Microsoft patched over 1,100 CVEs in 2025

The final Patch Tuesday update of the year brings 56 new CVEs, bringing the year-end total to over 1,100. Read more »

Are we mistaking regulation for resilience?

We have a growing number of cyber compliance regulations, yet our country’s cyber resilience remains fragile. What is going wrong? Read more »

Why bug bounty schemes have not led to secure software

Computer Weekly speaks to Katie Moussouris, security entrepreneur and bug bounty pioneer, about the life of security researchers, bug bounties and the artificial intelligence revolution Read more »

Ethical hackers can be heroes: It’s time for the law to catch up

The UK government’s plan to finally rewrite the 1990 Computer Misuse Act to provide much-needed legal protections for ethical hackers is welcome, but now we need firm action. Read more »

NCSC warns of confusion over true nature of AI prompt injection

Malicious prompt injections to manipulate GenAI large language models are being wrongly compared to classical SQL injection attacks. In reality, prompt injection may be a far worse problem, says... Read more »

Cyber teams on alert as React2Shell exploitation spreads

Exploitation of an RCE flaw in a widely-used open source library is spreading quickly, with China-backed threat actors in the driving seat Read more »

Cloudflare fixes second outage in a month

A change to web application firewall policies at Cloudflare caused problems across the internet less than three weeks after another major outage at the service, but no cyber attack... Read more »

From trust to turbulence: Cyber’s road ahead in 2026

As we prepare to close out 2025, the Computer Weekly Security Think Tank panel looks back at the past year, and ahead to 2026. Read more »

NCC supporting London councils gripped by cyber attacks

Three west London councils hit by a cyber attack continue to investigate as services remain disrupted nearly two weeks on Read more »

Constrained budgets left security teams short-handed in 2025

With 2024 seeing surges in security funding cuts, lay-offs and hiring freezes, 2025 brought some relief for cyber pros, but constrained budgets are leaving security teams short-staffed Read more »
Subscribe to our Newsletter