Tag: ai
-
CrowdStrike warns AI agents are creating a cyber battleground for GCC organisations
Artificial intelligence is lowering the barrier to entry for cyber criminals, accelerating attack speeds and increasing the complexity of threats, prompting organisations to rethink resilience, governance and security operations First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650857/CrowdStrike-warns-AI-agents-are-creating-a-cyber-battleground-for-GCC-organisations
-
The Target Is No Longer the Model. It’s the Agent.
AI agents are becoming the new attack surface, exposed to poisoned skills, prompt injection, jailbreaks and attacks through connected tools. I read the AI security research published in a single month, February 2026, and when you put it all together, it’s not a list of curiosities. It’s a field guide to a new attack surface.…
-
New Remus Infostealer Steals OpenAI and Anthropic API Tokens, Passwords and Crypto Wallets
A newly tracked Windows infostealer dubbed Remus is expanding its credential-theft playbook by targeting API tokens and local usage data tied to AI platforms, including OpenAI and Anthropic. Researchers at SpyCloud Labs found that recent Remus builds harvest browser data, password-manager and 2FA-extension artifacts, cryptocurrency-wallet files, application credentials, and AI assistant credential folders, potentially exposing…
-
New Remus Infostealer Steals OpenAI and Anthropic API Tokens, Passwords and Crypto Wallets
A newly tracked Windows infostealer dubbed Remus is expanding its credential-theft playbook by targeting API tokens and local usage data tied to AI platforms, including OpenAI and Anthropic. Researchers at SpyCloud Labs found that recent Remus builds harvest browser data, password-manager and 2FA-extension artifacts, cryptocurrency-wallet files, application credentials, and AI assistant credential folders, potentially exposing…
-
Bumrungrad turns to AI agents to clear patient email backlog
Bumrungrad International Hospital is using Salesforce’s Agentforce to summarise and route patient correspondence, with automated appointment booking and voice agents on the cards First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650856/Bumrungrad-turns-to-AI-agents-to-clear-patient-email-backlog
-
Product showcase: Helmit alerts parents when online conversations show signs of trouble
Helmit is a parental control app that combines AI-powered social media monitoring with screen time management, web filtering, location tracking, and safety alerts. It … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/21/product-showcase-helmit-parental-controls/
-
BragJack Attack Hijacks AI Assistants in 5 Popular Browsers With Zero Clicks
Security researchers have revealed a zero-click attack technique known as BragJack, which could enable a malicious browser extension to hijack built-in AI assistants in popular browsers like Google Chrome, Microsoft Edge, Opera Neon, Perplexity Comet, and Claude in Chrome. The research, published on September 16 by Gal Weizman of Forever Security, describes a common architectural…
-
BragJack Attack Hijacks AI Assistants in 5 Popular Browsers With Zero Clicks
Security researchers have revealed a zero-click attack technique known as BragJack, which could enable a malicious browser extension to hijack built-in AI assistants in popular browsers like Google Chrome, Microsoft Edge, Opera Neon, Perplexity Comet, and Claude in Chrome. The research, published on September 16 by Gal Weizman of Forever Security, describes a common architectural…
-
Vorstände kümmern sich erst im Ernstfall um Cybersicherheit – KI-gestützte Angriffe zwingen Cyberresilienz zur Chefsache
First seen on security-insider.de Jump to article: www.security-insider.de/manageengine-studie-cyberresilienz-ki-angriffe-a-bc81aca3dba8ac1ccd5f931cdf48c7dd/
-
Firmware-Security: Warum KI allein nicht reicht
Firmware-Security wird im KI-Zeitalter zur strategischen Aufgabe: Künstliche Intelligenz beschleunigt zwar die Schwachstellensuche, doch erst die Kombination mit deterministischer Analyse, SBOM-Transparenz und automatisiertem Monitoring macht Risiken in Geräten, Maschinen und Anlagen belastbar steuerbar. Management Summary Firmware-Sicherheit wird zur Führungsaufgabe: Cyberrisiken in Geräten, Maschinen und Anlagen betreffen nicht nur IT-Systeme, sondern auch reale Produktions-, Betriebs-… First…
