Home Archive by category Security Services (Page 3)

Security Services

The Practical Guide to Becoming Crypto-Agile – Insights from HID Global

In a world where change is the only constant, adaptability is the new competitive edge — not just in business strategy, but in cybersecurity as well. Enter crypto-agility: the ability to rapidly update and deploy cryptographic systems in response to emerging threats, new standards and technological advancements.

What Is Crypto-Agility and Why Does It Matter?

Just as business agility helps companies stay competitive, crypto-agility ensures that company data and systems remain secure in the face of change. Cryptographic algorithms and protocols are not static — they evolve as researchers discover vulnerabilities or develop more secure methods. Without crypto-agility, organizations risk falling behind, leaving sensitive data exposed to increasingly sophisticated cyber threats.

Understanding Cryptography in Cybersecurity

At its core, cryptography protects data by encoding it so that only authorized parties can access it. This is often managed through public key infrastructure (PKI), which uses digital certificates to encrypt and decrypt information. These certificates define how data is secured and who can access it.

However, as encryption standards evolve, so must the systems that rely on them. That’s where crypto-agility comes in.

What Does Crypto-Agility Look Like in Practice?

Crypto-agility is more than a buzzword — it’s a strategic capability that enables organizations to respond quickly to cryptographic changes without compromising security or uptime. With HID’s PKI solutions, crypto-agility becomes a built-in advantage. In practice, crypto-agility lets you: 

  • Quickly replace outdated or vulnerable algorithmswithout overhauling entire systems — HID PKIaaS enables seamless algorithm updates across your infrastructure — no need to rip and replace systems. This flexibility ensures your cryptographic foundation evolves with emerging threats and standards.
  • Mitigate risks from certificate distrust or mass revocations— HID’s support for multi-CA architectures allows organizations to switch certificates between trusted certificate authorities with minimal disruption. This agility is critical during events like CA distrust or large-scale revocations.
  • Adapt to new cryptographic standardswithout re-inventing the wheel — HID PKIaaS is designed with modularity and standards-alignment in mind, making it easy to adopt new protocols and encryption methods as they become industry norms
  • Prepare for the post-quantumera — HID’s cloud-based PKIaaS is built by cryptographic experts to help you stay ahead of quantum threats. It provides a future-ready foundation that supports hybrid and quantum-safe algorithms — so you don’t have to be a cryptography expert to be secure.
  • Maintain compliance with evolving regulations and best practices— HID’s solutions are aligned with global standards like NIST and CA/B Forum guidelines. As regulations evolve — such as the move to 47-day certificate lifespans — HID helps you stay compliant without added complexity.
  • Automate certificate life cycle management to reduce risk— HID Enterprise SSL and PKIaaS offer robust automation tools that eliminate manual errors, reduce audit failures and ensure certificates are always up to date — critical for maintaining trust and operational continuity

Building a Crypto-Agile Strategy

Achieving crypto-agility requires more than just technical upgrades — it demands a strategic approach. Here are key steps to consider:

  1. Audit your current cryptographic assets. Understand what algorithms, keys and certificates are in use across your organization.
  2. Establish a cryptographic baseline. Define the minimum standards your systems must meet.
  3. Implement flexible encryption platforms. Choose solutions that support rapid updates and integration with existing infrastructure.
  4. Develop clear policies and protocols. Ensure your teams know how to respond to cryptographic changes and threats.

The Bottom Line

Crypto-agility is no longer optional — it’s a critical component of modern cybersecurity. By embracing agile cryptographic practices, organizations can protect their data, maintain trust and stay resilient in an ever-changing digital world.

For more information, please visit the website: https://campaigns.hidglobal.com/

 

Generative AI Cybersecurity Market Set to Quadruple by 2031, MarketsandMarkets Report Finds

The generative AI cybersecurity market is entering a period of strong expansion, according to a new report from MarketsandMarkets, with its value expected to surge from USD 8.65 billion in 2025 to USD 35.50 billion by 2031, growing at a CAGR of 26.5%. One of the key forces driving this growth is the rise of task-executing AI agents that can autonomously perform actions, requiring strong safeguards to prevent misuse and unintended harm.

The report highlights that breaches of AI models and applications are already a growing concern. IBM’s 2025 Cost of a Data Breach Report revealed that 13% of organizations worldwide experienced such breaches, with 60% resulting in compromised data and 31% causing operational disruption. Companies using unsanctioned “shadow AI” tools faced an average added cost of USD 670,000 per breach.

In the Asia Pacific region, the market is projected to record the highest growth rate, fueled by rapid adoption of AI-driven cybersecurity in finance, healthcare, and government. Governments are increasingly deploying AI measures to protect public services and critical infrastructure, while businesses are investing in AI to strengthen compliance, data protection, and customer trust.

