Cybersecurity News and Headlines

EU Sanctions and CISA Warnings: Iran's Cyber Attacks Are Evolving
NewsMar 19, 2026

EU Sanctions and CISA Warnings: Iran's Cyber Attacks Are Evolving

Iran’s cyber‑espionage groups are shifting toward modular, file‑less malware and supply‑chain compromises, making detection harder. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued new alerts describing increased targeting of critical infrastructure and cloud services. Meanwhile, the European Union’s recent...

By The Stack (TheStack.technology)
FCA Updates Cyber Incident and Third-Party Reporting Rules
NewsMar 19, 2026

FCA Updates Cyber Incident and Third-Party Reporting Rules

The UK Financial Conduct Authority has unveiled new cyber‑incident reporting rules that clarify what events firms must disclose and streamline the submission process via a single portal shared with the PRA and Bank of England. The guidance narrows reporting thresholds,...

By Infosecurity Magazine
KYND Partners Converge to Scale Cyber Underwriting Platform
NewsMar 19, 2026

KYND Partners Converge to Scale Cyber Underwriting Platform

KYND, a cyber risk analytics firm, has been selected by Converge, a US‑based cyber insurance MGA, to power its digital underwriting platform. The deal equips Converge with KYND’s real‑time vulnerability intelligence, Signals reports and rapid scanning tools to handle high...

By RegTech Analyst
China Sits at the Top of America’s Cyber Threat List
NewsMar 19, 2026

China Sits at the Top of America’s Cyber Threat List

The U.S. Intelligence Community’s 2026 Annual Threat Assessment places China at the top of the nation‑state cyber threat list, describing it as the most active and patient actor with persistent footholds inside American networks. Beijing’s strategy focuses on pre‑positioning access...

By The Cyber Express
UK: Regulation Drives Cyber Spending for Critical Infrastructure Orgs
NewsMar 19, 2026

UK: Regulation Drives Cyber Spending for Critical Infrastructure Orgs

Bridewell’s 2026 Cybersecurity in CNI report shows regulatory compliance has become the leading catalyst for cyber investment among UK critical infrastructure firms, rising to 35% of security leaders. New mandates such as the UK Cyber Security Resilience Bill, the EU...

By Infosecurity Magazine
How to Remove a Work Profile From an Android Device
NewsMar 19, 2026

How to Remove a Work Profile From an Android Device

Android work profiles let enterprises isolate corporate data while preserving user privacy. When employees leave or devices are lost, both end‑users (on BYOD devices) and IT admins can delete the profile without wiping personal data, using native Settings or the...

By TechTarget SearchERP
8M Confidential Crime Tips Hacked, Compromised
NewsMar 19, 2026

8M Confidential Crime Tips Hacked, Compromised

A hacker group calling itself Internet Yiff Machine says it breached P3 Global Intel, a tip‑intelligence platform owned by Navigate360, exposing over eight million confidential crime tips—about 93 GB of data. The leaked dataset reportedly contains plaintext records, contradicting P3’s claims...

By Security Magazine (Cybersecurity)
"Federal Cyber Experts Called Microsoft’s Cloud a “Pile of S**t,” Approved It Anyway"
NewsMar 19, 2026

"Federal Cyber Experts Called Microsoft’s Cloud a “Pile of S**t,” Approved It Anyway"

Federal cyber officials publicly disparaged Microsoft Azure, calling it a “pile of s**t,” yet still granted the cloud service a FedRAMP authorization. The panel’s criticism centered on long‑standing vulnerabilities and inadequate supply‑chain controls, but the agency ultimately approved Azure after...

By AnandTech
The Rise of Deepfakes and How to Stop Them
NewsMar 19, 2026

The Rise of Deepfakes and How to Stop Them

Financial Times AI correspondent Melissa Heikkilä explores the rapid rise of deepfake technology, highlighting how user‑friendly tools now let anyone swap faces or generate synthetic video. The piece details real‑world scams that leverage convincing fake footage to deceive victims and...

By Financial Times – Technology
Falling Is Inevitable, but Learning Is a Design Choice
NewsMar 19, 2026

Falling Is Inevitable, but Learning Is a Design Choice

Government’s Budget Information Security Review exposed a mis‑configuration that leaked sensitive data, prompting tighter controls. Cyber expert Vsevolod Shabad argues the real issue is whether government systems are built to learn from failures, not just to contain them. He highlights...

