
CodeMender actively builds and runs exploits in customer-managed sandboxes to verify if vulnerabilities are truly exploitable

Box has announced new security capabilities designed to give organizations greater control over AI agents working with enterprise content. With new agent guardrails, third-party agent activity oversight, prompt injection detection, agent classification-based access policies, and more, customers will be able to extend Box’s security controls to both Box Agents and third-party agents, such as Claude,…

Arista Networks has announced the launch of its new AI-driven Edge Threat Management (ETM) for VeloCloud SD-WAN, delivering integrated zero trust security for enterprise branch offices. Customers can leverage this integration to simplify the branch, collapsing multiple disparate boxes into a single unified secure SD-WAN edge platform. Integrated ETM provides perimeter protection at the WAN…

Cyware, an agentic AI-powered operational threat intelligence and collective defense platform, has appointed Alvaro Warden as the global head of channel sales and marketplace Ecosystems. Warden will lead the organization’s global partner, alliance, and marketplace strategy to expand the company’s ecosystem footprint across North America, APAC, and EMEA. He also currently serves on the customer…

Frontier AI models will take just about any route to finish a task, cheating included, according to new cybersecurity evaluations from the UK government’s AI Security Institute (AISI). AISI defines cheating as a model doing something outside the bounds of what a task allows, or breaking a stated rule outright, in order to reach the…

Here in this high-tech era of 2026, keeping important info backed up and synced should be effortless and something that just happens on its own, automatically, without any actual thought or ongoing human effort. In many areas of our digital life, that mercifully does Just Work™ in exactly that way. Fire up an email in…

Liquibase is expanding its global partner ecosystem and has appointed Phil Robinson as vice president of global channels and alliances to lead recruitment, enablement, joint marketing, and partner-led services. Liquibase targets database governance services growth The moves reflect Liquibase’s investment in partners to help enterprises close the database delivery gap and build new services around…

AI is changing both what customers expect from managed service providers and the security risks those providers must help them address. Executives from Insight, NinjaOne, and Xage Security told Channel Insider that MSPs are being pushed beyond traditional IT management as customers seek guidance on AI adoption, cybersecurity, governance, and measurable business outcomes. That shift…

When Anthropic unveiled Project Glasswing and the Mythos model, much of the discussion focused on the capabilities themselves. Security leaders debated what these systems could mean for vulnerability discovery, exploit development and the pace of offensive innovation. Researchers examined technical benchmarks. Industry observers questioned how quickly these capabilities might fall into attackers’ hands. Those conversations…

Siemens has acquired Precision Innovations and Defacto Technologies to add AI-driven design exploration and workflow automation capabilities across the system-on-a-chip development lifecycle. The deals expand Siemens’ electronic design automation portfolio with tools intended to help semiconductor teams evaluate chip architectures earlier, automate complex design processes, and reduce time to silicon. Precision Innovations targets earlier SoC…

OpenAI confirmed its AI models exploited zero-days during internal testing, reaching Hugging Face servers in an unintended real-world cyberattack. OpenAI admitted on July 21 that its own AI models, including GPT-5.6 Sol and an unnamed pre-release system, were behind the cyberattack on Hugging Face disclosed the previous week. The models weren’t acting under attacker control.…

Google’s Gemini 3.5 Flash Cyber model finds, validates, and patches vulnerabilities before they can be exploited while helping mitigate broader misuse. It is part of a limited-access pilot program that will soon be available to governments and trusted partners through CodeMender, Google DeepMind’s AI coding agent, with broader access planned over time. “CodeMender is our…

German and US law enforcement have dismantled the infrastructure behind Kratos, a notorious phishing-as-a-service (PhaaS) platform. Its alleged developer and administrator was arrested in Indonesia by local police. Seizure banner (Source: BKA) The takedown was led by the Frankfurt public prosecutor’s cybercrime unit (ZIT) and Germany’s Federal Criminal Police Office (BKA), working alongside US law…
I’ve been an Opera/Firefox fan for a long time, but I recently switched to Vivaldi on Linux. The reasons may or may not surprise you.

As the CSO grows in prominence, security leaders are increasingly earning a seat at the executive table, reporting directly to the CEO with the expectation to help drive business strategy and ensure organizational success. Reporting to the CEO unlocks greater access and influence for security leaders, and while CSOs who report to their organization’s CIO…

German and US law enforcement have taken down the core infrastructure of Kratos, described by German investigators as one of the world’s most widely used criminal phishing kits, and Indonesian authorities arrested the man they say developed and ran it. In a joint announcement on Monday, the Frankfurt public prosecutor’s cybercrime unit (ZIT) and Germany’s…

The pull request arrives with the tests already run and the description already written, the work of an agent that handled the whole thing on its own. Somebody still has to read it. On GitHub that somebody is usually one developer sitting alone with the diff, and the rest of the project never sees the…

