Tag: ai
-
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
Microsoft is alerting of a “high-volume phishing campaign” that’s using invisible Unicode tag characters to bypass email filters.”Instead of using these characters to hide instructions from people while exposing them to AI models, the attacker used them to split financial lure words such as ‘funding’ to prevent email filters from parsing them,” the Microsoft Security…
-
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
Microsoft is alerting of a “high-volume phishing campaign” that’s using invisible Unicode tag characters to bypass email filters.”Instead of using these characters to hide instructions from people while exposing them to AI models, the attacker used them to split financial lure words such as ‘funding’ to prevent email filters from parsing them,” the Microsoft Security…
-
Künstliche Intelligenz: OpenAI-Agenten sollen deutsche Webseite gekapert haben
Aus einem deutschsprachigen Wiki sollen KI-Agenten von OpenAI ein Messageboard für die gemeinsame Koordination gemacht haben – und um Taktiken auszutauschen. First seen on golem.de Jump to article: www.golem.de/news/kuenstliche-intelligenz-openai-agenten-sollen-deutsche-webseite-gekapert-haben-2609-212677.html
-
OpenAI Pledges $1 Billion in AI Cybersecurity Tools to Protect Critical Infrastructure
Tags: access, ai, cyber, cybersecurity, infrastructure, intelligence, openai, threat, tool, trainingOpenAI announced a $1 billion initiative on Thursday to provide subsidized access to its artificial intelligence (AI) cybersecurity tools, technical support, and training for critical infrastructure operators. The rollout comes amid mounting warnings that AI-driven cyber threats are rapidly escalating. The company’s Daybreak for Frontline Defenders global program aims to equip under-resourced organizations protecting essential..…
-
Diese Schwachstelle in KI-Modellen lässt sich laut Forschern wohl nie beheben
First seen on t3n.de Jump to article: t3n.de/news/schwachstelle-ki-modelle-forschern-1755811/
-
Sicherheit in der agentischen Belegschaft verankern
Neue Funktionen der JFrog Plattform stellen sicher, dass KI-Agenten ausschließlich vertrauenswürdige, geprüfte Artefakte verwenden und produzieren, auf Basis einer zentralen, verlässlichen Instanz. So lässt sich sicherstellen, dass alle KI-Assets richtlinienkonform und sicher ist, von der ersten Nutzung bis zur finalen Auslieferung. ‘KI-Coding-Agenten schreiben nicht nur Software in Maschinengeschwindigkeit, sie nutzen sie auch in großem Umfang.…
-
Schwachstellenmanagement mit KI-gestützter Edge-Defense
Tags: access, ai, defense, network, openai, software, update, vulnerability, vulnerability-managementCloudflare hat mit ‘Vulnerability Discovery and Remediation” einen neuen Dienst für das automatisierte Management von Software-Schwachstellen vorgestellt. Die Lösung ist zunächst im Early-Access über Cloudflare-Managed-Defense verfügbar und kombiniert tiefgreifende Code-Analysen sowie automatisierte Patch-Generierung mit Echtzeitdaten aus Cloudflares globalem Netzwerk. Über das OpenAI-Daybreak-Defense-Network kommen dabei OpenAI-Daybreak-Modelle, darunter <>, zum Einsatz. Ziel ist es, Unternehmen dabei […]…
-
OpenAI Agents Collude on Public Wiki to Share Sandbox Bypass and Evasion Techniques
Researchers have discovered a public wiki message board that they claim was used by autonomous AI agents, identifying themselves as OpenAI systems, to exchange answers to tasks, inspect their operating environment, and discuss methods to circumvent sandbox controls. This finding, published on September 4 by Sydney Von Arx, Cormac Slade Byrd, Spencer Kitts, and Thomas…
-
AI Is Ending the Era of Hidden Vulnerabilities, Are Vendors Ready?
