News

CyberScoop
cyberscoop.com > anthropic-claude-code-security-automated-security-review

Anthropic rolls out embedded security scanning for Claude 

2+ hour, 14+ min ago  (476+ words) Anthropic is rolling out a new security feature for Claude Code that can scan a user's software codebases for vulnerabilities and suggest patching solutions. The company announced Friday that Claude Code Security will initially be available to a limited number…...

CyberScoop
cyberscoop.com > post-quantum-state-department-transition-plans-outlive-leadership-cycles

State Dept. official says post-quantum transition plans will outlive current leadership

22+ hour, 12+ min ago  (425+ words) A cybersecurity official at the State Department called for the public and private sector to more tightly coordinate plans to transition their systems, devices and data to quantum-resistant encryption algorithms. Gharun Lacy, Deputy Assistant Secretary for the Cyber and Technology…...

CyberScoop
cyberscoop.com > hhs-burrows-into-identifying-risks-to-health-sector-from-third-party-vendors

HHS burrows into identifying risks to health sector from third-party vendors

1+ day, 39+ min ago  (198+ words) A Department of Health and Human Services official said Thursday that HHS is devoting a lot of attention to the security of third-party service providers after the 2024 Change Healthcare cyberattack. That attack, which is widely regarded as the biggest ever…...

CyberScoop
cyberscoop.com > doj-ukrainian-north-korea-remote-worker-scheme-facilitator-sentenced

Ukrainian sentenced to 5 years in prison for facilitating North Korean remote worker scheme

1+ day, 55+ min ago  (467+ words) A Ukrainian national who ran multiple operations to aid the North Korean government's expansive scheme to" hire remote IT workers at U.S. companies was sentenced to five years in prison, the Justice Department said Thursday. Oleksandr Didenko stole U.S. citizens' identities and…...

CyberScoop
cyberscoop.com > radio > how-legacy-code-support-and-backwards-compatibility-create-cryptographic-hazards

Should you still trust your password manager?

1+ day, 2+ hour ago  (158+ words) Greg explores the gap between password manager marketing claims of "Zero Knowledge Encryption" and the reality uncovered by Swiss researchers who found 25 attacks against Bitwarden, LastPass, and Dashlane. In this episode, Greg explores the gap between password manager marketing claims…...

CyberScoop
cyberscoop.com > fbi-salt-typhoon-ongoing-threat-cybertalks-2026

 FBI: Threats from Salt Typhoon are ‘still very much ongoing’

1+ day, 5+ hour ago  (322+ words) A top FBI cyber official said Salt Typhoon, the Chinese cyber espionage group behind the widespread compromise of U.S. telecommunications infrastructure in 2024, continues to pose a broad threat to both America's private and public sectors. Michael Machtinger, deputy assistant director for…...

CyberScoop
cyberscoop.com > palo-alto-networks-acquires-koi-agentic-ai-security

Palo Alto Networks’ Koi acquisition is all about keeping AI agents in check

3+ day, 6+ hour ago  (195+ words) Palo Alto Networks announced Tuesday its plans to buy security startup Koi, a deal aimed at addressing the security risks emerging as organizations rapidly adopt agentic AI. Terms were not disclosed, but Israeli business outlet Globes reported that Palo Alto…...

CyberScoop
cyberscoop.com > attackers-abuse-identity-unit42-palo-alto-networks-incident-response-report

Unit 42: Nearly two-thirds of breaches now start with identity abuse

3+ day, 7+ hour ago  (686+ words) Identity is still the primary entry point for cyberattacks, according to Palo Alto Networks" threat intelligence firm Unit 42. In its annual incident response report released Tuesday, Unit 42 found that identity-based techniques accounted for nearly two-thirds of all initial network intrusions…...

CyberScoop
cyberscoop.com > data-center-security-ai-infrastructure-investment-op-ed

Why ‘secure-by-design’ systems are non-negotiable in the AI era

3+ day, 12+ hour ago  (657+ words) Moody's recently reported that global investment in data centers will surpass $3 trillion over the next five years, driven by AI capacity growth and hyperscaler demand. As big tech companies, banks, and institutional investors pour capital into these projects, data center…...

CyberScoop
cyberscoop.com > apple-zero-day-vulnerability-cve-2026-20700

Apple discloses first actively exploited zero-day of 2026

1+ week, 19+ hour ago  (386+ words) Apple disclosed a zero-day vulnerability Wednesday that the vendor warned was previously "exploited in an extremely sophisticated attack against specific targeted individuals," the company said in a security update. The memory-corruption vulnerability " CVE-2026-20700 " affects iPhones and iPads and was exploited…...