Tag: ai
-
What are the best practices for MCP security?
Introduction Modern applications are increasingly powered by large language models (LLMs) that don’t just generate text”, they can call live APIs, query databases, and even trigger automated workflows. The Model Context Protocol (MCP) makes this possible by standardizing how LLMs interface with external tools, turning your AI assistant into a fully programmable agent. With great…
-
Erster Zero-Click-Angriff auf Microsoft 365 Copilot
Eine Lücke in Microsoft 365 Copilot ermöglicht es, sensible Daten zu stehlen.Stellen Sie sich einen Angriff vor, der so heimlich ist, dass er keine Klicks, keine Downloads und keine Warnungen erfordert es reicht eine einzelne E-Mail, die in Ihrem Posteingang landet. Das ist der Fall bei EchoLeak, einer kritischen Sicherheitslücke in Microsoft 365 Copilot. Sie…
-
Mit künstlicher Intelligenz und Laufzeitkontext die Schwachstellenbehebung beschleunigen
In der Cloud zählen Sekunden. Angreifer benötigen oft weniger als zehn Minuten, um Schwachstellen auszunutzen dennoch dauert deren Behebung in vielen Unternehmen Wochen oder sogar Monate. Ein Grund: Sicherheitsteams kämpfen mit unübersichtlichen CVE-Listen, mangelndem Kontext und begrenzten Ressourcen. Mit dem neuen Update seiner Schwachstellenmanagement-Lösung bringt Sysdig erstmals KI-gestützte, kontextbasierte Abhilfemaßnahmen direkt in die Arbeitsprozesse […]…
-
âš¡ Weekly Recap: iPhone Spyware, Microsoft 0-Day, TokenBreak Hack, AI Data Leaks and More
Some of the biggest security problems start quietly. No alerts. No warnings. Just small actions that seem normal but aren’t. Attackers now know how to stay hidden by blending in, and that makes it hard to tell when something’s wrong.This week’s stories aren’t just about what was attacked”, but how easily it happened. If we’re…
-
GUEST ESSAY: The AI illusion: Don’t be fooled, innovation without guardrails is just riskat scale
Artificial intelligence is changing everything from how we search for answers to how we decide who gets hired, flagged, diagnosed, or denied. Related: Does AI take your data? It offers speed and precision at unprecedented scale. But without intention,… (more”¦) First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/06/guest-essay-the-ai-illusion-dont-be-fooled-innovation-without-guardrails-is-just-risk-at-scale/
-
Trotz wachsender KI-Investitionen sinkt der KI-Reifegrad in Europa
Tags: aiUm den KI-Reifegrad nachhaltig zu steigern, braucht es einen strategischen Gesamtansatz: Eine klar definierte, unternehmensweit verankerte KI-Vision sollte mit messbaren Zielen hinterlegt sein. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/trotz-wachsender-ki-investitionen-sinkt-der-ki-reifegrad-in-europa/a41135/
-
KI-Betrug explodiert: +1100″¯% mehr Deepfakes in Deutschland
Deepfakes, synthetische Ausweise und KI-generierte Identitäten: Deutschland wird zum Brennpunkt digitaler Betrugsversuche. Eine neue Studie des Verifizierungsunternehmens Sumsub zeigt, wie rasant die Bedrohung durch künstliche Intelligenz wächst und warum klassische Sicherheitsmaßnahmen zunehmend versagen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/ki-betrug-explodiert
-
Why CISOs need to understand the AI tech stack
As AI spreads, so do the risks. Security leaders are being asked to protect systems they don’t fully understand yet, and that’s a problem. A new report from the Paladin Global … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/06/16/ciso-ai-tech-stack/
-
ChatGPT’s AI coder Codex now lets you choose the best solution
ChatGPT’s Codex, which is an AI agent that lets you code and delegate programming tasks, is now testing a new feature that lets you choose the best solution. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/artificial-intelligence/chatgpts-ai-coder-codex-now-lets-you-choose-the-best-solution/
-
ChatGPT Search gets an upgrade as OpenAI takes aim at Google
On June 13, OpenAI began rolling out a new ChatGPT Search update to improve quality as the AI startup challenges Google’s dominance. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/artificial-intelligence/chatgpt-search-gets-an-upgrade-as-openai-takes-aim-at-google/
-
EU AI ACT
What is the EU AI Act? The EU AI Act (European Union Artificial Intelligence Act) is the world’s first comprehensive legal framework regulating artificial intelligence. Introduced by the European Commission in April 2021 and formally adopted in 2024, the Act is designed to ensure AI systems developed or used in the EU are safe, transparent,……
-
Meta AI: Private Informationen können versehentlich in der App landen
