Tag

#NIST

15 stories taggedNIST.

Aerial view, 16:9 framing, photoreal editorial style, a dense suburban neighbourhood at dusk with hundreds of softly glowing house windows, each window subtly e
Threat Intelligence

Zombie Cards, Cut Cables, and a Botnet: The Week's Cybercrime Stories You May Have Missed

A DDoS attack on encrypted messaging app Threema, a new Linux botnet called Evooo1Bot, and T-Mobile physically severing a cable to stop an intrusion all made news this week. Here is what happened.

3 min read
Photoreal news-editorial style, 16:9 framing, edge-to-edge composition
AI Security

A 15-Minute Framework for Spotting What AI Systems Can Do Wrong

Security expert Adam Shostack built PHANTOM-B to help organisations find the risks hiding inside AI-powered software before those risks find them.

4 min read
Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Policy & Regulation

The US Government's Software Flaw Database Is Drowning. Can AI Be the Lifeguard?

The agency that tracks every known software weakness in the world is asking the public whether artificial intelligence can help it cope with a 72% surge in reported flaws.

4 min read
Photoreal news-editorial photograph, 16:9 framing, full-frame edge-to-edge composition
Cloud Security

Google Cloud Targets 2029 to Be Quantum-Safe, and Here Is What That Means for You

Google has published a detailed plan to protect its cloud from the coming generation of quantum computers. The work is already underway, but some of it will run well into the 2030s.

4 min read
AI analyzing network data
Policy & Regulation

Your security team's growing backlog is not their fault

When every vulnerability alert lands on the security team's desk, the result is not accountability. It is a queue that never shrinks. A clearer split of duties is the only fix.

4 min read
Photoreal editorial shot of an empty modern negotiation room with a single laptop open on a long dark table, a lock icon glowing faintly on the screen, harsh ov
Ransomware

Your ransomware playbook is probably putting the wrong person in charge at 4 a.m.

A growing body of evidence shows that the real damage in ransomware incidents often comes not from the attack itself, but from who gets to decide whether to pull the plug on a business-critical system.

5 min read
A focused image of a cybersecurity analyst examining digital vulnerability reports on multiple screens in a data center
Vulnerabilities

NIST's Cutback on Vulnerability Enrichment Sparks Concerns

Cybersecurity analysts warn of challenges in managing vulnerabilities after NIST reduces its support for detailed assessments.

3 min read
Cloud Security

Microsoft Pulls Post-Quantum Deadline Forward to 2029

Azure CTO Mark Russinovich says the 'risk horizon' has moved. Redmond now wants PQC-ready systems four years ahead of the industry's 2033 target.

2 min read
Policy & Regulation

Zero Trust in OT: A Pragmatic 90-Day Action Plan

Aligning zero trust architecture with operational technology environments through a strategic, actionable 90-day plan.

2 min read
Policy & Regulation

White House Orders Federal Agencies to Migrate Cryptography by 2030, Signals Contractor Reckoning

Two executive orders set hard federal deadlines for post-quantum cryptography adoption and launch a government-wide quantum R&D program — with ripple effects for every contractor touching federal networks.

3 min read
Policy & Regulation

Executive Order 14409 Locks In Federal PQC Deadlines: 2030 for Key Establishment, 2031 for Signatures

The June 22 order sets binding migration dates for high-value assets and high-impact systems, while leaving national security systems on a parallel track.

2 min read
Policy & Regulation

White House Sets Hard Clock on Post-Quantum Migration for Federal Systems

An executive order mandates that high-value federal assets shift to post-quantum cryptography by 2030–2031. For identity infrastructure, that deadline is closer than it looks.

2 min read
Policy & Regulation

Harvest Now, Decrypt Later: Most Organizations Still Aren't Ready for the Quantum Cryptography Shift

NIST published its first three post-quantum standards in 2024. A year later, only 5% of security teams have a defined strategy. The clock is running whether they know it or not.

3 min read
Policy & Regulation

Inspector General Pins NVD Backlog on NIST Mismanagement — But the Real Problem Runs Deeper

A Commerce Department IG report calls out strategic failures, duplicated work, and severity scores that matched only 12% of the time. Budget cuts and genAI-driven vuln volume tell the rest of the story.

3 min read
Identity & Access

AI Agent Identities Are Redrawing Enterprise IAM Budgets

New Omdia research finds that the rapid spread of AI agent deployments is forcing organisations to treat non-human identities as a distinct governance category, with budget implications that traditional identity and access management frameworks were not designed to absorb.

3 min read
© 2026 Threat Vectr