Tag: risk
-
Ransomware, Spies and Hacktivists Converge on UK and Ireland, New Threat Report Warns
A new threat intelligence report has painted a stark picture of the cyber risks facing the UK and Ireland, describing an environment in which ransomware gangs, nation-state spies and politically motivated hacktivists are increasingly working the same terrain, often against the same victims. The >>Cyber Threat Landscape: UK & Ireland<< report, published by threat intelligence…
-
Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era
Glow is targeting a new class of endpoint risks created by the rapid adoption of AI agents and developer tools inside enterprises. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/22/glow-emerges-from-stealth-at-1-2b-valuation-to-challenge-endpoint-security-in-the-ai-era/
-
OpenAI Models Escaped Sandbox, Breached Hugging Face
Tags: ai, attack, breach, credentials, cybersecurity, exploit, infrastructure, openai, risk, zero-dayReduced Guardrails Enabled Advanced Models to Pursue Unrestricted Attack Paths. OpenAI said advanced frontier models escaped a constrained testing environment, exploited multiple zero-days and stolen credentials and breached Hugging Face infrastructure while attempting to obtain answers for an internal ExploitGym evaluation, highlighting the growing cybersecurity risks posed by autonomous AI agents. First seen on govinfosecurity.com…
-
Craneware Confirms Data Theft After Cyberattack, Investigations Underway
Healthcare software vendor Craneware confirmed attackers stole data during a cyberattack, underscoring growing cybersecurity risks facing healthcare suppliers. The post Craneware Confirms Data Theft After Cyberattack, Investigations Underway appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-craneware-cyberattack-data-theft-2026/
-
Choose Wisely: AI-Generated Coding Risk Varies, A Lot
AI-generated code introduces 15 vulnerabilities on average per codebase, but the actual risk depends on framework pairing more than the model used. First seen on darkreading.com Jump to article: www.darkreading.com/application-security/choose-wisely-ai-generated-coding-risk-varies
-
1 in 4 businesses hit by cyber attacks through their supply chain in the last year
One in four UK businesses (26%) have suffered a cyber incident that originated in their supply chain over the last year, according to new research from business continuity and disaster recovery specialist Databarracks. The finding is particularly striking given that organisations are highly aware of the risk they face: nearly half (48%) admit they have…
-
25 Years After Code Red: What the Worm Era Can Teach Us About AI Security
Marc Maiffret reflects on Code Red’s legacy and the security lessons helping organizations navigate AI risk today. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/25-years-after-code-red-what-the-worm-era-can-teach-us-about-ai-security-2
-
US Cedes Its AI Governance Responsibilities to Others
While US Government Vacillates on AI Regs, China and Big Tech Are Stepping Up U.S. tech firms are once again at the forefront of innovation, with a handful of companies leading the rise of artificial intelligence. But now America appears to be ceding its leadership role in managing the risks of AI to Silicon Valley…
-
CISOs Feel the Heat Over AI Risk
Job pressures have increased as companies run headlong into AI adoption, causing 26% of top security executives to consider leaving their position. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/cisos-feel-heat-ai-risk
-
India says allegedly leaked nuclear plant files pose no safety risk
Documents that the World Leaks cybercrime group claimed to leak from the Kudankulam Nuclear Power Plant do not contain information pertaining to safety or security, Indian officials said. First seen on therecord.media Jump to article: therecord.media/india-nuclear-plant-kudankulam-world-leaks-documents
-
Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk
Two critical security flaws in WordPress’ software have given hackers the chance to remotely take over tens of millions of websites, according to an estimate by a cybersecurity researcher. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/20/hackers-are-exploiting-recently-patched-wordpress-bugs-putting-millions-of-websites-at-risk/
-
The Hidden Risk in Enterprise AI Agents: Ungoverned Context
Enterprises are handing AI agents real access to customer records, financial systems, internal documents, and the tools that… First seen on hackread.com Jump to article: hackread.com/hidden-risk-enterprise-ai-agents-ungoverned-context/
-
Ghost Sender: Risiko für Tenants mit externem Gateway – Wie der MX-Record eine offene Flanke am Exchange-Online-Tenant erzeugt
Tags: riskFirst seen on security-insider.de Jump to article: www.security-insider.de/wie-der-mx-record-eine-offene-flanke-am-exchange-online-tenant-erzeugt-a-c7adf815d24f1a9332293cb41e9bdd4f/
-
Police Chiefs Cite TfL Hack in Push for Cybercrime Risk Orders
