Combines real-time cloud protection infrastructure with on-device enforcement to deliver continuous application security beyond appliance constraints
Category: AI
AI, Global Security News
UiPath Achieves AIUC-1 Certification, Setting New Standard for AI Agent Security and Reliability
COMPANY NEWS: Agentic Automation leader becomes the first enterprise automation platform to meet independent verification standard for safe AI agent deployment
AI, Data Breaches, Endpoint, Exploits, Global Security News, malware, Network Security, Risk Management
Fake Claude Code Install Pages Spread Infostealer Malware
Threat actors are exploiting a common developer habit — copying installation commands directly from websites — to distribute malware through fake software installation pages. Security researchers at Push Security recently uncovered a campaign targeting users of Anthropic’s Claude Code, a popular command-line AI coding assistant. The attackers are using cloned websites and malicious search advertisements…
AI, Endpoint, Global Security News, malware, Russia
HR, recruiters targeted in year-long malware campaign
An attack campaign targeting HR departments and job recruiters has been stealthily compromising systems, Aryaka researchers have discovered. By avoiding analysis environments and leveraging a specialized module designed to kill antivirus and endpoint detection software, the Russian-speaking attacker(s) behind this campaign have managed to keep their activity largely under the radar. “We currently lack telemetry…
AI, Cybersecurity, Global Security News
How to Safely Store Seasonal Products and Celebration Supplies
In this post, I will talk about how to safely store seasonal products and celebration supplies. Seasonal events often bring together decorations, party equipment, and specialty items that are used only at certain times of the year. From holiday décor and event lighting to fireworks and outdoor celebration supplies, these items require thoughtful storage to…
AI, Global Security News
Microsoft flips Windows Autopatch to default hotpatch security updates
Microsoft is changing the default behavior in Windows Autopatch so that hotpatch security updates are enabled automatically for eligible devices managed through Microsoft Intune or the Microsoft Graph API starting with the May 2026 Windows security update. Windows Autopatch is a Microsoft-managed service that automates updates for Windows and Office. It also lets IT administrators…
AI, Global Security News, malware, Russia
‘BlackSanta’ EDR Killer Targets HR Workflows
A campaign by Russian-speaking cyberattackers hijacks workflows to deliver security-busting malware, allowing attackers to steal data without detection.
AI, Global Security News
Why AI Is Becoming Central to Predictive Maintenance Strategies
GUEST OPINION: Predictive maintenance has long been sold as a silver bullet for asset-intensive organisations. By anticipating failures before they occur, the theory goes, businesses can reduce downtime, extend asset life and significantly lower maintenance costs.
AI, Global Security News
Attackers use AiTM phishing kit, typosquatted domains to hijack AWS accounts
Phishers are targeting AWS accounts holders with fake email security alerts and redirecting them to a high-fidelity clone of the AWS Management Console sign-in page, Datadog researchers have warned. The cloned AWS phishing page (Source: Datadog Security Labs) The campaign has been running since the end of February and possibly earlier. “In one observed case,…
AI, Cybersecurity, Global Security News
The Role of Backup Power in Modern Home Technology Setups
In this post, I will talk about the role of backup power in modern home technology setups. Modern homes rely on a growing number of connected devices and electronic systems. From smart thermostats and security cameras to home entertainment systems and remote work equipment, technology has become deeply integrated into everyday living. As households continue…
AI, Global Security News
Salesforce Introduces Agentic Contact Center for AI, Channels, and CRM
Salesforce has unveiled the new Agentforce Contact Center, a contact center solution to unify voice, digital channels, CRM data, and AI agents into a single system. Salesforce promises customer self-service and AI-human handoff at scale The new solution enables customer self-service at scale, seamless AI-to-human handoffs, and real-time visibility across interactions. The solution is built…
AI, Global Security News
Nvidia Invests in Mira Murati’s Thinking Machines Lab
The startup, founded by OpenAI’s former CTO, plans to deploy at least one gigawatt of Nvidia chips as part of a new partnership.
AI, Compliance, Global Security News
Pre-travel authorisation is the next big audit focus in Australian business travel
GUEST OPINION: For years, corporate travel governance in Australia has followed a familiar and largely unchallenged sequence: employees book trips, incur costs, and submit expense claims, then finance teams check compliance afterwards. That post-trip model worked until now. As travel volumes regain momentum, finance and audit leaders face new pressure to avoid non-compliant spend. The answer is pre-travel authorisation,…
AI, Global Security News
Kong unveils AI connectivity vision and roadmap to power the agentic era
COMPANY NEWS: Kong will introduce a new architectural approach for connecting, governing, and scaling intelligence across APIs, AI models and agents.
