News
Latest cybersecurity news — hacks, breaches, vulnerabilities, regulatory moves
The 1M-Token Context Window Is Killing Half of RAG – And Rewriting Threat Models for AI Privacy
Claude Opus 4.7 1M-token context changes how enterprises handle sensitive data in AI workflows. Privacy, retention, and breach scope all shift.
AI SecurityPrompt Injection Is the SQL Injection of the AI Era – And Agentic Coding Tools Just Made It Worse
Agentic AI coding tools now read, write, and execute. Prompt injection in a single source file can compromise an entire developer environment.
AI SecurityMCP Servers Are the New Supply Chain: Why Every Enterprise Running AI Agents Needs an MCP Audit Now
MCP servers connect AI agents to enterprise tools, but unaudited community servers are becoming a critical supply chain risk. Here is what…
NewsLinux 6.10+ LASS Mitigation: What Spectre-Era Defences Mean for Indian Hosting Providers
The new mitigation in mainline Linear Address Space Separation — LASS — landed in Linux mainline in 6.10 and matured through 6.11…
NewsOWASP API Top 10 2026 Draft: What Changed, Mapped to Indian Fintech Reality
What’s in the 2026 draft OWASP API Security Top 10 — 2026 dropped as a working draft in April. The list reorganises…
NewsCISA KEV Catalog Patterns: 5 Exploitation Categories Indian Defenders Systematically Miss
1,000 entries and counting CISA’s Known Exploited Vulnerabilities catalogue crossed the 1,000-entry mark in early 2026. The KEV is the single most…
ComplianceDPDP Phase 2 Effective Date Locked: What Indian SaaS Must Ship by August 2026
What just shifted MeitY’s notification of Phase 2 of the DPDP Rules has locked the effective date for several previously-flagged sections. The…
NewsNIST FIPS 203 (ML-KEM) One Year On: Cryptographic Module Validation Reality Check
One year of FIPS 203 NIST finalised FIPS 203 — Module-Lattice-Based Key Encapsulation Mechanism, better known as ML-KEM — in August 2024.…
ComplianceOpenSSH 10.x Makes Post-Quantum Key Exchange Default: What Indian Sysadmins Should Do
OpenSSH 10.x now prefers hybrid post-quantum key exchange by default. Indian sysadmins must upgrade servers, tune sshd_config, and plan for TLS and…
ComplianceIndian Healthcare Hit by Sharp Ransomware Surge in 2026, CERT-In Flags Hospitals
CERT-In's 2026 reporting indicates a steep rise in ransomware at Indian hospitals, diagnostic chains and EHR vendors, with ABDM-linked exposure.