Tag: ai
-
AI Agent Governance: How Enterprises Can Approach It – Kovrr
Articles related to cyber risk quantification, cyber risk management, and cyber resilience. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/ai-agent-governance-how-enterprises-can-approach-it-kovrr/
-
Model Context Protocol: Can it be the next carrier of AI Security Risks?
Enterprises are racing to plug Large Language Models (LLMs) into their internal systems CRMs, ticketing tools, code repositories, databases, and SaaS platforms. The Model Context Protocol (MCP) has emerged as the leading standard for this integration. It gives AI models a uniform way to discover and call external tools, read files, and pull live context……
-
EU begins enforcing AI Act, putting AI models under the microscope
Europe’s fight to regulate AI models moved from paper to practice on 2 August 2026, when the European Commission’s AI Office and national authorities began … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/04/eu-ai-act-enforcement-ai-models/
-
KI macht Smartphones zur neuen Hochrisiko-Zone der Unternehmens-IT
Mobile Endgeräte rücken durch KI-gestützte Angriffe ins Zentrum der Cyberabwehr. Der »Global Mobile Threat Report 2026« von Zimperium zeigt, wie stark Phishing, Spyware, Schatten-KI und unsichere KI-generierte Apps die mobile Sicherheitslage in Unternehmen verschärfen und warum klassische Endpoint-Strategien nicht mehr ausreichen. Management Summary Mobile Security wird zur KI-Frage: KI-gesteuerte Phishing-Angriffe auf Mobilgeräte sind laut… First…
-
CrowdStrike 2026 Threat Hunting Report: KI ist heute fester Bestandteil moderner Cyberangriffe
Cyberangreifer operationalisieren künstliche Intelligenz nicht nur, um Schwachstellen innerhalb von Stunden auszunutzen, sondern auch, um KI, die in Unternehmen eingesetzt wird, anzugreifen. Zudem nutzen Angreifer sie auch, um Angriffe entlang der Software-Lieferkette zu skalieren. CrowdStrike hat am 3. August den 2026 Threat Hunting Report veröffentlicht, der verdeutlicht, wie sehr künstliche Intelligenz mittlerweile Bestandteil von… First…
-
PortSwigger Adds AI Agent to Penetration Testing Portfolio
PortSwigger has made available a beta release of an artificial intelligence (AI) agent for its Burp Suite penetration testing tools. Katie Warren, product leader for Burp AI at PortSwigger, said Burp AT will make it simpler for cybersecurity teams to simulate attacks without necessarily requiring a lot of expertise. At the core of that capability..…
-
AI Proving Grounds Consortium Tests Whether Security Agents Are Ready to Act
AI security agents are moving from sorting alerts and recommending next steps to taking direct action against threats. That could help defenders keep pace with faster attacks, but it also raises the risk that an agent’s actions could disrupt the business. The newly formed AI Proving Grounds Consortium (AIPGC) aims to create a shared framework..…
-
Mea Culpa: Apple Confesses It Can’t Keep Up With AI Bug Reports
When even Apple can’t keep up with the flood of AI-discovered security holes, you must begin to wonder whether AI is a blessing or a curse. Me oh my, the Financial Times reports that Apple started capping security bug submissions in June. Why? Because security researchers using AI tools have been flooding its security teams..…
-
The AI Act kicks into action, forces companies to be clear about AI chatbots
The European Union (EU) has started enforcing key parts of the AI Act, with immediate, visible consequences for chatbots, deepfakes and other consumer”‘facing AI. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/the-ai-act-kicks-into-action-forces-companies-to-be-clear-about-ai-chatbots/
-
Anthropic: Claude Attacks Result of Security Gaps, Not Model Issues
Last month’s incidents in which the AI model breached real-world systems derived from over-permissioning, especially with Internet access. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/anthropic-ai-issues-result-security-gaps
-
AI Agent Harnesses Can Change Red Teaming Results
Lasso research finds AI agent harnesses can influence red teaming performance as much as the underlying LLM. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/artificial-intelligence/ai-agent-harnesses-can-change-red-teaming-results/
-
BSides 2026: How AI Agents Really Perform in Offensive Security
Tags: aiBSides 2026 research shows AI agent behavior reveals more than benchmark scores. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/artificial-intelligence/bsides-2026-how-ai-agents-really-perform-in-offensive-security/
-
Anthropic: AI Attacks Result of Security Gaps, Not Model Issues
Last month’s incidents in which Claude breached real-world systems derived from over-permissioning, especially with Internet access. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/anthropic-ai-issues-result-security-gaps
-
Claude Opus 5 Vending Test Shows Profit-Driven AI Risks
Claude Opus 5 set a Vending-Bench record while fabricating supplier bids, breaking truces, and ignoring refunds, showing why companies need stronger AI agent controls. The post Claude Opus 5 Vending Test Shows Profit-Driven AI Risks appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-claude-opus-5-vending-bench-ai-agent-risks/
-
Google Tests Twice-Weekly Chrome Security Updates as AI Finds More Vulnerabilities
