Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

The New Evolution Of CISO Responsibilities

The CISO role is facing its biggest challenge yet. AI adoption is happening faster than any technology shift in history and security leadership is struggling to keep up. Accountability is increasing whilst the ability to control AI implementation is decreasing. In this episode of Razorwire Raw, James Rees explains why CISOs are finding it nearly impossible to manage AI security risks at the speed organisations are deploying the technology.

Code Orange: Fail Small is complete. The result is a stronger Cloudflare network

Over the past two and a bit quarters, we've undertaken an intensive engineering effort, internally code-named "Code Orange: Fail Small", focused on making Cloudflare's infrastructure more resilient, secure, and reliable for every customer. Earlier this month, the Cloudflare team finished this work.

Proof-of-concept exploit available for Linux 'Copy Fail' vulnerability (CVE-2026-31431)

On April 29, 2026, details about the ‘Copy Fail’ vulnerability (CVE-2026-31431) were publicly disclosed. This high-severity (CVSS score of 7.8) privilege escalation vulnerability impacts Linux distributions shipped since 2017. It allows an unprivileged local user to obtain root-level access on affected Linux systems by corrupting the kernel’s in-memory page cache of a privileged binary.

NIS2 Fines Are on the Horizon: Why Your Business Can't Wait

The NIS2 Directive has officially shifted from being a conversation for the future to an operational reality across Europe. Regulators are now activating mandatory registries, launching process supervision, and most importantly, laying the groundwork for enforcement actions against non-compliant organizations. For many companies, this is the period of highest risk. What was previously perceived as a complex or distant requirement now has a direct impact on the business.

How to Stop Digital Impersonation Attacks: Why Email Authentication Alone Isn't Enough

Phishing reports and customer complaints are not early warning signals. By the time they arrive, attackers have already built the infrastructure. Lookalike domains are live, credential harvesting pages are indexed, and the exposure window is open. To stop digital impersonation attacks, organizations need to shift detection to the infrastructure preparation stage, before distribution begins.

How to stay secure while traveling this summer

Whether you’re juggling travel bookings with friends or packing the kids’ suitcases, planning a summer vacation can be far from relaxing. And once you get to your destination, the confirmation codes and passport numbers are always buried in the group chat when you need them most. But when you have all your travel essentials saved securely in one place, you can skip the scramble and put safe travels on autopilot.

Data Sovereignty vs. Data Residency: Key Differences Explained

Storing data in a specific country doesn’t automatically mean that that country’s laws are the only ones that apply. This disconnect catches a lot of organizations off guard, and it’s exactly where the confusion between data sovereignty vs. data residency begins. One is about where your data physically lives. The other is about which laws govern it, regardless of location.