Tag: ai
-
How TruthScan’s New Technology Stops AI-Enabled Return Fraud
From 2024 to 2025, fraudulent returns cost retailers nearly $200 billion. Some experts believe that the increase in return (or refund) fraud is directly related to AI-generated image models creating fake evidence. Michael Reitblat, CEO and cofounder of Forter, told Wired that AI fraud has increased as “image-generation tools have become widely accessible and incredibly…The…
-
Unit 42 warns AI has shifted balance of power from defenders to attackers
Palo Alto Networks’ threat intelligence team said the early waves of threats riding on agentic AI models have broken in the wild, and organizations are unprepared for what’s coming next. First seen on cyberscoop.com Jump to article: cyberscoop.com/unit-42-palo-alto-networks-warning-agentic-ai-frontier-models/
-
100-plus companies call for ‘global surge’ in AI-powered cyber defense
OpenAI, Anthropic, Google, Microsoft, and others say there’s a narrow “defenders’ window” to strengthen security before AI-powered attacks become more sophisticated. First seen on cyberscoop.com Jump to article: cyberscoop.com/ai-cyber-defense-global-surge/
-
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend
In his first Threat Source newsletter, David Bianco explores the critical need for operational sovereignty in customizing AI guardrails to maintain the defender’s advantage. First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/sorry-i-cant-help-with-that-how-your-guardrails-might-become-the-attackers-best-friend/
-
Cryptohack Roundup: Term Finance Hack
Also: Fraud Convictions for Profit Connect and Block Bits Capital. This week, hackers stole $8.5M from Term Finance, BounceBit to shutter blockchain after hack, Profit Connect and Block Bits Capital founders convicted in fraud cases, Roman Storm’s retrial delayed and AI use in crypto-linked crime jumped 40%. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/cryptohack-roundup-term-finance-hack-a-32668
-
Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026
This installment of the Reporters’ Notebook video series discusses the topics that dominated the cybersecurity conference, such as AI’s effects on vulnerability reporting and security research. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/agentic-ai-risks-cve-program-concerns-black-hat-usa-2026
-
ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories
Tags: ai, botnet, data-breach, exploit, infrastructure, iot, login, malicious, rce, remote-code-execution, tool, windowsA fake login page. A fake security scan. A fake productivity app. Apparently, pretending to be useful is still one of the easier ways into a machine.The rest of the week gets stranger: botnets borrowing AI, command traffic hiding in public infrastructure, malicious tools waiting before showing their real behavior, exposed systems getting scanned, and…
-
Cisco Report Shows How AI Agents Are Changing Cybersecurity Jobs
Cisco research shows how AI agents are reshaping cybersecurity roles and skills. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/artificial-intelligence/cisco-report-shows-how-ai-agents-are-changing-cybersecurity-jobs/
-
Claude Opus 4.6 Found a Gym API Flaw, Then Exploited It in 9 of 10 Tests
Claude Opus 4.6 exploited a gym API flaw in 9 of 10 controlled tests, highlighting security risks when AI agents gain backend access. The post Claude Opus 4.6 Found a Gym API Flaw, Then Exploited It in 9 of 10 Tests appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-claude-gym-api-flaw/
-
Ring’s New TAKE Encryption Deletes Video Keys Without Giving Up AI Features
Ring’s new TAKE encryption limits video-key retention while keeping cloud AI features, Ring Verify, and optional end-to-end encryption in play. The post Ring’s New TAKE Encryption Deletes Video Keys Without Giving Up AI Features appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-ring-take-encryption-ai/
-
What IBM’s Latest Breach Report Says About Data Security in an AI-Centric World
<div cla IBM has been charting the data breach landscape now for over two decades. But you’d be hard pressed to find any point over the past 21 years as volatile as today. AI is rewriting the rules of the game for network defenders and their adversaries, simultaneously arming attackers and creating a dangerous new…
-
AI Agent Threat Response: Why Pre-Runtime Controls Matter More Than Runtime Detection
AI agent threat response starts before runtime. See why pre-runtime credential controls stop agent misuse that runtime detection can only observe. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/ai-agent-threat-response-why-pre-runtime-controls-matter-more-than-runtime-detection/
-
Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers
Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate data exfiltration via prompt injection and Kiro Powers.The security flaw, which does not have a CVE identifier, works against Kiro IDE 0.7.45 on Windows, according to Mindguard. The latest version of First…
-
SonarQube Hunter Agent is now GA: Catch broken access control and business logic flaws
SonarQube Hunter Agent uses AI to detect broken access control, business logic flaws, and authentication vulnerabilities traditional SAST can miss. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/sonarqube-hunter-agent-is-now-ga-catch-broken-access-control-and-business-logic-flaws/
-
Here’s all the times AI has gone rogue and hacked other companies
A recap of all the incidents involving LLMs made by Anthropic, Meta, and OpenAI, which went rogue and attacked real companies and individuals on the internet. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/27/heres-all-the-times-ai-has-gone-rogue-and-hacked-other-companies/
-
Can We Trust AI Agents With Security Decisions? Adarsh Kant Sinha Explains