-
Intent injection attacks are a new worry for AI-native 6G networks
Intent-based networking (IBN) lets operators state the outcome they want and leaves its translation into network policy to software, an approach AI-native 6G designs have … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/21/6g-intent-injection-attacks/
-
Intent injection attacks are a new worry for AI-native 6G networks
Intent-based networking (IBN) lets operators state the outcome they want and leaves its translation into network policy to software, an approach AI-native 6G designs have … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/21/6g-intent-injection-attacks/
-
Intent injection attacks are a new worry for AI-native 6G networks
Intent-based networking (IBN) lets operators state the outcome they want and leaves its translation into network policy to software, an approach AI-native 6G designs have … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/21/6g-intent-injection-attacks/
-
Intent injection attacks are a new worry for AI-native 6G networks
Intent-based networking (IBN) lets operators state the outcome they want and leaves its translation into network policy to software, an approach AI-native 6G designs have … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/21/6g-intent-injection-attacks/
-
Schwachstellenmanagement im KI-Zeitalter Wie Unternehmen KI-generierte Exploits mit einer »Containment First«-Architektur bremsen können
KI beschleunigt die Schwachstellenforschung und damit auch die Angriffsgeschwindigkeit. Klassische Patch-Zyklen geraten unter Druck, weil Exploits schneller entstehen, als Unternehmen Updates sicher testen und ausrollen können. Der Beitrag zeigt, warum Sicherheitsverantwortliche Schwachstellenmanagement neu denken müssen und weshalb eine »Containment First«-Architektur mit identitätsbasierter Mikrosegmentierung zum strategischen Hebel gegen KI-generierte Exploits wird. Management Summary KI verkürzt… First…
-
AI compliance issues hit 2 in 5 large companies, and legacy workflows are a big factor
Forty percent of large companies had an AI-related compliance or governance issue in the past 12 months, according to 1,000 senior IT, operations, and transformation leaders … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/21/ai-compliance-issues-research/
-
AI Hallucinations Nearly Triggered a US-China Military Confrontation
An AI-generated intelligence report falsely identified weapons on a Chinese ship, nearly triggering a US military operation during the Iran war. According to CNN, four sources familiar with the episode say an intelligence report circulated through the military claiming a Chinese vessel in the Middle East was carrying components for a nuclear weapons program. The…
-
107 Jahre ungelöst: KI knackt deutschen Funkspruch aus dem Ersten Weltkrieg
Tags: aiEin Autor namens prinz will mit einem KI-Modell eine deutsche Militärchiffre von 1918 entschlüsselt haben, die bislang als unlösbar galt. First seen on golem.de Jump to article: www.golem.de/news/107-jahre-ungeloest-ki-knackt-deutschen-funkspruch-aus-dem-ersten-weltkrieg-2609-213252.html
-
KI-Kontroverse: Trump setzt trotz Warnungen vor Gefahren noch stärker auf KI
Tags: aiFührende Köpfe der KI-Branche verlangen eine Verlangsamung bei der KI-Entwicklung und warnen vor Kontrollverlust. Donald Trump ist das egal. First seen on golem.de Jump to article: www.golem.de/news/ki-kontroverse-trump-setzt-trotz-warnungen-vor-gefahren-noch-staerker-auf-ki-2609-213247.html
-
KI-Agenten brauchen eine Undo-Taste: Warum ‘Human in the Loop” allein nicht mehr reicht
Autonome KI-Agenten handeln schneller als Menschen eingreifen können. Warum granulare Recovery, Daten-Governance und Zero Trust jetzt entscheidend werden. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/ki-agenten-brauchen-eine-undo-taste-warum-human-in-the-loop-allein-nicht-mehr-reicht/a46435/
-
Staatliche Akteure, OT-Systeme und KI: Europas Cyberlage erreicht die nächste Reifestufe
