Tag: ai
-
Software, AI companies form alliance to tackle open-source security flaws
The emergence of frontier AI models has increased the speed and capabilities of malicious hackers. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/software-ai-alliance-open-source-security-flaws/823889/
-
KI und Cyberabwehr: Chinesische Sicherheitstool soll besser als Mythos sein
Laut dem CEO des chinesischen Unternehmens Qihoo 360 verfolgt das KI-Sicherheitstool Tulongfeng einen effizienteren Ansatz als Mythos. First seen on golem.de Jump to article: www.golem.de/news/ki-und-cyberabwehr-chinesische-sicherheitstool-soll-besser-als-mythos-sein-2606-210246.html
-
KI im Cybercrime: Zwischen Faszination und Existenzangst
Künstliche Intelligenz verändert nicht nur Unternehmen und Behörden, sondern zunehmend auch die Methoden von Cyberkriminellen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/ki-im-cybercrime
-
The 10 Hottest Cybersecurity Startups Of 2026 (So Far)
The hottest cybersecurity startups of 2026 so far include emerging vendors in fast-growing segments such as agentic-driven security operations, non-human identity protection and AI security. First seen on crn.com Jump to article: www.crn.com/news/security/2026/the-10-hottest-cybersecurity-startups-of-2026-so-far
-
Resist the point product sale to advise on AI security
The conclusions of a recent Gigamon survey have underlined the need to gain visibility over customer infrastructure First seen on computerweekly.com Jump to article: www.computerweekly.com/microscope/news/366644970/Resist-the-point-product-sale-to-advise-on-AI-security
-
Your First GRC Agent: A Red Teamer’s Walkthrough
AI won’t replace GRC analysts, but it can eliminate much of the repetitive work they do. Anecdotes walks through building an agent that continuously monitors controls, identifies evidence gaps, and opens remediation tasks. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/your-first-grc-agent-a-red-teamers-walkthrough/
-
Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP Configs
A high-severity flaw in Amazon Q Developer let a malicious repository run commands and steal a developer’s cloud credentials. The path was short: a developer opens the repo, trusts the workspace, and Amazon Q does the rest. Amazon has patched it.Tracked as CVE-2026-12957 (CVSS 8.5), the bug sat in how Amazon’s AI coding assistant handled…
-
Amazon-Trick: Dieser Prompt-Zusatz soll verhindern, dass KI-Agenten Schaden anrichten
Tags: aiFirst seen on t3n.de Jump to article: t3n.de/news/amazon-ki-agenten-kontrolle-1748679/
-
„Das ist ein proaktives Augenverschließen”: Warum Unternehmen Schatten-KI ernst nehmen sollten
Tags: aiFirst seen on t3n.de Jump to article: t3n.de/news/das-ist-ein-proaktives-augenverschliessen-warum-unternehmen-schatten-ki-ernst-nehmen-sollten-1747767/
-
Guardian Agents: The Next Layer of Identity Governance
AI agents are moving through enterprise environments, inheriting permissions, traversing systems, and executing decisions at machine speed with minimal oversight. The identity infrastructure built to govern human access wasn’t designed for autonomous actors, and the gap between what enterprises are deploying and what their governance programs actually cover is widening fast. This guide breaks First…
-
Critical open-source projects get a new security framework
Open source software projects are getting a new framework for handling security vulnerabilities as AI shortens the time between flaw discovery and exploitation. The Linux … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/26/akrites-open-source-security-framework/
-
The Cyber Express Weekly Roundup: Five Eyes AI Warning, KDDI Data Breach, Garfield AI Legal Milestone, and Iranian Hacker Arrest
Tags: ai, automation, breach, cyber, cybersecurity, data, data-breach, hacker, infrastructure, intelligence, international, iran, risk, service, threatThis week’s weekly roundup of cybersecurity developments highlights a rapid shift in global cyber risk conditions driven by artificial intelligence acceleration, large-scale data breaches, and expanding international enforcement actions. Across infrastructure, enterprise systems, public services, and regulated AI applications, organizations are increasingly exposed to faster-moving threats where traditional security assumptions are being challenged by automation…
