Policy & Regulation
-
Western government leaders call for a focus on infrastructure resilience, not AI hype
U.S. and allied officials said companies should start preparing now for a cyberattack that changes how they provide essential services.
By Eric Geller • Aug. 5, 2026 -
CISA is prioritizing work with critical infrastructure as it begins to recover from cuts
The agency has been focused on helping secure systems at drinking and wastewater utilities in recent weeks.
By David Jones • Aug. 5, 2026 -
Explore the Trendline➔
Getty Images
-
White House walks tightrope on securing AI without stifling tech innovation
National Cyber Director Sean Cairncross said the administration wants to work collaboratively with the private sector.
By David Jones • Aug. 5, 2026 -
OT security coalition urges Congress, CISA to enact reforms amid water sector hacks
Iran-nexus hackers are suspected in a broad campaign targeting drinking and wastewater sites in at least seven U.S. states.
By David Jones • Aug. 3, 2026 -
US authorities see ‘significant escalation’ in attacks on water system devices
Hackers have locked operators out of their own OT networks, modified passwords and changed IP addresses.
By David Jones • July 31, 2026 -
Authorities investigating a coordinated cyberattack against Minnesota water systems
The two-day attack comes days after federal officials warned of state-linked threat groups targeting a wider set of industrial devices.
By David Jones • Updated July 29, 2026 -
Tech industry giants say US must embrace openness, transparency in AI
Open-source and open-weight AI models are essential cybersecurity tools, two groups of major AI and security firms said.
By Eric Geller • July 27, 2026 -
CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
The agencies said threat groups have disrupted critical infrastructure sites by exploiting vulnerable PLC devices.
By David Jones • July 23, 2026 -
Retrieved from GAO.
GAO report details scope of cybersecurity regulation overlap
A morass of rules is forcing companies to report the same information multiple times — and sometimes, those rules conflict.
By Eric Geller • July 23, 2026 -
Gaps in network security, oversight strategy hamper US’s aviation cybersecurity regulators
A new government audit identified several weaknesses at the two agencies that protect air travel from hackers.
By Eric Geller • July 16, 2026 -
Sharp rise in AI adoption for cyber defense exposes major governance gap
A report by the SANS Institute indicates a split between senior security leaders and frontline practitioners.
By David Jones • July 14, 2026 -
Alleged member of Scattered Spider extradited to US
A man with dual U.S.-Estonian citizenship was charged in connection to the hack of a luxury jewelry retailer.
By David Jones • July 6, 2026 -
Anthropic reactivates Fable, Mythos after securing government approval
The company’s powerful frontier models are back, but vetting issues remain unresolved.
By Eric Geller • July 1, 2026 -
Retrieved from iStock.
Insurance body confirms hackers posted Oracle PeopleSoft breach data
NAIC warned that some ratings agencies have suspended data feeds as a precaution.
By David Jones • Updated June 29, 2026 -
OpenAI voluntarily limits new AI models at government’s request
The company said Friday it was working with the government on a more formal process for reviewing model releases.
By Eric Geller • June 29, 2026 -
FCC requires emergency-alert distributors to secure their systems
More than a decade after a high-profile hacking campaign, the commission is moving from recommending basic security protocols to requiring them.
By Eric Geller • June 26, 2026 -
As cyber risk evolves, the insurance industry tightens guardrails
C-suite executives are concerned about resilience, but claims are increasingly tied to strict underwriting standards.
By David Jones • June 25, 2026 -
Microsoft, Europol lead global takedown of infostealer malware
Cybercriminals used Amadey and StealC to infect thousands of computers worldwide, leading to ransomware and other digital crimes.
By David Jones • June 24, 2026 -
Trump sets new deadlines for agencies and contractors to adopt post-quantum cryptography
The president also launched efforts to research the scientific benefits of quantum computers — and protect that research from adversaries.
By Eric Geller • June 23, 2026 -
Major critical infrastructure disruptions are inevitable, acting CISA chief says
In recent years, the U.S. government has reoriented its cybersecurity strategy away from prevention and toward resilience.
By Eric Geller • June 17, 2026 -
Cybersecurity experts blast US government for restricting Anthropic’s AI models
Chief information security officers and prominent researchers called a recent export-control ban “dangerous.”
By Eric Geller • June 15, 2026 -
It’s Mythos’ world now. How do we live in it?
Anthropic's powerful model raises difficult questions about how government and industry should work together to safeguard systems in the AI era.
By Eric Geller • June 12, 2026 -
CISA gives agencies new vulnerability remediation deadlines that take risk levels into account
The cybersecurity agency says it wants to help network defenders prioritize the fixes that matter the most.
By Eric Geller • Updated June 10, 2026 -
Sprawling new House AI bill includes frontier model oversight, open-source security grants
The legislation has already drawn widespread criticism for its proposal to preempt state AI laws.
By Eric Geller • June 5, 2026 -
CISA chief says Trump AI executive order implementation will start soon
The agency, depleted after several rounds of cuts imposed by the White House, insists it can handle its new AI security responsibilities.
By Eric Geller • June 4, 2026