A tidal wave of bug reports is overwhelming software vendors, exposing secure-by-design failures and creating disclosure bottlenecks. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/ai-ending-era-hidden-vulnerabilities-are-vendors-ready
-
Beim Kill-Switch für die künstliche Intelligenz geht es auch um digitale Souveränität
Nachdem ein KI-Agent von OpenAI bei einem Sicherheitstest aus seiner kontrollierten Umgebung ausbrechen konnte, entwickelt das Unternehmen nun automatisierte Abschaltmechanismen. Das ist richtig wirft aber eine viel grundsätzlichere Frage auf: Wer hat bei autonomen KI-Systemen eigentlich die Kontrolle und im Ernstfall den Finger auf dem Kill-Switch? Ein Kommentar von Sebastian Nerz, Co-Geschäftsführer bei Syss. […]…
-
Coder Registry Compromise: Malicious Terraform Modules Explained
Coder’s compromised module registry served malicious Terraform modules that stole cloud, CI/CD, AI, and SSH credentials during a 14-hour attack window. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity/news-coder-registry-malicious-terraform-modules/
-
KnowBe4 to Put AI Trust to the Test at Leeds Digital Festival
KnowBe4 is set to explore the growing challenge of determining what organisations can trust in the age of AI at an exclusive cybersecurity briefing during Leeds Digital Festival 2026. Taking place on 1 October, CyberSecure Leeds: Who Do You Trust Now? Human Judgement in the Age of AI will examine how the growing role of…
-
AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks
We cannot forget that AI coding agents are not yet trustworthy: Researchers at a stealth startup in Israel scanned 6,214 live domains belonging to defense contractors, Fortune 500, and Big Tech companies. Of the 8,265 llms.txt and llms-full.txt files they… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/ai-coding-agents-are-installing-unknown-untrusted-code-on-corporate-networks/
-
AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks
We cannot forget that AI coding agents are not yet trustworthy: Researchers at a stealth startup in Israel scanned 6,214 live domains belonging to defense contractors, Fortune 500, and Big Tech companies. Of the 8,265 llms.txt and llms-full.txt files they… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/ai-coding-agents-are-installing-unknown-untrusted-code-on-corporate-networks/
-
The Cyber Express Weekly Roundup: Claude Session Hijacking, PaperCut Exploits, and Enterprise Cyberattacks
This weekly roundup highlights a range of cybersecurity developments affecting artificial intelligence platforms, enterprise software, healthcare organizations, social media accounts, and internet-facing infrastructure. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/weekly-roundup-claude-papercut-citrix/
-
Chinese Hackers Use AI Agents in Multi-Country Cyber Campaign
Tags: ai, china, country, cyber, cyberattack, cyberespionage, government, hacker, intelligence, threatHunt.io uncovered a Chinese-speaking campaign using AI agents to automate cyberattacks against Asian government, education and industrial targets. Threat intelligence firm Hunt.io just documented a second, separate China-linked campaign wiring commercial AI models directly into live cyberespionage operations, this time hitting Taiwan’s Kuomintang Party archives, Indonesia’s Ministry of Foreign Affairs, government and education systems in…
-
Kundendaten, Kassen, KI: Warum Händler ihre Cyberabwehr neu ausrichten müssen
Der europäische Einzelhandel steht vor einer Zuspitzung der Cyberbedrohungslage: Fast alle befragten Unternehmen meldeten innerhalb eines Jahres Sicherheitsvorfälle. Für das Management wird Cybersicherheit damit nicht länger zur rein technischen Disziplin, sondern zu einem geschäftskritischen Steuerungsthema rund um Kundendaten, Prozesse, Resilienz und digitale Wertschöpfung. Die wichtigsten Punkte für Entscheider Cyberrisiken sind im Handel Normalzustand: 97… First…
-
Kundendaten, Kassen, KI: Warum Händler ihre Cyberabwehr neu ausrichten müssen
Der europäische Einzelhandel steht vor einer Zuspitzung der Cyberbedrohungslage: Fast alle befragten Unternehmen meldeten innerhalb eines Jahres Sicherheitsvorfälle. Für das Management wird Cybersicherheit damit nicht länger zur rein technischen Disziplin, sondern zu einem geschäftskritischen Steuerungsthema rund um Kundendaten, Prozesse, Resilienz und digitale Wertschöpfung. Die wichtigsten Punkte für Entscheider Cyberrisiken sind im Handel Normalzustand: 97… First…
-
Kundendaten, Kassen, KI: Warum Händler ihre Cyberabwehr neu ausrichten müssen
Der europäische Einzelhandel steht vor einer Zuspitzung der Cyberbedrohungslage: Fast alle befragten Unternehmen meldeten innerhalb eines Jahres Sicherheitsvorfälle. Für das Management wird Cybersicherheit damit nicht länger zur rein technischen Disziplin, sondern zu einem geschäftskritischen Steuerungsthema rund um Kundendaten, Prozesse, Resilienz und digitale Wertschöpfung. Die wichtigsten Punkte für Entscheider Cyberrisiken sind im Handel Normalzustand: 97… First…
-
Kundendaten, Kassen, KI: Warum Händler ihre Cyberabwehr neu ausrichten müssen
