Tag: ai
-
Geopolitische Einflüsse auf KI-Modelle
Die Entscheidung des US-Handelsministeriums die Exportkontrollen für die KI-Modelle Claude <> und <> von Anthropic wieder aufzuheben (drei Wochen nach deren erzwungener Abschaltung aus nationalen Sicherheitsbedenken) unterstreicht, wie schnell sich der Zugang zu zentralen KI-Technologien aus geopolitischen und regulatorischen Gründen ändern kann. Das ist fatal für europäische Unternehmen. Ein Statement von Ari Albertini, CEO […]…
-
Webinar: Why traditional email security is no longer enough
Modern phishing, business email compromise, and account takeover attacks increasingly exploit trusted identities and legitimate business workflows, making them harder for traditional email defenses to detect. This webinar explores how behavioral AI can help organizations automate detection and response. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/webinar-why-traditional-email-security-is-no-longer-enough/
-
US lifting export control restrictions on Anthropic’s Mythos, Fable
The company and the Commerce Department say they have reached an agreement that will see the AI models released publicly with new guardrails and classifiers. First seen on cyberscoop.com Jump to article: cyberscoop.com/us-lifting-export-control-restrictions-anthropic-mythos-fable/
-
‘Phantom Squatting’: An Emerging AI-Driven Supply Chain Threat
LLMs consistently hallucinate Web domains for legitimate brands that attackers can register for malicious activity in a difficult-to-detect attack vector. First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/phantom-squatting-ai-driven-supply-chain-threat
-
Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands
Two flaws in Cursor, an AI code editor, could let a single, ordinary-looking prompt break out of the editor’s safety sandbox and run any command on a developer’s computer. There is no click to fall for and no approval box to ignore.Cato AI Labs found the pair and named them DuneSlide. They are tracked as…
-
Attackers Seize Exposed AI Endpoints to Power Offensive Ops
Threat actors don’t need any special authentication to reach a target endpoint, they just need to know where it is. First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/attackers-hijack-exposed-ai-endpoints-power-offensive-ops
-
AI-Generated Browser Ransomware Abuses Chromium API on Windows and Android
Cybersecurity researchers have flagged a new malware artifact generated using DeepSeek that constructed a novel attack path combining “unrealistic browser-malware concepts with a real browser capability” to turn it into a working ransomware technique that runs entirely inside the browser on both Windows and Android devices.”This is the first documented case where a frontier AI…
-
Check Point Research warnt vor browser-nativer Ransomware durch KI-generierte Angriffstechnik
Der Fall ist deshalb relevant, weil die KI offenbar eine Lücke zwischen einem bekannten theoretischen Risiko und einer praktisch funktionierenden Angriffstechnik geschlossen hat. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/check-point-research-warnt-vor-browser-nativer-ransomware-durch-ki-generierte-angriffstechnik/a45644/
-
U.S. lifting export control restrictions on Anthropic’s Mythos, Fable
The company and the Commerce Department say they have reached an agreement that will see the AI models released publicly with new guardrails and classifiers. First seen on cyberscoop.com Jump to article: cyberscoop.com/us-lifting-export-control-restrictions-anthropic-mythos-fable/
-
Ist Cybersecurity bereits voll von KI-Schrott?