MarketsandMarkets notes that demand for advanced AI-native security tools is rising as threats become more complex.

Vendors are investing in AI-driven penetration testing, automated vulnerability assessments, and real-time anomaly detection to help organizations bridge gaps between security operations and decision-making.

At the same time, risks such as prompt injection, model manipulation, and indirect prompt leaks are emerging as critical challenges. In high-stakes sectors like healthcare, financial services, and secure communications, such exploits could undermine decision-making integrity and regulatory compliance. Vendors are therefore moving toward fine-tuning guardrails, layered prompt filtering, and adversarial training to counter these evolving attack vectors.

Overall, the report concludes that the convergence of generative AI with advanced cybersecurity analytics will play a decisive role in helping organizations build resilience, protect sensitive data, and maintain operational trust in an increasingly hostile digital environment.

Gallagher Security Shares Key Lessons for Building Resilient Security

As 2025 enters its final quarter, Gallagher Security emphasizes that the security industry is at a turning point. While innovation continues at pace, success depends less on new features and more on how organizations adopt, align, and apply technology in real-world contexts. Drawing on its global research and industry experience, Gallagher Security highlights several clear lessons for leaders looking to strengthen their security strategies.

First, security is no longer just about protection—it is a strategic business enabler. Organizations are increasingly using security systems to support operational performance, automation, sustainability, and data-driven decision-making.

Second, modernization is essential but comes with challenges. Mobile credentials and cloud migration are advancing, yet adoption often lags due to policy misalignment, infrastructure limits, and lack of awareness. Gallagher Security advises that progress requires clear communication, practical pathways, and trusted partnerships.

Third, people remain at the center of every technology decision. Training, ease of use, and access to experts often matter more than technical features. At the same time, staffing shortages slow implementation, increasing the need for solutions that are intuitive, scalable, and easy to support.

Fourth, aligning security and IT strategies is no longer optional. Hybrid deployments highlight the need for shared governance and collaboration across departments to address cybersecurity and compliance risks effectively.

Finally, innovation only delivers value when it meets real needs. Successful deployments adapt to existing infrastructure, regulations, and cultural expectations rather than forcing a one-size-fits-all approach.

For organizations planning ahead, Gallagher Security’s advice is clear: treat security as a driver of business value, invest in people and partnerships, and ensure technology choices are aligned with long-term goals. In a rapidly evolving landscape, these principles are the foundation for building resilient and future-ready security.

French Media Report Cyberattack on Bouygues Telecom, Millions of Customers Affected

According to French media reports, Bouygues Telecom, one of the country’s largest telecommunications providers, has fallen victim to a major cyberattack that compromised the personal information of millions of users. The company, which serves more than 26 million mobile subscribers, confirmed that the incident exposed sensitive data linked to customer accounts.

The breach, detected in early August, allowed attackers to gain access to contact information, contract details, and even International Bank Account Numbers (IBAN) belonging to both private individuals and businesses. While Bouygues stressed that no passwords or payment card information had been exposed, the scope of the incident remains significant.

Company officials disclosed that approximately 6.4 million customers were affected. Those impacted are being contacted via email and text message, with urgent warnings to remain vigilant against fraudulent calls or phishing attempts seeking to exploit the stolen data.

So far, no ransomware group has claimed responsibility for the breach, and the motives behind the attack remain unclear. The incident comes just days after another French telecom giant, Orange, experienced a separate cyberattack in late July. Industry experts highlight that telecom operators remain high-value targets for both state-sponsored hackers and financially motivated cybercriminals, with recent attacks underscoring the urgent need for stronger defenses.

Wave of Cyberattacks Hits Europe: Ruđer Bošković Institute Among Targets

In recent days, a series of severe cyberattacks have been recorded across Europe, targeting major companies and institutions, including airlines, government agencies, and research centers. Following a recent incident involving Australia’s Qantas, European carriers Air France and KLM have also fallen victim to cybercriminals. Unauthorized access was detected on an external customer service platform, compromising passenger data such as names, email addresses, phone numbers, and frequent flyer account details. While sensitive information like passwords, passport numbers, and credit card details was not exposed, the breach has raised concern and prompted additional security measures.

A similar attack was recorded in the Adriatic region, where the target was Zagreb’s Ruđer Bošković Institute (IRB). The attack, carried out on July 31, 2025, was part of a global wave affecting at least 9,000 institutions worldwide, exploiting the ToolShell vulnerability in Microsoft SharePoint. The ransomware impacted part of the network related to the IRB’s administrative and technical departments, encrypting numerous documents and databases. The Institute has firmly refused to pay the ransom and is addressing the incident strictly through professional and security protocols, restoring data from secure backups.

