Tag: RedTeam
-
Pentest bestanden und trotzdem gehackt: Wo Red Teaming und APT Simulationen mehr bieten
Die Firma hat den Pentest bestanden, wurde aber trotzdem gehackt? Erfahre, warum Red Teaming und APT-Simulationen die IT-Abwehr verbessern. First seen on tarnkappe.info Jump to article: tarnkappe.info/artikel/gast-artikel/pentest-bestanden-und-trotzdem-gehackt-wo-red-teaming-und-apt-simulationen-mehr-bieten-333471.html
-
TIBER-EU and the Future of Cyber Resilience: Why Continuous Security Validation Is No Longer Optional
Sep 14, 2026 TIBER-EU and the Future of Cyber Resilience: Why Continuous Security Validation Is No Longer Optional A point-in-time red team exercise proves resilience once. Here’s what it takes to prove it every day in between. Summary TIBER-EU is… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/tiber-eu-and-the-future-of-cyber-resilience-why-continuous-security-validation-is-no-longer-optional/
-
The Harness Advantage in Autonomous Red Teaming: Why Frontier LLMs Alone Fail Offensive Security and How RidgeGen Solves the Alignment Dilemma
An Empirical 8-Model Benchmark on Agent Harness Architecture, Model Over-Refusal, Token Efficiency, and Enterprise Sovereignty in Modern AI-Driven Penetration Testing 1. The Core Thesis: Offensive Capability Is a Function of the Harness, Not the Raw Model In my book on… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/the-harness-advantage-in-autonomous-red-teaming-why-frontier-llms-alone-fail-offensive-security-and-how-ridgegen-solves-the-alignment-dilemma/
-
CrowdStrike launches autonomous AI red teaming to cut breakout time
First seen on scworld.com Jump to article: www.scworld.com/brief/crowdstrike-launches-autonomous-ai-red-teaming-to-cut-breakout-time
-
Angriffspfade mit ‘Attack Chaining” gezielt analysieren und absichern
Filigran, das europäische Open-Source-Unternehmen für Bedrohungsmanagement, hat ‘Attack Chaining” vorgestellt. Dabei handelt es sich um eine Funktion zur Validierung von Angriffspfaden, die Penetrationstests und Red-Teaming-Aktivitäten mit OpenAEV automatisiert. OpenAEV ist ein Produkt zur Validierung von Sicherheitslücken durch simulierte Angreifer. Die neue Funktionalität ist ab sofort in OpenAEV v3 verfügbar. Angreifer wenden Techniken nicht isoliert an, sondern…
-
Filigran erweitert OpenAEV v3 um dynamische Attack-Chaining-Funktion
Filigran erweitert OpenAEV v3 um Attack Chaining: Dynamische Angriffspfade automatisieren Penetrationstests, Red-Teaming und Security-Validierung. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/filigran-erweitert-openaev-v3-um-dynamische-attack-chaining-funktion/a46303/
-
Project Watershed 250: White House Tests Water Cyber Defenses in Texas
Project Watershed 250 brings free AI tools, red teaming and private-sector expertise to Texas water utilities during a six-month cybersecurity pilot. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/news/project-watershed-250-white-house-tests-water-cyber-defenses-texas/
-
Filigran Adds AI-Powered Attack Chaining to OpenAEV for Autonomous Pentesting
Filigran has launched a new attack chaining capability for its OpenAEV platform, designed to help security teams test how multiple weaknesses can be combined to create a viable path through an organisation’s environment. Released as part of OpenAEV v3, Attack Chaining allows penetration tests and red team exercises to adapt dynamically based on what a…
-
Offensive Security Investments Surge as AI Threats Increase
Omdia’s Theresa Lanowitz talks with the Dark Reading News Desk about the potential, and risks, of using agentic AI for penetration testing, red teaming, and other practices. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/offensive-security-investments-surge-ai-threats-increase
-
CISA identifies security hurdles that led to very different results in two red-team engagements
The agency said its recent simulated cyberattacks offered several key lessons for many organizations. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/cisa-red-team-exercises-lessons-cloud-soc/828733/
-
CISA Red Team Fully Compromised Two Critical Infrastructure Orgs
