Why blocking AI models won’t stop the cyber threats they create

AI companies can find vulnerabilities and write patches. But only the government can build the long-term defense strategy America needs.

The post Why blocking AI models won’t stop the cyber threats they create appeared first on CyberScoop.

Continue reading Why blocking AI models won’t stop the cyber threats they create

AI-generated code has made security debt a governance problem

Moving from tool approval to true governance is the only way for CISOs to keep pace with the accelerating velocity of software risk.

The post AI-generated code has made security debt a governance problem appeared first on CyberScoop.

Continue reading AI-generated code has made security debt a governance problem

Found fast, fixed slow: The gap the AI clearinghouse must close

The government’s new AI clearinghouse risks becoming a committee that discovers more problems than it solves — unless it’s designed around patching, not just scanning.

The post Found fast, fixed slow: The gap the AI clearinghouse must close appeared first on CyberScoop.

Continue reading Found fast, fixed slow: The gap the AI clearinghouse must close

Finding vulnerabilities was never the hard part

AI is surfacing vulnerabilities at a scale the industry has never seen, and most organizations have no way to determine which ones actually matter.

The post Finding vulnerabilities was never the hard part appeared first on CyberScoop.

Continue reading Finding vulnerabilities was never the hard part

Citrix patches a new NetScaler flaw with echoes of CitrixBleed

The bulletin includes six NetScaler issues, but attention is centered on a high-severity flaw with similarities to earlier actively exploited bugs.

The post Citrix patches a new NetScaler flaw with echoes of CitrixBleed appeared first on CyberScoop.

Continue reading Citrix patches a new NetScaler flaw with echoes of CitrixBleed

How ransomware syndicates weaponize corporate-style organization

From outsourced labor to tiered pricing models, an inside look at how today’s top ransomware threats operate less like rogue hackers and more like Fortune 500 companies.

The post How ransomware syndicates weaponize corporate-style organization appeared first on CyberScoop.

Continue reading How ransomware syndicates weaponize corporate-style organization

What the post-quantum executive order really demands of CISOs

ith federal PQC deadlines set for 2030 and 2031, CISOs face a multi-year transformation program that most organizations have not yet started. The window for orderly execution is narrowing fast.

The post What the post-quantum executive order really demands of CISOs appeared first on CyberScoop.

Continue reading What the post-quantum executive order really demands of CISOs

Minnesota man known as ‘Snoopy’ sentenced in DraftKings hack

Nathan Austad, who sold access to compromised accounts through a criminal storefront, is the third and final defendant sentenced in the 2022 breach

The post Minnesota man known as ‘Snoopy’ sentenced in DraftKings hack appeared first on CyberScoop.

Continue reading Minnesota man known as ‘Snoopy’ sentenced in DraftKings hack

Algerian man charged with running two cybercrime marketplaces

Abdellah Belmili allegedly ran two black-market websites selling stolen financial credentials and custom-built phishing kits targeting major American banks, federal prosecutors say.

The post Algerian man charged with running two cybercrime marketplaces appeared first on CyberScoop.

Continue reading Algerian man charged with running two cybercrime marketplaces