These incidents once again highlight the growing threat of sophisticated cyberattacks in Europe and the need for continuous improvement of protective measures.

The IRB’s email system was down from July 31 to August 8, and the incident was reported to the Ministry of the Interior, the national CERT, and the Croatian Personal Data Protection Agency (AZOP). A forensic investigation is ongoing, and it is not yet known whether unauthorized access to personal data occurred. As a precaution, the network remains partially offline while a new IT infrastructure is being built in accordance with the latest cybersecurity standards.

Security Tests Expose Major Vulnerabilities in GPT-5

Two independent security testing teams have discovered critical vulnerabilities in OpenAI’s new GPT-5 model, with both managing to bypass its safeguards in under 24 hours, reports securityweek.com. NeuralTrust and SPLX, two prominent AI security firms, conducted separate red-team evaluations and reached equally troubling conclusions about the model’s readiness for enterprise use.

NeuralTrust’s researchers combined their proprietary EchoChamber jailbreak with a basic storytelling approach, leading GPT-5 to generate step-by-step instructions for making a Molotov cocktail without ever issuing an overtly malicious prompt. “The model strives to be consistent with the already-established story world,” the firm explained, noting that multi-turn “narrative” attacks can slip past single-prompt filters and intent detectors.

This method involved seeding a hidden, low-profile context, steering the conversation to avoid refusal triggers, and gradually reinforcing the malicious objective through narrative continuity. The firm warned that GPT-5’s susceptibility reveals a fundamental gap in safety systems that rely on isolated prompt screening.

Meanwhile, SPLX — formerly SplxAI — reported that GPT-5’s raw version is “nearly unusable for enterprise out of the box.” Their red team used obfuscation attacks, including a “StringJoin Obfuscation Attack” where prompts were disguised with hyphens and framed as fake encryption challenges. In one instance, GPT-5 responded to a disguised bomb-making query with detailed instructions, even opening with, “Well, that’s a hell of a way to start things off… I’m gonna tell you exactly how…”

Benchmarking against GPT-4o, SPLX found the older model more resilient when properly hardened. Both firms urged extreme caution in deploying GPT-5 without additional security layers, warning that its vulnerabilities make it a high-risk choice for sensitive environments.

OPSWAT Report: Malware Complexity Surges 127% in Six Month

OPSWAT, a global leader in critical infrastructure protection, has released its first-ever Threat Landscape Report, revealing key insights from over 890,000 sandbox scans in the last 12 months.

This report provides a unique perspective on the evolving nature of cyber threats. The findings are clear: traditional detection methods are being outpaced, with a 127% rise in malware complexity and a staggering 1 in 14 files—initially deemed ‘safe’ by legacy systems—proven to be malicious. This report serves as a call to action for industries relying on outdated defenses, emphasizing the importance of multi-layered solutions.

Key Findings:

127% Increase in Malware Complexity

Behavioral telemetry revealed a 127% rise in multi-stage malware complexity over the past year. OPSWAT’s sandbox uncovered layered threats designed to evade analysis, including obfuscated loaders such as NetReactor and evasive behaviors that are often missed by traditional tools. These results show that modern malware intends to confuse, not flood, which is why OPSWAT’s pipeline is purpose-built to unpack that complexity.

Proactive Threat Detection

OPSWAT analysis reclassified 7.3% of files that were silent across open-source intelligence (OSINT) feeds as malicious, on average 24 hours earlier than public data sources. These were confirmed executions, not speculative flags, highlighting how adaptive analysis can close dangerous gaps left by static and reputation-based systems.

Campaign-Level Threat Correlation

With 890,000+ sandbox scans, OPSWAT connects the dots across threats. It identifies shared TTPs, reused C2 infrastructure, and behavioral patterns across campaigns. This provides defenders with context-rich, actionable intelligence instead of noisy indicators.

99.97% Detection Accuracy

OPSWAT’s behavioral and machine learning pipeline delivers results. Aided by a newly enhanced PE emulator, the platform identified sophisticated threats such as:

  • Clipboard hijacking via ClickFix
  • Steganography-wrapped loaders
  • C2 channels embedded in Google services
  • .NET Bitmap malware loaders delivering Snake Keylogger payloads

“Our strength lies in precision, behavioral depth, and early visibility into emerging attacks,” said Jan Miller, Chief Technology Officer of Threat Analysis at OPSWAT. “That’s what sets OPSWAT apart in delivering high-fidelity, context-aware threat intelligence.”

