PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

883 results · page 1 of 37

Enforcement
The Record · · International

Labcorp to overhaul data security practices, pay $2.3 million fine for cybersecurity failings

Security changes include creating an incident response plan for vendor security failings, limiting how much data Labcorp shares with vendors and building an expansive risk management team charged with tracking vendors’ compliance with data security practices.

Who should care: Lawyers · Privacy officers · Compliance · Cybersecurity

#enforcement#regulation#surveillance Read original →
News
WIRED — AI · · International

Appeals Court Lets the Pentagon Designate Anthropic a Supply Chain Risk

A divided federal appeals court ruled that the Pentagon can designate Anthropic a supply chain risk, rejecting the AI company's claims that the designation violated its rights. The decision backed the Trump administration's position in a case that pits national security authority against a major AI lab.

Who should care: General readers · AI governance · Policy

Breach
Microsoft Threat Intelligence · · International

Storm-3168: Agentic-driven cloud attacks using compromised service principals

Microsoft details JADEPUFFER-linked Azure reconnaissance, resource deletion, and credential access using compromised service principals, identifying the activity as associated with Storm-3168 and providing guidance for defenders. The post Storm-3168: Agentic-driven cloud attacks using compromised service principals appeared first on Microsoft Security Blog.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →
AI Governance
OECD AI Policy Observatory · · International

Governing with agentic AI: when machines act on government’s behalf

The OECD is examining how governments can oversee AI systems that act autonomously on their behalf, focusing on maintaining safety, security, and trustworthiness when machines make or execute decisions in a public-sector context.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
News
The Guardian — Tech · · International

It’s going to take more than an email to a public inbox to protect Australians from potential AI doom

OpenAI’s hack of Medicare suggests safeguarding civilisation is the task facing leaders in this extraordinary new era Get our breaking news email, free app or daily news podcast More than 130 world leaders descended on the United Nations headquarters in New York this week, joining the pageantry and speechmaking of the annual general assembly. Many of the visiting presidents and prime ministers delivered their set-piece addresses to a sparsely populated hall, but contributions from two unlikely visitors in the nearby security council chamber stood out. Continue reading...

Who should care: General readers · AI governance · Policy

News
BleepingComputer · · International

With the Rise of AI Agents, SOC 2 Should Adapt or Risk Irrelevance

AI agents can operate through human credentials and take actions that existing SOC 2 controls may not distinguish from human activity. Token Security explains why SOC 2 needs to adapt to address the security gaps created by agent identities. [...]

Who should care: General readers · AI governance · Policy

News
Just Security · · US Federal

Taiwan Should Set the Standard for Industrial AI Security

Taipei should extend its new semiconductor equipment certification system to test industrial AI agents, constrain their permissions, and monitor them after deployment. The post Taiwan Should Set the Standard for Industrial AI Security appeared first on Just Security.

Who should care: General readers · AI governance · Policy

News
DataBreaches.net · · International

DIVD Dutch Institute for Vulnerability Disclosure investigating agentic AI-powered attack

A Dutch non-profit that has helped so many over the years has discovered it become the victim of what appears to be an agentic AI-powered attack. DIVD, the Dutch Institute for Vulnerability Disclosure, announced the attack on LinkedIn. Consistent with their ethics and history, they didn’t try to minimize the problem: Security people always say... Source

Who should care: General readers · AI governance · Policy

#ai#security Read original →
AI Governance
The Guardian — Tech · · International

‘We can’t ignore AI or prevent it,’ Anthony Albanese tells UN general assembly – video

Australian Prime Minister Anthony Albanese addressed the UN General Assembly, citing an AI-related breach of Medicare as evidence that stronger international AI regulation is needed. He announced Australia is joining a multilateral push to actively shape AI development rather than simply absorb its consequences.

