't need to take any action, as the latest patched version will be downloaded automatically. </p><h2 id="anthropic-issues-customer-warning">Anthropic issues customer warning</h2><p>Claude Code, meanwhile, provides the clearest example of user interface misrepresentation of critical information, Wiz said.</p><p>"The agent explicitly recognized the dangerous target in its thinking - stating "this is a symbolic link to the Claude settings file" - then presented a prompt asking simply: "Make this edit to project settings.json?" the researchers said.</p><p>Anthropic, however, has rejected the threat on the basis that the user explicitly trusted the directory when starting the session and explicitly approved the file operation in the confirmation prompt. </p><p>Around the time Wiz revealed its findings, the company added a warning to users, and current versions (2.1.173+) now resolve symlinks. </p><p>Cursor's diff UI showed the symlink path; when the user clicked Accept, the backend followed the symlink and wrote to the resolved target. It's been fixed in version 3.0, and Cursor has issued <a href="https://github.com/cursor/cursor/security/advisories/GHSA-3v8f-48vw-3mjx" target="_blank"><u>CVE-2026-50549</u></a>.</p><p>Google's Antigravity, meanwhile, displayed the symlink path in its permission dialog rather than the resolved canonical path. Wiz researchers were able to successfully write an attacker's SSH key via a symlink disguised as project_settings.json. Google's fixed the problem.</p><h2 id="windsurf-flaw-raises-serious-concerns">Windsurf flaw raises serious concerns</h2><p>Notably, Wiz said Windsurf presented a particularly dangerous variant during testing of the vulnerability. </p><p>"The agent writes file modifications directly to disk before the Accept/Reject buttons appear in the UI. The confirmation dialog isn't an authorization gate - it's an undo mechanism," the researchers warned.</p><p>Wiz added that the system is compromised “the moment the agent processes the malicious instructions”. Indeed, by the time users even see the prompt asking to accept changes, an attacker’s SSH was already placed in the authorizedkeys file.</p><p>Researchers warned that the findings show that “trust boundary questions” will become critical for organizations rolling out AI agents en-masse.</p><p>"GhostApproval is a symptom of a broader challenge: building AI systems that are both powerful and trustworthy. Getting the human-in-the-loop right – truly right, not just formally present – is essential to that goal."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ The NCSC wants to build an AI-powered 'Cyber Shield' to protect the UK from hackers – here’s how it’ll work ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/the-ncsc-wants-to-build-an-ai-powered-cyber-shield-to-protect-the-uk-from-hackers-heres-how-itll-work</link>
                                                                            <description>
                            <![CDATA[ The aim is to create a national, sovereign defence capability to protect government agencies and critical infrastructure ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">KUBzFPYJgBqkELPwd2JU7e</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/upmScpMzZKB4C5Wt2y3h7N-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 08 Jul 2026 15:09:21 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/upmScpMzZKB4C5Wt2y3h7N-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Logo of the UK&#039;s National Cyber Security Centre (NCSC) pictured on a television screen in London, England. ]]></media:description>                                                            <media:text><![CDATA[Logo of the UK&#039;s National Cyber Security Centre (NCSC) pictured on a television screen in London, England. ]]></media:text>
                                <media:title type="plain"><![CDATA[Logo of the UK&#039;s National Cyber Security Centre (NCSC) pictured on a television screen in London, England. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/upmScpMzZKB4C5Wt2y3h7N-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a> has laid out its plans for the national Cyber Shield, first announced in May this year. </p><p>The aim of the project is to build a nationwide, collaborative approach to agentic cyber defense, using frontier AI to identify, reduce, and deal with national cyber risks.</p><p>According to the NCSC, the move comes amidst concerns that cybersecurity risks are growing in “scale, speed, and sophistication” - particularly from hostile states and organized crime groups targeting public services. </p><p>"Frontier AI is accelerating this trend, with the potential to shift the balance in favour of attackers – and with serious implications for defenders,” the NCSC said. </p><p>“We need to keep our critical technology systems secure against both existing and emergent cyber threats."</p><p>As part of the project, AI systems will initially <a href="https://www.itpro.com/security/why-patching-velocity-matters-as-claude-mythos-supercharges-vulnerability-discovery">identify vulnerabilities and threats at machine speed</a>, before moving on to automated remediation. </p><p>Further down the line, the agency expects AI to eventually generate and share insights, detect and contain breaches, and work under the control of their owners across government and non-government bodies.