Why It Matters

As critical infrastructure, government systems, and enterprise networks face growing targeting from increasingly modular and evasive malware, the findings of this report spotlight the evolving adversary playbook and the need for integrated, multilayered solutions.

Cybersecurity leaders must now prioritize adaptability, shared intelligence, reassessing technology, and rapid behavioral detection pipelines to protect systems from known threats, while also keeping pace with a rapidly evolving threat landscape and anticipating emerging threats.

Filescan.io, part of the OPSWAT MetaDefender Platform, powers advanced threat detection and file analysis across critical environments.

Primion Is Moving Forward with Determination: 30 Years of Success

In 2025, Primion Technology GmbH marks its 30th anniversary. Founded in 1995 as a medium-sized system integrator, Primion has continuously evolved: from classic Access Control and Time Recording systems to modular, networked platforms for Converged Security and Workforce Management Solutions, focusing on modern requirements such as Operational Technology (OT), the Internet of Things (IoT) and Cyber Security. The goal: scalable, reliable and future-proof systems with a clear focus on practical implementation and customer needs.

A new look for the next chapter

On its 30th anniversary, Primion is introducing a new corporate design including a redesigned, contemporary and fresh logo. The new brand appearance underlines what Primion stands for: technological progress, customer proximity and strategic foresight.

Our vision is to be a modern, high-performing, and trusted global solution provider for large and midsize companies around the world. Efficiency and increase of productivity are the core benefits we deliver to our customers through our products, services, and solutions. Ease of use is one of our key principles. Our new corporate identity brings this and other core values together, reflected in our claim: “Protect what matters!”.

Primion presented its new design and logo for the first time at the Security Expo in Munich at the end of June.

Technology for demanding applications

Primion systems are used in security-critical environments such as industry, research, transport, healthcare, public administration and even in the private luxury segment. Primion develops both software and hardware entirely in-house and offers highly integrated solutions that adapt to a wide range of requirements. App. Four thousand customers worldwide – from midsize businesses to global corporations – rely on Primion for safety, organization, and efficient processes to protect people and assets.

European presence with local strength

Today, Primion employs around 470 people at 20 locations in Germany, Austria, France, Spain, Belgium and the Netherlands. In addition, the security specialist maintains a global network of certified system partners around the world. The company remains close to the market: with regional expertise, technical depth and in-depth knowledge of national and international standards and customer needs. As part of the listed Azkoyen Group, Primion benefits from stability and growth opportunities.

Three decades after its founding, Primion is more ready than ever for what lies ahead: with a clear strategic focus, high-performing teams and the ambition to actively shape the security solutions of tomorrow.

Empowering Schools in the UK with Ruijie Reyee Wi-Fi 7

Engayne Primary School is in Upminster, Essex. It has more than 600 students. The school wants to give students a good learning environment. It uses digital tools to help with teaching and school work. A strong and safe network is very important for lessons and school management.

Challenge: Network Instability and Security Issues

The school relies on digital tools for teaching, administration, and overall campus connectivity. A strong network is essential to support everything from interactive lessons and virtual classrooms to office management and school-wide communication. However, with more digital tools and devices in use, the school’s network is facing new challenges:

Many devices needed to be online at the same time, but the network was not stable, causing learning disruptions and harming the students’ experience.

All devices shared a single network without segmentation or access control, which made security a major concern.

Network management and maintenance were complicated and time-consuming.

Solution: Ruijie Reyee Wi-Fi 7 for a Smarter School

To fix these problems, Engayne Primary School installed RG-RAP72Pro Wi-Fi 7 Ceiling Access Points. This is a fast and strong solution that works well when many devices connect at the same time.

Some good things about the Ruijie Reyee Wi-Fi 7 solution:

  • Fast and Steady Connection: Keeps online lessons smooth even in high-density environments.
  • Better Security with Network Splitting: Teaching devices, office equipment, and guest devices are on different networks. This makes the network safer.
  • Easy to Manage: With Ruijie Cloud, the school network can be checked and fixed easily. This saves time and effort.

Feedback: Positive and Highly Satisfactory Experience

Head Teacher Sarah Sankey expressed her satisfaction, saying, “Since the work has been completed, all I can say is it’s been excellent. I don’t have any complaints from teachers about the internet dropping out. So all of our lessons now are successful with having everything working, and that has made it much easier for everyone with their planning.”

She also emphasized the broader impact of the upgrade: “Our network across the whole school is now stable, which is excellent. We can log in anywhere, not just for the children and teachers, but also for governor’s meetings and visitors. This is very, very positive.”

