Category index

Cyber Security

4276 articles

4276 ARTICLES

The Sub-10-Minute Cloud Takeover: How Exposed IAM Keys, Misconfiguration and AI Are Rewriting the Rules of Cloud Breaches
CYBERSECURITY

The Sub-10-Minute Cloud Takeover: How Exposed IAM Keys, Misconfiguration and AI Are Rewriting the Rules of Cloud Breaches

Key Takeaways Two real-world cloud attacks reached meaningful impact in less than ten minutes despite pursuing entirely different objectives. Both attackers treated the environment as a connected system, using existing permissions and relationships to expand their reach. Reconnaissance increasingly focuses on understanding access and capability rather than discovering vulnerable assets. AI is compressing the gap

1 MIN READ arrow_forward
Tech giants form alliance to put open AI in cyber defenders’ hands
CYBERSECURITY

Tech giants form alliance to put open AI in cyber defenders’ hands

NVIDIA and a group of tech companies have formed an alliance to promote the use of open AI models in cybersecurity, days after OpenAI disclosed that one of its own AI models breached Hugging Face’s systems during an internal security evaluation. The new group, called the Open Secure AI Alliance, builds on work already underway at the Linux Foundation’s Akrites initiative and the Open Source Security Foundation (OpenSSF). “Open models, like any powerful technology, can … More → The post Tech giants form alliance to put open AI in cyber defenders’ hands appeared first on Help Net Security.

1 MIN READ arrow_forward
Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw
CYBERSECURITY

Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw

Public exploit details released on July 27 show how an unauthenticated request can reach PHP’s eval() function inside vBulletin and execute code on an unpatched forum server. The attack requires no account, administrative access, or interaction from another user. SSD Secure Disclosure lists vBulletin 6.2.1 and earlier, and 6.1.6 and earlier, as affected, but does not give a lower version

1 MIN READ arrow_forward
⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More
CYBERSECURITY

⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More

Monday starts with the usual promise that everything is under control. Then the logs wake up. This week, trusted tools crossed lines, old flaws found new work, exposed systems stayed exposed, and attackers kept hiding inside normal-looking services. Nothing looked strange at first. That helped. That is the mood. Here is the full recap. ⚡ Threat of the Week OpenAI Says Its AI Agent Went Rogue

1 MIN READ arrow_forward
Dynatrace Intelligence automates incident triage and remediation with AI agents
CYBERSECURITY

Dynatrace Intelligence automates incident triage and remediation with AI agents

Dynatrace has announced major advancements to Dynatrace Intelligence that help automatically resolve incidents, prevent disruptions, and accelerate operations while maintaining the human oversight and governance enterprises require. Building on the introduction of Dynatrace Intelligence earlier this year, Dynatrace is adding new autonomous agents for incident triage and remediation, and no-code custom agent creation capabilities. The platform is also expanding its ecosystem of integrations, bringing insights directly into the tools and workflows teams already use. AI … More → The post Dynatrace Intelligence automates incident triage and remediation with AI agents appeared first on Help Net Security.

1 MIN READ arrow_forward
Zenity advances AI governance with Runtime Boundaries
CYBERSECURITY

Zenity advances AI governance with Runtime Boundaries

Zenity has announced a major expansion of its platform, making it the AI security platform for autonomous AI built around a new security architecture designed to govern AI decisions before they become enterprise actions, including those made by long-horizon agents operating autonomously across extended, multi-step workflows. The platform adds Exposure Management and Runtime Boundaries to its existing foundation. Each new capability is built to enforce security at the decision point where an agent makes decisions, … More → The post Zenity advances AI governance with Runtime Boundaries appeared first on Help Net Security.

1 MIN READ arrow_forward
JetStream Security enables on-demand shutdown of compromised AI agents
CYBERSECURITY

JetStream Security enables on-demand shutdown of compromised AI agents

JetStream Security has announced the release of an AI Kill Switch that allows organizations to shut down compromised AI agents on-demand without impacting other AI operations. This new control plane for AI agents solves the inability to stop a single agent that falters, begins overspending, or needs to be taken offline for compliance reasons without affecting other agents. JetStream’s AI Kill Switch solves a problem many businesses have not faced up to this point: AI … More → The post JetStream Security enables on-demand shutdown of compromised AI agents appeared first on Help Net Security.

1 MIN READ arrow_forward
7AI expands platform with Federated SIEM and AI workflow builder
CYBERSECURITY

7AI expands platform with Federated SIEM and AI workflow builder

7AI has announced two major platform capabilities: 7AI Federated SIEM, which lets security teams query, investigate, and act on data wherever it lives, including within 7AI, and 7AI Build, which lets enterprises and partners define agentic workflows, skills, and AI-native security services on top of the 7AI platform. “Three out of five customers we have talked to in the past year tell us the same thing: they want to stop putting everything into the SIEM,” … More → The post 7AI expands platform with Federated SIEM and AI workflow builder appeared first on Help Net Security.

1 MIN READ arrow_forward