Tag: ai
-
Scope Squatting on ClawHub Exposes AI Supply Chain Risks
Scope squatting on ClawHub highlights AI supply chain risks. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/scope-squatting-on-clawhub-exposes-ai-supply-chain-risks/
-
Builder Culture Is Driving New AI Security Challenges
Tags: aiVanta finds that builder roles are driving AI adoption and introducing new security risks. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/builder-culture-is-driving-new-ai-security-challenges/
-
AI-powered cyber attacks may be just months away, warn Five Eyes
Frontier AI models will pose a greater cyber security risk to government and businesses than previously thought, putting businesses and governments at risk within months First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366644997/AI-powered-cyber-attacks-may-be-just-months-away-warn-Five-Eyes
-
New AI Model Aims to Transform Behavioral Health
Nick Allen of Ksana Health on ARPA-H-Funded Effort to Predict Mental Health Risk. A new AI-powered large health behavior model could help detect mental health and substance use risks before crises occur, said Nick Allen of Ksana Health, which is leading the ARPA-H funded effort to combine wearable, smartphone and health record data for earlier…
-
Mukesh Ambani’s Reliance AI Roadmap Puts Jio CallAgent Inside the Network
Reliance’s AI roadmap puts Jio CallAgent inside the telecom network while tying India-scale AI ambitions to Jamnagar compute, local-language services, and enterprise compliance questions. The post Mukesh Ambani’s Reliance AI Roadmap Puts Jio CallAgent Inside the Network appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-reliance-jio-callagent-ai-apac-india/
-
Microsoft fixes AutoGen Studio flaw that enabled code execution
A vulnerability chain dubbed AutoJack in Microsoft’s AutoGen Studio interface for prototyping AI agents could let attackers manipulate an agent into executing arbitrary commands on its host system simply by visiting a malicious webpage. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/microsoft-fixes-autogen-studio-flaw-that-enabled-code-execution/
-
Researchers Detail DifyTap Flaws in Dify That Could Expose AI Chats Across Tenants
Cybersecurity researchers have disclosed details of four vulnerabilities in Dify, an open-source agentic workflow platform with more than 146,000 GitHub stars, that could allow attackers to stealthily read artificial intelligence (AI) conversions from other customers’ applications without requiring authentication.The vulnerabilities have been collectively codenamed DifyTap by Zafran Security. First seen on thehackernews.com Jump to article:…
-
OpenAI Launches Full-Scale Effort to Patch Open-Source Bugs as It Takes on Anthropic’s Mythos
Amid concerns about AI models’ cybersecurity capabilities, OpenAI revealed an improved version of GPT-5.5-Cyber and its “Patch the Plant” initiative to fix open-source software bugs. First seen on wired.com Jump to article: www.wired.com/story/openai-launches-full-scale-effort-to-patch-open-source-bugs-as-it-takes-on-anthropics-mythos/
-
Intel agencies: Frontier AI models will reshape cybersecurity faster than expected
The joint warning from Five Eyes countries mirrors what many cybersecurity and AI experts have been saying for the past year. First seen on cyberscoop.com Jump to article: cyberscoop.com/five-eyes-alliance-say-advanced-ai-hacking-models-months-away/
-
Cloudflare PACT: Neuer Privacy-Standard gegen Bots, Captchas und KI-Traffic im Internet
