#ai-security

[ follow ]
Information security
fromSecuritymagazine
2 days ago

65% of the Forbes AI 50 List Leaked Sensitive Information

Many leading private AI companies have leaked sensitive credentials on GitHub, risking exposure of training data, private models, and organizational assets.
#zero-trust
Information security
fromIT Pro
3 days ago

GitHub is awash with leaked AI company secrets - API keys, tokens, and credentials were all found out in the open

65% of 50 examined AI companies leaked verified secrets on GitHub, often buried in deleted forks, gists, and developer repositories.
fromIT Pro
1 week ago

Some of the most popular open weight AI models show 'profound susceptibility' to jailbreak techniques

A host of leading open weight AI models contain serious security vulnerabilities, according to researchers at Cisco. In a new, researchers found these models, which are publicly available and can be downloaded and modified by users based on individual needs, displayed "profound susceptibility to adversarial manipulation" techniques. Cisco evaluated models by a range of firms including: Alibaba (Qwen3-32B) DeepSeek (v3.1) Google (Gemma 3-1B-IT) Meta (Llama 3.3-70B-Instruct) Microsoft (Phi-4) OpenAI (GPT-OSS-20b) Mistral (Large-2).
Artificial intelligence
Artificial intelligence
fromFortune
1 week ago

Why this company says the state of AI security is 'grim' | Fortune

Cyera exceeded $100 million ARR in under two years and uses AI security tools to help enterprises prevent data exposure and manage AI-related risks.
fromTechzine Global
1 week ago

SentinelOne integrates its acquisitions and protects AI with AI

Following the recent acquisition of Observo AI, SentinelOne is integrating this technology into the Singularity Platform. According to the company, the combination creates the only SIEM on the market with both pre-ingestion analytics and flexible data collection. This is made possible by Observo AI's streaming architecture, which made it an attractive acquisition target for SentinelOne. This speed should enable agentic applications, allowing security work to be largely automated in real time. SentinelOne summarizes all this as an "AI-ready data pipeline."
Information security
#prompt-injection
fromExchangewire
1 week ago
Artificial intelligence

Digest: Tech Giants Step Up Efforts to Fix AI Security Flaws; TV & Video Market on Track for $1tn by 2030

fromExchangewire
1 week ago
Artificial intelligence

Digest: Tech Giants Step Up Efforts to Fix AI Security Flaws; TV & Video Market on Track for $1tn by 2030

Artificial intelligence
fromBusiness Insider
1 week ago

Cohere's chief AI officer says AI agents come with a big security risk

AI agents can impersonate real entities, creating security risks such as infiltrating banking systems and requiring standards, rigorous testing, and defensive measures.
Information security
fromTheregister
1 week ago

AWS, Nvidia, Crowdstrike seek security startups

Early-stage cloud and AI security startups can apply by November 15 for a competitive accelerator offering AWS, CrowdStrike, and Nvidia resources and investor access.
Privacy technologies
fromFortune
1 week ago

Former Airbnb engineer raises $25 million for AI security platform Teleskope | Fortune

Teleskope raised $25 million to secure corporate data using specialized, fine-tuned small LLMs that detect sensitive information faster and more accurately.
#cybersecurity
Information security
fromZDNET
1 week ago

OpenAI unveils 'Aardvark,' a GPT-5-powered agent for autonomous cybersecurity research

Aardvark is a GPT-5–powered agentic security researcher that connects to code repositories to discover, explain, and help patch software vulnerabilities.
#autonomous-agents
fromMedium
4 weeks ago
Artificial intelligence

From Red Teaming to Real Protection: Building Enterprise AI Security for the Agentic Era

fromMedium
4 weeks ago
Artificial intelligence

From Red Teaming to Real Protection: Building Enterprise AI Security for the Agentic Era

