Tag: cloud
-
Menlo Security Extends MARS to Protect AI Assistants and Coding Agents
Menlo Security has expanded Menlo Agent Runtime Security, or MARS, with controls aimed at protecting AI assistants and coding agents from prompt injection, malware and data loss as they browse the web, use applications and process files. The company is highlighting the update at Black Hat USA 2026. MARS is a cloud-based capability in Menlo’s..…
-
Optiv Debuts Agentic Security Operations, Overhauling Its Managed Detection Service
Optiv unveiled Optiv Agentic Security Operations on Wednesday at Black Hat USA 2026, a major expansion of its managed security services and a substantial overhaul of the offering formerly known as Optiv MDR. The new service combines Google Security Operations technology, already central to the prior offering, with deeply integrated cloud and AI security capabilities..…
-
From Inspection to Authorization: Securing Networks for AI Agents
Tags: access, ai, api, business, ceo, cloud, communications, control, crowdstrike, cryptography, data, encryption, endpoint, finance, firewall, identity, infrastructure, login, network, office, risk, saas, service, usa, vpn<div cla An Industry Perspective By Rajiv Pimplaskar, CEO, Dispersive Holdings, Inc. Agentic AI changes the network security problem from inspection to authorization. As more traffic is generated by agents, models, and workloads operating at machine speed, the network has to make trust decisions continuously, evaluate policy in real time, revoke access automatically, and keep…
-
Menlo Security Extends Platform Reach to AI Agents
Menlo Security today at the Black Hat USA conference extended its cloud platform to secure artificial intelligence (AI) agents at runtime by sanitizing the web pages and files they read to neutralize prompt injection attacks and block data exfiltration. Company CEO Bill Robbins said the Menlo Agent Runtime Security (MARS) platform created to isolate browsers..…
-
Why Cloud Misconfigurations Continue to Cause Data Breaches in 2026
Just like a physical lock, a mistake when setting up a cloud service is usually hidden. You will typically only become aware of the mistake after a security incident. The provider is not responsible for the customer’s mistakes. This is called the ‘shared responsibility model.’ AWS, Azure, and Google Cloud all provide a secure operation,……
-
Interview mit Seppmail ESicherheit in der Cloud
E-Mail-Infrastrukturen in der Cloud sind einfacher zu managen und sicherer. Allerdings so Dirk Lather, Partner- & Key Account Manager bei Seppmail, im Remote-Interview mit Netzpalaver, müssen dazu einige Parameter und gesetzliche Regularien berücksichtigt werden. Welche dies aktuell sind und wie sich die Sicherheit von E-Mail und insbesondere E-Mail-Security in der Cloud weiterentwickelt und auf was…
-
Keyfactor will Cofide übernehmen, um verifizierte Identitäten für KI-Agenten und Cloud-Workloads bereitstellen zu können
Keyfactor gibt seine Absicht bekannt, das in Großbritannien beheimatete Unternehmen Cofide, eine Identitätsplattform, die Software-Workloads und KI-Agenten in modernen Cloud-Umgebungen schützt, zu übernehmen. Durch die Übernahme wird die Keyfactor-Trust-Control-Plane auf Workloads und KI-Agenten ausgeweitet werden. Sicherheitsteams werden über ein einziges System verfügen, mit dem sie unternehmensweit nicht-menschliche Identitäten verwalten und steuern können werden. Unternehmen setzen zunehmend…
-
C5-Type-1-Testat des BSI bestätigt die Sicherheit von <> für Organisationen mit hohen Anforderungen an Cloud-Sicherheit
Extreme Networks gibt bekannt, dass <> das BSI-C5-Type-1-Testat nach dem Cloud-Computing-Compliance-Criteria-Catalogue (C5) des Bundesamts für Sicherheit in der Informationstechnik (BSI) erhalten hat. Damit erfüllt die branchenweit einzige KI-gestützte All-in-One-Cloud-Networking-Plattform einen der strengsten staatlich unterstützten Cloud-Sicherheitsstandards Europas. Das BSI-C5-Type-1-Testat bestätigt unabhängig, dass Extreme-Platform-One die Anforderungen an sichere und regelkonforme Cloud-Netzwerkinfrastrukturen für stark regulierte Organisationen erfüllt […] First…
