• HUNTSVILLE, Ala.—Despite recent rumblings that the Army might be looking to change up its latest attempt at replacing the Bradley fighting vehicle, the service is still looking to unveil its choice for the XM-30 early next year.

    Two competing vendors will deliver prototypes to Transformation-in-Contact brigades in July, allowing soldiers to give feedback on how the vehicle drives and the kinds of systems that will make it most effective in combat, the Army’s assistant secretary for acquisitions, logistics and technology told reporters Tuesday at the AUSA Global Force Symposium.

    “I think the summer will be interesting to see how the prototypes roll out and how well they work,” Brett Ingraham said when asked whether its prospective 2027 Detroit auto show debut will feature one winner, or whether both the Rheinmetall and General Dynamics versions will share the stage.

    The mechanized infantry combat vehicle would be the Army’s sixth attempt at replacing the Bradley, a mountain the service has been trying to climb since the 1980s. It could take about a year to get them into production after this summer’s testing, Ingraham added.

    “So absolutely, we'll be on the floor next January,” he said. “Absolutely, because it could be on the floor in June.”

    It would also represent a big win for the Army Transformation Initiative, a laundry list of new technology, legacy divestments, and organizational changes Defense Secretary Pete Hegseth issued to the service nearly a year ago. 

    “We're very optimistic about the gains that we were able to make from divesting of legacy systems, and the ability that we had to reinvest those in two areas, readiness and modernization, so all of the funds recapitalized,” said Army Undersecretary Mike Obadal. 

    That has included canceling the M-10 Booker light tank, reorganizing combat aviation brigades to phase out the AH-64D Apache helicopter, and setting up an online marketplace for small unmanned aerial systems, to speed up the fielding of drones to every division and beyond. 

    “This new digital storefront that allows you [to get] this trusted, cutting-edge technology to our soldiers and allies faster,” Ingraham said. “This is 30 systems, roughly, in there, growing every day. We've got basic ordering agreements lined up with the companies in there.” 

    Most of the initiative has gone smoothly, but there have been snags. For example, the Army’s proposal to end its Joint Light Tactical Vehicle program has been met with resistance from Congress

    That friction with Congress is likely to continue as the Army looks to make more changes in line with the transformation initiative.

    “We are continuously going through our entire top line budget to determine where, can we make efficiencies where systems that have become obsolete or have come to the point where sustaining them is not economically viable? And that requires continuous, consistent communications with Congress,” Obadal said.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • As organizations race to deploy AI, securing the rapidly expanding ecosystem of models, data, and dependencies has become a critical priority, much of which can be addressed by Wiz’s CNAPP solution.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Transparent AI data pipelines help organizations verify sources, reduce errors, meet regulations, and build trust by making outputs auditable and reliable.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • TeamPCP, the threat actor behind the recent compromises of Trivy and KICS, has now compromised a popular Python package named litellm, pushing two malicious versions containing a credential harvester, a Kubernetes lateral movement toolkit, and a persistent backdoor. Multiple security vendors, including Endor Labs and JFrog, revealed that litellm versions 1.82.7 and 1.82.8 were published on

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • OVHcloud denies breach after hacker claims 600TB data theft affecting millions of sites, with experts doubting authenticity due to weak proof

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A large-scale malvertising campaign active since January 2026 has been observed targeting U.S.-based individuals searching for tax-related documents to serve rogue installers for ConnectWise ScreenConnect that drop a tool named HwAudKiller to blind security programs using the bring your own vulnerable driver (BYOVD) technique. “The campaign abuses Google Ads to serve rogue ScreenConnect (

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • An ongoing phishing campaign is targeting French-speaking corporate environments with fake resumes that lead to the deployment of cryptocurrency miners and information stealers. “The campaign uses highly obfuscated VBScript files disguised as resume/CV documents, delivered through phishing emails,” Securonix researchers Shikha Sangwan, Akshay Gaikwad, and Aaron Beardslee said in a report shared

