API Security stories
Enterprise customers face growing risks as autonomous software gains access to internal systems, prompting fresh demand for agent security tools.
Security teams are struggling to spot intrusions until after data is stolen, with 85% of leaders reporting AI-linked incidents or near misses.
Tech and software groups are most at risk as breaches, supplier access and stale credentials let attackers reach source code and customer data.
Enterprises can now control both chatbot and agent traffic through one gateway as Citrix expands NetScaler for regulated AI deployments.
Security teams can now tighten oversight of service accounts, API keys and AI agents as machine identities outnumber staff in many enterprises.
Security teams are being pushed to react faster as AI-assisted attacks widen the gap between exploit discovery, patching and live defence.
Customers can now query and act on API security data in plain English, but every change still needs human approval before it is applied.
Enterprise AI deployments may be exposing sensitive data through overlooked connector permissions, according to a new governance framework from Vivek Kumar.
Recovery plans are lagging as Asian companies rush into agentic AI, with average incident downtime stretching to 28 days, a survey found.
Enterprise security teams are being pushed to track what AI agents can access and do across apps, identities and workflows before data is exposed.
Almost half of ransomware victims discovered breaches only after data theft, underscoring how attackers are evading detection for weeks.
Organisations risk missed exposures as cloud, APIs and AI systems change far faster than annual security checks can keep up.
Users of Dify's cloud service could have had private chats and files exposed after Zafran Security disclosed four flaws in the AI platform.
Security teams are being offered new tools to track shadow AI and block prompt injection as enterprises rush to deploy agents and models.
The expansion gives IT teams central control over AI agent permissions, reducing risky static keys and easing reviews as workplace use widens.
The move aims to help defenders turn faster vulnerability discovery into working fixes, as OpenAI broadens access to its cyber tools and partners.
Developers using .NET gain a free open-source alternative after licensing changes left thousands of organisations seeking continuity for sign-in systems.
Automated traffic now makes up more than half of web requests, pushing enterprises to adopt defences that work across AI agents and APIs.
Researchers can now earn up to USD $6,000 for exposing flaws in Agoda's core web services, APIs and mobile app via HackerOne.
The deal gives customers red teaming and runtime protection for AI systems as enterprises rush to secure models and autonomous agents.