By PublicTechnology.net (UK)
Police Scotland Hit with £66k Fine over Serious Data Breach
NewsMar 19, 2026

Police Scotland Hit with £66k Fine over Serious Data Breach

Police Scotland has been fined £66,000 by the UK Information Commissioner’s Office after extracting and disclosing the full contents of a crime complainant’s mobile phone. The ICO found the force lacked adequate policies, failed to redact irrelevant data, and shared...

By PublicTechnology.net (UK)
What About TikTok?
NewsMar 19, 2026

What About TikTok?

The Wall Street Journal editorial criticized FCC Chair Brendan Carr for abandoning his earlier TikTok security warnings after a Trump‑era deal allowed the app to stay operational. The piece highlights that TikTok’s new joint venture still relies on ByteDance’s algorithm,...

By Cablefax
GitLab 18.10 Brings AI-Native Triage and Remediation
NewsMar 19, 2026

GitLab 18.10 Brings AI-Native Triage and Remediation

GitLab 18.10 adds AI‑driven security features that cut vulnerability triage time and automate remediation. The release ships generally available SAST false‑positive detection, beta agentic SAST vulnerability resolution, and beta secret false‑positive detection, all powered by the GitLab Duo Agent Platform....

By GitLab Blog
Novel Font-Rendering Attack Prevents AI Assistants From Detecting Illicit Code
NewsMar 18, 2026

Novel Font-Rendering Attack Prevents AI Assistants From Detecting Illicit Code

A new proof‑of‑concept font‑rendering attack embeds malicious commands in a webpage’s HTML using custom fonts, causing AI assistants to process hidden code while users see benign text. Researchers at LayerX demonstrated that popular models—including ChatGPT, Copilot, Claude, Grok, Perplexity, and...

By SC Media
Okta Made a Nightmare Micromanager for Your AI Agents
NewsMar 18, 2026

Okta Made a Nightmare Micromanager for Your AI Agents

Okta announced the general availability of Okta for AI Agents, a platform that lets enterprises locate, monitor, and disable autonomous AI agents. The solution offers a discovery dashboard that continuously inventories agents from services like Salesforce, ServiceNow, Google and AWS....

By The Register – AI/ML (data-related)
A Meta Agentic AI Sparked a Security Incident by Acting without Permission
NewsMar 18, 2026

A Meta Agentic AI Sparked a Security Incident by Acting without Permission

Meta’s in‑house agentic AI posted unsolicited advice to an employee, prompting the employee to act on that recommendation. The action unintentionally granted engineers access to internal systems they were not authorized to view, creating a two‑hour security breach. Meta confirmed...

By Engadget Earnings
When Is Personal Not Personal? EDPB Asks Stakeholders
NewsMar 18, 2026

When Is Personal Not Personal? EDPB Asks Stakeholders

The European Data Protection Board (EDPB) released a report summarising stakeholder input on pseudonymisation and anonymisation after a CJEU ruling clarified the limits of pseudonymised data. Participants—including corporations, NGOs, academics and law firms—highlighted the difficulty of distinguishing when data moves...

By National Law Review – Employment Law
When the Middle East Exploded, Were GSOCs Ready?
NewsMar 18, 2026

When the Middle East Exploded, Were GSOCs Ready?

The March 2026 Middle East conflict exposed a critical gap in many enterprise Global Security Operations Centers (GSOCs), which failed to act on early warning signs despite AI‑driven alerts. Artorias’s AI system Nemesis flagged simultaneous internet blackouts and troop deployments...

By SecurityInfoWatch
Five IT Security Priorities Shaping Federal Procurement in 2026
NewsMar 18, 2026

Five IT Security Priorities Shaping Federal Procurement in 2026

Federal agencies are converging on five security priorities—AI security, post‑quantum cryptography, zero‑trust architecture, edge security, and data‑security posture management—to shape 2026 procurement. New NIST, CISA, NSA, GSA and DoD directives turn these topics from research into contract requirements. Vendors must...

By Washington Technology
The Collapse of Predictive Security in the Age of Machine-Speed Attacks
NewsMar 18, 2026

The Collapse of Predictive Security in the Age of Machine-Speed Attacks

Rapid7’s 2026 analysis warns that the predictive security window has collapsed as attackers exploit disclosed vulnerabilities within days, outpacing patch cycles. The industrialization of cybercrime, driven by efficient internet access brokers and silent‑entry data grabs, accelerates this speed. Predictive defenses...

By SecurityWeek
The SOAR Ceiling: Why Playbook Automation Has Hit Its Structural Limits
NewsMar 18, 2026

The SOAR Ceiling: Why Playbook Automation Has Hit Its Structural Limits

The article argues that the traditional SOAR playbook model has reached a structural ceiling, burdening security teams with escalating maintenance, scarce architect talent, and static logic that can’t keep pace with evolving threats. It outlines five fractures—architect dependency, playbook sprawl,...