As organizations race to move from AI chatbots and copilots toward autonomous AI agents, security leaders are being forced to answer a harder question than “should we adopt AI?”, it’s “can we trust AI to make security decisions?” To unpack this, The Cyber Express sat down with Adarsh Kant Sinha, Founder and CEO of ANVE.AI.…
-
Tourismus im Visier von Hackern
Tags: aiDie Reise- und Tourismusbranche hat in den vergangenen Jahren einen tiefgreifenden Wandel durchlaufen. KI-gestützte Reiseplanung, biometrische Check-ins, vernetzte Buchungssysteme und smarte Zimmertechnik formen eine quasi komplett vernetzte Urlaubsreise. Doch dieser rasante Fortschritt hat seinen Preis. Mit jedem neuen digitalen Angebot vergrößert sich die Angriffsfläche. Hotels und Reiseunternehmen sind so zu einem der am häufigsten angegriffenen…
-
OpenAI Reveals How AI Agents Breached Hugging Face
OpenAI released a report explaining how AI agents breached Hugging Face during security testing. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/openai-reveals-how-ai-agents-breached-hugging-face/
-
AI Agents Used by 68% of Top-Performing Cybersecurity Teams
AI agents are already finding their way into the working methods of some of the highest-performing cybersecurity teams, according to new three-year benchmark data from Hack The Box (HTB). The 2026 Global Cyber Skills Benchmark found that 68% of the top 25 teams included an AI agent, despite AI agents accounting for just 2.7% of…
-
Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks
The Australian Federal Police (AFP) has charged two Western Australian men with a combined total of 14 offences over their alleged role in TeamPCP, the cybercrime group behind the March 2026 compromise of the open-source security scanners Trivy and Checkmarx KICS and the AI gateway LiteLLM.Louis Michael Gaebler, 23, and Ruben Ian Thomson, 21, appeared…
-
What the Data Says About AI in Security Operations in 2026
AI is officially mainstream in security operations. According to Prophet Security’s State of AI in Security Operations 2026 report (produced from ViB’s survey of 250+ cybersecurity pros), 40% of security teams now use AI daily. Another 56% are currently testing it out, and only 4% have no plans to adopt it.For the teams already using…
-
Three UK airports hit by cyber-attack with data of 8.7m customers accessed
Company that runs Manchester, Stansted and East Midlands hubs says passenger safety is unaffected<ul><li><a href=”https://www.theguardian.com/business/live/2026/aug/27/asian-technology-shares-ride-high-ai-optimism-nvidias-stunning-results-jackson-hole-live-updates”>Business live latest updates</li></ul>Manchester, London Stansted and East Midlands airports have been hit by a cyber-attack, with hackers accessing the data of about 8.7 million customers.Hackers obtained their email addresses, phone numbers, vehicle registration numbers and postcodes, as the incident affected…
-
Wenn freigegebene KI zu Shadow-AI wird
Tags: aiDie Freigabe einer Anwendung verschafft einem Unternehmen einen wertvollen Kontrollpunkt: Sicherheit, Recht, Datenschutz, Beschaffung und IT bewerten einen Dienst gemeinsam, handeln Vertragsbedingungen aus, konfigurieren unternehmensweite Kontrollen und definieren, was als angemessene Nutzung gelten soll. Diese Entscheidung beschreibt allerdings nur einen Zustand nämlich den zum Zeitpunkt der Prüfung. Sie bildet die Konten, Funktionen, Integrationen, Datenflüsse […]…
-
Socure Secures $156M, Buys Fravity to Automate Fraud Reviews
Agents Aim to Reduce Deep Fraud Investigations From More Than an Hour to Seconds. Socure raised $156 million from Summit Partners at a $5.2 billion valuation and acquired startup Fravity to deploy AI agents that gather and analyze evidence across fragmented risk systems, potentially cutting fraud investigations from more than an hour to seconds. First…
-
‘HTTP Terminator’ Hunts for Novel Desync Attacks
James Kettle of PortSwigger talks with the Dark Reading News Desk about his AI-powered open source tool, which found new HTTP request-smuggling techniques. First seen on darkreading.com Jump to article: www.darkreading.com/application-security/http-terminator-hunts-novel-desync-attacks
-
Learn How to Build Security Operations Ready for AI-Powered Attacks
Security teams have spent years trying to detect threats faster. AI is changing the harder part: how much time defenders have left to act.Advanced AI models can now help attackers discover vulnerabilities, generate exploit code, and move through weaknesses faster than traditional security processes were built to handle.The challenge is no longer just finding another…
-
UK airports operator hit by cyber-attack and customer data accessed
Company that runs Manchester, Stansted and East Midlands airports says passenger safety is unaffected<ul><li><a href=”https://www.theguardian.com/business/live/2026/aug/27/asian-technology-shares-ride-high-ai-optimism-nvidias-stunning-results-jackson-hole-live-updates”>Business live latest updates</li></ul>Three UK airports have been hit by a “cybersecurity incident” in which the data of about 8.7 million customers was accessed, Manchester Airport Group (Mag) has said.The company, which operates Manchester Airport, London Stansted and East Midlands airport,…
-
Hackers Are Targeting AI Servers to Steal API Keys and Hijack Computing Power
AI infrastructure is rapidly becoming a high-value enterprise attack surface. Attackers targeting LiteLLM AI gateways, RAGFlow retrieval platforms, and Kestra workflow orchestration environments to steal model-provider credentials, establish persistence, access backend data, and deploy cryptominers. The appeal is clear. AI gateways often centralize OpenAI, Azure, Anthropic, Gemini, and other provider API keys; retrieval platforms hold…
-
The AI Productivity Paradox: More Code, Not More Delivery
<div cla Writing code faster only helps if the rest of the software delivery system can keep up. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/the-ai-productivity-paradox-more-code-not-more-delivery/