-
The Cyber Express Weekly Roundup: Five Eyes AI Warning, KDDI Data Breach, Garfield AI Legal Milestone, and Iranian Hacker Arrest
Tags: ai, automation, breach, cyber, cybersecurity, data, data-breach, hacker, infrastructure, intelligence, international, iran, risk, service, threatThis week’s weekly roundup of cybersecurity developments highlights a rapid shift in global cyber risk conditions driven by artificial intelligence acceleration, large-scale data breaches, and expanding international enforcement actions. Across infrastructure, enterprise systems, public services, and regulated AI applications, organizations are increasingly exposed to faster-moving threats where traditional security assumptions are being challenged by automation…
-
Metropolitan Police chief warns against law updates amid substantial tech expansion
The Metropolitan Police is to significantly expand use of AI, drones and facial recognition to ‘regain the advantage’ over criminals, but warns progress could be held back by legislation and data integration issues First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366645086/Metropolitan-Police-chief-warns-against-law-updates-amid-substantial-tech-expansion
-
Secure Code Warrior CEO on surviving the AI ‘vulnerability apocalypse’
As enterprises embrace agentic AI and vibe coding, Secure Code Warrior CEO and co-founder Pieter Danhieux warns that code-generating models are still producing critical security flaws First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366645144/Secure-Code-Warrior-CEO-on-surviving-the-AI-vulnerability-apocalypse
-
macOS.Gaslight: North Korea-Linked Malware That Tries to Gaslight the Analyst
macOS.Gaslight: DPRK Rust implant for Mac with a prompt injection payload designed to fool AI-based malware analysts. SentinelLabs researchers spotted a Rust-based macOS implant, dubbed macOS.Gaslight, that surfaced in early June after an Apple XProtect update pointed to a VirusTotal sample uploaded on May 22. The binary was undetected by static engines at the time…
-
TrendAI zeichnet ATD Systemhaus als Elite-Partner für KI-gestützte Cybersecurity aus
Damit soll eine neue Generation KI-gestützter Sicherheitsservices entstehen, die nicht nur Angriffe erkennt, sondern Sicherheitsprozesse über verschiedene Bereiche hinweg verbindet. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/trendai-zeichnet-atd-systemhaus-als-elite-partner-fuer-ki-gestuetzte-cybersecurity-aus/a45612/
-
Künstliche Intelligenz: US-Regierung kontrolliert Freigabe von GPT 5.6
OpenAI gibt das KI-Modell GPT 5.6 auf Druck der US-Regierung vorerst nur für ausgewählte Partner frei. First seen on golem.de Jump to article: www.golem.de/news/kuenstliche-intelligenz-us-regierung-kontrolliert-freigabe-von-gpt-5-6-2606-210212.html
-
ChatGPT 5.6 Release Reportedly Delayed Following Trump Administration Security Request
OpenAI has reportedly delayed the full public release of its next-generation AI model, GPT-5.6, following a formal request from the Trump administration to limit early access to a select group of government-approved entities. This raises new concerns about the intersection of advanced AI capabilities and national security. According to a report by The Information on…
-
Mini Shai-Hulud Worm Poisons LeoPlatform npm Packages to Steal Developer and CI/CD Secrets
A fresh supply-chain wave tied to the Mini Shai-Hulud, Miasma, and Hades malware families is actively poisoning npm packages in the LeoPlatform and RStreams ecosystems and expanding into source-repository compromises. The intrusion blends registry poisoning, install-time execution via binding.gyp, Bun-staged JavaScript loaders, GitHub Actions abuse, and persistence hooks for IDEs and AI coding assistants an…
-
Mini Shai-Hulud Worm Poisons LeoPlatform npm Packages to Steal Developer and CI/CD Secrets