</p><p>These agents, the NCSC noted, will need to be built on strong foundations of data, identity, reliability, cybersecurity, and regulatory compliance.</p><p>The NCSC will first partner with network defenders across government and critical UK sectors to test and deploy new capabilities, with the plan to then transition to commercially-scalable solutions to improve national resilience.</p><h2 id="ncsc-targets-reliability-in-cyber-shield-scheme">NCSC targets reliability in Cyber Shield scheme</h2><p>To make all this happen, there's a fair amount that will need to be done – some of which will present big challenges. </p><p>The NCSC highlighted the need for reliable and explainable <a href="https://www.itpro.com/security/safe-ai-adoption-rests-on-cybersecurity-professionals-says-rsac-chairman">AI for cybersecurity</a> that can be used confidently in production environments at scale, and authorized by system owners to make safe, reliable, and significant real-time changes in support of cyber defence.</p><p>Agents will run national-level operations under the control and authority of individual organizations, and have the ability to identify, trust, and communicate between themselves.</p><p>Elsewhere, national-level scanning will involve the automated monitoring of critical UK IP ranges for exposed vulnerabilities, as well as analysis of aggregated data to understand national level exposure. </p><p>The agency noted that workflows will need to be automated to allow rapid national-scale mitigation, such as the automated blocking of known malicious domains and networks.</p><h2 id="a-big-bold-plan">A big, bold plan</h2><p>Plans detailed by the NCSC have been welcomed by industry stakeholders as a positive step in protecting the UK against rising threats. Whether or not this is an achievable goal is up for debate, according to Pete Luban, field <a href="https://www.itpro.com/business/business-strategy/why-the-ciso-role-is-so-demanding-and-how-leaders-can-help">CISO </a>at AttackIQ. </p><p>"The biggest challenge will be getting government, critical infrastructure, and private industry to share intelligence in a way that is trusted and actionable," Luban commented. </p><p>"If bought into, Cyber Shield could give the UK a stronger foundation to spot risk earlier, validate defenses faster, and respond before attackers gain momentum.”</p><p>Kevin Marriott, senior director of cyber content strategy & IP at Immersive, said the true test will be in how the government makes sure the system is utilized where it can bring value and return on investment.</p><p>"It would also be beneficial to hear how they plan to deal with the output from the frontier models, and whether they put robust practices in place which enable them to deal with the outputs," he said.</p><p>"If this is part of a well-considered strategy, it represents a significant step forward. If, however, it is a move towards ungoverned AI without clear oversight or a defined plan for where and how it should be used, then it is not.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Multi-channel phishing attacks: How to manage the risk ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/multi-channel-phishing-attacks-how-to-manage-the-risk</link>
                                                                            <description>
                            <![CDATA[ Attackers are evolving beyond email towards phishing across multiple channels. Why is this, and what can be done to manage the risk? ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">SesFueAF7AB4ZgF8y8JrvA</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Vwb8TLBgSxGdDgEKAcxuKZ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 08 Jul 2026 07:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Kate O&#039;Flaherty ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/LUULv6n7VJ3BHPnaoLHHdg.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Vwb8TLBgSxGdDgEKAcxuKZ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A cartoon graphic depicting phishing as a service, shown as bugs, keys, fingerprints, bitcoins, shields, eyes, etc surrounding a fish hook. All are placed on a light grey background.]]></media:description>                                                            <media:text><![CDATA[A cartoon graphic depicting phishing as a service, shown as bugs, keys, fingerprints, bitcoins, shields, eyes, etc surrounding a fish hook. All are placed on a light grey background.]]></media:text>