Das Nebenprodukt des KI-Hypes ist KI-Schrott. Man denke an die schludrig produzierten Videos und Reels, die das Internet überschwemmen und auf den ersten Blick gut aussehen, bis sich zeigt, dass sie mit billigen KI-Tools zusammengeschustert wurden. Während das für den Durchschnittsmenschen lediglich ärgerlich ist, wird es zu einem ernsteren Problem, wenn dieses Verhalten in wichtige…
-
US lifts export controls on Anthropic’s frontier cybersecurity AI models
Anthropic said export controls on certain models had been lifted after the company came to a series of agreements with the government. First seen on therecord.media Jump to article: therecord.media/us-lifts-export-controls-anthropic-cyber-models
-
Künstliche Intelligenz wird immer zu einem festen Bestandteil unseres Lernens, Arbeitens und Entscheidens
Tags: aiDie Entscheidung Bayerns, den Einsatz von künstlicher Intelligenz bei Hochschulprüfungen zuzulassen, ist ein klares Signal dafür, in welche Richtung sich die Gesellschaft entwickelt. Künstliche Intelligenz ist längst kein Randphänomen mehr. Sie wird immer mehr zu einem festen Bestandteil unseres Lernens, Arbeitens und Entscheidens. Ein Kommentar von Tim Pfälzer, GM and SVP EMEA bei Veeam. <<Versuche,…
-
Cybersecurity-Assessment-Report von Bitdefender deckt KI-Risiken auf
Nicht nur die sich erweiternde Angriffsfläche ist für die dieses Jahr erneut von Bitdefender befragten professionellen IT-Sicherheitsverantwortlichen ein zunehmendes Risiko für die Datensicherheit. KI-Risiken, das Verschweigen von unberechtigten Zugriffen und Datensouveränität sind Trendthemen der aktuellen Neuauflage der Bitdefender-Studie zu Cybersecurity-Assessment. Im Rahmen einer unabhängigen Studie befragte Bitdefender über 1.200 IT- und IT-Sicherheitsprofis in den USA,…
-
AI Won’t Wipe Out Entry-Level Cybersecurity Jobs
Instead of eliminating jobs for early-career cyber pros, AI is creating new opportunities for candidates with strong human decision-making skills. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/ai-wont-wipe-out-entry-level-cybersecurity-jobs
-
KI in Hochschulprüfungen: Veeam sieht Bayerns Entscheidung als Signal für Wirtschaft und Gesellschaft
Die bayerische Entscheidung ist damit mehr als eine bildungspolitische Neuerung. Sie zeigt, dass sich Institutionen und Unternehmen auf eine neue Realität einstellen müssen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/ki-in-hochschulpruefungen-veeam-sieht-bayerns-entscheidung-als-signal-fuer-wirtschaft-und-gesellschaft/a45641/
-
Wenn KI den Angriff erfindet Browser-native Ransomware
Keine App. Kein Exploit. Keine technischen Kenntnisse erforderlich schon ein einziger Klick zur Erteilung einer Browserberechtigung könnte Jahre an Handyfotos, Ausweisdaten und Wiederherstellungscodes gefährden. Die Sicherheitsforscher von Check Point Research haben ein von Deepseek generiertes Malware-Sample aufgedeckt. Dabei hat ein KI-Modell eigenständig ein theoretisches Browser-Risiko mit einer funktionierenden Ransomware-Technik verknüpft. Diese wird vollständig im […]…
-
Browser-Only Ransomware: From LLM Hallucinations to a Practical Attack Technique
Tags: ai, attack, chatgpt, cybercrime, LLM, malicious, malware, programming, ransomware, software, toolesearch by:Alexey Bukhteyev Key Takeaways Introduction Over the past several years, large language models have reshaped software development, and malware development has followed the same path. Check Point Research has documented this trend from early experiments showing that AI systems could generate offensive components, to cases of cybercriminals using ChatGPT to create malicious tools, and…
-
GuardFall Flaw Hits 10 of 11 Popular Open-Source AI Agents
Researchers found a shell injection flaw in 10 of 11 popular open-source AI agents, allowing attackers to bypass command filters. Adversa AI just published a survey, titled >>GuardFall: a universal shell injection vulnerability in open-source AI agents,<< of eleven open-source AI coding and computer-use agents, and the headline finding is uncomfortable: ten of them leave…
-
OpenMatter Network Introduces Verifiable Trust Layer for Secure Collaboration and AI Agents
Melbourne, Florida, June 30th, 2026, CyberNewswire OpenMatter Network today announced the launch of its cryptographically verifiable platform for secure collaboration and AI governance, built on a simple premise: Don’t Trust Data. Prove It. For decades, organizations have relied on trust-based assumptions to secure data, execute workloads, and govern digital systems. But as data becomes increasingly…