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Key Takeaways ●       Documented SQL Server attacks have moved from initial access to ransomware deployment within the hour when exposure is high and defenses are absent — but attack timelines vary widely depending on privileges, host controls, segmentation, and attacker quality. ●       Attackers escalate from SQL privileges to OS […]

    The post SQL Server Ransomware Attacks: How They Work and How to Harden Your Database appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The FBI has issued a warning about Iran-linked Handala Hack Group, targeting Windows users through fake versions of WhatsApp and Telegram.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • This week in cybersecurity from the editors at Cybercrime Magazine

    Sausalito, Calif. – Mar. 24, 2026

    Read the full story from Sophos

    The 2026 CISO Report, published by Cybersecurity Ventures in partnership with Sophos, highlights a critical imbalance in global cybersecurity leadership. Despite decades of progress and near-universal CISO adoption in Fortune 500 and Global 2000 organizations, there are still only 35,000 CISOs worldwide serving an estimated 359 million businesses.

    As Sophos CEO Joe Levy notes in the report, that imbalance represents a 10,000:1 business-to-CISO ratio: “Those are not good odds. This is a market failure. [The cybersecurity ecosystem] hasn’t figured out how to address this gap. We have the potential to do that now.”

    For large organizations, the CISO role has become foundational to risk management and operational continuity. For everyone else — particularly SMBs — the absence of CISO-level leadership has opened a widening vulnerability gap.

    This new report places the CISO leadership gap against the backdrop of a rapidly escalating threat environment. Cybercrime costs are projected to reach $12.2 trillion annually by 2031, doubling from 2021 levels.



    Cybersecurity Ventures predicts that ransomware alone will cost victims $74 billion in 2026, climbing to $275 billion annually by 2031, with estimates stating that attackers launch a new campaign every two seconds.

    The consequences for organizations without expert oversight are severe. According to the report, businesses without a CISO face a “gaping security hole,” leaving them exposed to financial loss, operational disruption, and reputational harm.

    If the challenges are steep for enterprises, they’re even more consequential for small businesses. The World Economic Forum estimates that 90 percent of all companies worldwide are small businesses, yet “close to zero percent” employ a dedicated security officer, according to the 2026 CISO Report.

    To help address the global shortage of CISO expertise, Sophos acquired Arco Cyber earlier this year to create CISO Advantage, a set of capabilities designed to scale the knowledge, judgment, and discipline of world-class security leaders to any organization, whether they have a dedicated CISO or not.

    CISO Advantage empowers providers to deliver governance, compliance, and strategic risk management. It’s built to adapt to organizations at any maturity level, from resource-constrained SMBs to complex enterprise environments.

    Read the Full Story


    Cybercrime Magazine is Page ONE for Cybersecurity. Go to any of our sections to read the latest:

    • SCAM. The latest schemes, frauds, and social engineering attacks being launched on consumers globally.
    • NEWS. Breaking coverage on cyberattacks and data breaches, and the most recent privacy and security stories.
    • HACK. Another organization gets hacked every day. We tell you who, what, where, when, and why.
    • VC. Cybersecurity venture capital deal flow with the latest investment activity from various sources around the world.
    • M&A. Cybersecurity mergers and acquisitions including big tech, pure cyber, product vendors and professional services.
    • BLOG. What’s happening at Cybercrime Magazine. Plus the stories that don’t make headlines (but maybe they should).
    • PRESS. Cybersecurity industry news and press releases in real time from the editors at Business Wire.
    • PODCAST. New episodes daily on the Cybercrime Magazine Podcast feature victims, law enforcement, vendors, and cybersecurity experts.
    • RADIO. Tune into WCYB Digital Radio at Cybercrime.Radio, the first and only round-the-clock internet radio station devoted to cybersecurity.

    Contact us to send story tips, feedback and suggestions, and for sponsorship opportunities and custom media productions.

    The post The Global CISO Landscape: A Leadership Gap Too Large To Ignore appeared first on Cybercrime Magazine.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