Week in Review — LLM-Generated Code Not Secure, Africa Under Attack

Week in Review — LLM-Generated Code Not Secure, Africa Under Attack

A Veracode study of over 100 large language models (LLMs) across 80 coding tasks found only about 55% of AI‑generated code passed security scans — even though over 90% now compile without error. Java was especially problematic, with a vulnerability rate above 45%, while developers also encountered frequent issues like …

Continue Reading
Week in Review — India Struggles to be Cyber-Secure, Humanitarian Orgs Under Attack

Week in Review — India Struggles to be Cyber-Secure, Humanitarian Orgs Under Attack

Indian security leaders are struggling to modernize cybersecurity operations amid rapid AI adoption, an expanding attack surface, and a shortage of skilled professionals — leaving critical blind spots in threat detection. Meanwhile, compliance demands are stacking up too: the new 2025 Data Protection Rules require breach notifications within six hours and …

Continue Reading
Week in Review — Naming with Microsoft and CrowdStrike, Cybersecurity Training in Africa

Week in Review — Naming with Microsoft and CrowdStrike, Cybersecurity Training in Africa

Microsoft and CrowdStrike have launched a joint initiative to harmonize the naming of cyber threat groups, aiming to reduce confusion caused by differing labels across security vendors. By publishing a mapping of over 80 threat actor aliases, such as aligning Microsoft's "Canary Typhoon" with CrowdStrike's "Circuit Panda," they seek to …

Continue Reading
Week in Review — CISO Peaking, India Arrests Cybercrime Gang

Week in Review — CISO Peaking, India Arrests Cybercrime Gang

Despite rising compensation and expanded responsibilities, CISOs face challenges due to tight security budgets. A survey by IANS Research indicates that CISOs at large U.S. companies earn an average of $532,000, reflecting their growing role in assessing business risk and digital strategy. However, budget approvals are more likely …

Continue Reading
Week in Review — NASA Zero-Trust, UAE Vulnerabilities, and Software-Defined Cars

Week in Review — NASA Zero-Trust, UAE Vulnerabilities, and Software-Defined Cars

The NSA's zero-trust guidelines and the exposure of over 150,000 vulnerable devices in the UAE highlight the growing need for enhanced cybersecurity across industries, especially as misconfigurations and insecure services leave critical infrastructures at risk. Meanwhile, the rise of software-defined cars and the rapid adoption of AI models introduce …

Continue Reading