Tag: cybersecurity
-
Former Citigroup CISO Blauner on What Makes A Great Security Leader
The cybersecurity pioneer discusses the evolution of the CISO role, AI’s impact on careers, and why operational resilience is the profession’s next frontier. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/former-citigroup-ciso-blauner-great-security-leader
-
VERITAS project could change the way scientists secure AI
The AI models, datasets, and automated systems researchers depend on can be compromised in ways conventional cybersecurity tools aren’t designed to detect. A new project … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/28/veritas-ai-scientific-research-infrastructure-security/
-
Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the Cost
Microsoft has launched its first cybersecurity-specific model inside MDASH, its multi-model vulnerability identification and remediation harness.The company says MDASH, using MAI-Cyber-1-Flash and GPT-5.4, scored 95.95% on CyberGym. It also claims the configuration costs 50% less than its current best MDASH combination of GPT-5.4, GPT-5.4 mini, and GPT-5.3 Codex. Access is limited to approved First seen…
-
New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation
CREST’s new AI standards are optional add-on requirements for cybersecurity service providers wishing to demonstrate responsible AI usage First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/crest-ai-pentesting-accreditation/
-
U.S. CISA adds Arista VeloCloud Orchestrator and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Arista VeloCloud Orchestrator and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Arista VeloCloud Orchestrator and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities (KEV) catalog. Below are the flaws added to the KeV catalog: CVE-2025-68686 is an…
-
Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost
Microsoft has launched its first cybersecurity-specific model inside MDASH, its multi-model vulnerability identification and remediation harness.The company says MDASH, using MAI-Cyber-1-Flash and GPT-5.4, scored 95.95% on CyberGym. It also claims the configuration costs 50% less than its current best MDASH combination of GPT-5.4, GPT-5.4 mini, and GPT-5.3 Codex. Access is limited to approved First seen…
-
Microsoft debuts AI cybersecurity offerings as competition heats up
It includes the new agentic model MAI-Cyber-1-Flash and the Project Perception platform, with the tech giant claiming it’ll do a better job than its rivals at half the cost. First seen on cyberscoop.com Jump to article: cyberscoop.com/microsoft-ai-cybersecurity-project-perception/
-
Nvidia Forms AI Security Alliance as Major Frontier Labs Sit Out
Nvidia’s Open Secure AI Alliance brings major tech and cybersecurity firms together to develop shared protections for enterprise AI agents and systems. The post Nvidia Forms AI Security Alliance as Major Frontier Labs Sit Out appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-nvidia-open-secure-ai-alliance/
-
Microsoft Unveils AI Security Stack, Low-Cost Cyber Model
Project Perception Combines AI Agents With New MAI-Cyber-1-Flash Model. Microsoft introduced Project Perception, an AI-powered security platform that coordinates specialized agents to detect, investigate and remediate cyberthreats. The company also launched MAI-Cyber-1-Flash, a cybersecurity model it says outperforms competing models while costing roughly half as much. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/microsoft-unveils-ai-security-stack-low-cost-cyber-model-a-32343
-
US Space Cybersecurity: ‘No One Is in Charge’
Cyber Defense Falters Without Cabinet Agency or White House Champion for Security. No single senior official is in charge of U.S. efforts to help secure commercial satellites and their land-based infrastructure. That leadership void has hampered the ability to impose security standards on space vendors providing critical services to the U.S. government over the past…
-
The Case for Human Authority in AI-Driven Cybersecurity
AI Can Detect Threats Fast, but Only Humans Can Judge and Own the Response As AI takes on more of cybersecurity’s workload, from threat detection to automated response, the real question isn’t how much autonomy machines should have; it’s who remains accountable when they act. This piece makes the case for human authority over AI-driven…
-
Microsoft unveils MAI1-Flash, promises cybersecurity AI at half the cost
Microsoft has introduced MAI-Cyber-1-Flash, a security-focused AI model built into MDASH, the company’s multi-agent vulnerability identification and remediation system. … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/27/microsoft-mai-cyber-1-flash-ai-model/
-
Microsoft launches its first cybersecurity model, plus a new agentic cybersecurity system
Microsoft bolstered its AI cybersecurity offerings this week with the launch of its first AI security model and a new security platform. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/27/microsoft-launches-its-first-cyber-model-and-a-new-agentic-cybersecurity-system/
-
Health system in South Carolina, Georgia closes offices after malware affects networks
On Sunday, AnMed published a statement online saying they were “experiencing a cybersecurity disruption involving malware” and were working to restore systems and determine the scope of the incident. First seen on therecord.media Jump to article: therecord.media/health-system-south-carolina-georgia-disruptions-malware
-
Tech industry giants say US must embrace openness, transparency in AI
Open-source and open-weight AI models are essential cybersecurity tools, two groups of major AI and security firms said. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ai-open-source-weights-tech-industry-promote/826240/
-
The AI Vs. Humans Debate Is The Wrong Question In Cybersecurity: CISO