                                <media:title type="plain"><![CDATA[A cartoon graphic depicting phishing as a service, shown as bugs, keys, fingerprints, bitcoins, shields, eyes, etc surrounding a fish hook. All are placed on a light grey background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Vwb8TLBgSxGdDgEKAcxuKZ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Email <a href="https://www.itpro.com/security/29093/what-is-phishing"><u>phishing</u></a> has always been a simple yet effective form of attack. While the method isn’t going away, research is showing attackers evolving beyond email to multiple channels such as Slack and cloud-based platforms. </p><p>That’s according to security firm KnowBe4’s Phishing Threat Trends report, which <a href="https://www.itpro.com/security/phishing/the-inbox-is-no-longer-the-only-frontline-phishing-attacks-are-evolving-as-cyber-criminals-ramp-up-multi-channel-campaigns-over-email-and-microsoft-teams"><u>found</u></a> hackers are leveraging new “touchpoints” when targeting victims, with calendar invites and messaging tools a frequent tactic. The company recorded a 41% increase in Microsoft Teams-based attacks between October 2025 and March 2026 as adversaries strived to create more avenues for success.</p><p>With <a href="https://www.itpro.com/uk/technology/artificial-intelligence"><u>AI</u></a> offering cybercriminals the ability to supercharge phishing attacks further, what should businesses be doing to manage the risk?</p><h2 id="phishing-evolution">Phishing evolution</h2><p>In the past, phishing attacks relied on adversaries targeting a wide range of users in the hope that some of them would engage with malicious content, or give away valuable information.<strong> </strong>But since then, businesses have improved their security, with tools such as <a href="https://www.itpro.com/security/29982/what-is-two-factor-authentication"><u>multi-factor authentication</u></a> (MFA) used as standard. This has forced attackers to utilize more sophisticated techniques. </p><p>“When attackers cannot compromise technical controls, such as MFA, they are instead seeking to bypass the technology and move the attack onto end users through social engineering,” says Luiz Simpson, head of offensive security at Bridewell.</p><p>He cites the example of <a href="https://learn.microsoft.com/en-us/defender-office-365/detect-and-remediate-illicit-consent-grants"><u>illicit consent grant</u></a> attacks in Microsoft 365, which trick users into granting access to data. These attacks often “go completely under the radar”, says Simpson. “Users will accept an untrustworthy app while logged into their cloud workspace and under the legitimate Microsoft or Google workspace platforms. These attacks don’t require any bypass of MFA and almost always aren’t flagged by detection and response.”</p><p>Another reason attackers are targeting multiple channels is the fact that the workplace itself has changed.  “Employees now spend far more time in collaboration platforms, cloud applications, messaging tools, and video conferencing environments,” says Ray Canzanese, director of Netskope Threat Labs. “Attackers are following that behavior.”</p><p>Canzanese describes how phishing lures are increasingly delivered through platforms such as Microsoft Teams, Zoom and fake meeting invitations. “These are designed to exploit the trust users place in familiar collaboration workflows.”</p><p>From a criminal perspective, multi-channel phishing is becoming “progressively structured”, according to Benson Varghese, a criminal lawyer and founder and managing partner at law firm Varghese Summerset. Rather than flooding potential victims with random messages, phishers will prepare their sequence, test the response rate, and react to engagement in real-time, he says. “This makes attacks more focused and effective.”</p><h2 id="security-shift">Security shift </h2><p>Experts believe the evolution of phishing requires businesses to change the way they think about securing communication channels.</p><p>The shift means no longer treating phishing as purely an email security problem. “Security teams need visibility across a much broader digital environment that includes collaboration tools, cloud platforms, browsers, unmanaged devices and AI applications,” according to Canzanese. </p><p>Almost all social media platforms include user messaging, which supports the distribution of links and images. Yet historically, the focus on preventing <a href="https://www.itpro.com/security/a-new-silent-social-engineering-attack-is-being-used-by-hackers-and-your-security-systems-might-not-notice-until-its-too-late"><u>social engineering attacks</u></a> has been around traditional email-based messages, encouraging users to avoid clicking links. “None of these defences will help prevent attackers from contacting end users and sending malicious content across other channels,” says Simpson.  </p><p>“As these interactions do not arrive via traditional email, there is no URL rewriting, sandboxing or inspections of content,” he points out. “This leaves you with just endpoint and identity-based controls to protect users.”</p><p>However, endpoint detection and response (EDR) solutions traditionally fall short in having visibility of what goes on within a browser, Simpon explains. “If a user is to bring<a href="https://www.itpro.com/security/the-new-byod-how-to-leaders-can-securely-evolve-policy"><u> your own device (BYOD)</u></a> with access to enterprise resources, you are very much on the back foot to prevent identity-based attacks.”</p><h2 id="managing-multi-channel-phishing">Managing multi-channel phishing </h2><p>The move to multiple channels is just one way phishing is changing. In tandem, AI is accelerating the quality and scale of attacks, while lowering the barrier to entry for new cybercriminals, according to Danny Jenkins, CEO of ThreatLocker.