PACT steht für Private Access Control Tokens. Dabei handelt es sich um ein geplantes, datenschutzorientiertes Protokoll, mit dem Browser gegenüber Websites Vertrauenssignale übermitteln können First seen on infopoint-security.de Jump to article: www.infopoint-security.de/cloudflare-pact-neuer-privacy-standard-gegen-bots-captchas-und-ki-traffic-im-internet/a45560/
-
Pakt für PACT Cloudflare und Browser-Hersteller entwickeln Datenschutz-Protokoll für das Internet
Datenschutz soll künftig direkt in die Infrastruktur des Internets eingebaut werden. Cloudflare hat gemeinsam mit führenden Browser-Herstellern wie Mozilla, Google, Microsoft und Shopify die Entwicklung eines neuen, datenschutzorientierten Internet-Protokolls angekündigt. Private-Access-Control-Tokens (PACT). Das Verfahren soll Websites helfen, legitime Nutzer und autorisierte KI-Agenten von schädlichem automatisiertem Traffic zu unterscheiden ganz ohne aufdringliche Captchas, Zwangs-Logins oder […]…
-
Anthropic’s Mythos AI broke into almost all NSA classified systems in hours
Senate testimony claims Anthropic’s Mythos AI breached NSA and Cyber Command systems in hours, prompting a U.S.-ordered shutdown. On June 12, the Trump administration directed Anthropic to restrict access to Fable 5 and Mythos 5, its two most capable models, exclusively to US citizens. Because verifying every user’s nationality in real time isn’t practically possible,…
-
Microsoft 365 Sensitivity Labels Now Block AI-Powered Content Analysis in Office Apps
Microsoft has announced a significant update to its Microsoft 365 ecosystem to enhance data protection. This update will prevent AI-powered and connected content analysis in Office applications when sensitivity labels are applied. According to Microsoft, the company is expanding the enforcement of the existing sensitivity label setting, “Prevent some connected experiences that analyze content.” This…
-
Stop Your Legacy Infrastructure from Hijacking Your AI Agents
Earlier this month, I spoke at the Gartner Security & Risk Management Summit about a blind spot most security programs are still not accounting for – how attackers are circumventing AI security programs by using legacy infrastructure to hijack AI agents.AI adoption is moving faster than security programs can account for. Roughly 71% of organizations…
-
Veeam würdigt herausragende Leistungen seiner EMEA-Partner auf der Tagung
Veeam Software, das Unternehmen für Data- und AI-Trust, hat die Gewinner seiner ‘EMEA Partner Awards 2026″ bekannt gegeben, die im Rahmen seines jährlichen <> vom 15. bis 18. Juni in Portugal verkündet wurden. Der Partner.Advisory-Council bringt eine ausgewählte Gruppe der strategisch wichtigsten Partner von Veeam aus ganz Europa, dem Nahen Osten und Afrika zusammen, […] First…
-
Microsoft Attributes Mastra AI Supply Chain Attack to North Korea
North Korean threat actor Sapphire Sleet has been linked to a supply chain attack targeting Mastra, according to Microsoft security researchers First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/mastra-ai-supply-chain-attack/
-
Attackers Can Poison AI Research Agents Using Reddit and Wikipedia Content
Attackers can now manipulate AI >>deep-research<< agents by discreetly editing Reddit threads and Wikipedia pages. They can insert as little as a 13-word snippet, which these agents may later reference as authoritative advice, product recommendations, or even scams in their responses. New research from Cornell Tech shows that these agents often rely on the same…
-
J.A.R.V.I.S. für jeden: Wo bleibt unser persönlicher KI-Assistent?