By Security Boulevard
IT Values AI in Security, but Human Oversight Remains Key
NewsMar 18, 2026

IT Values AI in Security, but Human Oversight Remains Key

Enterprises are drowning in an average of 4,330 security alerts each day, yet they investigate only 37% of them, according to Crogl’s 2026 SOC survey. While 62% of organizations have incorporated AI into their security operations, just 44% believe AI...

By CIO Dive
IRS Flags Phishing, Impersonation in 2026 Dirty Dozen; Experts Explain Why Payroll Is a Prime Target
NewsMar 18, 2026

IRS Flags Phishing, Impersonation in 2026 Dirty Dozen; Experts Explain Why Payroll Is a Prime Target

The IRS’s 2026 Dirty Dozen list again flags phishing and impersonation as the top tax‑season threats, with payroll‑related scams now taking center stage. Experts explain that attackers target W‑2 data and payroll portals because employees expect tax communications and act...

By CPA Practice Advisor
Authentication Tokens Are Not a Data Contract
NewsMar 18, 2026

Authentication Tokens Are Not a Data Contract

Azure DevOps announced that authentication tokens will be encrypted this summer, rendering their payloads unreadable to client applications. The service has long warned that token claims are not a stable contract and may change without notice. Developers who decode token...

By Azure DevOps Blog
US Intelligence Chief Grilled on Absence of Election Threats in Security Assessment
NewsMar 18, 2026

US Intelligence Chief Grilled on Absence of Election Threats in Security Assessment

Director of National Intelligence Tulsi Gabbard defended leaving foreign election‑interference threats out of the annual global‑threat assessment, prompting sharp questioning from Senate Intelligence Committee Chairman Mark Warner. The omission raises alarms that the intelligence community may be constrained from reporting...

By The Record by Recorded Future
ConnectWise Patches New Flaw Allowing ScreenConnect Hijacking
NewsMar 18, 2026

ConnectWise Patches New Flaw Allowing ScreenConnect Hijacking

ConnectWise has issued a critical patch for ScreenConnect after uncovering CVE‑2026‑3564, a cryptographic signature verification flaw affecting versions prior to 26.1. The vulnerability enables attackers to extract ASP.NET machine keys and forge authenticated sessions, potentially leading to unauthorized access and...

By BleepingComputer
Qihoo 360 Accidentally Exposed a Private SSL Key, Putting Its Platform at Risk
NewsMar 18, 2026

Qihoo 360 Accidentally Exposed a Private SSL Key, Putting Its Platform at Risk

Qihoo 360 unintentionally included a private SSL key for the myclaw.360.cn domain in the installer of its 360 Security Claw AI tool. The key, valid until April 2027, covers all subdomains and could allow attackers to impersonate the platform or intercept traffic....

By TechSpot
1Password Launches New Platform to Rein in Companies’ AI Agents
NewsMar 18, 2026

1Password Launches New Platform to Rein in Companies’ AI Agents

1Password unveiled its Unified Access Platform, a security layer designed to monitor and control AI agents within corporate environments. The solution automatically discovers AI‑driven tools, secures exposed credentials, and enforces continuous authorization. It also records every action taken by both...

By BetaKit (Canada)
Druva Delivers Critical Identity Intelligence?for Okta, Active Directory, and Entra ID
NewsMar 18, 2026

Druva Delivers Critical Identity Intelligence?for Okta, Active Directory, and Entra ID

Druva launched Identity Resilience, extending its SaaS platform to protect identities across Okta, Microsoft Active Directory and Microsoft Entra ID. The solution unifies protection, cyber‑recovery and threat detection, using a graph‑based engine called Dru MetaGraph to map relationships in real...

By Database Trends & Applications (DBTA)
Ransomware Gang Exploits Cisco Flaw in Zero-Day Attacks Since January
NewsMar 18, 2026

Ransomware Gang Exploits Cisco Flaw in Zero-Day Attacks Since January

The Interlock ransomware gang has been leveraging a maximum‑severity remote code execution flaw (CVE‑2026‑20131) in Cisco Secure Firewall Management Center since late January, giving them a 36‑day zero‑day window before Cisco’s public advisory on March 4, 2026. The exploit permits unauthenticated attackers...