AI, Apps, Data Breaches, Endpoint, Exploits, Global Security News, Risk Management
Threat actors use custom AuraInspector to harvest data from Salesforce systems
Attackers are mass-scanning Salesforce Experience Cloud sites using a modified AuraInspector tool to exploit misconfigurations and access sensitive data. Salesforce CSOC warns that threat actors are mass-scanning publicly accessible Experience Cloud sites using a modified version of the AuraInspector tool. AuraInspector is an open‑source command‑line tool released by Google/Mandiant to audit Salesforce Aura and Experience…
AI, Compliance, Cybersecurity, Global Security News
Terra Portal adds human-governed AI to live production pentesting
Terra Security has announced the launch of Terra Portal, its agentic desktop app that serves as an execution layer for pentesters to direct and oversee AI-driven testing in live production environments. Terra Portal reduces the discovery-to-fix cycle for vulnerabilities from the industry average of nearly three months to a matter of hours without sacrificing safety…
AI, Global Security News
How to Stop AI Data Leaks: A Webinar Guide to Auditing Modern Agentic Workflows
Artificial Intelligence (AI) is no longer just a tool we talk to; it is a tool that does things for us. These are called AI Agents. They can send emails, move data, and even manage software on their own. But there is a problem. While these agents make work faster, they also open a new…
AI, Cybersecurity, Funding, Global Security News, Venture
Armadin secures $189.9 million to counter AI-driven cyber threats
Armadin has raised $189.9 million in Seed and Series A funding. Led by Accel, with participation from Google Ventures, Kleiner Perkins, Menlo Ventures, In-Q-Tel, and follow-on investment from 8VC and Ballistic Ventures, this marks the largest combined Seed and Series A funding round in cybersecurity history. Armadin’s mission is to prepare organizations for the speed…
AI, Cybersecurity, Data Breaches, Endpoint, Exploits, Global Security News, Government & Policy, malware, Network Security, Risk Management
OAuth Device Code Phishing: A New Microsoft 365 Account Breach Vector
ANY.RUN’s analysts are observing a sharp increase in phishing activity abusing Microsoft’s OAuth Device Code flow, with more than 180 phishing URLs detected in just one week. This technique represents a shift from credential phishing to token-based account takeover, making detection significantly harder for many SOC teams. Key Takeaways OAuth Device Code phishing is rising rapidly. Campaigns abusing Microsoft’s Device…
AI, Global Security News
Teen crew caught selling DDoS attack tools
Seven minors who distributed online programs designed to facilitate DDoS attacks have been identified by Poland’s Central Bureau for Combating Cybercrime (CBZC). They were between 12 and 16 at the time of the crime. CBZC officer during a cybercrime investigation (Source: Poland’s Central Bureau for Combating Cybercrime) According to investigators, using the tools they administered,…
AI, Apps, Global Security News, malware
Devs looking for OpenClaw get served a GhostClaw RAT
A malicious npm package posing as an OpenClaw Installer has been caught deploying a remote access trojan (RAT) on victim machines, according to new JFrog research. The package, published under the name “@openclaw-ai/openclawai”, pretends to be an installer for the legitimate CLI tool but instead launches a multi-stage infection chain that steals system credentials, browser…
AI, Global Security News, Russia
This spy tool has been quietly stealing data for years
ESET researchers have traced the resurgence of Sednit through a modern toolkit built around two complementary implants, BeardShell and Covenant, each relying on a separate cloud provider to ensure operational resilience. This dual-implant architecture has enabled sustained surveillance of Ukrainian military personnel since at least April 2024. The Sednit group itself was tied to Unit…
AI, Global Security News, malware, Russia
APT28 Uses BEARDSHELL and COVENANT Malware to Spy on Ukrainian Military
The Russian state-sponsored hacking group tracked as APT28 has been observed using a pair of implants dubbed BEARDSHELL and COVENANT to facilitate long‑term surveillance of Ukrainian military personnel. The two malware families have been put to use since April 2024, ESET said in a new report shared with The Hacker News. APT28, also tracked as…
AI, Global Security News, Risk Management
Mimecast brings gateway-grade email security to API deployment
Mimecast has announced that its complete email security protection stack is now available through API deployment, eliminating a fundamental trade-off in the market. Standalone integrated cloud email security (ICES) solutions offered fast deployment but came at a cost: they were built primarily for targeted, sophisticated attacks and relied on native Microsoft or Google controls to…
AI, Global Security News
Datadog Launches MCP Server to Provide AI Agents with Secure, Real-Time Access to Unified Observability Data
Datadog MCP Server enables faster debugging, safer automation and governed AI operations at scale