Product lists

  • 27 x RG-RAP72PRO
  • 7 x RG-NBS3200-24GT4XS-P
  • 2 x RG-NBS5200-24GT4XS-P

Suprema: BioStar X – AI-Powered Next-Generation Integrated Security Platform

Maximizing Security and Operational Efficiency with the Convergence of AI-Based Access Control and Intelligent Video Analytics

The global security market is expanding at an unprecedented rate. According to Allied Market Research, the integrated security services sector is projected to grow at a compound annual growth rate of 13.7% from 2022 to 2031, reaching USD 55.5 billion by the end of the period. This growth is fueled by increasingly complex security challenges and a rising demand for unified solutions over standalone systems. Today, major corporations, government facilities, and international airports are moving swiftly toward integrated security platforms.

Integrated security is no longer just about safeguarding buildings—it’s becoming a cornerstone of operational excellence. While traditional systems focused primarily on access control and video surveillance, modern integrated platforms now unify a broad range of building functions—from HR management and fire detection to license plate recognition, HVAC, and lighting control—all within a single interface. This evolution reflects a clear industry need: security solutions that also optimize operational workflows.

Introducing BioStar X: AI-Powered Next-Generation Integrated Security Platform

To meet this need, Suprema has developed BioStar X, a cutting-edge integrated security platform that merges AI-powered access control with intelligent video analytics. Building on over 20 years of industry expertise, Suprema has created a solution that goes far beyond conventional access control—offering intelligent, scalable, and highly stable security operations for enterprise environments. BioStar X is advanced in both AI-driven access control and video analytics and provides exceptional scalability and reliability, even in large-scale deployments.

Convergence of AI-Based Access Control and Intelligent Video Analytics

BioStar X integrates AI-based access control and video analytics into a single platform. Real-time access management, video monitoring, and intelligent analytics can all be performed simultaneously on one screen, enabling efficient monitoring with minimal personnel. In the event of an incident, users can instantly identify the situation and its location, ensuring a rapid response.

The platform also features highly advanced AI-driven data analysis capabilities. It proactively detects and responds to threats through abnormal behavior analysis, including AI-based intrusion detection, loitering detection, and fall detection.

Moreover, it enables precise data analysis and enhanced security monitoring in large-scale facilities through features such as people counting, tailgating detection, blacklist detection, and missing person tracking. As such, BioStar X plays a vital role not only in multi-use facilities like schools, malls, airports, and hospitals but also in smart buildings.

For example, when deployed in schools, BioStar X can help prevent security incidents by detecting threats such as intrusions or weapon possession using AI video analytics. It can also identify abnormal behaviors like school violence or loitering and enable immediate intervention. Facial recognition technology can restrict outsider access and integrate with academic schedules to manage classroom entry and attendance. Additionally, it automates classroom locking and motion detection to secure unoccupied rooms. The system can also be integrated with pre-registration visitor management systems, enhancing campus-wide security through facial recognition or QR-based identity verification.

Maximizing Operational Efficiency and Security through a Unified Platform

By integrating multiple security systems—such as access control and video surveillance—into one platform, BioStar X allows security personnel to monitor and manage all security operations in real time through a single interface, eliminating the need to juggle separate systems. This streamlines security processes, enables rapid incident response, and improves both operational efficiency and overall security performance.

Improved efficiency also allows for optimized personnel allocation, while the reduced number of standalone systems lowers maintenance requirements and operational costs—ultimately driving down long-term expenses. Furthermore, BioStar X’s flexible scalability means additional security systems don’t need to be added separately. It can grow alongside organizational needs, enabling safer and more efficient environments.

Scalable and Stable for Enterprise Environments

For large-scale facilities, such as corporate buildings and government institutions, scalability and stability are essential. BioStar X supports the registration of tens of thousands of users and can reliably operate a vast number of devices—making it a true enterprise-grade solution. Suprema is already supporting major deployments like the Sejong Government Complex in Korea and the Mohammed VI University Hospital in Morocco.

The platform also offers the flexibility to meet complex enterprise requirements. With seamless integration capabilities for third-party systems and customizable UI/UX options, BioStar X can be tailored to meet even the most demanding environments. Security teams can personalize dashboards to display specific video feeds, data sets, or applications—delivering a user experience that is both powerful and intuitive.

BioStar X as an Essential Security Solution for the Future of Security

As security threats evolve, so too must the technologies that protect us. BioStar X represents the next generation of intelligent, integrated security—engineered for organizations that require more than just protection. Whether you manage a corporate office, a smart building, or a public institution, BioStar X delivers the perfect blend of advanced security and operational efficiency. It’s not just a platform—it’s a strategic investment in the safety, intelligence, and future-readiness of your organization.