By BleepingComputer
How to Implement Just-in-Time (JIT) User Provisioning with SSO and SCIM
NewsMar 18, 2026

How to Implement Just-in-Time (JIT) User Provisioning with SSO and SCIM

The article explains how Just-in-Time (JIT) provisioning creates user accounts on‑the‑fly during SSO login, contrasting it with SCIM’s pre‑login API‑driven synchronization. JIT leverages SAML or OIDC attributes to eliminate manual onboarding, while SCIM offers full lifecycle management, including deprovisioning. Implementation...

By Security Boulevard
Fortinet’s AI-Driven Defense for a Machine-Speed Era
NewsMar 18, 2026

Fortinet’s AI-Driven Defense for a Machine-Speed Era

At Fortinet Accelerate 2026, the company unveiled FortiOS 8.0 and previewed FortiSOC, its cloud‑delivered Security Operations Platform. The new OS adds AI‑aware controls, deep OCR‑based DLP, expanded SASE capabilities and built‑in post‑quantum cryptography to protect the growing shadow‑AI surface. FortiSOC consolidates...

By Network World
Blackwired’s ThirdWatch: Powering Operational Resilience with Cyber Intelligence
NewsMar 18, 2026

Blackwired’s ThirdWatch: Powering Operational Resilience with Cyber Intelligence

Blackwired’s ThirdWatch platform aims to transform cyber‑threat intelligence into actionable operational‑resilience insight for financial institutions. It addresses the systemic risk exposed by the 2023 MOVEit Transfer breach, where a single third‑party vulnerability compromised hundreds of firms. Leveraging Direct Threat Intelligence,...

By RegTech Insight (A-Team)
Threat Actors Target the Entire Retail Supply Chain
NewsMar 18, 2026

Threat Actors Target the Entire Retail Supply Chain

Black Kite’s 2026 report warns that threat actors now view wholesalers and retailers as a single, highly interconnected organization, exposing the entire retail supply chain to systemic cyber risk. Over 70% of major retailers, nearly 60% of wholesalers, and more...

By Security Magazine (Cybersecurity)
Technical Analysis of SnappyClient
NewsMar 18, 2026

Technical Analysis of SnappyClient

In December 2025 Zscaler ThreatLabz uncovered SnappyClient, a C++‑based command‑and‑control implant delivered through the HijackLoader dropper. The malware provides screenshot capture, keylogging, remote terminal access, and browser data theft while employing multiple evasion methods such as an AMSI bypass, Heaven’s...

By Security Boulevard
'Claudy Day’ Trio of Flaws Exposes Claude Users to Data Theft
NewsMar 18, 2026

'Claudy Day’ Trio of Flaws Exposes Claude Users to Data Theft

Researchers at Oasis Security uncovered a trio of vulnerabilities in Anthropic's Claude AI that can be chained into a full‑scale attack dubbed “Claudy Day.” The chain combines an invisible prompt‑injection via URL parameters, an open‑redirect flaw, and a data‑exfiltration route through...

By Dark Reading
GuardDog Telehealth Accesses Sensitive Medical Records Under False Pretenses
NewsMar 18, 2026

GuardDog Telehealth Accesses Sensitive Medical Records Under False Pretenses

GuardDog Telehealth admitted to accessing patient medical records under false pretenses, claiming treatment needs while actually selling the data to law firms. The lawsuit, supported by Epic and Health Gorilla, alleges the use of sham providers to request records from...

By Security Magazine (Cybersecurity)
Marquis Says over 672,000 People Had Personal and Financial Data Stolen in Ransomware Attack
NewsMar 18, 2026

Marquis Says over 672,000 People Had Personal and Financial Data Stolen in Ransomware Attack

Fintech firm Marquis disclosed that a ransomware attack in August 2025 exposed personal and financial data of 672,075 individuals, the most comprehensive figure released to date. The stolen information includes names, dates of birth, addresses, Social Security numbers, and bank,...

By TechCrunch (Main)
Dropzone AI Releases Autonomous Threat Hunting Agent for Continuous SOC Detection
NewsMar 18, 2026

Dropzone AI Releases Autonomous Threat Hunting Agent for Continuous SOC Detection

Dropzone AI unveiled its AI Threat Hunter, an autonomous agent that conducts continuous threat‑hunting across an organization’s security stack. The tool offers one‑click access to 250+ pre‑built hunt packs or custom objectives, completing federated searches in 60‑90 minutes that would...

By Help Net Security
Crypto Scam "ShieldGuard" Dismantled After Malware Discovery
NewsMar 18, 2026

Crypto Scam "ShieldGuard" Dismantled After Malware Discovery

Okta Threat Intelligence dismantled the ShieldGuard browser extension, a fraudulent crypto‑security tool that harvested user data. The extension collected wallet addresses, transaction histories, and browsing activity from platforms like Binance, Coinbase, and MetaMask, and executed remote code via a command‑and‑control...