Artificial intelligence
fromTheregister
2 weeks ago

OpenAI unleashes Aardvark security agent in private beta

OpenAI is privately beta testing Aardvark, a GPT-5-based autonomous agent that continuously scans code, finds, prioritizes, and proposes fixes for security vulnerabilities.
fromComputerworld
3 weeks ago

Kandji becomes Iru, opens MDM for Windows and Android

Apple device management and security company Kandji has changed its name to Iru, reflecting a new approach to what it does while opening its offer up to Windows and Android. It means enterprises shifting to Apple tech can now manage all their legacy equipment using the same console - and benefit from Iru's AI-powered unified IT and security platform introduced on Wednesday.
Apple
#agentic-ai
fromSecuritymagazine
1 month ago
Artificial intelligence

Agentic AI: Benefits, Risks and Best Practices for Implementation

Agentic AI combines software and generative language models to make autonomous decisions, offering organizational benefits while introducing security risks that require robust safeguards.
fromSecurityWeek
1 month ago
Information security

Check Point to Acquire AI Security Firm Lakera

Check Point plans to acquire Lakera to provide end-to-end AI security for agentic AI, extending pre-deployment testing, runtime protection, and a Global Center of Excellence.
Artificial intelligence
fromTelecompetitor
3 weeks ago

56% of Telecommunications Executives Use AI Agents: Report

56% of telecommunications executives use agentic AI; adoption covers security, support, customer service, product design, marketing, productivity, software, and network automation with measurable ROI.
#acquisition
fromThe Hacker News
3 weeks ago

Securing AI to Benefit from AI

Artificial intelligence (AI) holds tremendous promise for improving cyber defense and making the lives of security practitioners easier. It can help teams cut through alert fatigue, spot patterns faster, and bring a level of scale that human analysts alone can't match. But realizing that potential depends on securing the systems that make it possible. Every organization experimenting with AI in security operations is, knowingly or not, expanding its attack surface.
Information security
Venture
fromTechCrunch
3 weeks ago

European AI rising star Nexos.ai raises $30M to unlock enterprise AI adoption | TechCrunch

Nexos.ai raised €30M to provide a neutral intermediary platform that secures corporate data between employees and LLMs while preserving AI-driven productivity.
Information security
fromTechzine Global
4 weeks ago

Critical infrastructure struggles with AI and quantum threats

Critical infrastructure faces rising AI- and quantum-driven cyber risks despite falling breaches; 73% cite AI ecosystem as top security challenge and quantum threatens encryption.
#data-poisoning
fromFuturism
1 month ago
Artificial intelligence

Researchers Find It's Shockingly Easy to Cause AI to Lose Its Mind by Posting Poisoned Documents Online

fromFuturism
1 month ago
Artificial intelligence

Researchers Find It's Shockingly Easy to Cause AI to Lose Its Mind by Posting Poisoned Documents Online

fromNextgov.com
1 month ago

Bridging the gap: Unlock the power of AI for government agencies through cross-domain solutions

Government data is highly segmented by design, often separated by security classification levels to protect sensitive data and operations. While this segmentation is essential for national security, it also presents data-sharing obstacles that must be overcome. Fortunately, Cross-Domain Solutions (CDS) can help overcome obstacles such as safely training AI models with untrusted data, sharing classified AI capabilities with partners and connecting users or systems to AI tools across classification boundaries.
Information security
Information security
fromSecurityWeek
1 month ago

Google Offers Up to $20,000 in New AI Bug Bounty Program

Google launched a dedicated AI Vulnerability Reward Program excluding prompt injections, jailbreaks, and alignment issues while prioritizing security and abuse vulnerability reports.
Apple
fromComputerworld
1 month ago

Jamf gets into AI, APIs, and advanced DDM

Jamf's Platform APIs enable developers, admins, and security teams to automate, integrate, and manage Apple devices at scale while supporting custom workflows and AI-enhanced security.
fromZDNET
1 month ago