AI, Global Security News, Risk Management
From Data Silos to Executive Clarity: Workiva Reimagines GRC With AI-Powered Platform for Audit, Risk, and Controls
CFOs empowered to rule over risk and lead with confidence on the platform powering the future of trust
AI, Cybersecurity, Data Breaches, Endpoint, Europe, Global Security News, Government & Policy, Risk Management
No, it’s not ‘unnecessarily burdensome’ to control your own data
According to a recent report, the State Department sent a cable urging U.S. diplomats to oppose international data sovereignty regulations like GDPR, characterizing these guardrails as “unnecessarily burdensome.” In the cable, the State Department claims that data sovereignty regulations “disrupt global data flows, increase costs and cybersecurity risks, limit Artificial Intelligence (AI) and cloud services, and…
AI, Global Security News
ShinyHunters Targets Hundreds of Websites in New Salesforce Campaign
Prolific ShinyHunters group claims to have stolen data from nearly 400 websites in Experience Cloud attacks
AI, Compliance, Cybersecurity, Data Breaches, Exploits, Global Security News, malware, Network Security, Risk Management
The OT security time bomb: Why legacy industrial systems are the biggest cyber risk nobody wants to fix
When I first secured a production line, part of the control system was still running on an unpatched Windows XP machine tucked under a lab table — right next to the state-of-the-art GMP manufacturing setup that produced millions in value every day. Everyone knew that the system was a risk, but no one was willing…
AI, Apps, Cybersecurity, Endpoint, Exploits, Global Security News, Network Security, Risk Management
U.S. CISA adds Ivanti EPM, SolarWinds, and Omnissa Workspace One flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds EPM, SolarWinds, and Omnissa Workspace One flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Apple, Rockwell, and Hikvision flaws to its Known Exploited Vulnerabilities (KEV) catalog. Below are the flaws added to the catalog: CVE-2021-22054 (CVSS score of 7.5) Omnissa Workspace ONE…
AI, Europe, Global Security News
Boomi Activates Data for the Enterprise
New platform innovations activate contextual data to power production-scale enterprise AI, with a new European platform instance for localised control
AI, Global Security News
New Claude tool uses AI agents to find bugs in pull requests
Anthropic’s Claude Code Review is a new tool, available as a research preview beta for Team and Enterprise plans, that sends a team of AI agents to examine every pull request. “We needed a reviewer we could trust on every PR. Code Review is the result: deep, multi-agent reviews that catch bugs human reviewers often…
AI, Global Security News
Svitla Systems and Cloudera Partner to Bring Production-Ready AI to Highly Regulated Industries
AI, Apps, Cybersecurity, Global Security News, malware, Risk Management
OpenAI to acquire Promptfoo to strengthen AI agent security testing
OpenAI said it plans to acquire AI testing startup Promptfoo, a move aimed at strengthening security checks for AI agents as enterprises move toward deploying autonomous systems in business workflows. Promptfoo’s tools allow developers to test LLM applications against adversarial prompts, including prompt injection and jailbreak attempts, and to evaluate whether models follow safety and…
AI, Apps, Global Security News
Phishing campaign spoofs local officials to steal permit fees
The FBI is warning about a phishing scheme in which cybercriminals impersonate city and county officials to solicit fraudulent payments for planning and zoning permits. Criminals mine publicly available permit data to find likely targets and make their outreach appear legitimate. Investigators say victims receive unsolicited emails that cite legitimate permit details, including zoning application…
AI, Apps, Data Breaches, Exploits, Global Security News, Network Security, Risk Management
Why access decisions are becoming the weakest link in identity security
In my nearly two decades leading identity and risk programs, I’ve learned a sobering truth that every CISO eventually confronts: hackers don’t hack in — they log in. We often obsess over the perimeter and the sophistication of technical exploits, but many of the most damaging security failures I’ve witnessed didn’t involve a zero-day or…
AI, Apps, Global Security News
Intel Debuts Core Series 2 Chips, Healthcare Edge AI Suite
Intel unveiled a new generation of edge computing processors and a healthcare-focused AI development suite at Embedded World 2026, expanding its portfolio for real-time industrial systems and AI-powered patient monitoring. The company introduced its Intel Core Series 2 processors with P-cores, an industrial-ready platform designed for mission-critical edge workloads. Alongside the processor launch, Intel also…
AI, Global Security News
How Bendigo Bank turned a data challenge from Up Bank into the streaming backbone powering its AI future
For a 168-year-old institution, transformation rarely happens overnight, particularly in the banking sector, which is well-known for its legacy systems.