CISA red teams fully compromised two critical infrastructure orgs. One SOC isolated hosts in minutes; the other never detected the breach. CISA published an advisory (AA26-237A) documenting two simultaneous red team assessments at critical infrastructure organizations. Both organizations lost full domain control and had their cloud environments compromised. One of them didn’t know until CISA…
-
Stop Building a 2003 SOC with AI: Local Context, Failure Modes and Your Path (Part 3)
In Part 1 of this series, we dumped a pile of uncomfortable questions on you and promised answers. In Part 2 of the series, we talked about why 1990s-2000s alert triage must die. The core thesis, if you recall: if you add AI agents into a legacy, swivel-chair SOC structure, you are essentially building a robotic…
-
CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published the results of two red team assessments it conducted simultaneously against two critical infrastructure organizations, using what it described as similar tradecraft while recording sharply different defensive outcomes.Both organizations were fully compromised at the domain level, and in both, the red team also First seen…
-
CISA Red Team Achieves Full Domain Compromise Across Critical Infrastructure Networks
CISA’s latest red team assessment shows how common failures in Active Directory, cloud identity, and SOC processes can turn a phishing foothold into an enterprise-wide compromise. The August 25 advisory contrasts two critical-infrastructure organizations: one missed the intrusion entirely, while the other contained initial access quickly but still exposed major identity and cloud security weaknesses.…
-
Mandiant Opens Agentic Security Harness to Industry
AVDH Scans Enterprise Code at Scale to Find and Validate Exploit Paths. Google Mandiant opened its playbook on agentic security by releasing the architecture it used to develop its Agentic Vulnerability Discovery Harness to analyzes code and quickly identify exploit paths during reviews, penetration testing and red team operations. First seen on govinfosecurity.com Jump to…
-
Google Mandiant AI Agents Find Over 100 Critical Vulnerabilities in Source Code Within Two Days
Tags: ai, breach, corporate, cyber, google, group, incident response, intelligence, mandiant, penetration-testing, RedTeam, threat, vulnerabilityGoogle’s Threat Intelligence Group has announced that its Agentic Vulnerability Discovery Harness (AVDH) identified over 100 critical true-positive vulnerabilities in stolen corporate source code repositories within just two days. This result highlights how agentic AI can significantly accelerate vulnerability discovery during incident response, red teaming, penetration testing, and proactive secure code reviews, especially when adversaries…
-
Your security vendor gets the frontier cyber model, you get the findings
Selected red team specialists can now use OpenAI’s cyber models to find and exploit weaknesses in client applications and infrastructure. Those clients never get the … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/11/openai-daybreak-cyber-models/
-
Black Hat 2026: Open-source tool makes red teaming AI agents up to 125x cheaper
First seen on scworld.com Jump to article: www.scworld.com/news/black-hat-2026-open-source-tool-makes-red-teaming-ai-agents-up-to-125x-cheaper
-
Agentic AI for Cyber Defenders: What Security Teams Built at Black Hat USA 2026
Tags: ai, automation, conference, control, credentials, cve, cyber, cybersecurity, data, data-breach, defense, detection, exploit, flaw, group, iam, intelligence, ISO-27001, mitigation, network, nvidia, offense, open-source, RedTeam, risk, skills, soc, technology, threat, tool, usa, vulnerabilityAgentic AI armed attackers first, but it also put real building power in defenders’ hands. Here’s what security practitioners built in two days at Black Hat USA 2026, and how the CyberAgents Exchange keeps that work compounding long after the event. Key takeaways Building defensive cybersecurity tooling no longer requires a developer. Agentic tooling drove…
-
Guardrails, Red Teaming und Laufzeitschutz für die sichere KI-Einführung – Manipulierte Skills machen KI-Agenten zum Einfallstor
First seen on security-insider.de Jump to article: www.security-insider.de/ki-agenten-sicher-einfuehren-guardrails-security-by-design-a-a316ae17b65bc278dc61c961b30dbc29/
-