</p><p>“Attackers no longer need to spend hours researching targets or carefully crafting convincing messages,” he tells <em>ITPro</em>. </p><p>“AI can generate highly personalised, context-aware phishing content in seconds – whether that’s a Teams message, a fake document-sharing notification, or a voice <a href="https://www.itpro.com/security/deepfake-business-risks-are-growing-what-leaders-need-to-know"><u>deepfake</u></a> impersonating a colleague or executive.”</p><p>There is also a rise in adaptive social engineering, where AI-driven phishing attempts evolve in real time based on how a user responds, he warns. “Instead of relying on static messages, these interactions can mimic natural conversations, making them significantly more convincing,” explains Jenkins.</p><p>The threat from multi-channel phishing is certainly growing, but firms can help boost defenses by making several key changes. Some of these are cultural. </p><p>From a security perspective, organizations need to accept that they will not stop every phishing attempt across every channel, says Jenkins. </p><p>“Humans are imperfect, and mistakes will happen, and no amount of training can prevent every phishing attempt.” </p><p>Instead, the priority should be reducing the impact of an attack and tightly controlling access, rather than trying to eliminate exposure, he advises.</p><p><a href="https://www.itpro.com/security/password-manager-passkey-guidance-ncsc"><u>Passkey</u></a> use can help, says Simpson, pointing out that the <a href="https://www.ncsc.gov.uk/"><u>UK National Cyber Security Centre (NCSC)</u></a> has started to actively recommend the adoption of passkeys over passwords and MFA.</p><p>“Passkeys help address many of the shortfalls of traditional passwords and MFA. Notably, they’re resistant to phishing because they’re tied to the legitimate website only; they are fast and convenient, and cannot be stolen if a website is breached.”</p><p>As with traditional phishing, organizations should adopt a strategy of user awareness and technical controls to defend against multi-channel attacks, according to Simpson.</p><p>This means ensuring users are aware that a spectrum of social engineering attacks are possible, beyond solely email-based phishing. Users, especially those in high-risk roles, such as executives and finance teams, should be targeted with training to empower them to identify and report attacks, Simpson advises. </p><p>“This should be an ongoing message and constantly refreshed based on active attacks seen in the wild, rather than just an annual policy that’s read and signed off.”</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ 'It’s a marker of where extortion tradecraft is heading': Cyber experts say they've identified the first case of ‘agentic ransomware’ – but there’s a catch ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/its-a-marker-of-where-extortion-tradecraft-is-heading-cyber-experts-say-theyve-identified-the-first-case-of-agentic-ransomware-but-theres-a-catch</link>
                                                                            <description>
                            <![CDATA[ While the JadePuffer ransomware has alarm bells ringing, it still needed a human in the loop ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">qjk8F3ajnLx38ikEJu7GF9</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Bu6X6qBMaKYkswFayN2KhG-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 07 Jul 2026 13:40:06 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Bu6X6qBMaKYkswFayN2KhG-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[AI concept image showing humanoid face illuminated in red against a glowing red and black background.]]></media:description>                                                            <media:text><![CDATA[AI concept image showing humanoid face illuminated in red against a glowing red and black background.]]></media:text>
                                <media:title type="plain"><![CDATA[AI concept image showing humanoid face illuminated in red against a glowing red and black background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Bu6X6qBMaKYkswFayN2KhG-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A security firm has spotted what it claims is the first documented case of a ransomware operation run entirely by a large language model. </p><p>The Sysdig Threat Research Team said the operator, dubbed JadePuffer, is the first agentic threat actor, describing it as using a known <a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3248" target="_blank"><u>flaw in AI app builder Langflow</u></a> to gain access to credentials and other key data. </p><p>Thereafter, researchers noted it took over a production database and encrypted it for extortion purposes. </p><p>"JadePuffer is a warning sign," Michael Clark, Sysdig’s director of threat research, said in a <a href="https://www.sysdig.com/blog/jadepuffer-agentic-ransomware-for-automated-database-extortion" target="_blank"><u>blog post</u></a>. </p><p>"It’s a marker of where extortion tradecraft is heading. An autonomous agent reasoned about its targets, harvested and reused credentials, moved laterally, established persistence, and destroyed a database, narrating its own intent the entire way."</p><p>Clark has <a href="https://techcrunch.com/2026/07/06/the-first-ai-run-ransomware-attack-still-needed-a-human/" target="_blank"><u>clarified</u></a> that though the attack operation was run by an AI, the attack was still organized by a human who set up the infrastructure, found the initial credentials to break in, and chose a victim. But the rest of the attack was managed by the LLM itself.