Tag: ai
-
The Fastest Path to AI Adoption Runs Through Security
Security leaders who build fast, visible paths to AI adoption are becoming the most valued partners in their organizations. AI governance done right gives security teams the visibility they need, employees the tools they want, and CISOs the strategic influence they have earned.According to McKinsey’s State of AI report, 76 percent of employees now use…
-
Forescout Threat Review 2026H1 zeigt: KI-Boom treibt Cyberrisiken drastisch nach oben
Im ersten Halbjahr 2026 wurden weltweit 37.137 Schwachstellen veröffentlicht. Gegenüber dem Vorjahreszeitraum entspricht das einem Anstieg von 51 Prozent. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/forescout-threat-review-2026h1-zeigt-ki-boom-treibt-cyberrisiken-drastisch-nach-oben/a45831/
-
4 ways to secure local developer IDEs and tools without sacrificing velocity
Attention shifts from EDR to Agentic Endpoint Security to close visibility gaps that AI can exploit. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/spons/4-ways-to-secure-local-developer-ides-and-tools-without-sacrificing-velocit/825550/
-
OpenAI models behind breach of Hugging Face systems, companies say
OpenAI announced that its models were behind a breach of the AI platform Hugging Face, which had earlier detected an attack carried out by “by an autonomous AI agent.” First seen on therecord.media Jump to article: therecord.media/openai-cyberattack-hugging-face
-
Videoproduktion mit KI-Avataren in Studioqualität für Security-Awareness
KnowBe4 führt den ‘Custom AI Video Builder” ein. Mit dieser Funktion können Sicherheitsverantwortliche innerhalb weniger Minuten maßgeschneiderte, KI-generierte Schulungsvideos erstellen. Sie können diese direkt in ihre Schulungsprogramme für Security-Awareness (SAT) integrieren. Die Innovation ist die neueste Ergänzung der KI-basierten Suite zur Anpassung von Inhalten und baut auf der strategischen Partnerschaft des Unternehmens mit Synthesia auf. Angreifer…
-
CISA orders urgent action on actively exploited Langflow RCE flaw
Tags: ai, cisa, cybersecurity, exploit, flaw, framework, government, infrastructure, rce, remote-code-execution, update, vulnerabilityThe Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday ordered U.S. government agencies to prioritize patching an actively exploited vulnerability in the Langflow visual framework for building AI agents. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-actively-exploited-langflow-rce-flaw/
-
Why Modern SOCs Need Multi-Layered Detections
The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth continued. Today, AI-equipped attackers are simply outpacing defenses. Most intrusions now bypass endpoint and malware-based detection entirely.The CrowdStrike Global Threat Report estimates around 79% of attacks are malware-free, as threat actors rely on First seen on thehackernews.com…
-
Open AI Claims Its AI Models Went Rogue and Hacked Another Company
Hugging Face recently disclosed a security breach. OpenAI has now said that it was its AI models which broke containment and hacked Hugging Face themselves First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/open-ai-hacked-another-company/
-
Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era
Glow is targeting a new class of endpoint risks created by the rapid adoption of AI agents and developer tools inside enterprises. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/22/glow-emerges-from-stealth-at-1-2b-valuation-to-challenge-endpoint-security-in-the-ai-era/
-
FBI Warns Scammers Use AI Deepfakes and Fake IC3 Websites to Target Fraud Victims
The Federal Bureau of Investigation (FBI) has issued a new Public Service Announcement (Alert Number I-072026-PSA) regarding an evolving fraud campaign. Cybercriminals are increasingly using AI-generated deepfakes and spoofed Internet Crime Complaint Center (IC3) websites to target and re-victimize individuals who have already fallen prey to scams. Released on July 20, 2026, the alert highlights…
-
Google Makes CodeMender Available as Managed AI Security Agent
CodeMender actively builds and runs exploits in customer-managed sandboxes to verify if vulnerabilities are truly exploitable First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/google-codemender-available-ai/
-
OpenAI AI models exploited zero-days to reach Hugging Face in benchmark test
OpenAI confirmed its AI models exploited zero-days during internal testing, reaching Hugging Face servers in an unintended real-world cyberattack. OpenAI admitted on July 21 that its own AI models, including GPT-5.6 Sol and an unnamed pre-release system, were behind the cyberattack on Hugging Face disclosed the previous week. The models weren’t acting under attacker control.…
-
AI models cheat on cybersecurity evaluations, then fail to admit it
Frontier AI models will take just about any route to finish a task, cheating included, according to new cybersecurity evaluations from the UK government’s AI Security … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/22/ai-models-cheating-behaviour-cybersecurity-evaluations/
-
Threat Actor Turns Claude Opus Into Automated AI-Powered Penetration Testing Platform
A Russian-speaking threat actor known as “Trim” has reportedly transformed Anthropic’s Claude Opus into the central component of an automated, AI-powered penetration testing platform. This development highlights the rapid repurposing of advanced AI models for offensive security operations. According to research by Cato CTRL, Trim progressed from sharing jailbreak instructions on a Russian cybercrime forum…
-
Security-Training in Minuten: KnowBe4 verwandelt Angriffsszenarien in KI-Videos