Cybersecurity researchers have discovered a NuGet typosquat that’s unlike the typical information-stealing malware distributed via package registries: usual info-stealers: it’s designed to rig live game results on Digitain. The package, named “Newtonsoftt.Json.Net,” masquerades as the Newtonsoft.Json library and is a trojanized fork. Seven versions of the package have been published to the
An employee opens a company service portal, searches the knowledge base, and drops a file onto a ticket. Someone who never signed in can send a request to that same portal and get records back. Bishop Fox ran that test across 166 ServiceNow instances during authorized penetration tests. The firm published the results along with…

Enterprise environments change between scheduled security assessments, leaving organizations with periods where new vulnerabilities can go undetected. Synack’s State of Continuous Security Validation report found that 95% of surveyed organizations identified high- or critical-severity vulnerabilities outside planned testing windows during the past year, with 42% encountering them at least once a month. How often high/critical…

A single invisible comment in an Azure DevOps pull request can turn a reviewer’s own AI coding agent against them, driving it into projects the attacker has no rights to reach and quietly leaking what it finds. The flaw is in Microsoft’s official Azure DevOps MCP server, and it works because one of its tools…

Organizations are redefining cybersecurity roles through workforce frameworks and placing greater emphasis on verified skills as AI and new regulatory requirements change hiring. The SANS 2026 Cybersecurity Workforce Survey found demand for specialists in new roles more than doubled over the past year, alongside increased hiring for existing cybersecurity skills. AI changes security work AI…
PAX Aus has widened its 2026 guest list, and the new wave runs from a former WWE champion turned full-time gamer to the people who build, write and score some of the biggest…

OpenAI on Tuesday said a combination of its artificial intelligence (AI) models, including GPT-5.6 Sol and an “even more capable pre-release model,” was behind the security incident that targeted Hugging Face’s production infrastructure last week. The AI company said the models were operating with “reduced cyber refusals for evaluation purposes” that might otherwise limit their…

Companies are using agentic AI to manage growing application environments, automate routine tasks, and support decisions. Business and IT leaders increasingly see the technology as part of cloud application management, according to Unisys’ AI & Cloud Insights Report. To what extent do the following factors limit your organization’s ability to scale agentic AI safely? (Chart…
Oz Comic-Con has named the first 5 international guests for its September double-header in Sydney and Brisbane, and for once the anime and gaming voices on the list matter to a…
RFID-enabled solution achieves average yield gain of 6% per site and average annual profit increase of $10.7 million per site for major Australian coal producers
Australians ran into fake betting sites, rigged bonus offers and dodgy gambling ads 927% more often in the first half of 2026 than a year earlier, and that jump has made…
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Nine in 10 finance leaders say they are under pressure to prove AI ROI, while only 12% say their organisations prioritise governance over deployment speed
New feature publishes studio-quality, AI-avatar-led training videos straight into their security awareness programs with one-click

The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one’s television into an always-on residential proxy node. The move comes less than a month after researchers found that more than 42 percent of games and other apps available for download on…
New Managed Secure Access Service Edge SASE solution combines SD-WAN, cloud-native networking and security capabilities with 11:11’s connectivity, cyber resilience and cloud…
Unveiled at a Melbourne industry forum with the National AI Centre, the AI Information Line gives Australian SMEs a fast, responsible first conversation about AI, anytime, from…
Macquarie Government has switched on a Microsoft Azure practice built specifically for federal and state agencies. It’s the first time the company has taken its public cloud…
YubiKey 5.8 extends hardware-backed assurance from authentication into emerging digital signature, wallet, payment and agentic approval workflows
New SCW AI Trust Index shows AI-generated coding risk is not random, it’s predictable by model and framework, giving security leaders the data to safely scale AI-assisted…
Device code phishing abuses a legitimate authentication feature designed for devices with limited input capabilities. This article breaks down how the technique works, examines a recent observed case, and outlines the layered security measures organizations can implement.
Fragmentation, alert overload, and rising AI ambition are driving a shift toward platform-based, AI-powered security.
Fortinet’s purpose-built ASIC expertise and Intel’s semiconductor design, packaging, and manufacturing capabilities will drive greater security, scale, performance, and…
CMMI AIM offers a proven, single integrated approach for governing AI capabilities and adoptions – along with a robust array of assets and training.

A cyberattack that poisoned the data pipeline of a major AI code platform was carried out using OpenAI’s ChatGPT, the company said Tuesday. Last week, Hugging Face, a platform for sharing and working on AI code, disclosed that an external attacker had compromised its data processing pipeline. According to a July 21 blog post, the…
The System76 Thelio Mira Custom is a whisper-quiet ’boutique” Linux workstation that actually feels practical.
Inside the New Attack Class That Breaks the Security Model Behind Modern AI Assistants For decades, software security has relied on a deceptively simple principle: never let untrusted data become trusted instructions. That rule shaped everything from SQL injection defenses to cross-site scripting protections, email security, operating system privilege boundaries, and modern browser sandboxes. Software…
The attack against the telecommunications firm caused significant internet outages, impacting the town office of Damariscotta, a community of approximately 2,300 residents.
A study by researchers from Purdue University, the U.S. Military Academy at West Point, and Florida International University examined over 220 apps, finding that nearly two-thirds contained third-party software development kits (SDKs).
The Kratos kit enabled cybercriminals with limited technical skills to harvest credentials, including passwords and session cookies, by providing convincing Microsoft-themed phishing pages.