AI, Cybersecurity, Data Breaches, Global Security News, Network Security, Risk Management
Ericsson US confirms breach after third-party provider attack
Ericsson US reports a data breach after attackers hacked a service provider, exposing employee and customer information. Ericsson Inc., the U.S. branch of the Swedish telecom giant, disclosed a data breach after a service provider was hacked. The attack compromised the personal information of an unspecified number of employees and customers. “On April 28, 2025,…
AI, Funding, Global Security News, Venture
Escape lands $18 million funding to scale AI-driven offensive security automation
Escape has raised $18 million in Series A funding to automate the entire security lifecycle with AI agents. The round, led by Balderton Capital with participation from Uncorrelated Ventures and existing investors Iris Capital and Y Combinator, will help lean security teams fight back at a time when code is being written and attacked. According…
AI, Global Security News
Law enforcement disrupted Tycoon 2FA phishing-as-a-service platform
Authorities disrupted the Tycoon 2FA phishing-as-a-service platform used to send millions of phishing emails to over 500,000 orgs worldwide. The joint effort, led by Microsoft, Europol, and industry partners, aimed to target the infrastructure of Tycoon 2FA phishing-as-a-service platform responsible for tens of millions of fraudulent emails reaching over 500,000 organizations each month worldwide. By…
AI, Global Security News, Risk Management
SailPoint expands AI-powered identity security with adaptive identity framework
SailPoint announced significant advancements to its AI-powered SailPoint Platform, introducing the first in a series of capabilities that advance its adaptive identity vision, an approach designed to address the critical security challenges of IT environments. New features include: Privilege: SailPoint is delivering total visibility into privilege risk with the launch of privilege discovery and classification…
AI, Global Security News
Datadog MCP server delivers live observability to AI agents and IDEs
Datadog has announced the general availability of its MCP Server. For developers embedding AI agents into development and operational workflows, the Datadog MCP Server provides access to live observability data, enabling teams to debug with their preferred AI coding agents or integrated development environments (IDEs), use real-time telemetry, and take action within established security and…
AI, Compliance, Global Security News, Risk Management
OneTrust expands AI governance with real-time monitoring and guardrail enforcement
OneTrust has announced the expansion of its solution to include real‑time monitoring and enforcement capabilities across agents, models, and data. Designed for data, risk, and AI teams, these enhancements empower organizations to shift AI governance from static compliance workflows to a continuous control plane. “As AI becomes more embedded across the enterprise, organizations need governance…
AI, Apps, Compliance, Cybersecurity, Data Breaches, Exploits, Global Security News, Risk Management
I replaced manual pen tests with automation. Here’s what I learned.
More accreditation and compliance requirements have been added in response to cyber incidents. While these frameworks play an important role in establishing security baselines, true security is more than just achieving a perfect compliance score. As I often say, “policies and procedures won’t stop an attacker, they’ll just have more documents to exfiltrate when they…
AI, Global Security News
Singulr AI’s Agent Pulse delivers enforceable runtime governance and visibility for AI agents
Singulr AI has announced the launch of Agent Pulse, extending its Unified AI Control Plane to autonomous AI agents and model context protocol (MCP) servers. Agent Pulse delivers enforceable runtime governance, contextual discovery, and measurable oversight for the agentic enterprise. Agent Pulse serves as an extension of the Unified AI Control Plane for the agentic…
AI, Exploits, Global Security News
Threat Actors Mass-Scan Salesforce Experience Cloud via Modified AuraInspector Tool
Salesforce has warned of an increase in threat actor activity that’s aimed at exploiting misconfigurations in publicly accessible Experience Cloud sites by making use of a customized version of an open-source tool called AuraInspector. The activity, per the company, involves the exploitation of customers’ overly permissive Experience Cloud guest user configurations to obtain access to…
AI, Compliance, Europe, Funding, Global Security News, Venture
Slide Announces $70M Series B Round & EMEA Expansion
Slide, a business continuity and disaster recovery (BCDR) platform designed exclusively for managed services providers (MSPs), announced Tuesday it has raised $70 million in Series B funding as the company accelerates product development and expands internationally. The round was led by venture capital firm General Catalyst, with participation from Base10, Outsiders Fund, futurepresent, Vine Ventures,…
AI, Compliance, Data Breaches, Exploits, Global Security News, malware
When AI safety constrains defenders more than attackers
