Tag: ai
-
Who’s Accountable When an AI Agent Fails? – Kovrr
Articles related to cyber risk quantification, cyber risk management, and cyber resilience. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/whos-accountable-when-an-ai-agent-fails-kovrr/
-
Stress-Testing Your SIEM: Is Your Environment Actually Catching the Bad Guys?
In today’s security landscape, we have more tools than ever (EDR, XDR, SOAR, SIEM) and very little time to learn each one fully. Every tool out there advertises “we use MITRE” and “we are a Gartner top X” and now since 2025 “We have AI!”. All of these are well and good, however they […]…
-
Sophos, OpenAI Partner to Bring Frontier Models to Managed Service Providers
Sophos said it is partnering with OpenAI to bring OpenAI frontier models to managed service providers through Sophos Fusion, the company’s connected cyber defense system. Announced Aug. 6 during Black Hat USA 2026, the partnership is intended to give MSPs a way to deliver AI security services and build offerings around detection, investigation and response……
-
BeyondTrust Extends Pathfinder to AI Agents and Other Nonhuman Identities
BeyondTrust is extending its Pathfinder platform to cover AI agents, workloads and other nonhuman identities that can hold or exercise privileged access. The company announced the first wave of native Pathfinder capabilities at Black Hat USA 2026 on Aug. 3. The package includes PathfinderAI and a new MCP Server, AI Agent Security, NHI Governance and..…
-
AI Deepfakes Used to Impersonate OnlyFans Creators in New Scam
Scammers use AI deepfakes to impersonate OnlyFans creators, trick fans into sending money, then disappear after payment. Criminals are building fake identities using AI-generated deepfakes of real OnlyFans creators, luring their followers with promises of live chats, and then disappearing after collecting payment. The scheme runs on social platforms that most people consider harmless, TikTok…
-
Claude in Chrome Exploit Lets Attackers Steal Gmail Codes and Take Over Slack, X, and Claude.ai Accounts
Security researchers have demonstrated an indirect prompt-injection chain affecting Claude in Chrome that can transform a standard request, such as summarizing recent emails, into a cross-account takeover scenario. The research reveals how untrusted content viewed by an AI browser agent can exploit authenticated browser sessions to steal email-delivered verification secrets and compromise accounts on services…
-
On-Behalf-Of vs. Service Account: Choosing an Agent Identity Model
A decision guide for AI agent identity: when to delegate with RFC 8693, when to use a client-credentials service account, and the spec rules that make the choice for you. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/on-behalf-of-vs-service-account-choosing-an-agent-identity-model/
-
Frontier AI Has a Cybersecurity Expertise Problem
First OpenAI’s model went rogue and broke out of testing containment to hack real systems, then Anthropic, and now Meta AI. Do you see a trend? Here is what it means: Although these frontier AI companies employ some of the world’s brightest engineers, architects, and developers, technical excellence is not the same as deep cybersecurity…
-
Check Point Puts AI Traffic Controls Into Its Existing Firewalls
Check Point has launched an AI Network Firewall that brings visibility and enforcement for AI applications, agents and Model Context Protocol traffic into the physical and virtual firewalls organizations already operate. Introduced July 30 ahead of Black Hat USA 2026, the product is delivered through Check Point’s AI Defense Plane and firewall software release R82.20……
-
1Password Adds Privileged Access Controls for Human and AI Identities
1Password has launched Privileged Access, extending its Unified Access platform into privileged access management with controls designed to remove standing permissions from human and AI identities. The July 28 launch came ahead of Black Hat USA 2026, where identity security and AI-agent controls are major themes. 1Password said Privileged Access provisions permissions when they are..…
-
Guardrails, Red Teaming und Laufzeitschutz für die sichere KI-Einführung – Manipulierte Skills machen KI-Agenten zum Einfallstor
First seen on security-insider.de Jump to article: www.security-insider.de/ki-agenten-sicher-einfuehren-guardrails-security-by-design-a-a316ae17b65bc278dc61c961b30dbc29/
-
Europa stark bei der Sicherheit, doch schwach bei der KI-Governance
29 % der europäischen Unternehmen nennen die KI-Regulierung ihre größte Compliance-Sorge, der höchste Wert aller Regionen. Kiteworks hat seinen 2026 Data Security and Compliance Risk: Annual Survey Report veröffentlicht [1]. Die Analyse wurde zum fünften Mal in Folge durchgeführt und basiert auf einer Befragung von 459 Sicherheits-, Compliance-, Risiko- und IT-Fachleuten in zehn Branchen… First…
-
What the first year of EU AI Act transparency enforcement could look like
In this Help Net Security interview, Edwin Weijdema, Field CTO at Veeam, answers questions on Article 50 of the EU AI Act and what the first year of enforcement might bring. … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/07/edwin-weijdema-veeam-eu-ai-act-transparency/
