Global Cyber Alliance

Global Cyber Alliance GCA makes the Internet safer by bringing people together to strengthen core digital foundations and deliver practical protections to those who need them most.

The Global Cyber Alliance (GCA) is a global nonprofit that makes the Internet safer by reducing widespread cyber risk. We bring together partners across sectors to strengthen the Internet’s core infrastructure and put practical cyber protections in the hands of the organizations and communities most at risk. As the threat landscape evolves at a pace unmatched in speed and scale, GCA is at the fore

front, studying the problem, convening the right people and organizations, and delivering solutions that work.

09/03/2026

CEO Brian Cute on Software Oasis discussing the rise of deepfakes, fraud, and scams.

Low battery out in public and there's a free USB port right there. Is it risky to plug in?There are no confirmed cases o...
08/27/2026

Low battery out in public and there's a free USB port right there. Is it risky to plug in?

There are no confirmed cases of "juice jacking" happening to an everyday user, though researchers have successfully demonstrated proofs-of-concept in controlled environments, so it could be – or become – a real threat.

For now, though, modern phones already default to charge-only unless a data connection gets approved, and recent iOS/Android updates now require a passcode or face ID before that approval can even happen.

The safeguards are simple:

1️⃣ Keep your devices updated with the latest security patches

2️⃣ If a "trust this device" prompt appears while charging, decline it and unplug

3️⃣ A personal cable plus a wall outlet or power bank sidesteps the conundrum entirely

Charging in public isn’t inherently risky, but treating each connection as worth a second look is what keeps it that way.

Full article:

You may have seen advice that you should never use a public charging point, but is that true? How to decide if you should go for it.

Postal operators run on trust — customers act fast on delivery alerts and customs notices via email without a second tho...
08/19/2026

Postal operators run on trust — customers act fast on delivery alerts and customs notices via email without a second thought. Cybercriminals are exploiting that trust for phishing attacks and fraud attempts.

A new benchmark study from DMARC Manager, published with the Global Cyber Alliance, scanned all 191 Designated Postal Operators worldwide. The findings:

👉 81% of postal operators not fully protected against email spoofing

👉 Only 19% have reached p=reject, the only policy that actually stops forged mail from being delivered

👉 Postal is the #2 most impersonated sector globally

This report pairs DMARC Manager's sector-wide data with GCA's work on domain security, published together as collaborating organizations with the new postal sector POST-ISAC. Together, the report gives the sector evidence of the current situation and a practical path forward toward email security.

https://globalcyberalliance.org/dmarc-adoption-global-postal-operators/

A global study of DMARC adoption of 191 Postal Operators reveals gaps in email security and outlines measures against spoofing and phishing.

One hour, one disposable rented IP address, and two lures resulted in ~20,000 phishing attempts in two five-minute burst...
08/17/2026

One hour, one disposable rented IP address, and two lures resulted in ~20,000 phishing attempts in two five-minute bursts. GCA's honeypot network, AIDE, captured it happening in real time on January 27, 2026:

1️⃣ Burst one: ~6,020 fake OneDrive file-share emails, hitting South African real estate, telecom, and financial services domains�

2️⃣ Burst two, 50 minutes later: ~14,716 fake job offers targeting personal live.com and msn.com inboxes, with replies routed to a typo-squatted lookalike of a major financial firm's domain

Nothing here is technically new, but it reminds us that the old playbook still gets results, and still costs so little to run that people keep using it at scale.

Our latest field report by Meghal Donde breaks down the timing, targeting, and infrastructure, plus what email operators, businesses, and job seekers can do about it.

Read the full analysis: https://globalcyberalliance.org/inside-a-fast-moving-phishing-campaign-captured-by-aide/

In January 2026, an attacker attempted ~20K phishing emails against two victim populations in just two five-minute bursts within an hour.

In “The Trust Crisis: How AI Is Changing Cybersecurity. The Cybercrime Inflection Point” for The AI Journal, GCA Preside...
07/28/2026

In “The Trust Crisis: How AI Is Changing Cybersecurity. The Cybercrime Inflection Point” for The AI Journal, GCA President & CEO Brian Cute explores how AI is shifting the focus of cybercrime from breaking through technology defenses to exploiting human trust.

Attackers are using AI to create realistic phishing messages, impersonate trusted individuals, automate social engineering campaigns, and expand their reach at unprecedented speed.

As AI makes deception harder to detect, cybersecurity can no longer rely solely on users spotting suspicious activity. Organizations must strengthen verification processes, improve resilience, and work together to build a more secure Internet ecosystem.

Addressing the AI-driven evolution of cybercrime will require action across the entire digital community — from individuals and organizations to the infrastructure that connects us all.

Read the full article at

Cybercrime is entering a new phase.

Public Wi-Fi is convenient, but there are risks. Staying safe doesn't have to be complicated, though. Today we're sharin...
07/27/2026

Public Wi-Fi is convenient, but there are risks. Staying safe doesn't have to be complicated, though. Today we're sharing simple, practical steps to help protect your personal information when using public Wi-Fi, including:

🔒 Verify you're connecting to a legitimate network
📱 Turn off automatic Wi-Fi connections
🌐 Stick to websites that use HTTPS
💻 Avoid logging into sensitive accounts when possible
📲 Keep your devices and software up to date

A few small habits can go a long way toward reducing your risk and keeping your data secure.