Unternehmen können jährlich bis zu 120 Minuten individuelle Videoinhalte erstellen und direkt in ihren Security-Awareness-Programmen veröffentlichen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/security-training-in-minuten-knowbe4-verwandelt-angriffsszenarien-in-ki-videos/a45824/
-
Bei internen KI-Tests: OpenAI hat versehentlich Hugging Face gehackt
Der kürzlich bekannt gewordene Cyberangriff auf Hugging Face kam von OpenAI. Das Unternehmen hatte seine KI-Modelle bei internen Cybertests nicht im Griff. First seen on golem.de Jump to article: www.golem.de/news/bei-internen-ki-tests-openai-hat-versehentlich-hugging-face-gehackt-2607-211137.html
-
Bei internen KI-Tests: OpenAI hat versehentlich Hugging Face gehackt
Der kürzlich bekannt gewordene Cyberangriff auf Hugging Face kam von OpenAI. Das Unternehmen hatte seine KI-Modelle bei internen Cybertests nicht im Griff. First seen on golem.de Jump to article: www.golem.de/news/bei-internen-ki-tests-openai-hat-versehentlich-hugging-face-gehackt-2607-211137.html
-
Bei internen KI-Tests: OpenAI hat versehentlich Hugging Face gehackt
Der kürzlich bekannt gewordene Cyberangriff auf Hugging Face kam von OpenAI. Das Unternehmen hatte seine KI-Modelle bei internen Cybertests nicht im Griff. First seen on golem.de Jump to article: www.golem.de/news/bei-internen-ki-tests-openai-hat-versehentlich-hugging-face-gehackt-2607-211137.html
-
Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents
A single invisible comment in an Azure DevOps pull request can turn a reviewer’s own AI coding agent against them, driving it into projects the attacker has no rights to reach and quietly leaking what it finds.The flaw is in Microsoft’s official Azure DevOps MCP server, and it works because one of its tools returns…
-
OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark
OpenAI on Tuesday said a combination of its artificial intelligence (AI) models, including GPT-5.6 Sol and an “even more capable pre-release model,” was behind the security incident that targeted Hugging Face’s production infrastructure last week.The AI company said the models were operating with “reduced cyber refusals for evaluation purposes” that might otherwise limit their ability…
-
Cyberangriffe auf Kanzleien – KI am Telefon, Malware im Anhang
First seen on security-insider.de Jump to article: www.security-insider.de/cyberangriffe-kanzleien-ki-anrufe-malware-a-58ac369bc714d172310afb86c9f43b15/
-
Ransomware JadePuffer greift KI-Modell-Daten mit EncForge an
Der autonome KI-Agent JadePuffer nutzt die Erpressersoftware EncForge zur Verschlüsselung von Trainingsdaten und Vektordatenbanken. Sysdig schlägt Alarm. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/ransomware-jadepuffer-ki
-
Für KI reißen Unternehmen etablierte Sicherheitsmauern ein
Management Summary Der breite Einsatz von künstlicher Intelligenz verändert die Sicherheitsarchitektur von Unternehmen grundlegend: KI-Systeme benötigen umfangreichen, schnellen Datenzugriff und können dadurch etablierte Schutzmechanismen wie rollenbasierte Zugriffssteuerung, Row-Level Security sowie kontrollierte Datenfreigaben unterlaufen. Damit verschiebt sich die zentrale Governance-Frage von »Wer darf welche Daten sehen?« zu »Was darf die KI aus welchen Daten ableiten ……
-
Zwei Drittel der Unternehmen verschieben die Einführung von Microsoft Copilot wegen Datenschutzrisiken
Zwei von drei (66 %) Unternehmen haben Bedenken, dass Microsoft Copilot vertrauliche Daten offenlegen könnte und haben deshalb die Einführung des KI-Assistenten verschoben oder komplett gestrichen. Zudem befürchten nahezu drei Viertel (73 %) der Benutzer, dass KI bereits intern sensible Informationen preisgibt. Zu diesen und weiteren Ergebnissen kommt der neue Report »State of Microsoft… First…
-
Google Unveils Gemini 3.5 Flash Cyber to Find and Fix Software Vulnerabilities Faster
Google has introduced Gemini 3.5 Flash Cyber, a lightweight AI model designed to improve cybersecurity by helping defenders identify, validate, and patch software vulnerabilities more efficiently. Built on Gemini 3.5 Flash and optimized for security tasks, Flash Cyber aims to deliver a cost-effective alternative to larger AI models while supporting large-scale vulnerability analysis. First seen on thecyberexpress.com Jump to…
-
Small teams are the heaviest users of AI coding agents
Tags: aiThe pull request arrives with the tests already run and the description already written, the work of an agent that handled the whole thing on its own. Somebody still has to … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/22/users-of-ai-coding-agents/
-
AccuKnox Wins Best AI Startup Award for Enterprise Agentic AI Security at BSides Bangalore
Bangalore, India, July 22nd, 2026, CyberNewswire AccuKnox announced it has won the number one Startup Award at Security BSides Bangalore 2026, marking the second consecutive year the company has topped the category after also winning in 2025. The back-to-back recognition affirms AccuKnox’s standing among the region’s leading cybersecurity startups. AI Security Adoption For AccuKnox, this award…
-
Yubico Launches YubiKey 5.8 With Hardware-Backed Authorization for AI Agent Workflows
Yubico has released the YubiKey firmware version 5.85.85.8, expanding its hardware security key platform beyond phishing-resistant authentication. This update introduces verifiable, hardware-backed authorization for digital signatures, identity wallets, payment confirmations, and AI agent approval workflows. Announced on July 21, 2026, this firmware update aims to help enterprises verify not only who accesses an application but…
-
AccuKnox Wins Best AI Startup Award for Enterprise Agentic AI Security at BSides Bangalore
Bangalore, India, 22nd July 2026, CyberNewswire First seen on hackread.com Jump to article: hackread.com/accuknox-wins-best-ai-startup-award-for-enterprise-agentic-ai-security-at-bsides-bangalore/