Google will pay you up to $30,000 in rewards to find bugs in its AI products

On Monday, Google security engineering managers Jason Parsons and Zak Bennett said in a blog post that the new program, an extension of the tech giant's existing Abuse Vulnerability Reward Program (VRP), will incentivize researchers and bug bounty hunters to focus on "high-impact abuse issues and security vulnerabilities" in Google products and services.
Artificial intelligence
Information security
fromSecurityWeek
1 month ago

Cybersecurity M&A Roundup: 40 Deals Announced in September 2025

September 2025 saw 40 cybersecurity M&A deals including major acquisitions focused on AI security, IAM, and SASE by Accenture, Cato Networks, Check Point, and CrowdStrike.
Information security
fromSecurityWeek
1 month ago

$4.5 Million Offered in New Cloud Hacking Competition

Wiz launched Zeroday.Cloud offering $4.5 million in bug bounties for live exploit demos at Black Hat Europe in collaboration with major cloud providers.
Python
fromPycoders
1 month ago

PyCoder's Weekly | Issue #702

Django adds django.tasks for abstracted background task management; Python advances include free-threaded asyncio scaling and MCP servers to connect LLMs with tools and data.
Information security
fromThe Verge
1 month ago

Google Drive adds AI to detect ransomware before it spreads

Google Drive for desktop adds AI-powered ransomware detection that pauses syncing, alerts users, and enables file restoration to protect Windows and macOS files.
Artificial intelligence
fromSecurityWeek
1 month ago

Webinar Today: AI and the Trust Dilemma: Balancing Innovation and Risk

Organizations must balance AI innovation with defenses against identity fraud, deepfakes, and non-human actors through AI-powered detection and expanded security budgets.
Information security
fromThe Hacker News
1 month ago

Evolving Enterprise Defense to Secure the Modern AI Supply Chain

Enterprises must adopt continuous discovery, real-time monitoring, adaptive risk assessment, and governance to secure AI usage, data, and supply chains amid rapid Gen-AI adoption.
Information security
fromTechCrunch
1 month ago

Wiz chief technologist Ami Luttwak on how AI is transforming cyberattacks | TechCrunch

AI adoption and vibe coding expand attack surfaces as both developers and attackers use AI tools, causing insecure implementations, prompt-driven exploits, and supply-chain risks.
Information security
from24/7 Wall St.
1 month ago

CrowdStrike (NASDAQ: CRWD) Stock Price Prediction and Forecast 2025-2030 (Sept 2025)

CrowdStrike posted strong Q2 results, targets $10B by fiscal 2031 and $20B by 2036, and is expanding AI security and product offerings including a planned Pangea acquisition.
Python
fromPycoders
1 month ago

PyCoder's Weekly | Issue #701

Multiple Python-related tools, events, and updates cover converting Python to LaTeX, MCP considerations, Playwright testing techniques, and recent Python and Django releases.
#generative-ai
Artificial intelligence
fromAl Bawaba
1 month ago

Lenovo Finds 65% of IT Leaders Admit Their Defenses Can't Withstand AI Cybercrime | Al Bawaba

Most IT leaders report defenses are outdated against AI-driven cybercrime, requiring adoption of AI-driven, adaptive security to protect people, assets, and data.
Artificial intelligence
fromIT Pro
1 month ago

Enterprises are concerned about 'critical shortages' of staff with AI ethics and security expertise

Most IT roles now require AI technical skills while organizations emphasize human skills, security, and ethics to enable responsible, secure AI deployment.
Artificial intelligence
fromTechCrunch
1 month ago

Irregular raises $80 million to secure frontier AI models | TechCrunch

Irregular raised $80M at a $450M valuation to scale AI security, using simulations and the SOLVE framework to find current and emergent model vulnerabilities.
Artificial intelligence
fromSecurityWeek
1 month ago

Irregular Raises $80 Million for AI Security Testing Lab

Irregular raised $80 million to build a frontier AI security lab that tests models for misuse, resilience, and develops tools, methods, and scoring frameworks.
Information security
fromTechzine Global
1 month ago

