Tag: ai
-
WSL containers now build and run Linux workloads on Windows
Containers power a large share of cloud-native applications, AI workloads, and testing and deployment pipelines. Developers working on Windows have long pulled in third-party … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/30/microsoft-linux-wsl-containers/
-
BioShocking AI: AI Browser Vulnerability Lets Attackers Bypass Guardrails
LayerX researchers discovered a technique that tricks AI browsers into bypassing security guardrails. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/bioshocking-ai-ai-browser-vulnerability-lets-attackers-bypass-guardrails/
-
Schatten-KI: Das Problem an der Wurzel packen
Tags: aiFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/schatten-ki-das-problem-an-der-wurzel-packen
-
How Cloud Security Risks Grow With Home-Based Care
As hospital-at-home programs expand and AI adoption accelerates, healthcare organizations face mounting cloud security demands. Anahi Santiago, CISO of ChristianaCare, discusses vendor accountability, identity management, clinical AI risks and the need for stronger cybersecurity foundations. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/interviews/how-cloud-security-risks-grow-home-based-care-i-5552
-
Warner bill would create federally vetted list for secure, trustworthy AI agents
The bill empowers the FTC to create a registry for sellers of AI agent software certifying their privacy and cybersecurity protections. First seen on cyberscoop.com Jump to article: cyberscoop.com/ai-agent-act-senate-draft-bill-mark-warner/
-
‘Djinn’ Stealer Targets Cloud, AI Credentials
The infostealer was delivered via CVE-2026-48558, a critical authentication bypass vulnerability in SimpleHelp, targeting credentials linking development and admin environments to wider enterprise systems. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/djinn-stealer-targets-cloud-ai-credentials
-
AI-Driven Identity Attacks Are Surging, PwC Warns
AI has given cybercriminals a big advantage in attacking organizations, which they are using to go after weaknesses on edge devices The post AI-Driven Identity Attacks Are Surging, PwC Warns appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-pwc-ai-identity-edge-device-cyber-threats/
-
North Korea-Linked macOS Malware Uses Prompt Injection to Evade AI Analysis
SentinelOne says macOS.Gaslight uses prompt injection to mislead AI-based malware analysis, steal data, and use Telegram for C2. The post North Korea-Linked macOS Malware Uses Prompt Injection to Evade AI Analysis appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-macos-gaslight-malware-ai-prompt-injection/
-
Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input
Microsoft has found a malicious Chrome extension that posed as the AI search engine Perplexity and quietly logged what people searched for. It routed every query and every character typed into the address bar through an attacker-controlled server before redirecting users to real results.Microsoft says Google removed it from the store after responsible disclosure. The…
-
New MCP Specifications Fix Security Issue But Open Many More
Model Context Protocol Rewrite Leaves More Security Decisions to Developers. The new MCP specifications fix a long-standing weakness in how AI agents authenticate to external tools, but security experts say it shifts key safeguards to developers. The result is a more flexible standard that can also increase the risk of authorization flaws, data exposure and…
-
Sichere Autorisierung auch für AI Agents – Token Exchange ermöglicht Kontrolle vernetzter Identitäten
Tags: aiFirst seen on security-insider.de Jump to article: www.security-insider.de/token-exchange-trust-risiken-multi-cloud-idp-reduzieren-a-8631f64c95cdca1711914ad36dce530e/
-
OpenAI voluntarily limits new AI models at government’s request
The company said it was working with the government on a more formal process for reviewing model releases. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/openai-model-government-limit-request/823966/
-
Cloudflare und beehiiv integrieren AI Crawl Control für unabhängige Publisher
AI Crawl Control wird laut Ankündigung in der Beta-Phase allen beehiiv-Nutzern Einblick geben, wie KI-Dienste mit ihren Inhalten interagieren und welchen Traffic sie erzeugen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/cloudflare-und-beehiiv-integrieren-ai-crawl-control-fuer-unabhaengige-publisher/a45631/
-
Reconnaissance in the Age of AI: Exploring Modern ML Infrastructure
First seen on resecurity.com Jump to article: www.resecurity.com/blog/article/reconnaissance-in-the-age-of-ai-exploring-modern-ml-infrastructure
-
Healthcare Data Collaboration Gets a Boost From AI
Emids’ CAIO on Why Healthcare Leaders Are Treating AI as an Enterprise Investment. Healthcare organizations are moving beyond debating AI’s value and focusing on how to scale it. According to Emids’ State of Healthcare AI in 2026 survey, 65% of healthcare leaders rank AI and automation as their top investment priority, reflecting a shift toward…
-
Agentic AI Has an Identity Problem and Attackers Know It
AI agents can access data, trigger workflows, and take action across enterprise systems. Token Security explains why governing these privileged identities is becoming essential for enterprise security. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/agentic-ai-has-an-identity-problem-and-attackers-know-it/
-
âš¡ Weekly Recap: Linux Kernel Flaws, AI Malware Tricks, Turla Backdoor, Infostealers and More
This week was a reminder that attackers do not always need big tricks. One small mistake, one old access path, one missed patch, and suddenly the door is open.The noise is not all noise, either. Forums are talking, researchers are finding easy cracks, and defenders have more cleanup waiting.Here’s the full Monday recap.âš¡ Threat of…