</p><h2 id="alarming-attack">Alarming attack</h2><p>Clark noted that JadePuffer's payloads were "self narrating", containing detailed notes that a human wouldn't bother to write but an <a href="https://www.itpro.com/security/cyber-crime/what-is-hackbot-as-a-service-and-are-malicious-llms-a-risk">LLM </a>generates innately about why each step was taken, including prioritization of targets. That narration data could prove useful for security teams looking to defend against such attacks, Clark added. </p><p>"The operation also adapted in real time, retrying failed steps within refined parameters," Clark added. "In one sequence, it went from a failed login to a working fix in 31 seconds."</p><p>That is perhaps the most alarming aspect of the incident, according to Roey Eliyahu, CEO and co-founder of Salt Security.</p><p>"A human attacker who fails an initial payload waits, reassesses, consults, and tries again on a different timeline," Eliyahu said. "An agent that fails a payload corrects and retries in under a minute. That compression of the attack cycle means the window between first detection signal and material damage is now measured in seconds, not hours."</p><p>The JadePuffer system even wrote a ransom note complete with Bitcoin address and Proton email contact, Clark noted, though the former appears to be a wallet address frequently used as an example in explainer text online. </p><p>That’s either a coincidence, said Clark, or a <a href="https://www.itpro.com/technology/artificial-intelligence/ai-hallucinations-what-are-they">hallucination by the LLM</a> due to the frequency of that address online, and therefore used in training data. </p><p>Clark also noted that the encryption key was generated and essentially random, so the victim would not be able to decrypt — even if they paid the ransom. The victim organization wasn't disclosed. </p><h2 id="warning-about-the-future-of-security">Warning about the future of security</h2><p>While JadePuffer is just one incident, it shows that AI can help automate old vulnerabilities and that ransomware no longer requires skills to pull off an attack, according to Sally Vincent, senior threat research engineer at Exabeam.</p><p>"While the attack relied on known, older vulnerabilities rather than new exploits, it demonstrates how AI can automate and accelerate the exploitation of unpatched systems," Vincent said. "It also serves as a reminder that patching known vulnerabilities remains important, since AI can make exploiting them faster and more efficient."</p><p>While Clark stressed that none of the attack techniques were novel or sophisticated, JadePuffer is interesting because it was strung together into a complete ransomware operation by an AI model. </p><p>"The skill floor for running ransomware has dropped to whatever it costs to run an agent, and if that agent is running on stolen credentials through LLMjacking, the cost to an attacker is close to zero," he commented. </p><p>That means security professionals should expect to see more like this, as well as a higher volume of attacks, and should proactively protect "exposed application servers, unhardened configuration stores, and internet-facing database admin accounts," Clark added. </p><p>Salt Security's Eliyahu added: "The question every security team should be asking after this report is: what is holding credentials in our AI-adjacent infrastructure, and what can those credentials reach?" </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ UK’s Cyber Resilience Pledge gathers momentum as 60 firms sign up to bolster capabilities ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/uks-cyber-resilience-pledge-gathers-momentum-as-60-firms-sign-up-to-bolster-capabilities</link>
                                                                            <description>
                            <![CDATA[ The voluntary pledge sees organizations tightening up their defences, particularly against supply-chain attacks ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">85jHtazzwahdKRi23Ynkk</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/X8Y8QhNNiBqk9AccuYbNHH-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 07 Jul 2026 09:41:51 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/X8Y8QhNNiBqk9AccuYbNHH-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[UK tech map with Great Britain and Northern Ireland pictured on a screen.]]></media:description>                                                            <media:text><![CDATA[UK tech map with Great Britain and Northern Ireland pictured on a screen.]]></media:text>
