News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

Anthropic Opens AI Safety Tool to EU Security Agency
Cyber Law (India)

Anthropic Opens AI Safety Tool to EU Security Agency

Anthropic, an AI safety company, has granted the European Union's cybersecurity agency ENISA access to Mythos, an advanced AI tool designed for security research. This collaboration is part of Project Glasswing, established through partnership between the European Commission and Anthropic. The initiative aims to enhance Europe's AI security capabilities and strengthen bilateral cooperation on emerging cyber threats. ENISA will leverage the tool to conduct independent security assessments and contribute to the development of safer AI systems across the EU. Source: Securityweek.

via Dark ReadingRead source
Microsoft's Legal Action Against Zero-Day Researcher Draws Criticism
Cyber Law (India)

Microsoft's Legal Action Against Zero-Day Researcher Draws Criticism

Microsoft faced backlash after threatening legal action against a security researcher who publicly disclosed multiple zero-day vulnerabilities. The researcher, reportedly frustrated, released details of several unpatched exploits affecting Microsoft systems. The company's response indicating potential criminal charges sparked controversy within the cybersecurity community, raising questions about vulnerability disclosure practices and researcher protections. This incident highlights the tension between companies seeking to protect their systems and security professionals aiming to improve overall cybersecurity through responsible disclosure. Source: Original Article.

via Dark ReadingRead source
Microsoft Won't Take Legal Action Against Security Researchers
Cyber Law (India)

Microsoft Won't Take Legal Action Against Security Researchers

Microsoft has announced it will not pursue legal action against security researchers following public criticism over its handling of zero-day vulnerabilities. The decision comes after the tech giant faced backlash for its approach to researchers who discover and report previously unknown security flaws. By reversing its stance, Microsoft aims to encourage responsible disclosure of vulnerabilities, which helps improve overall cybersecurity. The move is seen as a win for the security research community, promoting collaboration between software companies and independent researchers to identify and patch security weaknesses before malicious actors can exploit them. Source: Reuters.

via HN: zero dayRead source
Cyber Crime Threats Growing Across India
Cyber Law (India)

Cyber Crime Threats Growing Across India

India faces an escalating cyber crime problem affecting individuals and organizations nationwide. Criminal activities span multiple domains including financial fraud, data theft, and identity compromise. The rise reflects both increasing internet penetration and criminals' evolving tactics. Legal frameworks exist to combat these threats, but awareness and preventive measures remain crucial for citizens. Understanding cyber crime types and protective steps is essential as digital transactions become more prevalent in Indian society. Source: Legal Service India.

via GoogleNews: cyber attack IndiaRead source
CERT-In Sets 12-Hour Patch Window for Critical AI Security Flaws
Cyber Law (India)

CERT-In Sets 12-Hour Patch Window for Critical AI Security Flaws

India's CERT-In has released updated cybersecurity guidelines specifically addressing artificial intelligence systems. The new directive mandates that organizations patch critical vulnerabilities within 12 hours of discovery. These guidelines aim to strengthen the security posture of AI-based systems deployed across Indian organizations. The move reflects growing concerns about AI vulnerabilities and the rapid exploitation timeline attackers employ. Organizations handling sensitive data or critical infrastructure must comply with these stricter timelines. CERT-In emphasizes that AI systems require enhanced monitoring and faster incident response protocols. The guidelines provide a framework for vulnerability assessment, reporting, and remediation specific to AI environments. Source: The Indian Express.

via GoogleNews: cyber attack IndiaRead source
SentinelOne to lay off 8% workforce
Cyber Law (India)

SentinelOne to lay off 8% workforce

Cybersecurity firm SentinelOne announced job cuts affecting 8% of its workforce. The company, known for providing endpoint protection and threat intelligence solutions, is implementing this restructuring as part of operational optimization efforts. Such industry adjustments reflect broader trends in the global cybersecurity sector. While the specific reasons weren't detailed, tech companies often cite market conditions and efficiency improvements. The move impacts employees across various departments. SentinelOne continues to operate its security services despite the workforce reduction, maintaining its platform for enterprise clients seeking protection against cyber threats.

via GoogleNews: ransomware IndiaRead source
Weekly Security News Roundup
Cyber Law (India)