-
Für Datenklau und mehr: Forscher tricksen KI-Browser mit einem Spiel aus
Tags: aiRegulär führen KI-Browser keine bösartigen Anweisungen auf besuchten Webseiten aus. Mit Bioshocking lässt sich das umgehen, etwa für Datenklau. First seen on golem.de Jump to article: www.golem.de/news/fuer-datenklau-und-mehr-forscher-tricksen-ki-browser-mit-einem-spiel-aus-2607-210378.html
-
Für Datenklau und mehr: Forscher tricksen KI-Browser mit einem Spiel aus
Tags: aiRegulär führen KI-Browser keine bösartigen Anweisungen auf besuchten Webseiten aus. Mit Bioshocking lässt sich das umgehen, etwa für Datenklau. First seen on golem.de Jump to article: www.golem.de/news/fuer-datenklau-und-mehr-forscher-tricksen-ki-browser-mit-einem-spiel-aus-2607-210378.html
-
Claude Sonnet 5 includes safeguards against dangerous cyber use
Anthropic has introduced Claude Sonnet 5, the latest version of its general-purpose AI model, with improved reasoning, coding, tool use, and knowledge work capabilities. The … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/01/anthropic-claude-sonnet-5/
-
Claude Sonnet 5 includes safeguards against dangerous cyber use
Anthropic has introduced Claude Sonnet 5, the latest version of its general-purpose AI model, with improved reasoning, coding, tool use, and knowledge work capabilities. The … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/01/anthropic-claude-sonnet-5/
-
Phantom Squatting Uses AI-Hallucinated Domains for Phishing and Malware
Large language models keep inventing web addresses that do not exist. Attackers have started buying those made-up domains before anyone else can, then hosting phishing pages on them to catch traffic that AI tools point their way.Palo Alto Networks’ Unit 42 calls the trick phantom squatting, and its new research shows it is already happening…
-
Cybersecurity im Gesundheitswesen: Warum KI-Agenten nur mit menschlicher Validierung sicher skalieren
Laut BlueVoyant kommen im Schnitt 82 Maschinenidentitäten auf jeden einzelnen Mitarbeitenden. Dieses Verhältnis macht deutlich, wie stark sich die Angriffsfläche im Gesundheitswesen vergrößert hat. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/cybersecurity-im-gesundheitswesen-warum-ki-agenten-nur-mit-menschlicher-validierung-sicher-skalieren/a45639/
-
Anthropic buffa Library Zero-Day Lets Attackers Trigger Memory-Amplification DoS
Anthropic’s Rust-based protobuf library, buffa, has been discovered to have a zero-day memory amplification denial-of-service (DoS) vulnerability. This flaw allows attackers to deplete system memory using relatively small inputs. Endor Labs identified the issue through its AI-powered static application security testing (SAST) engine and is now tracked as CVE-2026-55407. This situation underscores how logic flaws…
-
Attackers Register AI-Hallucinated Domains to Deliver Phishing Kits and Malware
An emergent supply-chain attack vector they term >>phantom squatting,<< in which large language models (LLMs) routinely hallucinate plausible but nonexistent domains for legitimate brands and adversaries then preemptively register those domains to host phishing kits, malware, and other malicious infrastructure. By systematically probing two distinct LLM families across temperature settings, Unit 42 generated a 2.1…
-
AI-Powered Reverse Engineering Turns EDR Rule Analysis Into Automated Evasion Workflow
LLMs are reshaping endpoint security research by turning what used to be slow, manual reverse engineering into an automated, repeatable evasion workflow. Recent hands-on experiments with advanced models driving disassembly and local analysis show that a compact harness LLM plus disassembler, a shared state file, and a loop can recover EDR artifacts, decrypt local signature…
-
US Lifts Export Curbs on Anthropic AI Models
Commerce Ends 18-Day Ban to Restore Global Access to Fable 5, Mythos 5. The U.S. Department of Commerce lifted export controls on Anthropic’s Fable 5 and Mythos 5, ending an 18-day restriction imposed over national security concerns. The reversal restores global access. It is unclear whether the government will use similar controls on future AI…
-
AI-generated code risks reach security, legal, and compliance teams
Most engineering organizations write code with AI, and a good number of them keep that code away from customers. A Flux survey of engineering leaders and practitioners found … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/01/ai-generated-code-risks-security/

