Tag: ai
-
Building the Enterprise Security Playbook for Agents and Non-Human Identities.
Discover a modern security playbook for managing non-human identities, securing machine access, and safely accelerating AI adoption. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/building-enterprise-security-playbook-for-agents-non-human-identities-a-32847
-
Spain’s data agency gets first report of AI-powered data breach
The Spanish Data Protection Agency (AEPD) was notified of an attack allegedly carried out with an AI agent powered by a known large language model (LLM). First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/spains-data-agency-gets-first-report-of-ai-powered-data-breach/
-
Five Eyes Optimistic About Impact of AI on Cybersecurity
Five Eyes Share Optimism on the Impact of AI on the Balance of Power in Cyberspace. Artificial intelligence will help both attackers and defenders in cyberspace, but will net out to the benefit of defenders – although it will get bumpy on the way there, senior officials from the national cybersecurity centers of all the…
-
EU’s Ursula von der Leyen Backs AI Go-Slow Approach
Tags: aie=4>On Wednesday, as part of an annual State of the Union Address, European Commission President Ursula von der Leyen announced a plan to invite frontier AI labs for a discussion on how we can support ongoing industry efforts to pace the frontier. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/eus-ursula-von-der-leyen-backs-ai-go-slow-approach-a-32843
-
BTS #82 Firmware Analysis, Linux Malware, Future of AI
Below the Surface episode 82 was recorded on September 10, 2026, with host Paul Asadoorian joined by Vlad Babkin and Chase Snyder. The conversation moves across several current security stories, but its center of gravity is clear: modern infrastructure depends… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/bts-82-firmware-analysis-linux-malware-future-of-ai/
-
Datenschutz im KI-Kundenservice Worauf IT-Verantwortliche bei der Support-Automatisierung achten müssen
Tags: aiKI-Agenten übernehmen im Kundenservice inzwischen Aufgaben, die bis vor Kurzem Mitarbeitenden vorbehalten waren. Sie ändern Lieferadressen, stoßen Erstattungen an und rufen dafür Bestell- und Kundendaten aus angebundenen Systemen ab. Für IT- und Datenschutzverantwortliche ändert das die Prüffragen. Wie gut ein Sprachmodell formuliert, ist zweitrangig. Wichtiger ist, welche personenbezogenen Daten es zu sehen bekommt, wohin sie…
-
BragJack Attack Can Turn a Browser’s Agentic AI Against It
A new type of attack hijacks the AI assistant built directly into various browsers to access sensitive information, execute malicious actions, and exfiltrate data. First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/bragjack-browser-agentic-ai
-
Companies’ AI strategies don’t account for agentic tools
Businesses are taking AI governance seriously, but their plans lag behind the technology they’re using, according to an EY survey. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ai-governance-agents-ey/830282/
-
One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude
Security researchers at Forever Security have shown that one ordinary browser extension could take control of the AI assistants built into five Chromium-based products: Gemini Live in Chrome, Perplexity Comet, Microsoft Edge, Opera Neon and the Claude in Chrome extension.Once the extension was installed, it could access each product’s built-in AI with a single click.…
-
Hybrid AI Is Coming. Is Your Infrastructure Ready?
A few months ago, I wrote about why I believe enterprise AI is evolving toward Hybrid AI, with organizations using different models and services for different workloads rather than relying on a single provider. The economics, performance, security, governance, and… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/hybrid-ai-is-coming-is-your-infrastructure-ready/
-
Code Audit vs. Penetration Test vs. Technical Due Diligence: Which Review Is Worth Paying For?
