Tag: ai
-
Splunk AI Toolkit Vulnerability Allows Arbitrary OS Command Execution
Splunk has disclosed a critical security vulnerability in its AI Toolkit that could allow authenticated administrators to execute arbitrary operating system commands on affected systems, raising significant concerns for enterprises that rely on Splunk for security analytics and automation. The flaw, tracked as CVE-2026-20266, affects Splunk AI Toolkit versions before 5.7.4 and has been assigned…
-
Malicious JetBrains plugins steal AI API keys from developers
First seen on scworld.com Jump to article: www.scworld.com/brief/malicious-jetbrains-plugins-steal-ai-api-keys-from-developers
-
EU Gets a Head Start in Developing 6G Network Security
Shield-6G will combine AI threat detection, digital twins, honeypots, and more, to help carriers protect 6G networks against the threats of tomorrow. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/eu-6g-network-security
-
Schadcode in 144 npm-Paketen von Mastra entdeckt
Ein Angreifer kompromittierte 144 npm-Pakete des KI-Frameworks Mastra. Betroffen ist auch die Kernkomponente mit über 918.000 wöchentlichen Downloads. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/mastra-schadcode-144-npm-paketen
-
AI is speeding up cybersecurity buying. MSSPs could win big
First seen on scworld.com Jump to article: www.scworld.com/news/ai-driven-changes-in-cybersecurity-tech-buying-open-opportunities-for-mssps
-
Netskope Threat Labs Report Europe 2026 – Europas Unternehmen fehlt die Kontrolle über GenAI
First seen on security-insider.de Jump to article: www.security-insider.de/netskope-report-europe-2026-genai-governance-risiken-a-c5185f96070effdf9f585ebb273f70e8/
-
Bösartige Plugins stehlen KISchlüssel von Entwicklern
Mindestens 15 Plugins im JetBrains Marketplace exfiltrieren heimlich API-Schlüssel für KI-Dienste. Rund 70.000 Installationen sind betroffen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/plugins-stehlen-ki-api-schluessel
-
Agentjacking: Researchers Show How One Fake Bug Report Can Hijack AI Coding Agents
Tenet researchers reveal how fake Sentry bug reports can trick AI coding agents into running code, exposing a new Agentjacking risk for developers today. First seen on hackread.com Jump to article: hackread.com/agentjacking-fake-bug-report-hijack-ai-coding-agents/
-
Red Hat Umfrage zur digitalen Souveränität in der EU – Unternehmen fehlt bei KI Strategie und Datensouveränität
First seen on security-insider.de Jump to article: www.security-insider.de/red-hat-umfrage-digitale-souveraenitaet-eu-exit-strategie-a-fac5354ca1511049979abdb00a2a46f5/
-
CrowdStrike stellt Continuous Identity for AI Agents vor
CrowdStrike ersetzt statische Richtlinien und permanente Berechtigungen durch kontinuierliche, risikobewusste Durchsetzung und autorisiert jede Agent-Aktion auf Basis dessen, wem der Agent gehört, wer ihn aufruft und welches Echtzeitrisiko vorliegt. CrowdStrike hat Continuous Identity for AI Agents vorgestellt, eine neue Funktion von CrowdStrike Falcon® Next-Gen Identity Security, die die CrowdStrike Falcon®-Plattform als Kontrollebene für die Identitätssicherheit……
-
Mastra AI Framework Poisoned in npm Supply-Chain Attack
Microsoft-Owned GitHub, Which Runs npm, Previews Supply-Chain Security Fixes. The popular Mastra AI framework, used to build artificial intelligence agents, workflows and retrieval-augmented generation pipelines, has been poisoned by attackers, and Microsoft-owned GitHub has advised all developers to downgrade Mastra, pending compromised packages being found and eradicated. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/mastra-ai-framework-poisoned-in-npm-supply-chain-attack-a-32003
-
Omada stellt Agent Governance für KI-Agenten vor
Mit Omada Agent Governance positioniert sich der Anbieter in einem Markt, in dem KI-Sicherheit, Identity Governance und Cloud Security zunehmend zusammenwachsen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/omada-stellt-agent-governance-fuer-ki-agenten-vor/a45524/
-
Smashing Security podcast #472: AI gets hacked, and BitLocker gets bypassed
What if your AI coding assistant could be tricked into stealing your own company’s secrets – by reading a single booby-trapped bug report? No phishing email. No malware. No password ever stolen. Just an AI doing exactly what it was told. First seen on grahamcluley.com Jump to article: grahamcluley.com/smashing-security-podcast-472/
-
OpenAI deepens Japan footprint with Hitachi deal
Hitachi will use OpenAI’s Codex agent to unpick ageing mission-critical systems and gain early access to its frontier AI models in a slew of high-profile Japanese partnerships for the US AI lab First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366644858/OpenAI-deepens-Japan-footprint-with-Hitachi-deal
-
Scripting the disassembler: Local agentic reverse engineering through vbdec’s live COM object model
