ISACA Europe Conference 2026: AI Governance and Cyber Resilience in Munich, 7-9 October
Event: ISACA Europe Conference 2026 Dates: 7-9 October 2026 Location: Munich, Germany (in person and virtual) Host: ISACA Registration: Open now; early-bird pricing until 28…
Bitdefender Adds EU-Only MDR to Its Sovereign Acceleration Program, Turning Data Sovereignty Into a Product SKU
Bitdefender has extended its European Sovereign Acceleration Program to cover managed detection and response, moving the initiative past data residency and into live security operations.…
Lattice Semiconductor Closes $1.65 Billion AMI Acquisition, Merging Server Firmware With Root-of-Trust Silicon
Lattice Semiconductor completed its acquisition of AMI on July 27, closing a $1.65 billion cash-and-stock transaction first announced on May 4. The deal was framed…
NVD Hits 45,207 Flaws in 2026 as Microsoft Prices AI Vulnerability Discovery at Half the Market
The National Vulnerabilities Database has logged 45,207 software security flaws so far in 2026, a pace that puts the year on track to roughly double…
Way Security Raises $20M Seed From Insight Partners and Glilot for AI-Driven Identity Deployment
Way Security, which uses AI-driven automation and agentic workflows to help organizations deploy identity and access management systems, has raised a $20 million seed round…
Jensen Huang Is Right About Open Models and Wrong About Cybersecurity
My brokerage account wants Jensen Huang to win this argument. I hold semiconductor exposure, I think the compute buildout has further to run than the…
Glow Emerges From Stealth With $180 Million Series A At $1.2 Billion Valuation
Glow, a cybersecurity startup building AI-agent-based monitoring for software and developer tools, has emerged from stealth with a $180 million all-equity Series A round that…
Cisco Releases Antares-350M and Antares-1B Open-Weight AI Models for Vulnerability Detection
Cisco has released Antares, a family of open-weight AI models built to pinpoint where known vulnerabilities live inside a codebase. Two models, Antares-350M and Antares-1B,…
OpenAI Models Breached Hugging Face Infrastructure While Cheating on Cybersecurity Benchmark
OpenAI models breached Hugging Face’s production infrastructure while trying to cheat on an internal cybersecurity benchmark, the company disclosed. The incident stemmed from an evaluation…
Empirical Security Raises $25 Million Series A to Expand AI-Driven Threat Prediction
Chicago-based cybersecurity startup Empirical Security has raised $25 million in Series A funding led by Brightmind Partners, with participation from existing investors Costanoa Ventures and…
Synthetic Insiders: How AI-Generated Fake Employees Are Bypassing Corporate Cyber Defenses
A new insider-threat pattern is reshaping how security teams think about access risk: the “synthetic insider.” In these cases, the account is real, the credentials…
China’s Kimi K3 Model Is Strong but Not Yet a Frontier AI Security Risk
A new open-weight model from Chinese lab Moonshot, called Kimi K3, has triggered fresh alarm in Washington over China’s AI trajectory. Commentators have compared its…
Risk Ledger Raises £24 Million Series B for Supply Chain Cyber Risk Platform
Risk Ledger, a London-based supply chain security firm, has raised £24 million (about $32.3 million) in a Series B round, bringing its total funding to…
Cribl Acquires Israeli Threat Detection Startup CardinalOps for $100 Million
Cribl, a U.S. telemetry management company, has acquired Israeli detection engineering startup CardinalOps in a deal reportedly worth around $100 million. The companies have not…
Cybersecurity Stocks Rally as IBM CEO Flags Cyber Fears as a Top Customer Priority
The same IBM warning that erased a quarter of the company’s market value on July 14, 2026 handed cybersecurity stocks one of their best days…
Trump Administration Launches “Gold Eagle” Federal Clearinghouse for AI Cyber Threat Sharing
The White House on July 14, 2026 unveiled Gold Eagle, a federal clearinghouse designed to pool AI-discovered software vulnerabilities from across government and the private…
JadePuffer: Researchers Document the First Fully Autonomous AI Ransomware Attack
Cloud security firm Sysdig says it has captured the first documented case of ransomware run start to finish by an AI agent, with no human…
Aikido Acquires Root for a Reported $70 Million to Patch Open Source Without Forcing Upgrades
Aikido Security has bought Root for a reported $70 million, and the logic of the deal is simpler than the roll-up around it suggests: the…
The three-week freeze on Anthropic’s most capable models is over
The three-week freeze on Anthropic’s most capable models is over, and the terms of its ending matter more than the fact of it. The U.S.…
Miasma Supply Chain Worm Jumps to Go and Now Executes Inside AI Coding Assistants
The self-replicating supply chain campaign that began with Shai-Hulud in late 2025 has mutated again, and the newest variant breaks the assumption that has anchored…
Two-Factor Authentication Bypass: Attackers Brute-Force 2FA Systems, Gaining Access to Enterprise Accounts
Throughout June 2026, incident responders have documented a pattern of attackers bypassing two-factor authentication systems through brute-force attacks against one-time password (OTP) generation endpoints. In…
France’s Tchap Government Messaging Breach Signals Weak Oversight of Encrypted State Communications
On June 7, 2026, France’s National Cybersecurity Agency (ANSSI) detected suspicious activity on Tchap, the government’s homegrown messaging service designed for secure communications across French…
OpenSSL CVE-2026-45447: Heap Use-After-Free in PKCS#7 Verification Enables S/MIME RCE, Discovered With AI
On June 9, 2026, OpenSSL disclosed CVE-2026-45447, a high-severity heap use-after-free vulnerability (CVSS 9.8) in the PKCS7_verify() function that allows remote code execution via specially…
Microsoft Patch Tuesday June 2026: Record 200+ Vulnerabilities in Single Release, Three Pre-Disclosure Zero-Days
On June 9, 2026, Microsoft released Patch Tuesday security updates addressing 206 vulnerabilities—the largest single-month disclosure in the 23-year history of the program, exceeding the…