Supply Chain Security stories
AI advances are reshaping cyber risk, experts warn
Today
#
firewalls
#
network security
#
mfa
Check Point and Flashpoint warn AI is speeding up exploit development, shrinking patch windows and forcing defenders to rethink first-line protections.
Dell expands cyber resilience with quantum-ready PCs
Yesterday
#
data protection
#
dr
#
network infrastructure
Dell adds quantum-ready protections to commercial PCs and upgrades backup, detection and recovery tools to help firms counter AI and post-quantum threats.
Anthropic's Mythos sparks governance fears over cyber risk
2 days ago
#
digital transformation
#
cloud security
#
application security
Anthropic's Claude Mythos cyber security model and Project Glasswing are fuelling fears that AI-driven vulnerability hunting is becoming a boardroom issue.
AI flaws & supply-chain risks top new pentesting report
Last week
#
data protection
#
devops
#
application security
Cobalt's annual pentesting study says AI and supplier tools are exposing fresh weaknesses, with security teams struggling to keep pace with rapid deployment.
CrowdStrike launches AI security coalition with partners
Last week
#
cloud security
#
application security
#
devsecops
CrowdStrike unveils AI security coalition with Accenture, EY, IBM Cybersecurity Services, Kroll and OpenAI to spot and fix code flaws faster.
Thales launches Imperva for Google Cloud in controlled availability
Last week
#
firewalls
#
data protection
#
devops
Thales brings Imperva into Google Cloud as controlled launch targets app and API protection with lower latency and simpler operations.
Lineaje survey finds AI code confidence outpaces visibility
Last week
#
digital transformation
#
application security
#
devsecops
Lineaje survey flags a widening governance gap as most firms use AI-generated code, yet few can fully see or track it.
Claude Code can leak secrets in public npm packages
Last week
#
data protection
#
application security
#
devsecops
Check Point says Anthropic's Claude Code can quietly stash credentials in .claude/settings.local.json, which may be published in public npm packages.
LevelBlue warns of GhostOps risk from rogue AI agents
Last week
#
data protection
#
digital transformation
#
cloud security
LevelBlue says unsanctioned AI agents are slipping into enterprise systems, creating a hidden governance and security blind spot for businesses.
Google Cloud unveils AI security tools & fraud defence
Last week
#
firewalls
#
data protection
#
hyperscale
Google Cloud expands AI security with new agents, Wiz integrations and fraud defences as it targets faster, more automated cyber attacks.
Zscaler joins Anthropic Project Glasswing on cyber AI
Last week
#
firewalls
#
vpns
#
network security
Zscaler joins Anthropic's Project Glasswing to test Claude Mythos Preview in software scans, as the firm pushes zero trust against AI-driven attacks.
HackerOne launches h1 Validation to tackle AI flaws
Last week
#
devops
#
digital transformation
#
application security
HackerOne unveils h1 Validation as vulnerability reports surge 76% and AI tools speed up discovery, leaving firms struggling to triage real threats.
CIS launches AI security guides for models & agents
Last week
#
digital transformation
#
application security
#
physical security
CIS, Astrix and Cequence publish AI security guides for large language models, autonomous agents and MCP environments.
SUSE launches AI Factory with NVIDIA for enterprise control
Last week
#
virtualisation
#
private cloud
#
devops
SUSE and NVIDIA unveil an enterprise AI stack aimed at regulated sectors, offering on-premise control, governance and sovereignty for production use.
Chainguard & Cursor tackle AI code supply chain risks
Last week
#
devops
#
application security
#
devsecops
Chainguard and Cursor strike partnership to embed verified open source dependencies into AI coding, aiming to curb supply chain risks at machine speed.
Tenable flags Microsoft GitHub workflow flaw exposing code
Last week
#
devops
#
cloud security
#
application security
Tenable warns a GitHub Actions bug in Microsoft's Windows-driver-samples repo could let attackers run code and steal secrets via public issues.
AI vulnerability discovery forces boards to rethink cyber risk
Last week
#
data protection
#
application security
#
iam
AI models that can hunt and chain software flaws are forcing boards to rethink cyber defences, while scrutiny grows over Anthropic's MCP design risks.
LangWatch launches open-source tool for AI red-teaming
Last week
#
data protection
#
devops
#
data analytics
LangWatch releases open-source AI red-teaming framework to expose hidden vulnerabilities in production agents through multi-turn attack simulations.
Azul gains momentum on enterprise Java cloud demand
Last week
#
devops
#
hybrid cloud
#
digital transformation
Azul's FY26 surge was fuelled by enterprise Java demand, with finance, healthcare and retail driving bookings as the firm expanded partnerships and tooling.
Proofpoint tracks cargo theft gang's post-breach tactics
Last week
#
endpoint protection
#
iot security
#
advanced persistent threat protection
Proofpoint says a cargo theft gang spent weeks inside a decoy network, probing banking, fleet payment and load board systems for fraud.