Your developers say the application is ready. Your automated security scans show no critical findings. An AI coding assistant has reviewed the code. Then an enterprise customer asks for a penetration test. An investor requests technical due diligence. Another consultant… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/code-audit-vs-penetration-test-vs-technical-due-diligence-which-review-is-worth-paying-for/
-
Mate Security CEO Asaf Wiener’s LinkedIn Post Draws Attention To The AI Cybersecurity Debate
As artificial intelligence becomes increasingly central to both cybersecurity defense and offensive operations, a debate is emerging over how quickly the technology should advance. A recent LinkedIn post from Asaf Wiener, CEO and co-founder of Mate Security, has drawn significant… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/mate-security-ceo-asaf-wieners-linkedin-post-draws-attention-to-the-ai-cybersecurity-debate/
-
Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories
Mandiant says an attacker hijacked an active AI coding-assistant session at an unnamed software-as-a-service provider and later spread Shai-Hulud across about 100 internal code repositories.Before the repository spread, the assistant recommended software that the attacker had poisoned, and the recommendation was accepted. The worm stole repository secrets and source code for the First seen on…
-
EUDI-Wallet d-you: Vertrauen braucht mehr als eine sichere digitale Identität
Tags: aiDie EUDI-Wallet d-you verändert digitale Identitäten. Doch echte Sicherheit entsteht erst durch überprüfbare Prozesse, Berechtigungen und KI-Agenten. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/eudi-wallet-d-you-vertrauen-braucht-mehr-als-eine-sichere-digitale-identitaet/a46411/
-
Cybersicherheitsrisiken für Versicherer im Zeitalter von KI- und Cloud-Transformation
Für Versicherer darf der Weg zur Cloud- und KI-Transformation nicht auf Kosten der Kontrolle gehen. Versicherungsnehmer erwarten Vertraulichkeit – Aufsichtsbehörden verlangen Compliance First seen on infopoint-security.de Jump to article: www.infopoint-security.de/cybersicherheitsrisiken-fuer-versicherer-im-zeitalter-von-ki-und-cloud-transformation/a46414/
-
Treasury’s Scott Bessent says no liability exemptions for AI labs
The secretary told House Financial Services Committee lawmakers that the “best way to guarantee safety” is for AI creators to be held “liable for what they build and generate.” First seen on fedscoop.com Jump to article: fedscoop.com/treasury-scott-bessent-ai-labs-liability-exemptions/
-
Phishing-Tool nutzt KI für voll automatisierte Vishing-Angriffe
Sicherheitsforscher von Group IB sind auf neue Entwicklungen im Bereich des Voice-Phishings (Vishing) gestoßen. Die in die Phishing-as-a-Service-(PhaaS-) Plattform ‘Balonx” integrierte Anwendung ‘CallFlow” kann mithilfe von mehreren KI-Systemen Phishing-Anrufe ohne menschliche Beteiligung führen. Dies könnte die Anzahl um ein Vielfaches erhöhen. Momentan konzentrieren sich die durch Callflow operierten Vishing-Angriffe vor allem auf Mexiko, eine weltweite…
-
Hersteller-Counter und großer Lounge-Bereich laden zu Fachgesprächen und Wissensaustausch ein
Die Sysob IT-Distribution präsentiert auf der it-sa 2026 in Nürnberg (Halle 7, Stand 512) Produktneuheiten seiner Herstellerpartner im Kontext aktueller Security-Herausforderungen wie NIS2, KI und digitale Souveränität. Im Fokus stehen dabei Lösungen zum Schutz von Identitäten, Endgeräten, Unternehmensdaten und Geschäftsanwendungen. Die vorgestellten IT-Sicherheitslösungen decken unter anderem die folgenden Technologiebereiche ab: Multi-Faktor-Authentifizierung, Identitätsmanagement, AI-Governance, Datensicherheit, Firewalls,…
-
Self-improving AI should slow down, von der Leyen tells EU lawmakers
Tags: aiEuropean Commission President Ursula von der Leyen wants frontier AI development slowed, and said on Wednesday that she will invite the leading AI labs to discuss how the EU … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/16/eu-ursula-von-der-leyen-ai/
-
Threat Intelligence Alone Won’t Close the Exploitation Gap
Tags: advisory, ai, breach, credentials, data-breach, exploit, intelligence, marketplace, threat, vulnerabilityA leaked credential shows up in a criminal marketplace, or a vulnerability gets a disclosure advisory, and either one can be weaponized against a real target before most security teams have triaged the alert. Attackers are combining that kind of intelligence with AI-assisted exploitation to accelerate the path from exposure to breach faster than most…