Security teams are being urged to adopt AI copilots for threat modeling, phishing simulations, and SOC workflows. Yet many of the most widely deployed, enterprise-approved AI systems struggle to support realistic defensive scenarios once prompts resemble real-world attack behavior. This is not because such activity is inherently malicious, but because mainstream AI safety models are…
AI, Compliance, Cybersecurity, Global Security News, Risk Management
Airbus CSO on supply chain blind spots, space threats, and the limits of AI red-teaming
Pascal Andrei, CSO at Airbus, knows that the aerospace and defense sector is facing a threat environment that is evolving faster than most organizations can track. From sub-tier suppliers quietly becoming entry points for state-backed attackers, to satellites emerging as targets in an increasingly contested space domain, the risks are real and growing. In this…
AI, Global Security News
The people behind cyber extortion are often in their forties
Many cybercrime investigations end with arrests or indictments that reveal little about the people behind the operations. When authorities do disclose demographic details, the pattern that emerges does not match the common assumption that cyber offenders are mostly very young. Analysis in the Security Navigator 2026 report from Orange Cyberdefense points to a different age…
AI, Global Security News
Bug bounties are broken, and the best security pros are moving on
Penetration testing engagements are organized as scheduled contracts with defined scope, set testing windows, and direct communication channels with client teams. Cobalt’s 2026 Pentester Profile Report describes growing preference for penetration testing as a service (PTaaS) and contract-based testing models. Why pentesters are frustrated with bug bounty (Source: Cobalt) Many participants prefer contract-based testing over…
AI, Apps, Cybersecurity, Global Security News
Cybersecurity jobs available right now: March 10, 2026
Associate Director Application Security BioNTech | Germany | On-site – View job details As an Associate Director Application Security, you will lead application security strategy, standardize security processes, and drive vulnerability management across development environments. You will enable secure-by-design practices through technical solutions and advisory support, oversee secure onboarding of open-source software, and define KPIs…
AI, Cybersecurity, Europe, Global Security News, Government & Policy, Politics, Risk Management
Anthropic’s US gov’t lawsuit says federal action “unprecedented and unlawful”
Anthropic on Monday fought back against the US federal government’s determination that it is a supply chain risk, suing the feds and arguing to a California federal judge that the government is being inconsistent and contradictory. “The Constitution confers on Anthropic the right to express its views—both publicly and to the government—about the limitations of…
AI, APAC, Global Security News, Risk Management
Job disruption by AI remains limited — and traditional metrics may be missing the real impact
AI’s impact on human jobs is a hot topic of late, with all kinds of forecasting, reporting, and sounding of alarm bells. But two new analyses seem to indicate that AI isn’t yet fundamentally disrupting the employment landscape, and that traditional metrics don’t accurately capture its actual impact on work. According to a job cut…
AI, Global Security News, malware, Network Security, Risk Management
Hacker abusing .arpa domain to evade phishing detection, says Infoblox
A threat actor has found a new way to evade phishing detection defenses: Manipulate the .arpa top-level domain (TLD) and IPv6-to-IPv4 tunneling to host phishing content on domains that shouldn’t resolve to an IP address. For the uninitiated, the .arpa domain is an Address and Routing Parameter Area domain meant to be used exclusively for internet infrastructure…
AI, Global Security News
Anthropic’s Standoff With the Pentagon Shakes Up AI Talent Race
A dispute over how AI can be used by the military shows top employees are looking for more than just nine-figure pay packages.
AI, Data Breaches, Global Security News
Weekly Update 494
Since starting HIBP a dozen and a bit years ago, I’ve loaded an average of one breach every 4.7 days. That’s 959 of them to date, but last week it was five in only two days. That’s a few weeks’ worth of breaches in only 48 and a half hours. And that’s the way it…
AI, Global Security News, malware
Through the Lens of MDR: Analysis of KongTuke’s ClickFix Abuse of Compromised WordPress Sites
Our analysis of an active KongTuke campaign deploying modeloRAT — malware capable of reconnaissance, command execution, and persistent access — through compromised WordPress sites and fake CAPTCHA lures shows that the group still operates this delivery chain in parallel with the newer CrashFix technique.
AI, Cybersecurity, Global Security News
Why Top Retailers Switch To Fully Integrated Product Review Management Systems Now
In this post, I will talk about why top retailers switch to fully integrated product review management systems now. The top retailers are in a disjointed technology environment today. They employ different tools to collect reviews, display their results, and analyze feedback. A tool is used to send review requests after purchase. A different tool…
AI, Cybersecurity, Global Security News, Network Security
Is It Safe to Apply for a Loan on Public Wi-Fi?
