skip to content

Cyber / Brief — 27 Jun 2026

24 items across 8 categories — US & Technology 3 · EU & Technology 3 · China & Technology 3 · AI & Power 3 · Cybersecurity & Threats 3 · Threat Intelligence (CTI) 3 · Defence & National Security 3 · Digital Sovereignty & Identity 3.

24 items across 8 categories — US & Technology 3 · EU & Technology 3 · China & Technology 3 · AI & Power 3 · Cybersecurity & Threats 3 · Threat Intelligence (CTI) 3 · Defence & National Security 3 · Digital Sovereignty & Identity 3.

Top Stories


AI & Power

Anthropic says Alibaba must be punished for largest Claude cloning attackArs Technica - All content
Why it matters: Alibaba's alleged large-scale cloning of Anthropic's Claude directly spotlights AI model theft, US-China AI competition, and frontier-model governance — core editorial territory.
Anthropic has accused the Chinese firm Alibaba of launching the largest attack yet attempting to clone Claude, as China races to match the capabilities of Anthropic's leading model following Mythos' release and subsequent restriction from foreign markets . Ars obtained a June 10 letter sent to Senators Tim Scott (R-SC) and Elizabeth Warren (D-Mass.) one day ahead of a Senate committee hearing on “AI and the American Dream.” In the letter, Anthropic shared “new, confidential evidence of the…

Trump administration partially lifts Anthropic’s AI export banCybersecurity and Data Protection – POLITICO
Why it matters: The Trump administration's partial reversal of Anthropic's AI export ban, limiting access to select US partners, is a pivotal AI governance and export-control story.
The Trump administration on Friday partially rescinded its export ban on Anthropic’s most advanced artificial intelligence model — deescalating a confrontation that has caused confusion across the American AI industry . The release clears the way for a select group of more than 100 companies and agencies to gain access to the Mythos 5 model, two weeks after the administration imposed restrictions amid fears that the software could be used to launch cyberattacks.

Trump Administration Allows Anthropic to Release Mythos to Select US OrganizationsWIRED
Why it matters: White House controlled release of Anthropic's most advanced model to selected US entities is a direct AI governance and national-security power move central to the editorial profile.
After weeks of negotiations, the White House permitted Anthropic to grant access to its most advanced AI model to a select group of US companies and government agencies.


EU & Technology

EU says Amazon, Microsoft cloud services should fall under digital dominance rulesTechnology – POLITICO
Why it matters: The EU Commission's preliminary finding that AWS and Microsoft Azure fall under the Digital Markets Act is a landmark extension of European digital sovereignty regulation into cloud infrastructure.
BRUSSELS — The European Commission has preliminarily concluded that Amazon Web Services and Microsoft Azure should fall under the EU’s digital dominance rules, in a move that extends Europe’s most powerful tech regulation into cloud infrastructure for the first time. The decision, which follows a market investigation launched last November, marks an expansion of the Digital Markets Act — which has so far covered consumer-facing platforms, app stores and search engines — into the €220 billion…

Trump Vows 100% Tariff on Europe Over Digital Services TaxesBloomberg Technology
Why it matters: Trump threatening 100% tariffs on Europe over digital services taxes is a high-stakes US-EU tech sovereignty and trade confrontation directly in the editorial wheelhouse.
US President Donald Trump speaks during a dinner with American farmers in the Rose Garden of the White House in Washington, DC, US, on Thursday, June 25, 2026. Trump had a surprise for the farmers he invited for dinner at the White House later Thursday: a request to Congress for $11.1 billion in assistance that would amount to the second bailout of the year for the beleaguered agriculture sector.

Amazon and Microsoft cloud services targeted under EU big tech rulesTech Archives | Euractiv
Why it matters: The first-ever DMA designation of Amazon and Microsoft cloud services is a landmark EU regulatory move with major implications for digital sovereignty and platform power.
This would be the first time the bloc has designated cloud providers under the Digital Markets Act (DMA)


US & Technology

Trump threatens additional tariffs on European countries using digital service taxesTechnology – POLITICO
Why it matters: Trump's threat of 100% tariffs on countries using digital services taxes directly shapes the US-EU tech and tax policy contest and has major implications for digital sovereignty.
U.S. President Donald Trump on Friday threatened a 100 percent tariff on European countries that impose digital service taxes on American corporations. In a post to social media , the president said “numerous European countries“ are discussing or “close to actually doing this.” “Please let this statement serve to represent that any Country that imposes such a Tax will immediately be met with a 100% TARIFF on any and all Goods sent to the United States of America,” Trump said.