Wiz launches Incident Response service for cloud security crises

Wiz Incident Response provides forensic cloud investigation, rapid containment, and recovery integrated with Wiz Defend and Runtime Sensor to reduce cloud and AI attack impact.
fromTechzine Global
1 month ago

Check Point acquires Lakera for comprehensive AI security

More and more organizations are integrating large language models, generative AI, and autonomous agents into their business processes. While this accelerates innovation, it also creates new security challenges. In a world where data increasingly functions as "executable code," data breaches, model manipulation, and undesirable effects of autonomous decision-making are becoming ever greater threats. Check Point already offers GenAI Protect, SaaS and API security, data loss prevention, and machine learning-driven security. Adding Lakera's technology creates a more complete AI security stack.
Artificial intelligence
Information security
fromSecurityWeek
1 month ago

ChatGPT's New Calendar Integration Can Be Abused to Steal Emails

A ChatGPT calendar integration using MCP can be abused via crafted invites to execute attacker commands and exfiltrate a user's email data without invite acceptance.
Information security
fromInfoQ
2 months ago

Cloudflare Introduces Automated Scoring for Shadow AI Risk Assessment

Cloudflare launched Application Confidence Scores providing 1–5 Application and Gen‑AI ratings to evaluate safety, security, compliance, and data practices of third-party AI apps.
Artificial intelligence
fromTheregister
2 months ago

The nominations for the 2025 AI Darwin Awards are open

Careless AI deployment and poor security have caused high-profile failures, inspiring an AI Darwin Awards to document preventable, human-caused disasters.
#sase
Information security
fromChannelPro
2 months ago

Varonis snaps up AI email security specialist SlashNext

Varonis will acquire SlashNext to integrate AI-native multi-channel phishing detection into its platform, enhancing protection against AI-generated threats across email and messaging.
Tech industry
from24/7 Wall St.
2 months ago

Live: Will Zscaler Surge After Earnings?

Zscaler records ~20% revenue growth and consecutive EPS beats while preparing for an expected Q4 EPS decline amid AI-driven expansion and volatile post-earnings stock swings.
Information security
fromInfoWorld
2 months ago

8 vendors bringing AI to devsecops and application security

AI is becoming foundational to software security, enabling automated vulnerability remediation, real-time secure coding, and supply-chain hardening while introducing governance and risk challenges.
#shadow-ai
fromIT Pro
3 months ago
Privacy professionals

AI breaches aren't just a scare story any more - they're happening in real life

fromIT Pro
3 months ago
Privacy professionals

AI breaches aren't just a scare story any more - they're happening in real life

fromSecuritymagazine
2 months ago

Report Reveals Gap Between AI Use and AI Security In Embedded Software

The State of Embedded Software Quality and Safety 2025 from Black Duck reveals a disconnect between the organizational use of AI and AI security. The embedded software landscape is transforming, largely driven by AI, with 89.3% of organizations already utilizing AI coding assistants and 96.1% integrating products with open source AI models. However, 21.1% of organizations still lack confidence in their capabilities to prevent AI from opening the door to vulnerabilities.
Software development
fromChannelPro
2 months ago

KnowBe4 names Joel Kemmerer as new CIO

Human risk management (HRM) specialist KnowBe4 has announced the appointment of Joel Kemmerer as its new chief information officer (CIO). A seasoned IT executive, Kemmerer arrives with more than 30 years' experience from leadership roles across the industry, bringing expertise in digital transformation, integrating acquisitions, and streamlining business operations. As KnowBe4's new CIO, he will play a key role in leading digital transformation initiatives as the vendor looks to continue its global growth journey.
Information security
fromComputerWeekly.com
2 months ago

