CISA is ending its monthly vulnerability bulletin
The rise in AI-generated security threats may just have generated one casualty: the death of the […]
A zero-click RCE flaw in AI coding agents could have exposed enterprise systems
Popular AI coding agents such as OpenAI’s Codex, Anthropic’s Claude Code, Google’s Gemini CLI, and Microsoft-owned […]
GhostCode attackers abuse device codes to take over Microsoft 365 accounts
Microsoft 365 users are being tricked into handing over access to their accounts by a new […]
OpenAI Discloses 6 AI Misalignment Cases — What They Reveal About Agent Controls
OpenAI disclosed six AI misalignment cases that highlight new risks around agent permissions, network access, and […]
Strong fundamentals make next-gen security possible
Risk management has always been a difficult job, but the current threat landscape has taken the […]
Cisco patches max-severity ISE flaw, the second critical zero-day this week
Cisco released patches for an actively exploited authentication bypass vulnerability in its Cisco Identity Services Engine […]
OpenAI admits six new misalignment incidents under new reporting framework
OpenAI has published six new reports detailing AI model misalignment, including instances of hidden instructions, unauthorized […]
Security spending is growing — except for the typical CISO
Security budgets may be growing on paper, but for a majority of CISOs, the money isn’t […]
Beyond Prompt Filtering: How to Defend Enterprise Infrastructure From Rogue AI Agents
AI agents can execute commands and access live enterprise systems. Here are the runtime controls, permissions, […]