Infosec stories - Page 2
Lineaje survey finds AI code confidence outpaces visibility
Last week
#
digital transformation
#
application security
#
devsecops
Lineaje survey flags a widening governance gap as most firms use AI-generated code, yet few can fully see or track it.
One-third of FIFA World Cup partners lack email protection
Last week
#
gaming
#
data protection
#
mfa
Proofpoint warns that 36% of FIFA World Cup 2026 commercial partners still lack the strongest DMARC settings, leaving fans exposed to spoofed emails.
Claude Code can leak secrets in public npm packages
Last week
#
data protection
#
application security
#
devsecops
Check Point says Anthropic's Claude Code can quietly stash credentials in .claude/settings.local.json, which may be published in public npm packages.
Check Point teams with Google Cloud on AI agent security
Last week
#
firewalls
#
data protection
#
digital transformation
Check Point and Google Cloud add governance and live monitoring to enterprise AI agents as firms race to secure autonomous workflows.
LevelBlue warns of GhostOps risk from rogue AI agents
Last week
#
data protection
#
digital transformation
#
cloud security
LevelBlue says unsanctioned AI agents are slipping into enterprise systems, creating a hidden governance and security blind spot for businesses.
Rubrik launches Google Cloud tools for AI governance
Last week
#
storage
#
data protection
#
dr
Rubrik adds Google Cloud controls for AI agents and Cloud SQL backups as enterprises race to govern autonomous systems and protect data.
Check Point tops Miercom hybrid mesh security benchmark
Last week
#
firewalls
#
ransomware
#
hybrid cloud
Check Point claims fourth straight win in Miercom hybrid mesh security test, scoring 99.8% and beating rivals on phishing and malware blocking.
Zscaler joins Anthropic Project Glasswing on cyber AI
Last week
#
firewalls
#
vpns
#
network security
Zscaler joins Anthropic's Project Glasswing to test Claude Mythos Preview in software scans, as the firm pushes zero trust against AI-driven attacks.
ServiceNow completes USD $7.75 billion Armis acquisition
Last week
#
firewalls
#
digital transformation
#
cloud security
ServiceNow bolsters cyber security push with Armis buyout, adding real-time asset visibility and deepening its platform after Veza.
HackerOne launches h1 Validation to tackle AI flaws
Last week
#
devops
#
digital transformation
#
application security
HackerOne unveils h1 Validation as vulnerability reports surge 76% and AI tools speed up discovery, leaving firms struggling to triage real threats.
CIS launches AI security guides for models & agents
Last week
#
digital transformation
#
application security
#
physical security
CIS, Astrix and Cequence publish AI security guides for large language models, autonomous agents and MCP environments.
Zero Networks launches AI segmentation to curb shadow AI
Last week
#
firewalls
#
data protection
#
digital transformation
Zero Networks adds AI segmentation and compliance controls to help firms block shadow AI, limit agent spread and tighten network access.
Tenable flags Microsoft GitHub workflow flaw exposing code
Last week
#
devops
#
cloud security
#
application security
Tenable warns a GitHub Actions bug in Microsoft's Windows-driver-samples repo could let attackers run code and steal secrets via public issues.
The Gentlemen becomes second most active ransomware group
Last week
#
malware
#
firewalls
#
dr
The Gentlemen ransomware group has surged to second place in 2026 by victim count, with Check Point saying it may be far larger than its public tally.
CrowdStrike names JAPAC channel partner award winners
Last week
#
hyperscale
#
cloud security
#
partner programmes
CrowdStrike honours JAPAC channel partners in Vietnam, with Sekuro, The Missing Link, AWS Japan and others recognised across services-led security roles.
Critical Microsoft vulnerabilities double in yearly report
Last week
#
pam
#
cloud security
#
iam
Critical Microsoft flaws double as Azure and Dynamics 365 risks surge, BeyondTrust warns organisations to prioritise identity and privilege controls.
Fortinet wins Google Cloud 2026 Partner award for security
Last week
#
firewalls
#
hybrid cloud
#
digital transformation
Fortinet wins Google Cloud 2026 Partner award for workload security as FortiCNAPP strengthens its cloud workload protection pitch.
KnowBe4 & Synthesia launch AI training video partnership
Last week
#
saas
#
digital transformation
#
phishing
KnowBe4 and Synthesia launch AI avatar videos for security training, letting firms create, revise and localise content faster across 130 languages.
Vercel breach linked to compromised Context.ai integration
Last week
#
mfa
#
cloud security
#
advanced persistent threat protection
Vercel says an attack on a third-party AI tool let hackers hijack a staff Google Workspace account and reach internal systems.
AI vulnerability discovery forces boards to rethink cyber risk
Last week
#
data protection
#
application security
#
iam
AI models that can hunt and chain software flaws are forcing boards to rethink cyber defences, while scrutiny grows over Anthropic's MCP design risks.