ZeroHour

Search: “monitorability”

6 stories in the last 7d

Why APAC Enterprises Need Real-Time Threat Intelligence as Singapore, Malaysia, and Thailand Tighten Cyber Compliance in 2026

Singapore, Malaysia, and Thailand all tightened cyber compliance in 2026, mandating continuous monitoring and rapid incident reporting for critical infrastructure.

Singapore's CSA issued the Cybersecurity Code of Practice 2026 for Critical Information Infrastructure on 29 July 2026, adding board cyber-resilience duties, annual training, and controls on Interconnected Systems, with most obligations effective by 29 July 2027. Malaysia's Cyber Security Act 2024 requires NACSA-licensed providers, audits, and fast incident notification, with fines up to RM500,000 and up to ten years' imprisonment. Thailand's NCSA cloud security standard has been enforced since 10 September 2026, with a Website Security Standard effective 16 September 2026. The vendor article argues detection speed has become a compliance metric driving demand for real-time threat intelligence.

Cyble · 4h agoPolicy & legal

Cyber Essentials Has Record Year but Takeup Remains Low

UK Cyber Essentials certifications hit a record 61,430 in the year to June 2026, up 20%, but uptake remains low among 5.7 million SMEs.

The UK government awarded a record 61,430 Cyber Essentials certificates between July 2025 and June 2026, a 20% year-over-year increase, including 46,245 basic self-assessed and 15,185 audited CE+ certifications. Roughly three-quarters were recertifications, and uptake remains low against an estimated 5.7 million UK SMEs. An ESET survey found 49% of UK SMEs suffered a cyber incident in the past year, while the Cyber Resilience Pledge and the Cyber Security and Resilience Bill aim to push certification through supply chains.

Flock camera use by internal affairs unit puts DC police at odds with officers’ union

DC's Metropolitan Police Department used Flock license plate cameras to track officers under internal affairs investigation, prompting a union grievance and council scrutiny.

The DC Police Union learned in July 2026 that MPD Internal Affairs used Flock ALPR cameras to monitor officers under investigation without their knowledge, filing a grievance that management denied. Secure Justice found more than 90 US cities and counties ended Flock contracts in August 2026 alone, with over 200 terminations since 2021, while Texas and Florida announced new usage restrictions. On September 14, DC Councilmember Brooke Pinto asked Interim Chief Jeffery Carroll ten questions about the department's use of Flock data.

The Record · 1d agoPolicy & legal

Zelensky appoints former police chief to lead Ukraine’s cyber coordination center

Zelensky appoints former police chief Ihor Klymenko to head Ukraine's National Cybersecurity Coordination Center amid broader security leadership reshuffle.

Ukrainian President Volodymyr Zelensky appointed Ihor Klymenko, former National Police head, interior minister, and NSDC secretary, to lead the National Cybersecurity Coordination Center (NCCC). The NCCC, created in 2016 under the National Security and Defense Council, coordinates government agencies' responses to major cyberthreats including Russian operations. The appointment comes amid a wider reshuffle of Ukraine's defense and security leadership.

The Record · 1d agoPolicy & legal

Manhattan DA takes down 12 AI deepfake porn sites

Manhattan DA seized domains of 12 AI deepfake porn sites hosting non-consensual videos of more than 1,200 people; investigation continues.

Manhattan District Attorney Alvin Bragg announced the seizure of domain names for 12 deepfake pornography sites that hosted AI-generated sexual videos of more than 1,200 real people, many of them celebrities. Bragg cited domestic violence cases where partners threatened to release deepfake images, and declined to say whether arrests or charges would follow. The DA's office will monitor for attempts to revive the sites on new domains.

The Record · 2d agoPolicy & legal1

Cyberattack causes a flight delay? Airlines won’t owe you a hotel or meal

A new DOT rule exempts airlines from providing meal vouchers or hotels for cyberattack-caused delays if carriers comply with applicable cybersecurity regulations.

A Department of Transportation rule published in September 2026 adds "cybersecurity attacks" to a list of 10 "not controllable" flight disruption causes, creating a new delay tracking category and relieving compliant airlines of customer service obligations like meal vouchers and hotels. The rule stems from the FAA Reauthorization Act of 2024 and applies only when carriers demonstrate compliance with applicable cybersecurity regulations. Consumer groups reacted cautiously: FlyersRights criticized the lack of public comment, while the National Consumers League saw both certainty benefits and risks from ambiguous wording. The article cites prior aviation incidents including Scattered Spider's airline attacks and the 2024 Collins Aerospace hack that disrupted European flights.

CyberScoop · 5d agoPolicy & legal