Russia accuses Apple of ‘political censorship’ after VK apps removed from App StoreThe Record from Recorded Future News
Why it matters: Apple removing VK and associated Russian platforms from the App Store — and Russia's 'political censorship' response — is a significant platform-power and digital-sovereignty confrontation between the US and Russia.
Apple removed VK's flagship social network VKontakte, often described as Russia's equivalent of Facebook, along with VK Music, VK Messenger, VK Video, Odnoklassniki and Mail.ru services, including its email application.

FCC passes new cybersecurity rules for emergency systems, undersea cablesCyberScoop
Why it matters: FCC cybersecurity rules for emergency alert systems and undersea cables represent significant US digital infrastructure regulation with national security implications.
The Federal Communications Commission approved new rules Thursday that boost cybersecurity regulations for the nation’s emergency alert systems and update security rules for the nation’s undersea cables . The new rule would overhaul two national emergency systems, the Emergency Alert System and Wireless Emergency Alerts, to better protect against hijacking attacks from malicious actors.


China & Technology

Apple Seeks US Approval to Buy Chips From Blacklisted CXMT: FTBloomberg Technology
Why it matters: Apple seeking White House approval to buy chips from blacklisted Chinese firm CXMT sits at the heart of US-China semiconductor decoupling and export control policy.
Apple Inc. is pressing the White House for approval to purchase memory chips from a blacklisted Chinese company as it grapples to rein in chip costs, the Financial Times reported on Saturday.

Chinese cybersecurity company claims it’s built a better-than-Mythos bug finderwww.theregister.com - Articles
Why it matters: Qihoo 360 claiming to have built an AI bug-finder surpassing Anthropic's Mythos — framing it explicitly as countering a US 'cyber nuclear weapon' — is a direct data point in the US–China AI and cyber-capabilities contest.
Chinese cybersecurity vendor Qihoo 360 claims it’s built an AI bug-finder that’s better than Anthropic’s Mythos model. CEO Zhou Hongyi revealed the model in a speech at the 14th Beijing Cybersecurity Conference, which Qihoo 360 organizes. Chinese media outlets have transcribed the talk, in which Zhou described Mythos as “equivalent to a ‘cyber nuclear weapon’,” because the USA’s ban on foreign nationals accessing the model gives America a tool with which to find flaws in software upon which…

Feds deny Polestar authorization to sell cars in US from model year 2027Ars Technica - All content
Why it matters: US Commerce denial of Polestar import authorisation under the connected-car ban is a concrete decoupling/export-control action in the US-China tech contest.
The electric car brand Polestar's days in the US are seriously numbered. Today, the company revealed that the US Commerce Department has declined to authorize imports of new Polestars from model year 2027 onward as part of a rule banning connected cars from automakers with Chinese links. Polestar says it will continue to sell its existing stock of Polestar 3 and Polestar 4 SUVs and "will continue to support customers, including providing access to its service network." But we can forget about…


Threat Intelligence (CTI)

[P1] Russian Intelligence Services Continue to Target Commercial Messaging ApplicationsAll CISA Advisories
Why it matters: Updated CISA/FBI advisory on active Russian intelligence targeting of commercial messaging apps is directly relevant as an ongoing state-sponsored cyber campaign with geopolitical significance.
CISA and the Federal Bureau of Investigation (FBI) issued an updated Public Service Announcement (PSA) warning of Russian Intelligence Services (RIS) cyber threat actors targeting commercial messaging applications in ongoing phishing campaigns. This PSA is an update to the March 2026 Russian Intelligence Services Target Commercial Messaging Application Accounts and provides recent tactics, recommended mitigations, and samples of phishing messages.
actor APT29 (Midnight Blizzard / SVR) (65%), escalation

[P1] Russian APT Deploys ‘StockStay’ Backdoor Against Ukrainian TargetsSecurityWeek
Why it matters: Turla deploying a new backdoor against Ukrainian government and military targets is high-profile Russian APT espionage directly relevant to European security.
Turla has been using the backdoor against government and military organizations in Ukraine for espionage. The post Russian APT Deploys ‘StockStay’ Backdoor Against Ukrainian Targets appeared first on SecurityWeek .
actor Turla (87%), escalation

[P1] Chinese APT CL-STA-1062 Expands Attacks on Southeast Asian Critical Infrastructure With Custom MalwareSecurity Affairs
Why it matters: A Chinese APT expanding persistent operations against Southeast Asian critical energy infrastructure with custom malware is a high-priority geopolitical cyber-espionage story.
Chinese-speaking APT CL-STA-1062 targeted Southeast Asian government and energy networks open-source tools, and a new TinyRCT backdoor. Palo Alto Networks Unit 42 researchers published a detailed report on a Chinese-speaking threat actor, tracked as CL-STA-1062, that has been running persistent operations across East Asia since at least March 2022 and shifted focus to Southeast Asian government entities and state-owned critical energy infrastructure from mid-2025 onward.
actor CL-STA-1062 (aka UAT-7237) (72%), escalation