Google is testing twice-weekly Chrome security updates as AI tools uncover more vulnerabilities and the company works to shrink the browser’s patch gap. The post Google Tests Twice-Weekly Chrome Security Updates as AI Finds More Vulnerabilities appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-google-chrome-twice-weekly-security-updates/
-
New Tool Traces AI Videos Back to Their Source
Researchers dug into the root of the problem with the goal of promoting industry collaboration on improved protective measures. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/new-tool-advances-ai-generated-video-detection
-
Anthropic: AI Issues Result of Security Gaps, Not Model Issues
Last month’s incidents in which Claude breached real-world systems derived from over-permissioning, especially with Internet access. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/anthropic-ai-issues-result-security-gaps
-
Who’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicated
OpenAI and Anthropic admitted that their unreleased AI models escaped their sandboxes and hacked several companies in unprecedented cyberattacks. Who is legally to blame? Should prosecutors charge the two AI frontier labs? Can victims sue them? We spoke to lawyers who specialize in computer hacking laws to find out. First seen on techcrunch.com Jump to…
-
New Mimecast CEO Ranjan Singh: Combating Shadow AI Is ‘No. 1 Opportunity’ For Partners
Mimecast is looking to extend its longtime strength in email security into the rapidly emerging challenge of securing AI agents, while giving channel partners a larger role in helping customers uncover and control shadow AI usage, recently appointed Mimecast CEO Ranjan Singh tells CRN. First seen on crn.com Jump to article: www.crn.com/news/security/2026/new-mimecast-ceo-ranjan-singh-combating-shadow-ai-is-no-1-opportunity-for-partners
-
AI Runs the Hack: Chinese Actor Automates Cyberattacks With DeepSeek
Unit 42 uncovered an AI-driven Chinese hacking campaign where DeepSeek autonomously scanned targets, selected exploits, and launched attacks. Researchers at Palo Alto’s Unit 42 got a front-row seat to something they’d only theorized about before: an AI system running an actual hacking campaign with almost no human steering it. The researchers spotted a Chinese-speaking actor,…
-
Chinese Actor Weaponizes DeepSeek AI Agent to Attack Security Firm
Researchers intercepted and investigated the model, which was attempting to compromise more than 1,200 hosts for proxyjacking to launch further attacks. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/chinese-actor-deepseek-ai-agent-attack-security-firm
-
China-based hacker employs DeepSeek in autonomous threat campaign
Researchers said the hacker also attempted to test Western AI tools, but ultimately was forced to revert to manual operations to succeed.; First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/china-based-hacker-deepseek-autonomous/826784/
-
KI-Verhaltensscanner in Berlin: Mit Strichmännchen zu mehr Sicherheit
Tags: aiDie KI-gestützte Verhaltens- und Situationserkennung im öffentlichen Raum in Berlin soll bereits im August 2026 starten. First seen on golem.de Jump to article: www.golem.de/news/ki-verhaltensscanner-in-berlin-mit-strichmaennchen-zu-mehr-sicherheit-2608-211550.html
-
‘Claude”-Ausbrüche mahnen: KI-Modelle durch ‘Zero Trust” einhegen
Tags: aiFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/claude-ausbrueche-mahnung-ki-modelle-zero-trust-einhegung
-
âš¡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks
This week kept coming back to permission. A model crossed a boundary. A wallet trusted bad randomness. Webmail kept an intruder around. Public systems, package feeds, hotel networks, and login flows all gave away more than intended.Some of it was clever. Most of it was just access left lying around: old bugs, exposed gear, poisoned…
-
AI Agent Guardrails: How to Set Boundaries Before You Give an LLM Access to Your Systems
AI agents are crossing a line that traditional chatbots never crossed. A chatbot produces text. An AI agent can retrieve customer records, query financial data,…Read More First seen on securityboulevard.com Jump to article: https://securityboulevard.com/2026/08/ai-agent-guardrails-how-to-set-boundaries-before-you-give-an-llm-access-to-your-systems/
-
EUAct Ist das KI-Etikett das nächste Bio-Siegel?
Tags: aiSeit 2. August greift eine der ersten spürbaren Pflichten des EU-AI-Act: Künstliche Intelligenz muss gekennzeichnet werden. Wer mit einem Chatbot schreibt oder ein KI-generiertes Bild sieht, soll es sofort erkennen können. Das klingt einfach, und an der Oberfläche ist es das auch. Genau das macht die neue Pflicht so verräterisch. Ein Etikett taugt nur so…
-
AI pentesting tools are generating more findings than security teams can validate, new survey finds
New research from Pentest-Tools.com suggests that AI-assisted penetration testing tools are generating vulnerability findings faster than most security teams can verify them, creating a validation backlog that is offsetting the time AI was meant to save. The company surveyed 158 security practitioners in June 2026, including penetration testers, security engineers, AppSec and DevSecOps professionals, consultants,…
-
Small Language Models ‘Antares” – Cisco bietet KI-Schwachstellen-Analyse für weniger als einen Dollar
First seen on security-insider.de Jump to article: www.security-insider.de/cisco-antares-slms-schwachstellen-quellcode-a-77d83f36c434daaa67b19b1e04c5e76b/