In this post, I will answer the question – is it safe to apply for a loan on public Wi-Fi? Public Wi-Fi is convenient, but it is not designed for secure financial transactions. When someone applies for a loan, they submit identity details, income data, and banking information. Transmitting that data over an unsecured network…
AI, Exploits, Global Security News
Google: Cloud attacks exploit flaws more than weak credentials
Hackers are increasingly exploiting newly disclosed vulnerabilities in third-party software to gain initial access to cloud environments, with the window for attacks shrinking from weeks to just days. […]
AI, Global Security News, Government & Policy, Russia
Dutch govt warns of Signal, WhatsApp account hijacking attacks
Russian state-sponsored hackers have been linked to an ongoing Signal and WhatsApp phishing campaign targeting government officials, military personnel, and journalists to gain access to sensitive messages. […]
AI, Apps, Cybersecurity, Data Breaches, Endpoint, Global Security News, malware, Network Security, privacy, Risk Management
Malicious Chrome Extension Targets imToken Wallet Users
A malicious Chrome extension disguised as a harmless color visualization tool is quietly redirecting users to phishing pages designed to steal cryptocurrency wallet credentials. Socket researchers warn that the extension impersonates the popular imToken wallet brand and tricks victims into entering their seed phrases or private keys. The “… extension automatically opens a threat actor-controlled…
AI, Apps, Global Security News, Government & Policy
FBI alert: scammers target zoning permit applicants
The FBI warns of phishing attacks where crooks impersonate U.S. city and county officials to target people requesting planning and zoning permits. The FBI warns that scammers are impersonating U.S. city and county officials in phishing campaigns targeting businesses and individuals applying for planning or zoning permits. Using publicly available information, attackers craft messages that…
AI, Global Security News, Risk Management
‘InstallFix’ Attacks Spread Fake Claude Code Sites
A fresh cyberattack campaign blends malvertising with a ClickFix-style technique that highlights risky behavior with AI coding assistants and command-line interfaces.
AI, Apps, Data Breaches, Endpoint, Exploits, Global Security News, malware, Network Security, Risk Management
AVideo Zero-Click Flaw Lets Attackers Hijack Live Streams
A flaw in the open-source AVideo platform requires no authentication and allows attackers to remotely execute commands and take over affected servers. Exploitation of the vulnerability “… can lead to full server compromise, data exfiltration (e.g., configuration secrets, internal keys, credentials), and service disruption,” said researchers. Inside the AVideo Server Takeover Risk AVideo is an…
AI, Global Security News, Risk Management
Are We Ready for Auto Remediation With Agentic AI?
With the rapid innovations in AI, we are entering an exciting era of automated risk remediation. Learn about security team readiness to leverage agentic AI for threat and exposure management.
AI, Apps, Data Breaches, Endpoint, Global Security News, malware, Network Security, Risk Management, Russia
CleanMyMac Imposter Site Installs SHub Stealer on Macs
A fake version of the popular Mac utility CleanMyMac is being used to trick users into installing data-stealing malware. The campaign uses a fraudulent website that instructs visitors to manually run a command in Terminal, which secretly installs a macOS infostealer known as SHub Stealer. This malware steals “… sensitive data including saved passwords, browser…
AI, Cybersecurity, Global Security News
Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials
Cybersecurity researchers have discovered a malicious npm package that masquerades as an OpenClaw installer to deploy a remote access trojan (RAT) and steal sensitive data from compromised hosts. The package, named “@openclaw-ai/openclawai,” was uploaded to the registry by a user named “openclaw-ai” on March 3, 2026. It has been downloaded 178 times to date. The…
AI, Compliance, Global Security News, Risk Management
OpenAI to acquire AI security platform Promptfoo
OpenAI are acquiring Promptfoo, an AI security platform that helps enterprises identify and remediate vulnerabilities in AI systems during development. Once the acquisition is finalized, OpenAI will integrate Promptfoo’s technology directly into OpenAI Frontier, their platform for building and operating AI coworkers. As enterprises deploy AI coworkers into real workflows, evaluation, security, and compliance become…
AI, Cybersecurity, Europe, Funding, Global Security News, Government & Policy, Risk Management
CVE program funding secured, easing fears of repeat crisis
The Cybersecurity and Infrastructure Security Agency and the MITRE Corporation have renegotiated the contract supporting the 26-year-old Common Vulnerabilities and Exposures Program in a way that eliminates the looming expiration that triggered panic across the security community in 2025. According to sources, the program appears to have moved from a discretionary funding item to a…
AI, Cybersecurity, Global Security News
Sean Cairncross lays out what’s coming next for Trump’s cyber strategy
The Trump administration is plotting an interagency body to confront malign hackers, pilot programs to secure critical infrastructure across states and other steps tied to its freshly-released cyber strategy, National Cyber Director Sean Cairncross said Monday. The “interagency cell” will bring together agencies like the Justice Department, the Department of State, the FBI and the…
AI, Global Security News
Flying-Taxi Maker Archer Sues Joby, Accusing Rival of Playing Down Reliance on China
The lawsuit filed in California federal court escalates a battle between companies seeking to market new aircraft.