Weekly Security News Roundup

This weekly digest covers various cybersecurity stories and developments in the news. The post serves as an open forum for discussing security incidents and cyber threats that may not have received dedicated coverage. Readers are encouraged to share relevant cybersecurity news, data breach updates, and threat intelligence in the comments section. The platform maintains a moderation policy to ensure discussions remain focused on legitimate security awareness and protection of users. Regular updates help Indian internet users stay informed about emerging threats and best practices for online safety.

via RSS: Schneier on SecurityRead source
Cybersecurity's Human Challenge: Fostering Respectful Communities
Cyber Law (India)

Cybersecurity's Human Challenge: Fostering Respectful Communities

The cybersecurity industry faces a persistent challenge in promoting respectful interactions among professionals and communities. Despite technical expertise, maintaining civility in online spaces remains difficult. Industry experts emphasize that collaborative security practices require mutual respect and constructive communication. Building a culture of professionalism helps improve threat intelligence sharing and collective defense strategies. Indian cybersecurity professionals are encouraged to foster positive workplace environments while addressing technical vulnerabilities. Creating supportive communities strengthens overall security posture and enables better incident response coordination across organizations. Source: Cybersecurity Publication.

via HN: cybersecurityRead source
Self-Censorship Rising as Threats Chill Free Speech
Cyber Law (India)

Self-Censorship Rising as Threats Chill Free Speech

A concerning trend of self-censorship is emerging across American institutions as people fear punitive measures for speaking out. Students are avoiding campus activism, professors are revising lectures, researchers are removing sensitive terms from grant applications, and media outlets are modifying coverage—all driven by fear of legal action and government retaliation. Experts describe this as a 'chilling effect,' where threats cause people to restrict their activities for self-protection. The phenomenon extends beyond academia to law firms, publishers, and regulatory agencies, suggesting widespread suppression of free expression and discourse across multiple sectors of society. Source: The Guardian.

via RSS: Schneier on SecurityRead source
India to spend $3.4 billion on cybersecurity by 2026
Cyber Law (India)

India to spend $3.4 billion on cybersecurity by 2026

India's information security spending is projected to reach $3.4 billion by 2026, reflecting growing concerns about emerging cyber threats, particularly those powered by artificial intelligence. This significant investment surge indicates recognition of the evolving threat landscape facing Indian organizations and critical infrastructure. The increased expenditure targets protection against AI-enabled attacks, data breaches, and sophisticated cyber threats. Government and private sector initiatives are driving this growth as organizations prioritize cybersecurity infrastructure, employee training, and advanced threat detection systems. The investment demonstrates India's commitment to strengthening its digital defense mechanisms in an increasingly interconnected digital economy. Source: DD News.

via GoogleNews: cyber attack IndiaRead source
Cyberabad Police Arrest 10 in Multi-State Cybercrime Crackdown
Cyber Law (India)

Cyberabad Police Arrest 10 in Multi-State Cybercrime Crackdown

Telangana's Cyberabad Cybercrime Police concluded a week-long operation targeting online criminals across multiple states. The coordinated effort resulted in the detection of six distinct criminal cases and the arrest of ten accused individuals. The crackdown reflects ongoing efforts by law enforcement to combat organized cybercriminal networks operating across state boundaries. Authorities coordinated with law enforcement agencies in other states to apprehend suspects and gather evidence. The operation highlights the growing coordination between state police forces to address interstate cybercrime. Further details about the specific nature of offences and accused profiles are expected as the investigation progresses. Source: The Hindu.

via GoogleNews: job scam IndiaRead source
AI-powered cyber threats escalating globally, warns UK spy chief
Cyber Law (India)

AI-powered cyber threats escalating globally, warns UK spy chief

Britain's chief cyber intelligence officer, Anne Keast-Butler, has raised alarm over artificial intelligence being weaponized for cyber attacks threatening national security worldwide. She emphasizes that nations exist in an undefined space between peace and war due to escalating digital threats. Russia is actively targeting critical infrastructure and democratic institutions, necessitating urgent coordination among allied nations to strengthen cybersecurity defenses and counter evolving AI-driven threats effectively. Source: Reuters.

via Economic Times TechRead source