                                <media:title type="plain"><![CDATA[UK tech map with Great Britain and Northern Ireland pictured on a screen.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/X8Y8QhNNiBqk9AccuYbNHH-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The UK government said more than 60 businesses have signed up for its Cyber Resilience Pledge so far, including <a href="https://www.itpro.com/security/cyber-attacks/m-and-s-reveals-massive-financial-hit-from-cyber-attack">M&S</a>, Nationwide, ITV, Microsoft UK, and Cloudflare.</p><p><a href="https://www.itpro.com/security/uk-government-calls-on-firms-to-sign-cyber-resilience-pledge-as-security-sector-booms"><u>Announced in May</u></a>, the voluntary scheme sees businesses committing to three concrete actions to improve <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>capabilities.</p><p>They must commit to making cyber security a board-level responsibility, by implementing the Cyber Governance Code of Practice and ensuring all board members complete the NCSC’s Cyber Governance Training.</p><p>They must also register for the NCSC’s free Early Warning service, a tool that alerts organizations to potentially suspicious activity on their networks, and commit to taking a risk-based approach to requiring the government-backed Cyber Essentials certification across their supply chain. </p><p>The pledge has been designed primarily for medium and large organizations, with other signatories including Deloitte, Accenture UK, Vodafone Group, and VodafoneThree, but is open to businesses of all sizes and from all sectors.</p><p>"Today, some of Britain’s biggest businesses are taking action to strengthen their cyber defences and setting a powerful example for others to follow. By signing this pledge, they are showing that cyber resilience is no longer just an IT issue - it is a business imperative," said technology secretary Liz Kendall.</p><p>"The steps in this pledge are practical, achievable and proven to make a difference. Today’s signatories are leading the way, and I encourage organizations across the UK to follow their example."</p><h2 id="cyber-charter-to-beef-up-critical-services">Cyber Charter to beef up critical services</h2><p>Alongside the pledge, the government has been developing a Cyber Charter for 39 companies designated as strategic suppliers for delivering critical services to the government. </p><p>These organizations have been invited to sign the pledge as an initial commitment to bolstering their cyber resilience, although so far only a little more than half have done so.</p><p>"We have long held the view that cyber resilience is a critical business and organizational enabler. It underpins our growth, our economic security, and the safety and security of our people," said Julian David, CEO of techUK. </p><p>"With the average cost of significant cyber-attacks to the UK economy recently estimated to be £14.7 billion annually – the equivalent of 0.5% of our GDP – it’s clear that cyber security and resilience must be recognised as a leadership responsibility and should no longer be viewed as an IT issue alone."</p><h2 id="pledge-targets-national-resilience">Pledge targets national resilience</h2><p>Moves to bolster national resilience capabilities come amidst an increase in malicious cyber activity in the UK. </p><p>The <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a> recently confirmed it handled 204 nationally significant incidents in the year to September, up from 89 the year before. </p><p>The average cost of an attack on an individual UK business now stands at almost £195,000, with the annual cost to organizations estimated at £14.7 billion - and that’s in addition to the costs of wider economic disruption. </p><p>Last year, experts estimated that the attack on <a href="https://www.itpro.com/security/cyber-attacks/jaguar-land-rover-cyber-attack-financial-impact-cyber-monitoring-centre"><u>Jaguar Land Rover (JLR) cost the UK economy roughly £1.9 billion</u></a>, making it the most costly cyber incident in British history. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘The risk to every organization has increased exponentially’: The FortiBleed campaign just took a turn for the worse ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-attacks/the-risk-to-every-organization-has-increased-exponentially-the-fortibleed-campaign-just-took-a-turn-for-the-worse</link>
                                                                            <description>
                            <![CDATA[ Reports suggest that FortiBleed-linked exposed credentials could put UK government and public services at huge risk ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">npiBchLKa4eriPG8MdEo5T</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/bR33DDYEFNw8FhDqg6p8y5-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 07 Jul 2026 08:09:22 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/bR33DDYEFNw8FhDqg6p8y5-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Plaque pictured at the Foreign, Commonwealth and Development Office building in Whitehall, London. ]]></media:description>                                                            <media:text><![CDATA[Plaque pictured at the Foreign, Commonwealth and Development Office building in Whitehall, London. ]]></media:text>
