Autonomous agents attack Azure using compromised identities, destroying resources
Jadepuffer, an autonomous AI attacker first identified in July, has expanded into Azure environments, using compromised […]
NetScaler admins told to patch critical zero-days in ADC and Gateway now
Citrix NetScaler ADC and NetScaler Gateway users should take their systems offline and patch them immediately, […]
Stolen AI credentials feed growing LLM proxy economy
Cyber threat groups have increasingly targeted enterprise AI assets, such as credentials, cloud environments, and research, […]
Palo Alto Finds AI Security Blind Spots: No Single Model Catches More Than 40% of Enterprise Vulnerabilities
Palo Alto says no single AI model found more than 40% of enterprise vulnerabilities, exposing major […]
AI tools help hacker break in for $25 per target
It’s cheap to set yourself up as a hacker these days using AI. Someone attacked 105 […]
Documentation placeholder domain used in ClickFix attacks
The domain name third-party[.]com is being used to serve malware to users — bad news for […]
GitLab issue email’s only security is obscurity
It was meant to make life simpler: a secret email address to which developers can send […]
Fixing Flock: The controls needed now that misuse patterns are clear
Flock Safety has stirred widespread debate of late. Flock builds interconnected networks of automated license-plate readers […]
WordPress patches a critical severity security vulnerability
WordPress has patched what it described as a critical severity security vulnerability that would allow an […]
Microsoft Defender Finds Local AI Agents as Purview Blocks Shadow AI Data Leaks
Microsoft is extending enterprise AI security with Defender agent discovery and Purview-Entra controls for sensitive data […]