-
Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk
Kali365 is turning a legitimate Microsoft login into a gateway to corporate data.The phishing kit targets US organizations with attacker-controlled device codes that victims approve on Microsoft’s real authentication page. Once access and refresh tokens are issued, attackers may retain access to email, documents, and cloud resources, creating a direct path to data exposure, financial…
-
Microsoft Warns Russian Hackers Use Hotel Wi-Fi to Steal Credentials
Microsoft warns Russian hackers are exploiting hotel Wi-Fi to deliver malware, steal credentials, and compromise corporate travelers’ cloud accounts worldwide. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity/news-microsoft-russian-hackers-hotel-wifi/
-
Shai-Hulud npm Worm Returns, Poisoning Over 1,280 npm Packages
Shai-Hulud npm worm spreads through Keyv and hundreds of packages with 2 billion monthly downloads, stealing npm, GitHub, cloud and CI credentials in real time. First seen on hackread.com Jump to article: hackread.com/shai-hulud-npm-worm-poisoning-1280-packages/
-
Worm Targets More Than 2,000 npm Package Versions
Attackers Compromised Keyv and Cacheable Source or Release Credentials. A self-replicating npm worm linked by tradecraft to Shai-Hulud has compromised more than 2,000 versions of 444 packages, stealing cloud and CI credentials and using exposed publisher tokens to spread through trusted dependencies. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/worm-targets-more-than-2000-npm-package-versions-a-32412
-
Six Flowise Vulnerabilities Enable Remote Code Execution on AI Workflow Servers
Six newly disclosed vulnerabilities in Flowise, a popular open”‘source platform for building AI agents and LLM workflows, allow unauthenticated and low”‘privileged attackers to achieve remote code execution (RCE) on self”‘hosted and cloud AI workflow servers running vulnerable versions. These flaws collectively expose organizations to full server compromise, data exfiltration, and AI pipeline manipulation if instances…
-
Cloud and SaaS Environments Now Top Targets for Attackers
Cloud and SaaS are now the preferred operating environments for threat actors, amid a continued shift to identity attacks First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/cloud-saas-targets-attackers/
-
Cloud Management Changes Operations. Policy Governance Keeps Security in Control.
Cloud-delivered management platforms have transformed how organizations operate their security infrastructure. Tasks that once required managing individual devices can now be centralized, automated, and executed at scale. For security teams… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/cloud-management-changes-operations-policy-governance-keeps-security-in-control/
-
“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI
Talos has collected prompt logs from threat actor endpoints running various applications, such as Claude Code, CodeX, Cursor, or Gemini. This blog is an analysis of the ways we’ve seen bad actors leveraging cloud-based AI. First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/keep-going-bro-youve-got-this-a-data-driven-look-at-how-adversaries-are-weaponizing-ai/
-
Veeam bringt Cloud-Archiv für Cold Data und langfristige Backup-Aufbewahrung
Cloud statt Tape: Veeam führt Vault Archive für ältere Backups, Cold Data und ROT-Daten ein. Die neue Cloud-Archivklasse verspricht unveränderliche Langzeitspeicherung. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/veeam-bringt-cloud-archiv-fuer-cold-data-und-langfristige-backup-aufbewahrung/a45984/
-
Apple files fresh claim against Home Office move to access encrypted cloud data