Critical SharePoint RCE vulnerability CVE-2026-50522 is under active exploitation after the release of a PoC exploit code. A critical Microsoft SharePoint vulnerability, tracked as CVE-2026-50522 (CVSS score of 9.8), is being actively exploited following the release of a public proof-of-concept (PoC) code, according to watchTowr researchers. Patched in Microsoft’s July 2026 Patch Tuesday, the deserialization…

Oracle addresses 1235 CVEs in its third quarterly update of 2026 with 1449 patches, including 261 critical updates. Key Takeaways The third Critical Patch Update (CPU) for 2026 contains fixes for 1235 unique CVEs in 1449 security updates, the largest CPU release. 261 issues (18% of all patches) were assigned a critical severity rating Oracle…
Proofpoint researchers have identified Cruciferra, a sophisticated crypter service used by multiple cybercriminal groups to deliver remote access trojans (RATs) and information-stealing malware. Their analysis highlights how malware-as-a-service offerings continue to evolve, making malicious payloads more difficult to detect while enabling a broader range of threat actors to launch successful campaigns. Key takeaways of the…
These are the wearables, scales, and apps I found most useful. While my iPhone and Apple Watch were core to everything, I also have Android recommendations.

Frontier AI companies often refer to their models as “helpful assistants” or try to compare them to entry-level employees. But new research from the UK’s AI Security Institute reinforces how large language models suffer from a common flaw that would land many human employees in hot water with their employers: they cheat. In other words,…

Apple has moved to address a security flaw in its Hide My Email service that enabled users’ real email addresses to be unmasked, effectively undermining the feature’s privacy guarantees. 404 Media reported Tuesday that a fix for the issue was deployed by Apple on July 3, 2026, after more than a year, when it was…

Security researchers at Finite State have disclosed multiple vulnerabilities affecting the Wansview WVC Q5 internet-connected camera, including a directory traversal flaw first documented more than 20 years ago. The findings show how outdated third-party software can expose modern IoT devices to credential theft, denial-of-service (DoS), and potential remote compromise. Larry Pesce, VP of Services at…

After a year and a half spent downplaying calls for AI safety regulations, the Trump administration has sharply reversed course, embracing a level of government scrutiny of frontier AI systems before public release–a far stricter stance than the Biden administration took. An executive order designed to be friendly to the AI industry was meant to…

Zimbra patched nine flaws in version 10.1.20, including a critical SNMP monitoring command injection issue enabling arbitrary command execution. Zimbra released version 10.1.20 to fix nine security vulnerabilities, including a critical command injection flaw in the SNMP monitoring component. The vulnerability affects systems with SNMP notifications enabled and could allow attackers to execute arbitrary commands.…

A US federal court has approved Anthropic’s $1.5 billion settlement in a class-action lawsuit in which authors accused the AI company of using their books without permission to train the AI model Claude. This is the largest such settlement to date in a US copyright case, according to Reuters. The dispute is one of several…
The best way to experience a 3D soundscape depends on your audio format and device compatibility.

AWS WAF classifies web traffic by attaching metadata to each request it evaluates. Managed rule groups such as AWS WAF Bot Control and AWS WAF Fraud Control account takeover prevention (ATP) attach labels that describe what they found. A label can record that a request came from a known bot category or that it matched…

Artificial intelligence (AI) is no longer simply improving attacker productivity. According to a new ThreatDown report, AI is fundamentally reshaping the cybercrime ecosystem by lowering the barriers to sophisticated attacks and enabling autonomous exploitation. Key takeaways of the ThreatDown AI cybercrime report AI is lowering the barrier to sophisticated cyberattacks by enabling autonomous reconnaissance, exploitation,…

An annual spy policy bill would authorize a cyberthreat intelligence sharing pilot program for state and local governments, and order an outside assessment of how intelligence agencies are currently sharing that information with those jurisdictions. The House Intelligence Committee approved fiscal 2027 intelligence authorization legislation Monday that also includes provisions on election security and that…

As Apple gears up to anoint John Ternus the new company CEO in September (while current leader Tim Cook takes a seat on the board) the company appears to be firing on all cylinders ahead of the leadership transition. What’s going well Just look at the evidence: Apple is building market share across its entire product range;…

Qilin ransomware exploits the PAN-OS GlobalProtect flaw CVE-2026-0257 to gain unauthorized VPN access to unpatched networks. Arctic Wolf researchers warn that the Qilin ransomware gang is exploiting the critical PAN-OS GlobalProtect vulnerability CVE-2026-0257 to compromise corporate networks. CVE-2026-0257 is a PAN-OS authentication bypass vulnerability affecting GlobalProtect portals and gateways. Palo Alto Networks addressed the vulnerability on May…

Hidden text on a web page was enough to make Kiro, AWS’s agentic coding IDE, rewrite its own configuration file and run an attacker’s code on a developer’s machine, with no approval step able to stop it. Intezer, in research with Kodem Security, found that a request as ordinary as asking Kiro to summarize a…