Tag: risk
-
Anthropic details new AI model, raises risk assessment for internal system tampering
First seen on scworld.com Jump to article: www.scworld.com/brief/anthropic-details-new-ai-model-raises-risk-assessment-for-internal-system-tampering
-
Unleashing Hackers to Be the US Government’s Bounty Hunters
Trump Presidential Memo a Risky Proposition for Corporations and the Internet. Even those who support a White House push to involve the private sector in offensive cyber operations against foreign online crime groups admit that the strategy is laden with risk – for the companies that take part and for the broader global internet. First…
-
Unleashing Hackers to Be the US Government’s Bounty Hunters
Trump Presidential Memo a Risky Proposition for Corporations and the Internet. Even those who support a White House push to involve the private sector in offensive cyber operations against foreign online crime groups admit that the strategy is laden with risk – for the companies that take part and for the broader global internet. First…
-
Unleashing Hackers to Be the US Government’s Bounty Hunters
Trump Presidential Memo a Risky Proposition for Corporations and the Internet. Even those who support a White House push to involve the private sector in offensive cyber operations against foreign online crime groups admit that the strategy is laden with risk – for the companies that take part and for the broader global internet. First…
-
SafePal Warns of Phishing Risk After Data Exposure Hits Nearly 40,000 Customers
SafePal says a security flaw exposed personal and order information for nearly 40,000 customers, increasing the risk of targeted phishing attacks. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity-threats/news-safepal-data-breach-40000-customers/
-
Concentration Risk in Your Vendor Stack – Kovrr
Articles related to cyber risk quantification, cyber risk management, and cyber resilience. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/concentration-risk-in-your-vendor-stack-kovrr/
-
FireTail State of AI Security 2026: Adoption Has Outpaced Control FireTail Blog
Tags: access, ai, control, credentials, data, group, intelligence, jobs, leak, risk, threat, tool, vulnerabilityAug 17, 2026 – Ayush Sethi – What your workforce’s AI prompts reveal in aggregate Most AI security controls judge one prompt at a time. We built Topics to read the layer above them, where a workforce’s prompts add up into a pattern that no single message shows.Someone in your legal team pastes a contract…
-
Major genetic-testing firm says hack compromised sensitive patient data
The June breach, which also exposed employees’ information, underscored the supply-chain risks facing the healthcare sector. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/baylor-genetics-cyberattack-compromise-patient-data-genetic-testing/828019/
-
OpenAI, Anthropic, and Meta AI Breaches Shared the Same Testing Vendor
OpenAI, Anthropic, and Meta AI incidents reportedly shared one testing vendor, exposing third-party and containment risks in AI security evaluations. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cloud-security/news-openai-anthropic-meta-ai-incidents-irregular/
-
Vague Task, Total Access: When AI Delegation Becomes a Security Risk
AI agents can improvise beyond the intended scope of a task when they are given broad access to enterprise systems and data. Token Security explains why organizations need to define agent intent and continuously enforce permissions around what each agent was actually created to do. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/vague-task-total-access-when-ai-delegation-becomes-a-security-risk/
-
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
OpenAI on Monday unveiled a new cybersecurity-focused model called GPT”‘5.6″‘Cyber that it said is focused on vulnerability research, penetration testing, and incident response.”Built on GPT”‘5.6 Sol, it is trained to improve capabilities on several specialized cybersecurity tasks (e.g., finding zero-day vulnerabilities and developing exploit chains) and to reduce refusals for certain higher-risk First seen on…
-
Altersverifikation im Onlinehandel Wie Shops den Jugendschutz technisch umsetzen
Tags: riskWer altersbeschränkte Waren online verkauft, steht vor einer Aufgabe, die sich nicht mit einem Häkchen lösen lässt. Ein Klick auf ‘Ich bin über 18″ ist rechtlich wertlos und technisch in einer Sekunde umgangen, trotzdem ist er in vielen Shops im Onlinehandel noch der einzige Schutz. Für Betreiber ist das ein doppeltes Risiko: Bußgelder und Abmahnungen…
-
Datenschutz im digitalen Marketing – Bringt das Google Consent Update Datenkontrolle oder neue Risiken?