A fresh supply-chain wave tied to the Mini Shai-Hulud, Miasma, and Hades malware families is actively poisoning npm packages in the LeoPlatform and RStreams ecosystems and expanding into source-repository compromises. The intrusion blends registry poisoning, install-time execution via binding.gyp, Bun-staged JavaScript loaders, GitHub Actions abuse, and persistence hooks for IDEs and AI coding assistants an…
-
Two CEOs on why security and AI readiness belong together
SuperOps and Guardz are bundling PSA, RMM, MDM, and agentic SecOps into one offering for MSPs. In this Help Net Security QA, SuperOps CEO Arvind Parthiban and Guardz CEO … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/26/superops-guardz-ceo-partnership/
-
Agentic AI Pentesting Platforms Comparison
Agentic AI transforms Penetration Testing from a periodic consulting practice to a continuous validation discipline. While traditional pentests remain relevant, particularly for complex business logic or regulated environments, the rapid evolution of cloud-native systems necessitates more frequent evaluations. Between formal tests, new services, exposed APIs, identity permissions and misconfigurations can emerge, leaving security teams with…
-
Was die Straße von Hormus über moderne Identity Security lehrt Das digitale Nadelöhr
Unternehmen unterschätzen das Risiko der digitalen Identitäten. KI-Identitäten greifen bereits auf Kernsysteme zu, jedoch hat nur ein Bruchteil der Organisationen klare Richtlinien, Kontrolle und Lifecycle Management dafür implementiert. Während Regulierungen wie NIS2, DORA und der EU AI Act strengere Nachvollziehbarkeit und Verantwortlichkeit fordern, bleibt die dringende Aufgabe, Identitäten transparent zu machen, Zugriffe in Echtzeit zu steuern…
-
Interview mit Georgeta Toth Wer den Prozess weglässt, hat das Tool umsonst gekauft
Viele Unternehmen haben ihre Sicherheitsarchitektur mit Tools zugeschüttet und trotzdem keine Kontrolle. Georgeta Toth, Senior Regional Director Central Europe bei der Rapid7 Germany GmbH, erklärt, warum Security-Operations-Center-Projekte scheitern, wie KI die Angreiferseite verändert und weshalb NIS2 für IT-Verantwortliche ein Befreiungsschlag war. First seen on ap-verlag.de Jump to article: ap-verlag.de/interview-mit-georgeta-toth-wer-den-prozess-weglaesst-hat-das-tool-umsonst-gekauft/105574/
-
Risk management firm Optro opens Singapore hub
The AI-powered governance, risk and compliance platform aims to disrupt the underserved Asia-Pacific market and help customers such as Singapore’s OCBC Bank modernise their audit functions First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366644968/Risk-management-firm-Optro-opens-Singapore-hub
-
Modelplane: Open-source control plane for AI inference
Organizations that run open-weight models on hardware they own operate GPU fleets spread across clouds, neoclouds, and on-premise data centers. Each fleet handles model … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/26/modelplane-open-source-control-plane-ai-inference/
-
AI Firms Seek US Help Against China Model Distillation
Anthropic Says Legal Gaps Leave Frontier Labs Vulnerable to LLM Copying. U.S.-based AI companies are urging the U.S. government to crack down on alleged illicit model distillation by Chinese AI developers, arguing current protections lack enforcement. Anthropic and others say legal reforms and clearer antitrust rules are needed to deter theft of frontier AI models.…
-
Visite bei Dr. Chatbot: Warum Gesundheitsfragen an KI riskant sein können
Tags: aiKI-Chatbots können medizinische Fragen einordnen und Arztbesuche vorbereiten. Doch falsche Antworten und der Umgang mit sensiblen Gesundheitsdaten machen sie riskant. Wer KI nutzt, sollte ihre Grenzen kennen. First seen on welivesecurity.com Jump to article: www.welivesecurity.com/de/privatsphare/visite-bei-dr-chatbot-warum-gesundheitsfragen-an-ki-riskant-sein-konnen/
-
Leopoldina-Publikation: Potenziale Agentischer KI in Klinikalltag und Forschung im Fokus
Tags: aiFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/leopoldina-publikation-potenzial-agent-ki-klinikalltag-forschung