                                <media:title type="plain"><![CDATA[Plaque pictured at the Foreign, Commonwealth and Development Office building in Whitehall, London. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/bR33DDYEFNw8FhDqg6p8y5-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/security/28133/what-is-cyber-security">Cybersecurity </a>experts have issued an alert amid reports that hackers accessed login credentials belonging to UK government officials and Foreign Office staff. </p><p>The credentials, which are reportedly being sold on the dark web, were exposed as part of the ongoing FortiBleed attack campaign. </p><p>FortiBleed targets internet-facing Fortinet <a href="https://www.itpro.com/network-internet/virtual-private-network-vpn/368103/best-business-vpn-in-2022">VPN </a>and <a href="https://www.itpro.com/security/firewalls">firewalls</a>, and is believed to have affected more than 70,000 devices spanning 194 countries since it was first uncovered last month. </p><p><a href="https://socradar.io/blog/fortibleed-fortinet-firewalls-compromised/" target="_blank"><u>Analysis from SOCRadar</u></a>, for example, identified a vast database containing login credentials. The threat intelligence firm has since attributed FortiBleed to the Lynx/<a href="https://www.itpro.com/security/ransomware/ransomware-group-publishes-stolen-nhs-scotland-data-to-dark-web">INC ransomware</a> group.</p><p>While this database was believed to have been limited to basic usernames and passwords, reports from <a href="https://www.telegraph.co.uk/news/2026/07/05/russian-hackers-steal-government-logins/" target="_blank"><u><em>The Telegraph</em></u></a><em> </em>suggest some exposed details include privileged Fortinet credentials. </p><p>Volodymyr Diachenko, a security researcher who first uncovered the threat campaign, told the publication these credentials could give bad actors access to the Foreign Office’s “core networks” along with other government departments.</p><p>Some Foreign Office credentials are now being sold on the <a href="https://www.itpro.com/security/32117/what-is-the-dark-web">dark web</a>, according to reports, going for up to £40,000. </p><p>Arctic Wolf CISO Adam Marrè warned that the incident could create a domino effect, impacting other government departments and also local authorities and public services. </p><p>According to <em>The Telegraph</em>, credentials at NHS trusts, energy companies, and local councils were also hosted in the illicit database. </p><p>“This major breach of email accounts of UK government officials and overseas Foreign Office workers is the latest development in the ongoing FortiBleed attack,” he said. </p><p>“While it may be tempting to think this is a simple <a href="https://www.itpro.com/security/theres-only-one-way-to-avoid-credential-stuffing-attacks">credential-stuffing</a> operation, our threat team found the threat actors have built a highly sophisticated and repeatable credential factory,” he said. </p><p>Marrè noted that analysis of the incident conducted by Arctic Wolf shows threat actors appear to have been using automated tools to harvest logins and target gateways at “exponential speed and volume”. </p><p>“This means while today it’s the Foreign Office which has been affected, the risk to every organization has increased exponentially.”</p><h2 id="back-and-forth-on-fortibleed">Back and forth on FortiBleed</h2><p>The discovery of the FortiBleed sparked somewhat of a back and forth between Fortinet and security researchers last month. After threat intelligence firm Hudson Rock published a <a href="https://www.hudsonrock.com/fortinet" target="_blank">blog detailing the campaign</a>, Fortinet disputed some of its claims. </p><p><a href="https://www.itpro.com/security/passwords-nicked-for-nearly-74-000-fortinet-devices"><u>Fortinet told </u><u><em>ITPro </em></u><u>at the time</u></a> that the exposed credentials weren’t the result of a fresh breach, insisting that those following best practices were safe from exposure.</p><p>"Fortinet is aware of a reported third-party credential-harvesting campaign targeting Fortinet firewalls and VPN gateways. We are committed to safeguarding our customers, and we diligently and continuously monitor threat actor darknet activity,” a spokesperson for the company said. </p><p>“Based on our initial analysis, the data involved is likely a resharing of data from previous incidents, as well as brute forcing of credentials, and not related to any current incident or advisory."</p><p>Hudson Rock, meanwhile, said the campaign went “beyond simply credential reuse,” highlighting that hundreds of organizations are thought to have been affected. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Hackers are posing as Interpol to target small businesses – here's what you need to know ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/cyber-attacks/hackers-are-posing-as-interpol-to-target-small-business-heres-what-you-need-to-know</link>
                                                                            <description>
                            <![CDATA[ Small businesses are warned to think twice before clicking on links ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">dfEYQHdzwBELh5bxQfdbGS</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/BwgyDzFJ2YV3ja2RZQJT9b-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 06 Jul 2026 10:58:23 +0000</pubDate>                                                                                                                                <updated>Mon, 06 Jul 2026 21:36:13 +0000</updated>