Framing the future of cybersecurity as a choice between AI and humans misses the point, according to Noma Security CISO Diana Kelley. First seen on crn.com Jump to article: www.crn.com/news/security/2026/the-ai-vs-humans-debate-is-the-wrong-question-in-cybersecurity-ciso
-
OpenAI-Hugging Face Incident: What We Know
An experimental AI agent powered by OpenAI models has successfully compromised part of Hugging Face’s infrastructure during a controlled cybersecurity evaluation, offering a glimpse into the evolving offensive capabilities of advanced AI systems. The incident, first disclosed by Hugging Face last week, has now been confirmed by OpenAI to have involved a combination of its…
-
Tech giants form alliance to put open AI in cyber defenders’ hands
NVIDIA and a group of tech companies have formed an alliance to promote the use of open AI models in cybersecurity, days after OpenAI disclosed that one of its own AI models … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/27/nvidia-open-secure-ai-alliance/
-
NVIDIA, Microsoft, and CrowdStrike Launch Alliance for Open-Source AI Security
Tags: ai, crowdstrike, cyber, cybersecurity, linux, microsoft, nvidia, open-source, technology, toolNVIDIA, Microsoft, and CrowdStrike have joined a broad coalition of technology, cybersecurity, and open-source organizations to launch the Open Secure AI Alliance. This initiative focuses on developing open tools, models, agent harnesses, and security techniques to defend AI-enabled infrastructure. The alliance builds on the groundwork laid by the Linux Foundation’s Akrites initiative and the Open…
-
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update
Cybersecurity researchers have flagged a Microsoft Teams-themed phishing campaign that employs “secure document” lures to deliver legitimate remote monitoring and management (RMM) tools.”The victim was directed through compromised web infrastructure to a counterfeit Microsoft Store page claiming that Microsoft Teams had to be updated before the shared document could be opened,” ZeroBEC said in First…
-
KnowBe4 Unveils Custom AI Video Builder
KnowBe4 has expanded its AI-powered security awareness training platform with the launch of Custom AI Video Builder, a new capability designed to help organisations rapidly create tailored cybersecurity training videos in response to emerging threats. The feature, developed as part of KnowBe4’s strategic partnership with AI video platform Synthesia, enables security teams to generate custom…
-
TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments
Cybersecurity researchers have flagged fresh malicious cyber activity by a threat actor with ties to East Asia targeting government entities in the Middle East.The intrusions have resulted in the deployment of previously unreported malware families dubbed TELESHIM, MIXEDKEY, and BINDCLOAK, according to Zscaler ThreatLabz. The cybersecurity firm said it detected the campaign earlier this month.…
-
Iranian Hackers Exploit Rockwell, Schneider and Siemens PLCs Across U.S. Critical Infrastructure
Tags: advisory, automation, cisa, cyber, cybersecurity, exploit, hacker, infrastructure, Internet, iran, technology, threatIranian-affiliated advanced persistent threat (APT) actors are actively exploiting internet-connected programmable logic controllers (PLCs) from major industrial vendors, including Rockwell Automation, Schneider Electric, and Siemens, targeting U.S. critical infrastructure sectors. A joint cybersecurity advisory (AA26-097A) released by the FBI, CISA, NSA, DOE, EPA, Treasury, and U.S. Cyber Command highlights sustained exploitation activity against operational technology…
-
AWS Launches Claude Opus 5 With Advanced Agentic Coding and Cybersecurity Capabilities
AWS has launched Anthropic’s Claude Opus 5 on Amazon Bedrock and the Claude Platform, introducing a groundbreaking model designed for agentic coding, complex enterprise workflows, visual understanding, and long-running autonomous tasks. Released on July 24, 2026, Claude Opus 5 is Anthropic’s first fifth-generation Opus model. According to AWS, it offers significant improvements in production-grade reasoning,…
-
Claude Opus 5 sharpens coding and cybersecurity work on AWS
Claude Opus 5 went live on Amazon Bedrock and Claude Platform on AWS. Anthropic says the model improves on Claude Opus 4.8’s cyber capabilities, coding through … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/27/claude-opus-5-aws-coding-cybersecurity-work/
-
Weekly Cybersecurity Newsletter Top 50 Biggest Cybersecurity Stories SonicWall Zero-Day, Cl0p Windchill Attack, AI-Weaponized Threats, Data Breaches More
Welcome to this week’s edition of the GBHackers cybersecurity newsletter, your weekly cybersecurity bulletin covering the 50 most important stories from July 2024, 2026. It was a heavy week: Cl0p turned internet-exposed Windchill servers into a global data-theft campaign, attackers rode SonicWall SMA zero-days to root, a Bluetooth flaw put 2 million cars at […]…
-
Cybersecurity threats escalate with ransomware, data breaches and online fraud
First seen on scworld.com Jump to article: www.scworld.com/brief/cybersecurity-threats-escalate-with-ransomware-data-breaches-and-online-fraud
-
The shrinking exploit window and what it means for cybersecurity teams
First seen on scworld.com Jump to article: www.scworld.com/native/the-shrinking-exploit-window-and-what-it-means-for-cybersecurity-teams
-
Is cybersecurity already full of AI slop?
First seen on scworld.com Jump to article: www.scworld.com/perspective/is-cybersecurity-already-full-of-ai-slop
-
Iran-Linked Actors Breach Are Targeting US Water and Energy Control Systems
US agencies warn Iran-linked actors are targeting internet-exposed water and energy control systems, risking disruption. Federal agencies updated their cybersecurity advisory this week: Iran-linked actors are inside American water and energy control systems, and they’re not just looking around. They’re changing things. The updated advisory from CISA, the FBI, NSA, and the Department of Energy…