-
Wenn Washington den Stecker zur künstlichen Intelligenz zieht
Die jüngsten Vorfälle bei Google und Anthropic zeigen, wie schnell ‘AI as a Public API” zum operativen Risiko wird. Störungen und Nutzungsbeschränkungen unterstreichen die Abhängigkeiten, die Unternehmen bei der Nutzung öffentlicher Large-Language-Models (LLMs) eingehen und die sich kaum kontrollieren lassen. Private-AI ist daher kein Luxus, sondern Risikomanagement. Die vergangenen Wochen waren ein Stresstest für alle,…
-
Straiker Raises $64M to Safeguard Autonomous AI Agents
Series A Funding Supports Pre-Training, Reinforcement Learning for Security Models. AI security startup Straiker closed a $64 million Series A funding round to expand GPU infrastructure, develop specialized security models and strengthen defenses against increasingly autonomous enterprise AI agents capable of operating with minimal human oversight. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/straiker-raises-64m-to-safeguard-autonomous-ai-agents-a-32093
-
Zero Trust für KI-Agenten – Zscaler will KI-Agenten per Zero Trust bändigen
First seen on security-insider.de Jump to article: www.security-insider.de/zscaler-zero-trust-ki-agenten-sicherheit-a-b1830a36ee5b6ca532e2bab4a5542968/
-
Webinar: Why business email compromise attacks keep succeeding
Business email compromise attacks increasingly rely on convincing impersonation rather than malware, making them harder for employees and traditional email defenses to detect. This webinar explores how behavioral AI can help identify sophisticated email threats and automate response workflows. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/webinar-why-business-email-compromise-attacks-keep-succeeding/
-
Once, cyber-attacks required great skill. AI is changing that | Bruce Schneier
Modern AI systems are, in effect, a universal adviser to help people do harmful things. We’ll need to harness AI for defense, tooEarlier this week, national security agencies from the Five Eyes that’s the rich, English-language-speaking countries club jointly released a <a href=”https://www.nsa.gov/Press-Room/News-Highlights/Article/Article/4523810/five-eyes-cyber-security-agencies-statement/”>statement warning of the increasing cyber risks of AI models: in particular, their…
-
KI-Zugangsbeschränkungen und ihre Folgen für die Cybersicherheit
Laut Berichterstattung hat die US-Regierung Anthropic angewiesen, den Zugang zu seinen leistungsfähigsten KI-Modellen, Fable 5 und Mythos 5, zu beschränken. Grund dafür sind Bedenken hinsichtlich der Cybersicherheit und der nationalen Sicherheit: vermutlich die Sorge darüber, dass ausländische Bedrohungsakteure die Systeme zur Identifizierung von Software-Schwachstellen oder zur Unterstützung von Cyberangriffen nutzen könnten. Dieses Vorgehen der amerikanischen…
-
Mozilla warns of indirect prompt injection risk in AI coding agents
A malicious GitHub repository can silently compromise a developer’s machine without containing a single line of malicious code, security researchers at Mozilla’s … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/29/mozilla-warns-of-indirect-prompt-injection-risk-in-ai-coding-agents/
-
ClawHavoc Attack Hits ClawHub With 1,184 Malicious Skills and 247,000 Installations
The AI-agent ecosystem experienced its largest supply-chain compromise to date when ClawHavoc detonated across ClawHub, the official skill marketplace for OpenClaw. Our full AIG-powered scan of nearly 50,000 ClawHub Skills found 1,184 clearly malicious packages tied to 12 compromised publisher accounts and confirmed 247,693 installations. The campaign combined typosquatting, ranking manipulation, and multi-stage payload delivery…
-
From mythos to reality: Why the 2026 state of pentesting report proves the need for programmatic defenses
AI can find zero-days in minutes. Your defense strategy must evolve now. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/spons/from-mythos-to-reality-why-the-2026-state-of-pentesting-report-proves-the/823726/
-
Langflow RCE Vulnerability Exploited to Deploy Monero Cryptominer on Exposed AI Servers
Tags: ai, cve, cyber, data-breach, exploit, Internet, rce, remote-code-execution, tactics, threat, vulnerabilityThreat actors are actively exploiting CVE-2026-33017, a critical unauthenticated remote code execution (RCE) vulnerability in Langflow, to compromise internet-exposed AI application servers and silently deploy a customized Monero (XMR) cryptominer. Tracked and documented by Trend Micro researchers Simon Dulude and John Zhang, the campaign marks a significant pivot in commodity cryptominer delivery tactics, from traditional…
-
AI-Generated Mythic Agents Challenge Static Signatures and Traditional Implant Detection
The emergence of LLM-driven >>disposable tooling<< is reshaping offensive tradecraft and forcing defenders to rethink detection models that rely on static signatures and known implant behaviors. Recent experiments demonstrating the automated generation of Mythic agents from prompt to deployment reveal a new threat class: ephemeral, single-use implants tailor-made by large language models and orchestration harnesses.…
-
KI-gut schlägt KI-böse – Behörden warnen vor KI-Cyberattacken, haben aber einen KI-Coup gelandet
First seen on security-insider.de Jump to article: www.security-insider.de/ki-cyberangriffe-cyberabwehrgesetz-schlag-gegen-hacker-a-0c239f8cc4175b043e92b233307c7bcd/
-
(g+) KI im Krieg: Autonome Waffen übernehmen das Schlachtfeld
Tags: ai2026 scheint das Jahr zu werden, in dem sich KI endgültig als Kriegswaffe etabliert. Wie künstliche Intelligenz die Kriegsführung verändert. First seen on golem.de Jump to article: www.golem.de/news/ki-im-krieg-autonome-waffen-uebernehmen-das-schlachtfeld-2606-210235.html