Tags: aiIm Discover-Feed sollen sich in der AI-App von Meta nützliche Prompts finden lassen. In der Realität sind es Klarnamen, Adressen und private Informationen. First seen on golem.de Jump to article: www.golem.de/news/meta-ai-private-informationen-koennen-versehentlich-in-der-app-landen-2506-197146.html
-
Guardrails Breached: The New Reality of GenAI-Driven Attacks
From vibe hacking to malware development to deepfakes, bad actors are discovering more vulnerabilities to attack generative AI tools while also using AI to launch cyber attacks. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/06/guardrails-breached-the-new-reality-of-genai-driven-attacks/
-
A New Identity: Agentic AI boom risks busting IAM norms
First seen on scworld.com Jump to article: www.scworld.com/analysis/a-new-identity-agentic-ai-boom-risks-busting-iam-norms
-
Dark web AI service abuses legitimate open-source models
First seen on scworld.com Jump to article: www.scworld.com/news/dark-web-ai-service-abuses-legitimate-open-source-models
-
Die Meta AI-App ist ein Datenschutz-GAU
Tags: aiVon Meta wird eine AI-App zum Download angeboten. Damit kann man deren KI-Lösung nutzen. Aber die AI-App ist eine Katastrophe in Sachen Datenschutz im dümmsten Fall werden sogar private Chats öffentlich ganz im Sinne von Meta “wir wissen … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/06/14/die-meta-ai-app-ist-ein-datenschutz-gau/
-
Shadow AI: Examples, Risks, and 8 Ways to Mitigate Them
Uncover the hidden risks of Shadow AI and learn 8 key strategies to address it. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/06/shadow-ai-examples-risks-and-8-ways-to-mitigate-them/
-
Generative KI boomt zunehmende Sicherheitsrisiken als Kehrseite der Medaille
Tags: aiFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/generative-ki-boom-sicherheitsrisiken
-
Microsoft Office 2016-Nutzer mit Copilot zwangsbeglückt
Die Woche ist mir erneut ein ein Fall untergekommen, wo Copilot, trotz gesetzter GPOs zum Deaktivieren, in Office 2016 auftaucht. Nachdem Sicherheitsforscher auf die erste Zero-Click-Schwachstelle in der KI-Anwendung Copilot gestoßen sind, greife ich das Thema nochmals hier im Blog auf. … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/06/14/microsoft-office-2016-nutzer-mit-copilot-zwangsbeglueckt/
-
Guardz Snags $56M to Grow AI Cybersecurity Platform for MSPs
Startup Boosts AI-Driven Detection, MSP Channel Outreach and Hiring With Series B. Guardz has secured $56 million to deepen AI-powered threat detection and enhance automation for MSPs. The Series B funding will support platform engineering, channel marketing and operational scaling as Miami-based Guardz targets a simplified and consolidated cybersecurity future. First seen on govinfosecurity.com Jump…
-
AI writes bad code faster than we can fix it
Tags: aiFirst seen on scworld.com Jump to article: www.scworld.com/perspective/ai-writes-bad-code-faster-than-we-can-fix-it
-
AI moderation guardrails circumvented by novel TokenBreak attack
First seen on scworld.com Jump to article: www.scworld.com/brief/ai-moderation-guardrails-circumvented-by-novel-tokenbreak-attack
-
The hybrid defense model: How AI agents and human analysts are transforming MDR
First seen on scworld.com Jump to article: www.scworld.com/resource/the-hybrid-defense-model-how-ai-agents-and-human-analysts-are-transforming-mdr
-
Agentic AI Won’t Save the SOC, Yet
Opaque Decision-Making, Lack of Guardrails, Poor Auditability are Risks. The dream of replacing burned-out SOC analysts with autonomous AI agents is as premature as it is persistent. Cybersecurity leaders are finding that deploying such tools inside security operations centers may do less to eliminate toil than to shift it. First seen on govinfosecurity.com Jump to…
-
Meta AI is a ‘Privacy Disaster’, OK Boomer
More Meta mess: Pundits accuse Zuckerberg’s latest app of having a “dark pattern,” tricking the over 50s into oversharing. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/06/meta-ai-feed-privacy-richixbw/
-
Zero-Click Flaw in Microsoft Copilot Illustrates AI Agent, RAG Risks
Aim Security researchers found a zero-click vulnerability in Microsoft 365 Copilot that could have been exploited to have AI tools like RAG and AI agents hand over sensitive corporate data to attackers simply by issuing a request for the information in a specially worded email. Microsoft fixed the security flaw. First seen on securityboulevard.com Jump…
-
How identity management is shifting into the agent era
We’re witnessing a shift in enterprise architecture: AI agents are moving from supporting roles to autonomous actors that drive decisions, trigger transactions, and interact directly with APIs, often on behalf of users. As a result, identity management is evolving. Identity isn’t just for humans anymore, it’s becoming the security backbone for intelligent, non-human… First seen…