-
Advice for CIOs on AI’s ‘existential threat’
Statements by OpenAI chief Sam Altman, following an essay by Anthropic chief Dario Amodei, raise concerns over the safety of frontier models First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650475/Advice-for-CIOs-on-AIs-existential-threat
-
Quorum Cyber Adds Autonomous SOC Through Ontinue Acquisition
Proposed Purchase Combines Agentic SOC Technology With Managed Security Expertise. Quorum Cyber’s planned acquisition of Swiss Microsoft Gold Partner Ontinue would combine Microsoft-focused managed security with agentic SOC technology designed to investigate threats at machine speed while giving customers control over when AI can act autonomously. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/quorum-cyber-adds-autonomous-soc-through-ontinue-acquisition-a-32826
-
Securing the unpatchable in an age of AI-driven vulnerabilities
Advances in AI technology will continue to identify vulnerabilities that in some circumstances are difficult, or effectively impossible, to patch. Appropriate network segmentation, rigorous visibility, and the deployment of NGFW/IPS combinations can provide a powerful compensatory layer. First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/securing-the-unpatchable-in-an-age-of-ai-driven-vulnerabilities/
-
36,769 Self-Hosted AI Services Exposed Online, What Security Teams Should Check
A new scan found 36,769 self-hosted AI endpoints reachable online, highlighting gaps in access controls, patching, and monitoring. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/news/news-self-hosted-ai-security/
-
One runaway AI agent racked up a $50,000 cloud bill
Organizations are deploying autonomous AI systems that execute API calls, optimize production configurations, and analyze telemetry across hybrid cloud environments. At the … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/16/google-mandiant-enterprise-ai-security-risks-report/
-
Shared AI Memory Lets Hundreds of Agents Inherit Exploits and Join Coordinated Attacks
A shared message board turned isolated AI agents into an effective offensive collective during OpenAI’s July 2026 ExploitGym evaluations, enabling roughly 1,200 agents to exchange more than 70,000 messages and files. About 700 eventually participated in activity that compromised portions of Hugging Face’s production environment showing that shared agent memory can become a high-risk coordination…
-
Große KI-Anbieter sind sich einig – Prof. Kipker: Wir kommen dem KI-GAU näher
Tags: aiFirst seen on security-insider.de Jump to article: www.security-insider.de/ki-risiken-experten-warnen-vor-ki-gau-und-ki-schwarm-a-6a517bb7959753073b66d77db77d73f4/
-
How to Secure AI-Powered Computer Vision Applications: Authentication, Authorization, and Data Protection
Computer vision applications present a security challenge that most organizations underestimate until they’re in production. The models themselves get significant engineering attention, architecture, training data, accuracy, performance. The security layer that protects access to those models, governs what data… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/how-to-secure-ai-powered-computer-vision-applications-authentication-authorization-and-data-protection/
-
How to Secure AI-Powered Computer Vision Applications: Authentication, Authorization, and Data Protection
Computer vision applications present a security challenge that most organizations underestimate until they’re in production. The models themselves get significant engineering attention, architecture, training data, accuracy, performance. The security layer that protects access to those models, governs what data… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/how-to-secure-ai-powered-computer-vision-applications-authentication-authorization-and-data-protection/
-
Hackers Disguise CHOSEN BRICK Malware as AI Apps, Antivirus Software and MRI Results
Iranian state-linked cyber actors are using fake AI applications, antivirus tools and even fabricated MRI scan results to deliver CHOSEN BRICK, a Windows-focused spyware family designed to surveil dissidents, activists and journalists. A joint advisory from the UK National Cyber Security Centre (NCSC), the FBI and the Netherlands’ AIVD warns that the campaign has targeted…