Who should care: AI governance · Lawyers · Administrators · Compliance · General readers · Policy

#ai-governance#regulation#ai Read original →
Breach
The Record · · International

Lawmakers introduce bill for voluntary telecom cyber rules after Salt Typhoon hacks

U.S. Sens. Mark Warner (D-VA) and Ted Cruz (R-TX) introduced the Telecommunications Cybersecurity and Resilience Act on Thursday, arguing that the new effort was necessary in light of the Salt Typhoon attacks which saw Chinese hackers breach nearly all of the major telecommunications giants in the U.S.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →
News
WIRED — AI · · International

I Think I Found an AI Agent Worth the Risk

Instinct saved me $550, booked my restaurant reservations, and warned me about a phishing scam. It also wasted $64 and might be a security nightmare.

Who should care: General readers · AI governance · Policy

#ai#security Read original →
News
CyberScoop · · US Federal

New bill would create federal investigative body for AI-driven hacks

A new Democratic bill in Congress would establish a federal Cybersecurity and AI Board of Investigations to provide independent government oversight of cyberattacks carried out by AI agents, following recent hacks by models run at companies like Anthropic, OpenAI, Meta and others. The bill, introduced by Sen. Ed Markey, D-Mass., would attempt to establish a […] The post New bill would create federal investigative body for AI-driven hacks appeared first on CyberScoop.

Who should care: General readers · AI governance · Policy

Breach
DataBreaches.net · · International

Wyoming courts investigate extent of personal data exposed in cybersecurity breach

The Wyoming Judicial Branch is investigating a cybersecurity breach at West Publishing Corporation, a third-party case management vendor formerly used by the state's courts. Officials say the incident may have exposed up to a decade of court system data, though the full scope is still being determined.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#privacy Read original →
Breach
DataBreaches.net · · International

Error on North Carolina jury duty website exposed people’s social security numbers, medical records, more

Kudos to WBTV for following up on an astute observer’s vulnerability report. David Hodges reports: North Carolina residents summoned for jury duty received notice through a letter in the mail but to request an exemption from jury duty in North Carolina, a person can go online and fill out a jury excuse form. Zach Duda... Source

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
Breach
IAPP · · International

Global AI cybersecurity concerns face new twist following Australia Medicare portal breach

Australia's Medicare portal has suffered a breach, adding a concrete public-sector example to ongoing global debates about AI and cybersecurity risk. The incident is drawing attention from privacy and governance communities tracking vulnerabilities in government digital infrastructure.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
News
Microsoft Threat Intelligence · · International

​​​​​​​​What’s new in Microsoft Security: September 2026​​

This month's updates help you discover and control local AI agents, extend Zero Trust to agent traffic, and strengthen SOC foundations. The post ​​​​​​​​What’s new in Microsoft Security: September 2026​​ appeared first on Microsoft Security Blog.

Who should care: General readers · AI governance · Policy

Breach
Microsoft Threat Intelligence · · International

Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across deployments

Storm-2570 is a ransomware affiliate that uses consistent post-compromise tools and techniques across deployments involving Qilin, DragonForce, Anubis, and BERT ransomware, and provides guidance to help defenders detect and disrupt this activity before ransomware deployment. The post Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across deployments appeared first on Microsoft Security Blog.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation#surveillance#security Read original →
Breach
IAPP · · International

Notes from the Asia-Pacific region: Medicare breach shows convergence of AI governance, cybersecurity and privacy

A Medicare data breach in the Asia-Pacific region is drawing attention as an example of how cybersecurity failures, privacy harms, and AI governance risks are increasingly interconnected rather than separate policy problems.

Who should care: Cybersecurity · Privacy officers · Administrators · AI governance · Lawyers · General readers · Policy

#breach#ai-governance#ai#privacy Read original →
AI Governance
J Just Security · · International

The Supreme Court’s Open-Weight AI Regulation Gauntlet

A piece published by Just Security examines the legal and regulatory challenges the Supreme Court poses for efforts to govern open-weight AI models, where model weights are publicly released and cannot easily be recalled or restricted.

Who should care: AI governance · Lawyers · Administrators · Compliance · General readers · Policy

#ai-governance#regulation#ai Read original →
Page 1 of 37 Next →