Der europäische Einzelhandel steht vor einer Zuspitzung der Cyberbedrohungslage: Fast alle befragten Unternehmen meldeten innerhalb eines Jahres Sicherheitsvorfälle. Für das Management wird Cybersicherheit damit nicht länger zur rein technischen Disziplin, sondern zu einem geschäftskritischen Steuerungsthema rund um Kundendaten, Prozesse, Resilienz und digitale Wertschöpfung. Die wichtigsten Punkte für Entscheider Cyberrisiken sind im Handel Normalzustand: 97… First…
-
Kundendaten, Kassen, KI: Warum Händler ihre Cyberabwehr neu ausrichten müssen
Der europäische Einzelhandel steht vor einer Zuspitzung der Cyberbedrohungslage: Fast alle befragten Unternehmen meldeten innerhalb eines Jahres Sicherheitsvorfälle. Für das Management wird Cybersicherheit damit nicht länger zur rein technischen Disziplin, sondern zu einem geschäftskritischen Steuerungsthema rund um Kundendaten, Prozesse, Resilienz und digitale Wertschöpfung. Die wichtigsten Punkte für Entscheider Cyberrisiken sind im Handel Normalzustand: 97… First…
-
KI verantwortungsvoll einsetzen Sicherheit, Souveränität und Kontrolle für autonome Systeme
Tags: aiKünstliche Intelligenz ist den Kinderschuhen entwachsen. KI-Agenten autonome Systeme, die planen, entscheiden und handeln greifen in operative Geschäftsprozesse ein. Sie steuern Lieferketten, bewerten Kreditrisiken, priorisieren Serviceanfragen und optimieren Produktionsabläufe. Die Effizienzgewinne: kürzere Reaktionszeiten, präziserer Ressourceneinsatz oder automatisierte Entscheidungsketten. Doch mit der Autonomie wachsen Verantwortung und Angriffsfläche. First seen on ap-verlag.de Jump to article: ap-verlag.de/ki-verantwortungsvoll-einsetzen-sicherheit-souveraenitaet-und-kontrolle-fuer-autonome-systeme/107100/
-
Why judgment is emerging as cybersecurity’s defining skill
AI is getting better at much of what security teams have long spent time on: analyzing information, identifying patterns, and providing technically sound recommendations quickly. As those capabilities become more routine, they are changing what security practitioners spend their time on. Reaching a technically sound recommendation is also getting easier, which puts more weight on…
-
Hackers Abuse AI-Era ASCII Smuggling to Hide Phishing Content in Millions of Emails
Threat actors have repurposed an AI prompt-injection technique known as ASCII smuggling to evade email security controls at massive scale, hiding invisible Unicode characters within financial phishing lures. Microsoft observed the activity reach more than 2.3 million messages per day, demonstrating how techniques first popularized in AI-security research can quickly migrate into conventional phishing operations.…
-
OpenAI Pledges $1bn to Bring its AI Cybersecurity Tools to Essential Services
OpenAI has committed to subsidizing access to Daybreak, helping defenders deploy its AI models in its existing cybersecurity infrastructure First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/openai-pledges-ai-tools-essential/
-
Supply Chain of Distrust — Microsoft/GitHub Supply-Chain Compromise Targets AI Developers
Microsoft’s GitHub malware incident exposes a new legal and security reality: AI coding environments are now privileged supply-chain systems, not just productivity tools. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/supply-chain-of-distrust-microsoft-github-supply-chain-compromise-targets-ai-developers/
-
Supply Chain of Distrust — Microsoft/GitHub Supply-Chain Compromise Targets AI Developers
Microsoft’s GitHub malware incident exposes a new legal and security reality: AI coding environments are now privileged supply-chain systems, not just productivity tools. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/supply-chain-of-distrust-microsoft-github-supply-chain-compromise-targets-ai-developers/
-
Supply Chain of Distrust — Microsoft/GitHub Supply-Chain Compromise Targets AI Developers
Microsoft’s GitHub malware incident exposes a new legal and security reality: AI coding environments are now privileged supply-chain systems, not just productivity tools. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/supply-chain-of-distrust-microsoft-github-supply-chain-compromise-targets-ai-developers/
-
Supply Chain of Distrust — Microsoft/GitHub Supply-Chain Compromise Targets AI Developers
Microsoft’s GitHub malware incident exposes a new legal and security reality: AI coding environments are now privileged supply-chain systems, not just productivity tools. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/supply-chain-of-distrust-microsoft-github-supply-chain-compromise-targets-ai-developers/
-
Can AI Actually Reduce Application Maintenance Costs, or Does It Just Generate More Code?
Every vendor pitch in 2026 leads with AI. Every RFP response mentions “AI-powered maintenance.” Almost none of them tell you where AI actually saves money and where it quietly adds risk you will pay for later. If you are a… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/can-ai-actually-reduce-application-maintenance-costs-or-does-it-just-generate-more-code/