First seen on security-insider.de Jump to article: www.security-insider.de/google-consent-update-datenkontrolle-risiken-a-a479b7d613c46cf31a55b9238daf2ec4/
-
GPT-5.6-Cyber refuses security researchers’ requests far less often
GPT-5.6-Cyber is a new OpenAI model built on GPT-5.6 Sol, trained to find zero-day vulnerabilities and build exploit chains, with fewer refusals on higher-risk, dual-use work. … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/11/openai-gpt-5-6-cyber-model/
-
DEF CON 34: RovoBlast Exposes Atlassian Rovo Data Risks
RovoBlast showed how a crafted link could put enterprise data at risk through Atlassian Rovo. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/def-con-34-rovoblast-exposes-atlassian-rovo-data-risks/
-
Outdated Cybercrime Laws Put Security Researchers at Risk
A public policy expert mapped global cybercrime laws to develop a five-point framework for protecting ethical hackers and good-faith security research. First seen on darkreading.com Jump to article: www.darkreading.com/application-security/outdated-cybercrime-laws-security-researchers-risk
-
Claude-Powered Agent Exploits Australian Gym API, Removes Waitlisted Member
A Claude-powered AI agent exploited an Australian gym API flaw, removed a member from a waitlist, and exposed new risks from autonomous agents. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-claude-ai-agent-australian-gym-api-flaw-apac/
-
AI in Incident Response Still Needs Humans
St. Luke’s University Health Network’s Krista Arndt on Automation and AI Guardrails. AI is becoming essential for handling the volume and speed of modern incident response, but organizations should limit autonomous actions to low-risk scenarios and keep humans involved in critical decisions, said Krista Arndt of St. Luke’s University Health Network. First seen on govinfosecurity.com…
-
OpenAI Pauses Astra Model Over Critical Cybersecurity Risk Concerns
OpenAI paused work involving Astra after tests showed cybersecurity abilities that could approach its Critical risk threshold under the company’s framework. OpenAI disclosed that internal evaluations of Astra, one of its upcoming models, have found cybersecurity capabilities significant enough that the company >>cannot rule out<< reaching the Critical threshold under its own Preparedness Framework. In…
-
CISA Flags Progress LoadMaster Command Injection Vulnerability Exploited in the Wild
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical command injection vulnerability in Progress LoadMaster, tracked as CVE-2026-8037, to its Known Exploited Vulnerabilities (KEV) catalog after confirming evidence of active exploitation. This vulnerability allows unauthenticated attackers to execute arbitrary commands on vulnerable appliances, posing a significant risk to organizations that expose LoadMaster…
-
Shipping 1050× More Code? Watch This Webinar on Securing AI-Speed Development
AI is helping development teams produce far more code, far faster. But security teams still have to review vulnerabilities, manage dependencies, prioritize fixes, and control risk at human speed.When software output jumps 10 to 50 times, the problem is no longer just finding vulnerabilities. It is keeping security from becoming the bottleneck, or worse, losing…
-
Payroll Pirates Abuse Microsoft Graph to Find HR and Finance Staff After Account Compromise
A widespread phishing operation that compromises Microsoft 365 accounts through adversary-in-the-middle (AiTM) infrastructure, then uses Microsoft Graph to identify employees handling payroll, finance, HR, benefits, invoices, and banking workflows. The activity closely overlaps with Microsoft’s “Payroll Pirates” cluster, tracked as Storm-2755. Researchers also found similarities with activity previously documented by Security Risk Advisors, indicating that…
-
71% of CISOs spend 10+ hours on board reports
Boards want evidence that security controls and architecture reduce business risk, expressed in terms of resilience, consequence, and decision relevance. Translating technical … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/10/ciso-board-communication-gap-report/
-
UK manufacturers face rising hacking risk as survey shows 30% were hit last year
Big companies describe being under constant threat but only half have a plan in place to respond to an attackNearly a third of British manufacturers have been hit by a cyber-attack on them or a company in their supply chain, according to a survey that highlighted the growing hacking risk to companies.The findings come almost…
-
OpenAI Pauses Development on Powerful Astra Model Over Autonomous Cyberattack Risks
OpenAI has halted select internal development on its unreleased flagship model, Astra, after safety evaluations revealed the system had achieved unprecedented autonomous cyberattack capabilities. The move comes as the artificial intelligence (AI) industry grapples with a wave of containment failures, where increasingly autonomous models have repeatedly breached sandbox environments and accessed live targets on the..…
-
The AI safety test is becoming a safety risk
AI agents are escaping cybersecurity testing environments and reaching real-world systems, raising questions about whether safety infrastructure, industry standards and regulation can keep pace with increasingly powerful models. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/09/the-ai-safety-test-is-becoming-a-safety-risk/

