Infosec stories
AI tools widen cyber attack threat, Flashpoint warns
Last week
#
firewalls
#
digital transformation
#
network security
AI tools are speeding up vulnerability hunting and could help lower-skilled hackers exploit flaws far sooner, Flashpoint has warned.
US SMBs keep cybersecurity automation despite budget strain
Last week
#
data analytics
#
digital transformation
#
advanced persistent threat protection
US SMBs hold firm on automated cybersecurity despite budget squeezes, as inflation forces tighter tech choices and wider AI enthusiasm cools.
Barracuda spots 7 million device code phishing attacks
Last week
#
firewalls
#
mfa
#
cloud security
Barracuda links surge in device code phishing attacks to EvilTokens kit as criminals exploit Microsoft 365 logins and bypass multifactor checks.
VPN vulnerabilities don't have to become breaches
Last week
#
firewalls
#
vpns
#
ransomware
Unpatched VPN gateways are leaving organisations open to ransomware and outages, as modern Zero Trust access cuts off the exposed front door.
CrowdStrike launches AI security coalition with partners
Last week
#
cloud security
#
application security
#
devsecops
CrowdStrike unveils AI security coalition with Accenture, EY, IBM Cybersecurity Services, Kroll and OpenAI to spot and fix code flaws faster.
DTEX warns Telegram & WhatsApp AI agents risk exfiltration
Last week
#
virtualisation
#
physical security
#
dlp
DTEX warns that AI agents controlled via Telegram and WhatsApp can quietly access files, expose credentials and exfiltrate data from endpoints.
SafeBreach launches AI-driven CTEM platform with Helm
Last week
#
siem
#
socs
#
rpa
SafeBreach unveils AI-led CTEM platform with Helm to unify exposure validation, prioritisation and remediation across enterprise security tools.
Coro promotes Benjamin Morrell to security strategy role
Last week
#
firewalls
#
data analytics
#
digital transformation
Coro elevates Benjamin Morrell to Vice President of Security Strategy as it ties product design more closely to internal operations and AI-led protection.
Apricorn launches 32TB offline encrypted desktop drive
Last week
#
storage
#
data protection
#
dr
Apricorn broadens its Aegis Padlock DT FIPS line with a 32TB hardware-encrypted desktop drive for offline backups and sensitive data.
Thrive launches Abacode compliance services after deal
Last week
#
data protection
#
dr
#
socs
Thrive widens post-Abacode push with managed compliance service for firms facing tougher rules and cyber risk.
Everywhen issues six checks to spot unsafe websites
Last week
#
malware
#
endpoint protection
#
phishing
Everywhen warns businesses and consumers to check web addresses, padlocks and browser alerts as fake sites fuel rising cyber fraud risk.
Anthropic & OpenAI split on cyber AI release strategy
Last week
#
devops
#
hyperscale
#
cloud security
Anthropic and OpenAI take rival paths on AI cyber tools, as one keeps access tightly restricted while the other widens vetted user access.
Lineaje survey finds AI code confidence outpaces visibility
Last week
#
digital transformation
#
application security
#
devsecops
Lineaje survey flags a widening governance gap as most firms use AI-generated code, yet few can fully see or track it.
One-third of FIFA World Cup partners lack email protection
Last week
#
gaming
#
data protection
#
mfa
Proofpoint warns that 36% of FIFA World Cup 2026 commercial partners still lack the strongest DMARC settings, leaving fans exposed to spoofed emails.
Claude Code can leak secrets in public npm packages
Last week
#
data protection
#
application security
#
devsecops
Check Point says Anthropic's Claude Code can quietly stash credentials in .claude/settings.local.json, which may be published in public npm packages.
Check Point teams with Google Cloud on AI agent security
Last week
#
firewalls
#
data protection
#
digital transformation
Check Point and Google Cloud add governance and live monitoring to enterprise AI agents as firms race to secure autonomous workflows.
LevelBlue warns of GhostOps risk from rogue AI agents
Last week
#
data protection
#
digital transformation
#
cloud security
LevelBlue says unsanctioned AI agents are slipping into enterprise systems, creating a hidden governance and security blind spot for businesses.
Rubrik launches Google Cloud tools for AI governance
Last week
#
storage
#
data protection
#
dr
Rubrik adds Google Cloud controls for AI agents and Cloud SQL backups as enterprises race to govern autonomous systems and protect data.
Agiloft launches Astra AI contract platform with free tier
Last week
#
data protection
#
document management
#
digital transformation
Agiloft's Astra AI contract tool targets legal, procurement, finance and sales teams with a free tier and stricter data safeguards.
Tenable flags Microsoft GitHub workflow flaw risking code
Last week
#
cloud security
#
application security
#
physical security
Tenable warns that a flaw in Microsoft's Windows-driver-samples GitHub workflow could let attackers run code and steal secrets.