Tag

#CIRCIA

16 stories taggedCIRCIA.

Illustration: The Australian Parliament House photographed with technology and privacy-forward
Policy & Regulation

Australia drafts new privacy laws to rein in AI data use, smart glasses and identity theft

Proposed legislation would give Australians the right to delete their personal data from social media and search platforms, and a new tool to lock their ID documents against misuse.

4 min read
A server room with equipment racks, multiple screens displaying vulnerability scans and patch status dashboards, calendar or timeline showing urgent deadlines a
Vulnerabilities

Hackers Exploit Patched VMware vCenter Flaw as Regulators Watch Disclosure Clocks

A directory-traversal bug rated 9.8 out of 10 is under active attack, and SEC and EU disclosure duties now sit squarely on affected firms.

4 min read
Illustration: A war room with military-
Policy & Regulation

Cyber Operations Are Now a Core Part of Modern War, Says CrowdStrike Co-Founder

Dmitri Alperovitch argues that hacking campaigns no longer just support military conflicts, they signal them, shape them, and sometimes replace them.

3 min read
Close-up of a computer screen displaying encrypted data files and deletion confirmation dialogs, with a digital padlock icon fading away, representing the destr
Ransomware

River Bank Paid Hackers to Delete Stolen Data After June Ransomware Attack

Alabama's River Bank & Trust was hit by ransomware in June. The bank appears to have paid the criminals to destroy what they took, but still can't confirm whether customer data was exposed.

3 min read
A data center facility with infrastructure management systems visible on control panels, showing highlighted devices that are dangerously close to network perim
Vulnerabilities

One in Five Data Centre Systems Is One Step Away From Hackers, Research Finds

A study of 174,000 data centre infrastructure devices found that roughly 32,000 sit just one network hop from the open internet, putting cooling, power and fire systems within easier reach of attackers than most operators realise.

4 min read
A water treatment plant's control room with darkened screens and disabled automation systems, operators working manually with printed readouts, one facility's g
Threat Intelligence

More Than 30 Minnesota Water Utilities Hit in Coordinated Cyberattack

Attackers knocked out automated controls at water and wastewater plants across the state on July 26 and 27. Drinking water stayed safe, but one city briefly shut its plant down entirely.

3 min read
An industrial control room showing programmable logic controller interfaces, gauges, and critical infrastructure monitoring systems, with digital threat indicat
Policy & Regulation

US Agencies Warn That Iranian Hackers Are Targeting Industrial Control Systems Made by Siemens, Schneider Electric, and Rockwell Automation

An updated federal advisory names the specific techniques used to break into programmable logic controllers, the computers that run factories, water plants, and power grids.

3 min read
A database or spreadsheet interface displayed on multiple monitors in a research setting, showing columns of breach data, dates, and affected companies, with de
Policy & Regulation

A New Index Is Tracking Every Major Corporate Data Breach, and Deliberately Leaving the Dollar Totals Out

Richard Bird, a veteran cybersecurity executive, has built a public tool that logs every significant breach companies are required to report. Its unusual choice: no running loss tally.

2 min read
Illustration: a small rural town at dusk, with a single brightly lit modern hospital building contrasting against rows
AI Security

AI Is Making Rich Organisations Even Safer. What Happens to Everyone Else?

A growing body of security leaders says artificial intelligence is deepening a divide that has existed for years between well-resourced organisations and those just trying to keep the lights on.

4 min read
Illustration for the story: Behavioral AI Pitched as Answer to Identity-Abuse Phishing, But Regulators Still Set the Bar
Policy & Regulation

Behavioral AI Pitched as Answer to Identity-Abuse Phishing, But Regulators Still Set the Bar

A vendor webinar makes the case for behavioral detection against BEC and account takeover. The compliance questions sit underneath.

3 min read
Illustration: a dimly lit server rack in an enterprise data center, amber warning LEDs reflecting on brushed metal panels
Vulnerabilities

Adobe Ships Emergency Fixes for Seven CVSS 10.0 Bugs in ColdFusion, Campaign Classic

Out-of-band advisories cover arbitrary code execution and privilege escalation paths. Self-managed deployments carry the full remediation burden; cloud tenants do not.

3 min read
Illustration: a sleek modern server rack glowing with blue indicator lights
Policy & Regulation

When Legacy Infrastructure Becomes the Soft Underbelly of Your AI Agent Stack

Governance frameworks like NIST AI RMF and the EU AI Act assume the pipes under the model are secure. They often aren't.

3 min read
Illustration: an empty modern security operations center at night
Policy & Regulation

MDR's AI Reckoning: When the Old Service Model Stops Keeping Up

Managed detection and response solved a staffing problem. It is not, by itself, an answer to adversaries who automate reconnaissance and intrusion at machine speed.

3 min read
Illustration: a server room floor bathed in cool blue and amber light
AI Security

Knowingly Shipping Vulnerable Code Has Become Standard Practice, Survey Finds

A Checkmarx survey of 2,350 security leaders finds nearly half of production code is AI-generated, and enterprises are deploying it despite knowing it carries unresolved flaws.

3 min read
Illustration: a dimly lit corporate legal office at dusk
Policy & Regulation

Microsoft Reasserts Coordinated Disclosure Norms After Researcher Drops Zero-Days

Redmond is invoking CVD principles after a researcher publicly posted unpatched flaws, raising fresh questions about the boundary between disclosure ethics and platform enforcement.

3 min read
© 2026 Threat Vectr