                                                                                                                                            <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/BwgyDzFJ2YV3ja2RZQJT9b-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Phishing concept image showing an email symbol with a fishing hook pierced through, with glowing padlock symbols in background.]]></media:description>                                                            <media:text><![CDATA[Phishing concept image showing an email symbol with a fishing hook pierced through, with glowing padlock symbols in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Phishing concept image showing an email symbol with a fishing hook pierced through, with glowing padlock symbols in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/BwgyDzFJ2YV3ja2RZQJT9b-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Criminals are posing as Interpol cyber crime investigators to target small businesses across Europe, Asia, the Middle East, and North America.</p><p>According to <a href="https://www.bitdefender.com/en-us/blog/hotforsecurity/fake-interpol-emails-serve-ransomware" target="_blank"><u>new research from Bitdefender</u></a>, the phishing messages claim to contain evidence that the recipients are carrying out suspicious activity, pressuring them into opening a password-protected archive.</p><p>"Based on information that has come to our attention, there may be activities involving accounts, systems or services associated with your organization that warrant further examination. We have obtained information and video material that may assist in your assessment of the matter," the emails read. </p><p>"We recommend conducting an internal review to determine whether any unauthorized, suspicious or potentially fraudulent activities have occurred. Prompt attention to such matters may help mitigate potential financial operational, reputational or regulatory risks."</p><p>Upon opening the link, recipients are directed to a <a href="https://www.itpro.com/security/proton-is-launching-its-own-private-alternative-to-google-workspace-and-microsoft-365">Proton </a>Drive-hosted file that delivers a ransomware payload hidden within multiple archive layers. Once executed, researchers said the <a href="https://www.itpro.com/malware/28076/what-is-malware">malware </a>seeks to encrypt files across available drives and presents victims with a ransom message.</p><p>The campaign is targeting organizations across multiple industries, including food and agriculture, legal services, pharmaceuticals, media, technology, and finance.</p><p>The ransomware is relatively simple, according to Bitdefender researchers. The code contains hardcoded values, including the password used during encryption and decryption, and lacks many of the features typically associated with large <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware </a>operations.</p><p>Interestingly, victims are instructed to contact the attackers through a Tox chat channel to negotiate a ransom, rather than through the more usual dedicated negotiation portal or victim site.</p><p>This, researchers noted, is another indication that this is likely a custom-built operation, perhaps assembled using publicly available code and tools rather than the work of an established ransomware group.</p><h2 id="what-small-businesses-need-to-know">What small businesses need to know</h2><p>Javvad Malik, Lead CISO advisor at <a href="https://www.itpro.com/security/cyber-firm-knowbe4-unknowingly-hired-a-north-korean-hacker-and-it-went-exactly-as-you-might-think">KnowBe4</a>, said that impersonating Interpol – or law enforcement in general – is specifically designed to trigger a “rapid emotional response” and dupe victims into ignoring red flags. </p><p>"What is interesting about this campaign is that it targets small business,” he said. “These are often understaffed and have no security or even IT expertise on hand, so it's not difficult to see why people would easily fall victim to these kinds of attacks."</p><p>Bitdefender has warned small businesses to be on the alert, urging them to verify all unsolicited correspondence by reaching out through official channels to confirm whether the communication is legitimate.</p><p>"One of the biggest red flags in this campaign is the delivery method itself," researchers said. "While the attackers impersonate Interpol, legitimate law enforcement agencies don't send unsolicited emails containing Proton Drive links to password-protected files and ask organizations to review alleged evidence of wrongdoing."</p><p>They should treat password-protected archives with caution, especially when the password is included in the email. Showing file extensions on Windows devices will make it easier to spot executables masquerading as videos or documents, and <a href="https://www.itpro.com/security/cyber-attacks/how-hackers-bypass-mfa-and-what-to-do-about-it">multi-factor authentication (MFA)</a> should be used wherever possible.</p><p>Elsewhere, the company urged small businesses to ensure staff are trained to help spot tell-tale signs that communications are fraudulent. </p><p>"Small businesses are often viewed as easier targets than large enterprises," the researchers warned.</p><p>"Many operate without dedicated IT teams or cybersecurity staff. Security responsibilities are often shared among employees who already wear multiple hats, and limited budgets can make it difficult to invest in advanced security measures or ongoing training."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
            </channel>
</rss>