Two chiefs of UK policing agencies said the Transport for London prosecution demonstrates the need for Cybercrime Risk Orders First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/police-chiefs-tfl-cybercrime-risk/
-
Kimai Docker Vulnerability Exposes Default APP_SECRET, Enabling Account Takeover
Kimai users who are running the official Docker image are strongly urged to update their installations after a critical vulnerability, tracked as CVE-2026-52824 and GHSA-jr9p-4h4j-6c58, was discovered. This vulnerability exposes installations to the risk of account takeover due to a publicly known application secret. The flaw affects Kimai versions 2.57.0 and earlier, and it has…
-
WatchGuard report highlights employee behavior risks for SMBs
Tags: riskFirst seen on scworld.com Jump to article: www.scworld.com/brief/watchguard-report-highlights-employee-behavior-risks-for-smbs
-
Windows 10 devices carry 3 times the risk of Windows 11, data shows
First seen on scworld.com Jump to article: www.scworld.com/brief/windows-10-devices-carry-three-times-the-risk-of-windows-11-data-shows
-
The Future of Age Verification: Your Face Never Leaves Your Device
As age verification laws expand worldwide, organizations face growing pressure to protect users’ privacy while meeting regulatory requirements. Incode explains how on-device age estimation verifies age without transmitting or storing facial images, reducing biometric privacy risks while supporting compliance. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/the-future-of-age-verification-your-face-never-leaves-your-device/
-
The Cyber Express Weekly Roundup: TikTok Age Verification Probe, Healthcare Data Breach, Qantas Ruling, and Major Cyberattacks
Tags: breach, cyber, cyberattack, cybersecurity, data, data-breach, healthcare, risk, supply-chain, threat, vulnerabilityThis week’s cybersecurity roundup highlights growing concerns around online child safety, healthcare data protection, supply chain risks, and cyber threats affecting organizations worldwide. From regulatory scrutiny of digital platforms to large-scale vulnerabilities and operational disruptions, recent incidents show how cyber risks continue expanding across industries. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/cybersecurity-weekly-roundup-tce/
-
Agentic AI: Taming the Unpredictable
Agentic artificial intelligence is creating enough risks for organizations to demand a security reframe. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/agentic-ai-untamable-ask-the-right-security-questions
-
CISOs say boardrooms still don’t grasp the human cyber risk AI is supercharging
More than three-quarters of European CISOs believe their C-suite doesn’t fully understand the cyber risk posed by their own employees, a gap that’s widening just as AI makes attacks on human judgement faster, more convincing and harder to spot. That’s according to new research from MetaCompliance, the human cyber risk management firm, which polled 200…
-
GPT-5.6 Codex Reportedly Wipes Files From Home Directories
Recent reports indicate that GPT-5.6 Codex has unintentionally deleted files in users’ home directories under certain configurations, raising concerns about the risks of running advanced AI coding agents with unrestricted access to the system. This issue, brought to light by researcher Tibo Sottiaux, appears to be linked to edge-case behavior when the model operates in…
-
Agentische KI: Produktivität mit hohem Risiko
Management Summary Agentische KI eröffnet Unternehmen erhebliche Produktivitätspotenziale, erweitert aber zugleich die Angriffsfläche, da KI-Agenten selbstständig auf Systeme, Daten und Anwendungen zugreifen können. Schatten-KI entsteht, wenn Mitarbeitende private oder nicht freigegebene Tools nutzen; dadurch können vertrauliche Informationen unkontrolliert an externe Dienste gelangen. Besonders kritisch sind Erweiterungen, Skills und Plugins, die manipuliert sein können und mit……
-
Agentic AI Is Untamable: Ask the Right Security Questions
Forget about attackers. Agentic artificial intelligence is creating enough risks for organizations and demands a security reframe. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/agentic-ai-untamable-ask-the-right-security-questions
-
Claude for Chrome Flaw Puts Gmail at Risk From Rogue Extensions
Researchers say a Claude for Chrome flaw lets rogue extensions trigger Gmail, Docs, and Calendar tasks, with greater risk in unattended mode. The post Claude for Chrome Flaw Puts Gmail at Risk From Rogue Extensions appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-claude-chrome-flaw-rogue-extensions-gmail/
-
Wachsendes Risiko für europäische Unternehmen durch beschleunigte KI-Adaption
Aktuelle Daten einer Studie des Cyber-Sicherheitsherstellers Okta belegen, dass die Mehrheit der Firmen komplexe Multi-Vendor-KI-Ökosysteme betreibt. Dies widerlegt die Annahme, dass sich der Enterprise-Markt auf einen einzigen KI-Anbieter standardisieren wird. Okta veröffentlicht dazu eine proprietäre Studie, die auf anonymisierten Zugriffsmustern auf KI-Anwendungen in über 20.000 Unternehmen weltweit basiert. Die Ergebnisse verdeutlichen, wie Organisationen ihre KI-Tech-Stacks…

