Sweden discloses failed 2025 cyberattack on thermal plant
During a press conference (link requires translation) yesterday, Sweden publicly attributed a failed cyberattack on a thermal heating plant in western Sweden in 2025 to a pro-Russian group with links to Russian intelligence and security…
Posts by The IT Nerd
As AI-Powered Cybercrime Surges Past $10 Trillion, California Cyber Expert Unveils the Only Authentication System Built to Withstand It
The global cybersecurity crisis has entered a new and far more dangerous phase. Artificial intelligence has handed attackers the tools to automate credential…
Class of ‘26 is hard launching into the workforce and LinkedIn has the cheat sheet
The Class of 2026 is graduating into one of the toughest entry-level job markets in years, where 'entry-level' roles increasingly require experience, AI is reshaping expectations, and traditional career paths feel…
AgingFly Malware used in attacks on Ukraine government and hospitals
A new malware family named 'AgingFly' has been identified (the link requires you to translate into English) in attacks against Ukrainian governments and hospitals that steal authentication data from Chromium-based browsers and…
EPA proposes $19M cybersecurity funding increase to protect U.S. water systems
The U.S. Environmental Protection Agency (EPA) has proposed $19.1 million in funding for its Information Security Program in fiscal year 2027, representing a $9.6 million increase over 2026 levels, to strengthen…
McGraw Hill Pwned with 13.5 million accounts affected
The ShinyHunters extortion group has leaked data from 13.5 million edtech giant McGraw Hill user accounts, stolen after breaching the company's Salesforce environment earlier this month. You can get more details here: Data breach at edtech…
Fortra Launches Defense Tech Unit
Fortra today announced the launch of its new Defense and Intelligence Unit (DIU), a dedicated business focused on delivering advanced, integrated cyber capabilities to critical infrastructure, defense, intelligence, and national security organizations around the…
ESET Finds that SMBs Currently Leverage Cyber Insurance to Arm Against Attacks, Report Incidents and Improve Resilience
ESET today released its 2026 SMB Cyber Readiness Index – North America edition. This new report surveyed hundreds of small and medium-sized businesses (SMBs) from across the…
Hacker Claims To Have Pwned Lacoste, Ralph Lauren, Canada Goose, and Carter’s
A threat actor surfaced on a popular hacker forum, claiming to possess data belonging to Lacoste, Ralph Lauren, Canada Goose, and Carter's. The threat actor shared a small batch of sample images, roughly three to four…
Exclaimer launches Workday integration
Exclaimer today announced a new integration with Workday, enabling organizations to use employee data from their HR system to automatically populate email signatures and video meeting themes. Workday counts more than 75 million users under contract globally,…
Users Not Warned of Credential Theft in Claude Code, Gemini CLI, and GitHub Copilot Agents
Three of the most widely deployed AI agents on GitHub Actions can be hijacked into leaking the host repository’s API keys and access tokens — using GitHub itself as the command-and-control channel.…
Certinia Launches Veda
Certinia, today announced the launch of Veda: an enterprise-grade intelligent operations engine built to transform services organizations from reactive, manual workflows to autonomous professional services. As Certinia’s suite of AI specialist agents and intelligent actions,…
NotebookLM alternative kills source caps
Recall, an AI encyclopedia that knows users better than the questions they ask, has launched version 2.0, an upgraded version of the original knowledge base. It’s a major improvement on NotebookLM: Recall automatically captures and connects everything the…
Cookeville Regional Medical Center warns 338,000 people of data breach
Comparitech is reporting that Cookeville Regional Medical Center in TN yesterday confirmed it notified over 337K people of a July 2025 data breach that compromised names, SSNs, financial account numbers, medical treatment info,…
Sparq Designs Named Preferred Marketing Partner for Content Recovery Specialists
Sparq Designs (Sparq) has been named the Official Preferred Marketing Partner of Content Recovery Specialists (CRS). The collaboration was announced at the CRS 2026 Annual Conference and establishes Sparq as the…