Cisco Talos detailed a new approach to reverse engineering that pairs local AI agents with traditional analysis tools like the VB6 disassembler vbdec. Instead of awkwardly bolting AI onto the software, vbdec exposes its parsed data through a live COM interface. First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/scripting-the-disassembler/
-
Hostile states launched nearly 200 attacks on UK infrastructure in five months, says NCSC chief
Hackers will use AI-enabled cyber capabilities to exploit known vulnerabilities in legacy technology at scale by 2028, says National Cyber Security Centre CEO Richard Horne First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366644872/Hostile-states-launched-200-attacks-on-UK-infrastructure-in-five-months-says-NCSC-chief
-
Cybernews-Studie zu KI-Spielzeug-Apps: Sammlung von Standort-, Kamera- und Mikrofondaten
Tags: aiFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/cybernews-ki-spielzeug-apps-sammlung-standort-kamera-mikrofon-daten
-
Hostile states launched nearly 200 attacks on UK infrastructure in five months, says NCSC chief
Hackers will use AI-enabled cyber capabilities to exploit known vulnerabilities in legacy technology at scale by 2028, says National Cyber Security Centre CEO Richard Horne First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366644872/Hostile-states-launched-200-attacks-on-UK-infrastructure-in-five-months-says-NCSC-chief
-
Cybernews-Studie zu KI-Spielzeug-Apps: Sammlung von Standort-, Kamera- und Mikrofondaten
Tags: aiFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/cybernews-ki-spielzeug-apps-sammlung-standort-kamera-mikrofon-daten
-
Google’s open standard for AI agents to discover and verify tools
AI agents depend on tools, skills, and other agents spread across many teams, organizations, and platforms. These capabilities live in separate systems with their own … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/18/google-agentic-resource-discovery/
-
Embargo für Anthropic-KI-Modelle: eco moniert mögliche Folgen für Europas Cybersicherheit
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/embargo-anthropic-ki-modelle-eco-folgen-europa-cybersicherheit
-
What happens to oversight when AI agents write a lab’s own code
Inside the labs building frontier AI, a growing share of the coding gets done by the AI itself. These agents write, edit, and run software with light human oversight between … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/18/research-ai-coding-agent-oversight/
-
Fran Roberts wird General Manager der KnowBe4-Studios
Tags: aiKnowBe4 ernennt Fran Roberts zum General Manager von KnowBe4 Studios. Roberts wird das Team von Studios bei der Entwicklung innovativer, KI-gestützter Schulungsinhalte leiten, darunter interaktive Spiele und erweiterte Storytelling-Elemente, die auf ein verbessertes, immersives Kundenerlebnis ausgelegt sind. Die Ernennung erfolgt zu einem spannenden Zeitpunkt für KnowBe4, da das Unternehmen seinen Fokus verstärkt auf KI-gestützte Innovationen…
-
AWS Continuum brings AI models to code vulnerability management
AWS Continuum for code vulnerabilities, a system built to handle a vulnerability across its lifecycle, from discovery through to a fix, is now available in gated preview. It … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/18/aws-continuum-for-code-vulnerabilities/
-
Identiverse 2026: Blended Identities and the challenge of IAM for AI
First seen on scworld.com Jump to article: www.scworld.com/resource/identiverse-2026-blended-identities-and-the-challenge-of-iam-for-ai
-
Most agentic AI projects in production have stalled over data problems
Enterprises are connecting AI agents to live data feeds and putting them to work on tasks that once required human review, from IT operations to software development. The … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/18/report-agentic-ai-in-production/
-
Identiverse 2026: Who is responsible for an AI agent’s actions?
Tags: aiFirst seen on scworld.com Jump to article: www.scworld.com/resource/identiverse-2026-who-is-responsible-for-an-ai-agents-actions
-
Ozempic Maker Novo Nordisk Confirms Security Incident After $25M Hacker Demand
Hackers claim they stole 1.3TB of Novo Nordisk data, including clinical trial and AI model information, after issuing a $25 million demand. The post Ozempic Maker Novo Nordisk Confirms Security Incident After $25M Hacker Demand appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-novo-nordisk-1-3tb-theft-25m-demand-emea/
-
Identiverse 2026: Agentic AI has an identity problem
First seen on scworld.com Jump to article: www.scworld.com/resource/identiverse-2026-agentic-ai-has-an-identity-problem
-
Google Adds New Android Controls for WhatsApp Backups, Password Transfers
Google’s June 2026 Android system updates add WhatsApp backup controls, Play Protect checks, passkey portability, and Play Store AI search. The post Google Adds New Android Controls for WhatsApp Backups, Password Transfers appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-google-android-june-2026-system-updates/