-
Critical Flaws in Claude Code, Gemini CLI, and OpenAI Codex Enable RCE and Supply Chain Attacks
Tags: ai, attack, automation, breach, cyber, flaw, google, openai, rce, remote-code-execution, supply-chain, theft, tool, vulnerabilitySecurity researchers have disclosed a vulnerability affecting AI coding-agent workflows from Anthropic, Google, and OpenAI. Their research highlights how an attacker-controlled issue or zero-privilege input can breach trust boundaries in an agent “harness”, which includes the permissions, tools, sandbox, filesystem, and automation surrounding the model, and result in code execution, secret theft, or workflow compromise.…
-
Cloudflare Builds Business on Surge in Bot Traffic and AI Workloads
CEO Matthew Prince Says Non-Human Traffic Could Reach 1,000 Times Human Use. Cloudflare says explosive growth in AI agents and other machine traffic is creating a larger opportunity in bot management, agent security and micropayments than in building AI data centers, as non-human activity begins to dominate internet traffic. First seen on govinfosecurity.com Jump to…
-
ShieldFont fights AI scraping by handing crawlers the wrong words
Tags: aiIsaque Seneda and Gabriel Abrucio built a web font that draws one set of words on screen and leaves a different set in the page’s source code. A person reading in a … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/07/shieldfont-ai-scraping-protection/
-
Gut feeling does nothing against AI spear phishing texts
A banker at a credit union sat down at a table with a dozen printed text messages, all of them written for that banker personally, and put them in order from the one most … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/07/ai-spear-phishing-research/
-
Google’s John Hultquist on outpacing the adversary with AI threat defense
First seen on scworld.com Jump to article: www.scworld.com/resource/googles-john-hultquist-on-outpacing-the-adversary-with-ai-threat-defense
-
Apiiro’s Idan Plotnik on AI writing code that sharpens attacks
First seen on scworld.com Jump to article: www.scworld.com/resource/apiiros-idan-plotnik-on-ai-writing-code-that-sharpens-attacks
-
The AI governance audit your clients aren’t ready for
First seen on scworld.com Jump to article: www.scworld.com/perspective/the-ai-governance-audit-your-clients-arent-ready-for
-
Black Hat USA 2026: Solving insider risk in the agentic AI era
First seen on scworld.com Jump to article: www.scworld.com/perspective/black-hat-usa-2026-solving-insider-risk-in-the-agentic-ai-era
-
Agentic anarchy: Why using AI browsers just isn’t worth the risk
First seen on scworld.com Jump to article: www.scworld.com/news/agentic-anarchy-why-using-ai-browsers-just-isnt-worth-the-risk
-
Frank Vukovits on how Delinea delivers runtime authorization for AI agents
Tags: aiFirst seen on scworld.com Jump to article: www.scworld.com/resource/frank-vukovits-on-how-delinea-delivers-runtime-authorization-for-ai-agents
-
Intruder’s Chris Wallis on AI pentesting and the future of cybersecurity
First seen on scworld.com Jump to article: www.scworld.com/resource/intruders-chris-wallis-on-ai-pentesting-and-the-future-of-cybersecurity
-
Ido Geffen on why Novee owns the full AI pentesting stack
First seen on scworld.com Jump to article: www.scworld.com/resource/ido-geffen-on-why-novee-owns-the-full-ai-pentesting-stack
-
Ramin Farassat on how Menlo Security is securing AI agents from prompt injection
First seen on scworld.com Jump to article: www.scworld.com/resource/ramin-farassat-on-how-menlo-security-is-securing-ai-agents-from-prompt-injection
-
Cybersecurity Agent Collisions Are Coming And Could Be ‘Very Ugly’: Netskope CISO
While cybersecurity teams are all-too-familiar with the issue of tool sprawl, an emerging new version of this challenge could come in the form of widely deployed AI agents that are difficult to keep coordinated, according to Netskope CISO James Robinson. First seen on crn.com Jump to article: www.crn.com/news/security/2026/cybersecurity-agent-collisions-are-coming-and-could-be-very-ugly-netskope-ciso
-
ClaudeVorfall durch Versagen grundlegender KI-Sicherheitsarchitektur ermöglicht
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/claude-phishing-vorfall-versagen-ki-sicherheitsarchitektur
-
Breach Roundup: Water Utilities in 12 US States Hit
Also, Chinese-Made SOHO Routers Contain Trojan, AI Fuels Cybercrime Across Africa. This week: water utilities in 12 U.S. states hit, Trojans in Chinese SOHO routers, banned Chinese companies in U.S. networks, AI fueled cybercrime in Africa, a U.K. police legal database breached, IBM Langflow AI flaw, a cyberattack delayed orders at a Dutch retailer and…
-
AI Accelerates Financial Services Fraud
Coinbase’s Lunglhofer on Deepfakes, Supply-Chain Risk and Human Expertise. AI is helping criminals clone voices, exploit software flaws and guide fraud schemes in real time. Coinbase Chief Security Officer Jeff Lunglhofer explains why faster attacks demand AI-enabled defense backed by cybersecurity experts. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/ai-accelerates-financial-services-fraud-a-32450