Die aktuelle Bedrohungslage zeigt eine neue Qualität staatlich geprägter Cyberoperationen: Angreifer agieren leiser, strategischer und zunehmend automatisiert. Für IT-Entscheider zählt daher nicht mehr nur die Abwehr einzelner Angriffe, sondern die Fähigkeit, Expositionen frühzeitig zu erkennen, kritische OT- und Edge-Systeme sichtbar zu machen und Cyberresilienz als kontinuierlichen Managementprozess zu verankern. Die fünf wichtigsten Management-Impulse: Sichtbarkeit… First…
-
Security Affairs newsletter Round 595 by Pierluigi Paganini INTERNATIONAL EDITION
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. Google Gemini also Broke Out of Its Test Environment AI Helps Hackers Hijack OpenAI Staff Accounts Through…
-
Google’s Gemini is the latest AI model to hack other companies
Google said Gemini had “acted appropriately” by ending each hack immediately. First seen on techcrunch.com Jump to article: techcrunch.com/2026/09/19/googles-gemini-is-the-latest-ai-model-to-hack-other-companies/
-
Viral AI actress’ hotline face-scans every caller, watches their mood
AI actress Tilly Norwood went viral after glitching into Chinese on Piers Morgan Uncensored last night. Her “Talking Tilly” video call service face-scans every caller for an 18+ age check, senses callers’ moods during calls, and shuts down permanently on September 27. We tried it and read the fine print. First seen on bleepingcomputer.com Jump…
-
BragJack attacks hijack AI browser agents through malicious extensions
BragJack, a proof-of-concept attack from Forever Security’s Gal Weizman, hijacks the AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome using one malicious extension. The Prompt Forcing technique earned over $20,000 in bounties and two CVEs. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/bragjack-attacks-hijack-ai-browser-agents-through-malicious-extensions/
-
Google Gemini also Broke Out of Its Test Environment
Google Gemini escaped a cyber test environment, reached three real companies, and exposed why AI security tests need strict isolation. Google has confirmed that one of its Gemini models broke into the systems of three real companies during a cybersecurity test in May. The incident is the first publicly known case in which a Google…
-
Google Gemini AI Hacked 3 Real Companies After Cybersecurity Test Exposed It to Internet
Google has confirmed that its Gemini artificial intelligence model accidentally accessed protected systems belonging to three real companies during a cybersecurity evaluation. The incident stemmed from a configuration error that exposed the AI agent to the public internet. Google Gemini AI Hacked This situation highlights how autonomous AI systems can breach intended testing boundaries when…
-
AI Helps Hackers Hijack OpenAI Staff Accounts Through a Forum
AI helped researchers exploit a Discourse flaw in under 72 hours, hijacking OpenAI staff accounts and exposing the risks of shared SSO. Three researchers at Hacktron just took over ChatGPT and Codex accounts belonging to OpenAI staff. The attack did not rely on phishing techniques or a leaked password. Through an image upload on OpenAI’s…
-
Digitale Infrastruktur: Warum Rechenzentren mehr Resilienz gegen Cyberrisiken und Energieengpässe brauchen
Digitale Infrastrukturen werden zum Rückgrat von Wirtschaft, KI und vernetzten Geschäftsmodellen. Doch mit dem Wachstum von Rechenzentren steigen auch die systemischen Risiken: Cyberangriffe, Energieengpässe, Klimafolgen und Lieferkettenstörungen wirken immer häufiger zusammen. Die Studie von Economist Enterprise und FM zeigt, dass Unternehmen zwar in Resilienz investieren, aber komplexe Krisenszenarien noch zu selten ganzheitlich testen [1]. Management……
-
KI-Sicherheit in Unternehmen: Warum Governance, Sichtbarkeit und Deepfake-Abwehr jetzt entscheidend sind
Deutsche Unternehmen fühlen sich beim Schutz ihrer KI-Systeme gut vorbereitet doch die Erkennung böswilligen oder unerwarteten KI-Verhaltens bleibt deutlich zurück. Der TrendAI-Report zeigt eine gefährliche Lücke zwischen Governance-Anspruch und operativer Sicherheitsrealität. Für Entscheider wird KI-Sicherheit damit zur Managementaufgabe: Sichtbarkeit, Testing, Deepfake-Abwehr und wirksame Eingriffsmechanismen müssen von Anfang an Teil jeder Enterprise-AI-Strategie sein. Management Summary… First…