Apple files fresh legal complaint over secret Home Office order to require it to provide access to encrypted iCloud data stored by UK customers First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366647012/Apple-files-fresh-claim-against-Home-Office-move-to-access-encrypted-cloud-data
-
Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts
Malware running as an ordinary user on a Windows machine can sign into a victim’s passkey-protected accounts without a fingerprint, a PIN, or anything at all appearing on the victim’s screen.Unit 42 detailed three attack paths against Chrome’s Google Password Manager cloud authenticator, which it calls Pass-ta-key, Silver Pass-ta-key and Golden Pass-ta-key; the strongest targets…
-
Biotech giant Amgen says patient data stolen from third-party cloud systems
The biotech giant Amgen informed regulators that patient information and proprietary company data were accessed through a breach of third-party cloud systems. First seen on therecord.media Jump to article: therecord.media/amgen-hackers-cyberattack-sec
-
Veeam stellt mit ‘Data Cloud Vault Archive” eine neue Cloud-Ebene für die langfristige Archivierung von ‘Cold Data” vor
Veeam hat die allgemeine Verfügbarkeit von Veeam-Data-Cloud-Vault-Archive bekannt gegeben. Dabei handelt es sich um eine neue Cloud-Ebene der Archivklasse innerhalb der Veeam-Data-Cloud-Vault-Familie. Sie wurde für eine sichere, konforme und langfristige Aufbewahrung von Backups zu den Preiskonditionen der Archivklasse entwickelt. Die neue Lösung hilft Unternehmen, ältere, selten genutzte Backup-Daten aus teuren Speichersystemen auszulagern und sie gleichzeitig…
-
Die Haftpflichtkasse modernisiert Identity Governance mit Omada Identity Cloud
Die Haftpflichtkasse ersetzt ihre bisherige IAM-Eigenentwicklung durch Omada Identity Cloud und automatisiert Identity Governance, Zugriffsrechte und Compliance-Prozesse. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/die-haftpflichtkasse-modernisiert-identity-governance-mit-omada-identity-cloud/a45982/
-
Digitale Souveränität – Secunet und Cloudflare planen souveräne Cloud-Angebote
Tags: cloudFirst seen on security-insider.de Jump to article: www.security-insider.de/secunet-und-cloudflare-planen-souveraene-cloud-angebote-a-fa28da7d7470600ebdfd58fd8f1339b8/
-
CosmosEscape: Schwachstelle gab Zugriff auf jede Azure-Cosmos-DB-Datenbank
Eine Schwachstellenkette in Azure Cosmos DB hätte Angreifern Lese- und Schreibzugriff auf Datenbanken des Cloud-Dienstes verschaffen können. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/schwachstelle-azure
-
SabPaisa Partners with AccuKnox for Zero Trust AI-Powered Cloud Security to Secure Its Payments Platform
CALIFORNIA, USA, August 2nd, 2026, CyberNewswire AccuKnox, a leading Zero Trust Security platform, today announced that SabPaisa, an RBI-authorised digital payments company, has selected its AI-powered cloud security platform to ensure robust security of its payments platform. SabPaisa joins a growing roster of financial services leaders using AccuKnox to meet stringent compliance requirements while defending…
-
SabPaisa Partners with AccuKnox for Zero Trust AI-Powered Cloud Security to Secure Its Payments Platform
CALIFORNIA, USA, 2nd August 2026, CyberNewswire First seen on hackread.com Jump to article: hackread.com/sabpaisa-partners-with-accuknox-for-zero-trust-ai-powered-cloud-security-to-secure-its-payments-platform/
-
Acronis pushes MSPs toward autonomous IT with AI service desk and cloud infrastructure
First seen on scworld.com Jump to article: www.scworld.com/news/acronis-pushes-msps-toward-autonomous-it-with-ai-service-desk-and-cloud-infrastructure
-
The Best Firewall-as-a-Service (FWaaS) Providers, Compared and Priced (2026)
Firewall-asa-service moved from experiment to default: inspection, IPS, and policy delivered from the cloud, priced per user or per site instead of per appliance. The value answer up front: Cloudflare offers the most accessible entry economics, Cato Networks the best converged price-for-simplicity in the mid-market, and Prisma Access the deepest (and priciest) inspection stack, […]…