Phoenix Security Launches Exploit Hunt to Validate Vulnerabilities With AI-Generated Exploits
Phoenix Security has launched Exploit Hunt, an AI red-team capability that works from a live threat model and reports a vulnerability only after generating and validating a runnable proof-of-concept exploit. Announced Aug. 5 and timed to Black Hat USA 2026, Exploit Hunt is available now in Phoenix Purple. It can run continuously, on every pull..…
-
Assail Updates Ares With New Harness and AI Model for Autonomous Red Teaming
Assail has introduced Ares v2, a redesigned version of its autonomous offensive security platform, with a new interface, purpose-built model and rebuilt agentic harness. The company is tying the update to its Black Hat 2026 program, where founder and CEO Alissa Knight is scheduled to discuss how organizations should evaluate offensive AI systems. The new..…
-
7-Zip Default Setting Lets Extracted Files Bypass Windows SmartScreen
7-Zip’s default configuration allows files extracted from internet-delivered archives to shed the Mark of the Web (MotW), meaning Windows SmartScreen never runs its reputation check and unsigned payloads can execute without a “Windows protected your PC” warning. That behavior, long treated as a red-team trick, is now formally recognized and tracked in multiple 7-Zip vulnerabilities,…
-
AI Agent Harnesses Can Change Red Teaming Results
Lasso research finds AI agent harnesses can influence red teaming performance as much as the underlying LLM. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/artificial-intelligence/ai-agent-harnesses-can-change-red-teaming-results/
-
Von selektiven Checks zur umfassenden Analyse: Deutsche Telekom nutzt KI für Cybersecurity
Management Summary KI wird zum Skalierungshebel für Cybersecurity: Die Deutsche Telekom zeigt, wie sich etablierte Sicherheitsanalysen mit GPT-5.5 Cyber von punktuellen Prüfungen auf deutlich größere IT-Umgebungen ausweiten lassen. Bestehende Security-Verfahren bleiben maßgeblich: KI ersetzt weder Red Teams noch klassische Prüfprozesse, sondern erweitert deren Reichweite und entlastet Fachkräfte bei wiederkehrenden Analyseaufgaben. Zwei praxisnahe Einsatzfelder stehen im……
-
6 Reasons Why Device Code Phishing is the Fastest-Growing Threat of 2026
Device code phishing – the abuse of the OAuth 2.0 device authorization grant to steal access tokens – has evolved from a niche red-team technique to an industrial-scale threat in under six months.Designed for input-constrained devices like smart TVs, printers, and so on, the device authorization login flow has been adopted by a wide range…
-
OpenSSL Fixes HollowByte Memory Exhaustion Bug
Okta disclosed HollowByte, an 11-byte OpenSSL flaw that lets remote attackers exhaust server memory and trigger denial-of-service attacks. Okta’s Red Team disclosed a denial-of-service vulnerability in OpenSSL they named HollowByte, and the attack payload is exactly 11 bytes. A remote, unauthenticated attacker sends that payload and the server allocates up to 131 KB of memory…
-
OpenSSL DoS Vulnerability Lets Remote Attackers Exhaust Server Memory With an 11-Byte Payload
A newly disclosed vulnerability reminds us how deeply our digital infrastructure relies on foundational libraries. The Okta Red Team recently discovered >>HollowByte,<< a Denial of Service (DoS) flaw in OpenSSL that allows a remote, unauthenticated attacker to force a server to allocate disproportionate memory chunks before any security handshake even begins, using a payload just…
-
OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests
Eleven bytes will make an unpatched OpenSSL server set aside up to 131 KB of memory for a message that never arrives. On the glibc systems Okta tested, that memory is gone until the process restarts.OpenSSL shipped the HollowByte fix in June with no CVE, no advisory, and no changelog entry pointing at it. Okta’s…
-
Continuous Red Teaming: Warum KI-Systeme permanent getestet werden müssen
Continuous Red Teaming: Einmalige Sicherheitstests reichen für KI nicht aus. NIST zeigt, warum Continuous Red Teaming und Runtime Protection zum neuen Standard werden. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/continuous-red-teaming-warum-ki-systeme-permanent-getestet-werden-muessen/a45790/