Tags: aiVersprochen wird bei KI immer viel. Wir erklären, warum der KI-Agent für die Hosentasche immer noch weit entfernt ist. First seen on golem.de Jump to article: www.golem.de/news/j-a-r-v-i-s-fuer-jeden-wo-bleibt-unser-persoenlicher-ki-assistent-2606-208234.html
-
Interview mit Tuncay Sandikci, Director MX B2B bei Samsung »Mobile Geräte sind eine strategische Entscheidung«
Smartphones und Tablets sind in vielen Unternehmen zentrale Arbeitswerkzeuge und Schnittstelle für Anwendungen, Daten und digitale Identitäten. Gleichzeitig wächst der Bedarf an sicheren Mobility-Lösungen. Samsung setzt dabei neben leistungsfähiger Hardware auf Security-Plattformen, Mobility Services und AI-gestütztes Device Management. Tuncay Sandikci, Director MX B2B bei Samsung, erklärt, welche Rolle Smartphones zukünftig im Enterprise-Umfeld spielen. First seen…
-
World Cup Scams Are Getting Harder to Spot
From fake tickets to cloned websites, AI is magnifying World Cup scams. Can fans distinguish between what’s real and what’s not? First seen on wired.com Jump to article: www.wired.com/story/world-cup-scams-are-getting-harder-to-spot/
-
Squidbleed: 29 Jahre alte Lücke in populärer Proxy-Software entdeckt
Seit 1997 klafft in der Proxy-Software Squid eine Lücke, mit der sich HTTP-Traffic abgreifen lässt. Drei Jahrzehnte später hat eine KI sie gefunden. First seen on golem.de Jump to article: www.golem.de/news/squidbleed-29-jahre-alte-luecke-in-populaerer-proxy-software-entdeckt-2606-210022.html
-
Squidbleed: 29 Jahre alte Lücke in populärer Proxy-Software entdeckt
Seit 1997 klafft in der Proxy-Software Squid eine Lücke, mit der sich HTTP-Traffic abgreifen lässt. Drei Jahrzehnte später hat eine KI sie gefunden. First seen on golem.de Jump to article: www.golem.de/news/squidbleed-29-jahre-alte-luecke-in-populaerer-proxy-software-entdeckt-2606-210022.html
-
Squidbleed: 29 Jahre alte Lücke in populärer Proxy-Software entdeckt
Seit 1997 klafft in der Proxy-Software Squid eine Lücke, mit der sich HTTP-Traffic abgreifen lässt. Drei Jahrzehnte später hat eine KI sie gefunden. First seen on golem.de Jump to article: www.golem.de/news/squidbleed-29-jahre-alte-luecke-in-populaerer-proxy-software-entdeckt-2606-210022.html
-
Interview mit Tuncay Sandikci, Director MX B2B bei Samsung »Mobile Geräte sind eine strategische Entscheidung«
Smartphones und Tablets sind in vielen Unternehmen zentrale Arbeitswerkzeuge und Schnittstelle für Anwendungen, Daten und digitale Identitäten. Gleichzeitig wächst der Bedarf an sicheren Mobility-Lösungen. Samsung setzt dabei neben leistungsfähiger Hardware auf Security-Plattformen, Mobility Services und AI-gestütztes Device Management. Tuncay Sandikci, Director MX B2B bei Samsung, erklärt, welche Rolle Smartphones zukünftig im Enterprise-Umfeld spielen. First seen…
-
AI is transforming enterprise data risk. Here’s how security leaders are responding.
New research from 1,700 security leaders reveals 3 imperatives for securing AI adoption. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/spons/ai-is-transforming-enterprise-data-risk-heres-how-security-leaders-are-re/823180/
-
3 ways AI is transforming security operations – and where it delivers real impact
Security operations (SecOps) teams have long been exhorted to “work smarter, not harder,” but they need the right tools and processes to actually achieve that aim. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/spons/3-ways-ai-is-transforming-security-operations-and-where-it-delivers-real/822590/
-
Angreifer ohne Fachwissen hackt 14 Firmen mit Claude und Codex
Ein Angreifer hat mithilfe von Claudes Code-Agenten und OpenAIs Codex 14 Unternehmen kompromittiert. Seine mangelnden Fachkenntnisse glich die KI aus. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/angreifer-ohne-fachwissen-ki
-
23 ClawHub plugins squatting official scopes expose AI registry security gaps
Tags: aiPlugin registries for AI agents use npm-style scopes like @openclaw/ and @clawhub/ to signal who published a package. But on ClawHub, a registry whose plugins run with Claude, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/22/clawhub-code-executing-plugins-video/
-
23 ClawHub plugins squatting official scopes expose AI registry security gaps
Tags: aiPlugin registries for AI agents use npm-style scopes like @openclaw/ and @clawhub/ to signal who published a package. But on ClawHub, a registry whose plugins run with Claude, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/22/clawhub-code-executing-plugins-video/
-
Who pays when you gate cyber-capable AI models?
In this interview with Help Net Security, Jaya Baloo, COO CISO at Aisle, examines the debate over restricting access to cyber-capable AI models. She lays out the … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/22/jaya-baloo-aisle-gating-cyber-capable-ai-models/