Digital Sovereignty & Identity

EU countries float Commission role in sovereign cloud assessmentsTech Archives | Euractiv
Why it matters: EU member states floating a Commission role in sovereign cloud assessments directly addresses cloud sovereignty governance and the risk of regulatory forum shopping.
Some are concerned that having separate national authorities could encourage "forum shopping"

Meta Is Testing Facial Recognition for Police and MilitarySchneier on Security
Why it matters: Meta prototyping real-time facial recognition with a Pentagon supplier raises acute questions about biometric power, surveillance infrastructure, and US Big Tech-defence entanglement.
We know that ICE wants to deploy eyeglasses with facial recognition that can identify people in real time. Turns out Meta is prototyping the feature with a Pentagon supplier. (Alternate news story.)

Activist Phone Hacked With Cellebrite After Russia Contract CancellationSecurity Affairs
Why it matters: Russian use of Cellebrite tools against an opposition activist despite cancelled support exposes the sovereignty risks of dependence on foreign forensic technology vendors.
Russian authorities used Cellebrite tools to unlock an activist’s iPhone and analyze private data despite canceled support, raising abuse concerns. On May 31, 2021, Russian security services pulled opposition activist Andrey Pivovarov off a flight at St. Petersburg airport and confiscated his iPhone 12 and MacBook. He never consented to a search and never gave up his passwords.


Defence & National Security

FCC votes to toughen rules in bid to better protect undersea cablesThe Record from Recorded Future News
Why it matters: FCC mandating licensing for undersea cable terminal equipment is a major US infrastructure-sovereignty and critical-infrastructure protection policy move.
In an unprecedented move, the FCC also said it plans to mandate that owners and operators of submarine line terminal equipment (SLTE) be licensed.

The Pentagon Is Looking Into the Dialog Data Exposure for Unmasking National Security OfficialsWIRED
Why it matters: Data exposure of senior White House intelligence and special-operations personnel raises serious national-security implications around private-platform data handling and identity exposure.
Exposed records from the private group included the personal information of a senior White House intelligence official and an active-duty special operations officer.

Russia Used Cellebrite on Jailed Activist's iPhone Months After Sales CutoffThe Hacker News
Why it matters: Citizen Lab forensic evidence that Russia used Cellebrite against an opposition activist after the declared sales cutoff is a significant digital-rights, surveillance-export-control, and accountability story.
Russian authorities used Cellebrite's UFED forensic tools to break into the iPhone of detained opposition activist Andrey Pivovarov in June 2021, three months after Cellebrite said it would stop selling its tools and services to Russia and Belarus. The finding, published June 25 by the Citizen Lab, rests on two things that rarely line up: traces on the phone itself and an official Russian


Cybersecurity & Threats

[P1] Major Increase in Ransomware Attacks Targeting Europe, Warns New ReportInfosecurity Magazine
Why it matters: A 50%+ surge in ransomware targeting Europe, with rising supply-chain attacks, is directly relevant to the EU digital-sovereignty and infrastructure-resilience lens.
Analysis of ransomware incidents by researchers at Black Kite found that attacks have risen by over 50% in the last year, with supply chain attacks increasing

[P3] Russian Hackers Behind the $2.5 Billion Jaguar Land Rover Cyberattack, Investigators SayDataBreaches.Net
Why it matters: Russian ransomware attack costing the UK economy £1.9 billion, flagged by the Bank of England, is a high-impact incident with clear national-security and economic sovereignty dimensions.
Rex Edison reports A single cyberattack dented an entire country’s GDP. The Cyber Monitoring Centre estimates that the ransomware assault on Jaguar Land Rover cost the UK economy £1.9 billion — roughly $2.5 billion — rippling through more than 5,000 businesses and dragging car production to levels not seen since 1952. The Bank of England flagged the damage in its economic outlook. Now, after months... Source

[P3] China’s cybersecurity industry needs its own Mythos model, 360 founder warnsTech - South China Morning Post
Why it matters: China's leading cybersecurity entrepreneur warns that Anthropic's Mythos AI vulnerability-discovery model poses existential cyber risks, framing AI-enabled offensive cyber capability as a strategic threat.
China must develop its own equivalent to Anthropic’s Mythos model to counter the cybersecurity risks posed by the artificial intelligence era, according to 360 Security Technology founder Zhou Hongyi, who likened the powerful US technology to a “cyber nuclear weapon”. Released in April with the ability to autonomously identify software vulnerabilities, Mythos has accelerated vulnerability discovery a hundredfold while slashing costs – a “terrifying change” that had effectively “democratised”…

tagged