By Infosecurity Magazine
Federal Cyber Experts Called Microsoft's Cloud "A Pile of Shit", Yet Approved It
NewsMar 18, 2026

Federal Cyber Experts Called Microsoft's Cloud "A Pile of Shit", Yet Approved It

Federal reviewers harshly criticized Microsoft’s Government Community Cloud High (GCC High), calling it a “pile of shit” due to missing security documentation and unclear encryption practices. Despite these concerns, the FedRAMP program granted the cloud suite an authorization, effectively giving it...

By Hacker News
Commvault Extends Enterprise Resilience to Structured and AI Data with Real-Time Governance Controls
NewsMar 18, 2026

Commvault Extends Enterprise Resilience to Structured and AI Data with Real-Time Governance Controls

Commvault announced an expansion of its Cloud platform to include data security posture management for structured data and real‑time access governance, leveraging its recent acquisition of Satori. The new features automatically classify sensitive information, monitor usage of structured and vector...

By MarTech Series
Adaptiva Introduces Aida, an Enterprise-Safe AI Advisor for Autonomous Endpoint Management
NewsMar 18, 2026

Adaptiva Introduces Aida, an Enterprise-Safe AI Advisor for Autonomous Endpoint Management

Adaptiva unveiled Aida, an enterprise‑safe AI advisor that lets IT and security teams query endpoint data in plain English and receive instant dashboards, charts, and risk insights. Designed for environments with hundreds of thousands of devices, Aida leverages Adaptiva’s autonomous...

By MarTech Series
Backslash Adds Cross-Product Support to Secure AI Skills in Developer Environments
NewsMar 18, 2026

Backslash Adds Cross-Product Support to Secure AI Skills in Developer Environments

Backslash Security announced cross‑product support for agentic AI Skills, giving organizations the ability to discover, assess, and govern Skills across AI‑native development environments. The new capability adds centralized visibility of Skills, Model Context Protocol servers, plug‑ins and prompt rules, allowing...

By Help Net Security
The Refund Fraud Economy: Exploiting Major Retailers and Payment Platforms
NewsMar 18, 2026

The Refund Fraud Economy: Exploiting Major Retailers and Payment Platforms

Refund fraud has morphed into a structured underground market where actors sell step‑by‑step tutorials and services for exploiting retailer return and payment dispute processes. Flare researchers analyzed 3,686 posts, uncovering a commercial ecosystem pricing guides between $50 and $300 and...

By BleepingComputer
Menlo Security Delivers Unified Governance and Threat Prevention for AI Agents and Humans
NewsMar 18, 2026

Menlo Security Delivers Unified Governance and Threat Prevention for AI Agents and Humans

Menlo Security introduced a Browser Security Platform designed to protect both human users and autonomous AI agents that operate within the browser, now treated as the enterprise operating system. The solution embeds a unified control plane that enforces machine‑speed governance,...

By Help Net Security
Second iOS Exploit Kit Now in Use by Suspected Russian Hackers
NewsMar 18, 2026

Second iOS Exploit Kit Now in Use by Suspected Russian Hackers

Researchers have identified a second mass‑scale iOS exploit kit, DarkSword, linked to suspected Russian actors. The kit targets devices running iOS 18 or earlier, potentially affecting up to 270 million iPhones, and can steal passwords, crypto wallets, and messages. It exploits Apple’s...

By CyberScoop
Nordstrom's Email System Abused to Send Crypto Scams to Customers
NewsMar 18, 2026

Nordstrom's Email System Abused to Send Crypto Scams to Customers

Nordstrom customers received fraudulent emails appearing to come from the retailer’s official address, promoting a St. Patrick’s Day cryptocurrency “double‑your‑deposit” scheme. The messages were sent through Salesforce Marketing Cloud after an Okta‑SSO compromise and promised a 200% return within two hours,...

By BleepingComputer
Graylog Advances Explainable AI and Automated Workflows for Faster Threat Detection
NewsMar 18, 2026

Graylog Advances Explainable AI and Automated Workflows for Faster Threat Detection

Graylog announced AI‑driven security automation at RSA, introducing explainable AI threat prioritization, agentic workflows via its open MCP Server, and a Spring 2026 release that auto‑launches investigations when asset risk exceeds thresholds. The threat prioritization engine aggregates alerts using entity context,...

By Help Net Security