AI, Exploits, Global Security News
ShinyHunters claims ongoing Salesforce Aura data theft attacks
Salesforce is warning customers that hackers are targeting websites with misconfigured Experience Cloud platforms that give guest users access to more data than intended. However, the ShinyHunters extortion gang claims to be actively exploiting a new bug to steal data from instances. […]
AI, china, Global Security News
Why markets are worrying about Apple today
The human and environmental costs of the ongoing conflict in the Middle East are bad enough on their own, but there are other impacts likely to be felt. Along with most financial markets, Apple’s shareholders are no doubt spooked by the conflict, which threatens to metastasize to the detriment of the region and the world.…
AI, Apps, Global Security News, Risk Management
M365 Copilot gets its own version of Claude Cowork
Microsoft has added agentic AI capabilities to Microsoft 365 Copilot to improve its usefulness for office workers — including its own version of Anthropic’s Claude Cowork. Microsoft’s AI assistant has, so far, failed to attract significant business demand since launching more than two years ago, at least compared to its other products. Only 3% of…
AI, Global Security News, Government & Policy
LogicMonitor expands New Zealand investment with new regional infrastructure and ecosystem growth
COMPANY NEWS: LogicMonitor®, the AI-first platform for Autonomous IT, has strengthened its commitment to New Zealand with an expanded investment program to support the country’s rapidly growing digital economy. As organisations across enterprise, government, agribusiness, telecommunications, and managed services accelerate their adoption of cloud and AI, LogicMonitor is deepening its regional presence to meet rising demand for modern, intelligent IT operations.
AI, Exploits, Global Security News
Threat Actor Exploits Flaws and Uses Elastic Cloud SIEM to Manage Stolen Data
Huntress researchers uncover campaign exploiting vulnerabilities to steal data using Elastic Cloud as a data hub
AI, Exploits, Global Security News, Government & Policy, Russia
Russian hackers crack into officials’ Signal and WhatsApp accounts
Russian state hackers are trying to break into Signal and WhatsApp accounts used by diplomats, military staff, and government officials worldwide, Dutch intelligence agencies warned. They believe journalists and other people who attract attention from Moscow may also be affected. Investigators reported attackers attempt to trick users into revealing verification codes and PINs that protect…
AI, Apps, Exploits, Global Security News, Government & Policy, malware, Risk Management, Russia
Russia-linked hackers target Signal, WhatsApp of officials globally
Russia-linked hackers are targeting Signal and WhatsApp accounts of government and military officials worldwide, warns Dutch intelligence. Dutch intelligence agencies (MIVD and AIVD) warn of a global campaign by Russia-linked threat actors aiming to compromise Signal and WhatsApp accounts. The operation targets government officials, civil servants, and military personnel, highlighting growing cyber risks to sensitive…
AI, Global Security News
UNC4899 Breached Crypto Firm After Developer AirDropped Trojanized File to Work Device
The North Korean threat actor known as UNC4899 is suspected to be behind a sophisticated cloud compromise campaign targeting a cryptocurrency organization in 2025 to steal millions of dollars in cryptocurrency. The activity has been attributed with moderate confidence to the state-sponsored adversary, which is also tracked under the cryptonyms Jade Sleet, PUKCHONG, Slow Pisces,…
AI, Global Security News, Government & Policy, Network Security, privacy
Encrypted Client Hello: Ready for Prime Time?, (Mon, Mar 9th)
Last week, two related RFCs were published: RFC 9848: Bootstrapping TLS Encrypted ClientHello with DNS Service Bindings RFC 9849: TLS Encrypted Client Hello These TLS extensions have been discussed quite a bit already, and Cloudflare, one of the early implementers and proponents, has been in use for a while. Amidst an increased concern about threats to privacy…
AI, Global Security News, malware
Iran’s MuddyWater Hackers Target US Firms with New Dindoor Backdoor
Researchers say Iran’s MuddyWater hackers targeted US companies and an Israeli software firm’s department in a cyber campaign using the Dindoor malware – All this amid the ongoing conflict.
AI, Data Breaches, Global Security News
Why Password Audits Miss the Accounts Attackers Actually Want
Password audits often focus on complexity rules but miss the accounts attackers actually target. Specops Software explains how breached passwords, orphaned users, and service accounts can leave organizations exposed. […]
AI, Apps, Compliance, Global Security News, Risk Management
Datadog Intros MCP Server for Secure AI Observability
Datadog, Inc., a provider of observability and security services for cloud applications, has announced that its MCP Server is now generally available. The Datadog MCP Server provides access to live observability data, enabling teams to debug using their preferred AI coding agents or an Integrated Development Environment, with real-time telemetry, and take action within established…
AI, Apps, Compliance, Cybersecurity, Data Breaches, Endpoint, Exploits, Global Security News, Network Security, Risk Management
Why MSPs Should Focus on Managed Patch Management in 2026
In 2026, patch management is more critical than ever as organizations face a rapidly evolving threat environment. AI-driven attacks have increased both the volume and sophistication of exploits, making vulnerabilities easier and faster for threat actors to weaponize. As a result, MSPs and internal IT teams alike must implement effective patch management strategies to keep…
AI, Global Security News
AI Security Startups Dominate New Cyber Innovation Awards
Over one in five winners of IT-Harvest’s 2026 Cyber 150 are AI security companies
AI, Global Security News
Lenovo supports major sovereign AI initiative, with Sharon AI’s Melbourne deployment of industry-leading 1K B200 Cluster
Lenovo is proud to announce its role in delivering a 1,000-GPU NVIDIA B200 cluster for leading Australian Neocloud Sharon AI (NASDAQ:SHAZ), at NEXTDC’s Tier IV M3 data centre in Melbourne. This is Lenovo’s largest-ever TruScale Infrastructure as a Service engagement, marking a significant step in the expansion of sovereign AI infrastructure in Australia.