Google spins up agentic SOC to speed up incident management | Computer Weekly

Google Cloud is enhancing security with AI by creating a new integrated security operations center (SOC) that automates workflows for alert triage, investigation, and response.
Artificial intelligence
Privacy technologies
fromZDNET
3 months ago

Researchers used Gemini to break into Google Home - here's how

Researchers demonstrated a hack of Google Home devices via the Gemini AI model, utilizing a prompt injection attack via Google Calendar invites.
#data-privacy
fromWIRED
3 months ago
Privacy professionals

A Single Poisoned Document Could Leak 'Secret' Data Via ChatGPT

fromWIRED
3 months ago
Privacy professionals

A Single Poisoned Document Could Leak 'Secret' Data Via ChatGPT

Privacy technologies
fromWIRED
3 months ago

Hackers Hijacked Google's Gemini AI With a Poisoned Calendar Invite to Take Over a Smart Home

AI can be hacked to manipulate smart devices, creating real-world actions without user consent.
fromTheregister
3 months ago

Nvidia patches bug chain leading to total Triton takeover

The first vulnerability (CVE-2025-23320 - 7.5) relates to a bug in the Python backend, triggered by exceeding the shared memory limit, using a very large request.
Information security
Privacy technologies
fromInfoQ
3 months ago

"A Security Nightmare": Docker Warns of Risks in MCP Toolchains

AI developer tools built on the Model Context Protocol (MCP) pose serious security risks, including credential leaks and unauthorized access.
Tech industry
fromHackernoon
2 years ago

The HackerNoon Newsletter: 9 Things Hollywood Gets Wrong About Hacking (8/3/2025) | HackerNoon

Emerging technologies are advancing rapidly, but security measures must evolve alongside them to ensure user safety.
fromHackernoon
55 years ago

The HackerNoon Newsletter: Why Teams Are Ditching DynamoDB (7/27/2025) | HackerNoon

AI is evolving fast, but security isn't keeping up. Discover why zero-trust architecture is critical for safe, scalable AI agent deployment.
Tech industry
Tech industry
fromZDNET
3 months ago

Hacker slips malicious 'wiping' command into Amazon's Q AI coding assistant - and devs are worried

A hacker successfully implanted destructive commands into Amazon's Q AI coding agent, raising significant concerns in the tech industry.
US politics
fromEntrepreneur
3 months ago

OpenAI CEO Sam Altman Is Terrified About AI Bank Fraud | Entrepreneur

Financial institutions must abandon voice authentication due to AI voice cloning risks.
UK news
fromwww.itpro.com
3 months ago

UK government strikes deal with OpenAI here are all the big tech firms it's working with

The UK government signed a MoU with OpenAI to enhance AI investment and public service applications.
Privacy technologies
fromTheregister
3 months ago

Cursor AI safeguards easily bypassed in YOLO mode: Backslash

Cursor's AI coding agent's YOLO mode has significant security vulnerabilities, particularly with its inadequate denylist protections against data deletion.
Artificial intelligence
fromMedium
4 months ago

Leveraging API Management for OpenAI Applications-Azure Multi-Node API Management (APIM) to...

Microsoft's Azure OpenAI Service provides secure, scalable access to powerful language models for enterprises.
fromThe Hacker News
4 months ago

Google AI "Big Sleep" Stops Exploitation of Critical SQLite Vulnerability Before Hackers Act

An attacker who can inject arbitrary SQL statements into an application might be able to cause an integer overflow resulting in read off the end of an array.
Artificial intelligence
fromTechCrunch
4 months ago

Exclusive: Meta fixes bug that could leak users' AI prompts and generated content

Meta has addressed a security vulnerability that allowed users to access private prompts and AI-generated responses of others, revealing major concerns with data authorization.
Privacy professionals
fromComputerWeekly.com
4 months ago

Assessing the risk of AI in enterprise IT | Computer Weekly

"Think of AI as an exceptionally confident intern. It's helpful and full of suggestions, but requires oversight and verification," he says.
Privacy professionals
[ Load more ]