Public Wi-Fi can be a reasonable option when you verify the network, protect your device, and match the connection to the task.

We are deeply saddened to share that Jamie Voss, our Director of IT and Security, has passed away. Our sincere condolenc...
07/23/2026

We are deeply saddened to share that Jamie Voss, our Director of IT and Security, has passed away.

Our sincere condolences go out to his family and loved ones.

Jamie was highly regarded for his commitment, reliability, and unwavering optimism. As part of our team bios, we ask, “Who inspires you?” and Jamie’s response was, "People who serve to encourage others. It reminds me what is most important.”

Jamie encouraged us all and we will miss him greatly.

In a new InformationWeek article, GCA Chief Technology Officer Leslie Daigle argues that today’s cybersecurity challenge...
07/02/2026

In a new InformationWeek article, GCA Chief Technology Officer Leslie Daigle argues that today’s cybersecurity challenges—from residential proxy networks to AI-discovered vulnerabilities—can’t be solved through blocking alone. Instead, she calls for greater collaboration across the Internet ecosystem to address threats at their source and strengthen the resilience of critical infrastructure.

From the article:

“We need more collaborative, global efforts to identify and take down the infected hosts and command and control servers that are supporting the attack campaigns. These are not “nuisance” traffic generators; they are a full-on pandemic. We’ve seen that global progress can be made through thoughtful collaboration. For example, the Mutually Agreed Norms for Routing Security (MANRS) initiative has demonstrated the positive impact of coordinated collaboration in addressing global security threats.

While AI can identify zero-day vulnerabilities faster than solutions can be deployed, the hard work of finding and addressing them still has to be done, as Firefox did. What will be helpful is to lean into the spirit of collaborative open source software and not just patch your own software, but also share the fixes with OSS repositories. Share updates when libraries are scanned and vulnerabilities are found, so that the same libraries don’t need to be scanned by each software company using them.

While mass residential proxy-delivered attacks and AI-identified critical software vulnerabilities may induce adrenaline rushes, the answers will come from real-world collaboration among people, companies and nations worldwide.”

Read the full article:

Residential proxies and AI-detected zero-day vulnerabilities pose major 2026 cybersecurity threats, writes one IT leader. Global collaboration is needed.

Sending money electronically has never been easier. Unfortunately, neither have scams.Whether it's a fake emergency, a t...
07/01/2026

Sending money electronically has never been easier. Unfortunately, neither have scams.

Whether it's a fake emergency, a too-good-to-be-true deal, a budding romance, or someone claiming to be from your bank, scammers rely on getting you to act before you think.

The best defense is to pause before you pay.

⏸️ Pause before sending money, especially if you're being pressured to act quickly. (Remember to Take9!)

📞 Verify payment requests through a trusted phone number or another communication channel.

🤨 Be skeptical of requests involving gift cards, cryptocurrency, wire transfers, or payment apps. They're favorites of scammers because they're difficult to reverse.

🫸 If something feels off, trust your instincts and ask questions.

Taking an extra minute to verify a request could save you from losing much more than your money. Learn more about recognizing and avoiding money transfer scams in our latest guide:

When Sending Money is Easy, Scams Move Fast. A Guide to Avoiding Money Transfer Scams from the Global Cyber Alliance.

Cybercriminals are abusing the Internet infrastructure that belongs to all of us. Malicious activity—including botnets, ...
06/22/2026

Cybercriminals are abusing the Internet infrastructure that belongs to all of us.

Malicious activity—including botnets, scanning, credential attacks, and residential proxy abuse—is originating from compromised consumer devices and legitimate networks rather than attacker-owned infrastructure. How do we reduce harm when the source of that harm is often an unsuspecting victim?

Just before in Edinburgh, Scotland, we held the Internet Integrity Workshop III where we convened Internet operators, security researchers, and ecosystem stakeholders to tackle this issue.

Our latest paper, "Internet Integrity Workshop III: Residential Proxies and Infected Infrastructure," summarizes that workshop and explores:

❓Why residential proxy abuse is growing
📈 How infected infrastructure is enabling cybercrime at scale
🛑 The challenges of attribution, detection, and mitigation
🤝 Opportunities for coordinated action across the Internet ecosystem

The Internet's security depends on stopping bad actors and reducing the amount of compromised infrastructure available for abuse in the first place.

Protecting the Internet's foundations requires collaboration across network operators, researchers, service providers, and policymakers. This report is a step toward building that shared understanding and identifying practical actions that can make a measurable difference.

Read the paper:

https://globalcyberalliance.org/internet-integrity-workshop-iii-residential-proxies-and-infected-infrastructure/

Report on abuse of residential proxy networks that enable attacks that range from credential stuffing to nation-state intelligence gathering.

Address

279 Troy Road, Suite 9 #306
Rensselaer, NY
12144

Alerts

Be the first to know and let us send you an email when Global Cyber Alliance posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Organization

Send a message to Global Cyber Alliance:

Shortcuts

Share