Auctor Raises $20M Led by Sequoia Capital to Build the AI System of Action for the Enterprise Software Implementation Market
Hundreds of billions are spent on software implementation each year*, yet 50 percent of projects fail to meet deadlines, and one out of every six exceeds budgets by over 200…
Astrolight contributes laser communication terminal technology to ESA’s HydRON Element 3 mission led by prime contractor Kepler Communications
Kepler Communications is leading a group of industry partners, including Astrolight, a Lithuanian space and defense technology company developing laser…
Bitdefender Launches Powerful Email Security Solution for Businesses and MSPs
Bitdefender today announced Bitdefender GravityZone Extended Email Security, unifying email and endpoint protection within a single platform. Built for organizations, managed service providers (MSPs) and their customers,…
CSA issues “Building a Mythos-ready Security Program”
“The ‘AI Vulnerability Storm’: Building a Mythos-ready Security Program” was just issued by the Cloud Security Alliance (CSA) CISO Community, co-authored with SANS, prompted, the OWASP Gen AI Security Project and several CISOs. (See direct…
April Patch Tuesday Commentary From Fortra
By Tyler Reguly, Associate Director, Security R&D, Fortra With 165 Microsoft CVEs and another 82 non-Microsoft CVEs combining for a total of 247 CVEs, I can't help but wonder who angered Microsoft this month. Here's hoping that admins everywhere are well…
Guardsquare to Address the Growing Piracy Risk Targeting Streaming Apps at NAB Show Las Vegas
Guardsquare will present at NAB Show Las Vegas on Monday, April 20, in the Tech Chat Theater at the Las Vegas Convention Center. In a session titled "When Your Streaming App Is the Attack Surface:…
Today is Identity Management Day
Today is Identity Management Day and this year's theme is "Finding Identity: The Search for You, Me, and the Machines," reflecting the reality that machine and agentic identities now vastly outnumber human ones. Identity Management Day used to be a useful prompt to…
Orbital sets date for first test mission to put AI data centers in low Earth orbit
The demand for AI compute is surging, but the bottleneck is no longer chips, it's the power required to run them. Orbital was founded on the belief that the only way to scale compute and unlock future progress on…
TrustCloud Launches Native ServiceNow Application to Deliver Enterprise-grade Continuous Control Monitoring for GRC and IRM customers
TrustCloud today announced the TrustCloud Continuous Control Monitoring for the ServiceNow Store — the first AI native continuous control monitoring engine built…
CData on Claude Managed Agents: Anthropic’s Bet on the Meta-Harness
In a new blog post, Amit Naik, VP of Artificial Intelligence at CData, explores Anthropic's "Claude Managed Agents" and what the concept of a "meta-harness" reveals about the next phase of enterprise AI. While much of the market…
SOCRadar Puts Out A Research Report On The Stealer Ecosystem
The stealer ecosystem has matured into a professionalized criminal economy that most organizations are simply not monitoring closely enough. While the industry fixates on household names like Lumma and RedLine, a growing class of…
DataBee Posts Blog On Context Aware AI For AI Governance
DataBee has a new blog post on context-aware AI for AI Governance that aims to help leaders to deliver defensible, audit-ready decisions in real time across expanding attack surfaces and rapidly evolving regulatory landscapes. You can read…
OpenText and S3NS Partner to Deliver European Sovereign Cloud Solutions with Google Cloud
OpenText today announced a strategic partnership with S3NS, an alliance between Thales, a French leader in cybersecurity in Europe, and Google Cloud, to bring European organizations a trusted cloud platform…
OpenText Enterprise Data and AI Solutions to be Available on AWS European Sovereign Cloud
OpenText announced today that it will make a number of its world-leading enterprise data and AI solutions available on the AWS European Sovereign Cloud, a new independent cloud for Europe. By making its…
Flashpoint Discusses Tax Refund Fraud in 2026
There's a new blog post from Flashpoint that covers tax refund fraud in 2026 and how threat actors are weaponizing identity data, verification systems, and cash-out channels at scale. The piece breaks down how fraudsters move from sourcing "fullz" and…