AI, china, Cybersecurity, Exploits, Global Security News, Government & Policy, Network Security, Risk Management, Russia
Security Leaders Warn of Cyber Risks Tied to Iran Conflict
The escalating confrontation between the United States and Iran is raising concerns among cybersecurity agencies and security leaders, who have warned businesses to be on alert for a potential increase in cyberattacks from the region. Governments warn of increased cyber activity linked to Iran conflict Official warnings from cybersecurity centers in the United States, the…
AI, Global Security News, Government & Policy
No more soft play, President Trump warns in new cyber strategy
The White House released “President Trump’s Cyber Strategy for America,” a policy framework outlining the administration’s priorities for maintaining U.S. leadership in cyberspace. The seven-page cyber strategy commits to a coordinated, government-wide response to cyber threats that extends beyond cyberspace and relies on close cooperation with allies, industry, and academia. “This strategy builds on President…
AI, APAC, Global Security News
Oracle Faces Layoffs Amid Costly AI Push
Oracle is apparently preparing to cut thousands of jobs as the company ramps up spending on AI. Or, more specifically, the infrastructure needed to support AI workloads. The layoffs could begin as soon as this month and would affect multiple divisions, according to reports. The move comes as Oracle pours billions into building data centers…
AI, Global Security News
From Big Data to Smart Data: Why Australian CIOs Must Rethink AI Efficiency and Accuracy
COMPANY OPINION: Artificial intelligence has quickly moved from experimentation to executive priority across Australian organisations. Boards are asking how AI can reduce cost, improve productivity, and deliver better citizen and customer outcomes. Yet many CIOs are discovering an uncomfortable truth: AI initiatives are not failing because of weak algorithms. They are failing because of poor…
AI, Global Security News, Government & Policy, Risk Management
OpenAI robotics chief quits over Pentagon deal
OpenAI’s head of robotics, Caitlin Kalinowski, has resigned over the company’s contract with the US Department of War, saying key safeguards around domestic surveillance and autonomous weapons were not adequately reviewed before the agreement was signed. “Surveillance of Americans without judicial oversight and lethal autonomy without human authorization are lines that deserved more deliberation than…
AI, Global Security News, Risk Management
IWD : Embedding Ethics, Inclusion and Skills at the Heart of AI Transformation
GUEST OPINION: As we celebrate International Women’s Day, one truth stands out: the future of technology will be shaped by the diversity of the people behind it. Diverse teams drive better outcomes; limited voices create limited futures. When a broad range of perspectives guides how AI is built and governed, progress accelerates, and when they’re absent,…
AI, Global Security News, Risk Management
Check Point Launches a Secure AI Advisory Service to Help Enterprises Govern and Scale AI Transformation
COMPANY NEWS: New service provides a structured governance, regulatory alignment, and risk mitigation to accelerate responsible AI adoption
AI, Global Security News, malware
Chinese Cyber Threat Lurks In Critical Asian Sectors for Years
An undefined Chinese-speaking actor wields a combo of custom malware, open source tools, and LOTL binaries against Windows and Linux, likely for spying.
AI, Global Security News, Network Security
How popular are AI tools like OpenClaw? Understanding AI usage across the network
During Cisco Live EMEA we noticed a variety of AI tools being used across the network. Let’s take a closer look at what tools were seen in the network traffic.
AI, Global Security News, malware
RAR Occasion: Unzipping an Attacker’s Playbook at Cisco Live Amsterdam
Cisco Live Amsterdam 2026 SOC detected, investigated, and neutralized a malicious file delivered via email—leveraging Cisco XDR, Splunk Attack Analyzer, Secure Malware Analytics, and Endace.
AI, Global Security News, Risk Management
From Firehoses to Flutes – Mastering the Art of Drinking Our OwnChampagne
Explore how layered defenses, deep integrations with Splunk and Endace, and real-time collaboration among experts transform Security Operations Centers into unified, resilient shields against emerging risks.
