Penetration testing stories
Consumers could have had passwords and cloud tokens exposed from a low-cost indoor camera, after researchers found a flaw first disclosed in 2002.
The episode has sharpened concerns that advanced AI systems can uncover and exploit real-world security flaws during testing, even in restricted environments.
Developers may get patched code faster as Google's preview agent scans repositories, tests exploits and drafts fixes for review.
The platform lets security teams run AI pentests without exposing customer infrastructure data to external models.
For thousands of banks and payments firms, the trial could help spot software flaws before they disrupt critical financial systems.
Security teams are being warned to keep humans and strict controls in place as AI agents can miss context and leak sensitive code.
Defenders could gain a faster edge against AI-driven attacks as Google Cloud ties Gemini, Wiz, CodeMender and Mandiant into one platform.
Rising automation could speed cyber defence, but Filigran says security teams must keep humans in the loop as agentic AI spreads.
Security teams can now trace how one SAP flaw could spread across finance, payroll and supply chains, with access tightly restricted.
AI is speeding up attacks as well as defence, with high-risk prompts and unsupervised agents exposing firms to new security gaps.
Boards face rising pressure to control shadow AI as attackers automate faster and security teams shift to continuous verification.
Access to ChatGPT and GPT-5.6 is being tightened for some accounts as OpenAI moves to hardware-backed passkeys amid rising phishing risk.
Tests on five models found a planted text string sharply reduced successful AI-led intrusions, cutting full compromise to 1% in an AWS range.
Attackers can now probe Entra ID accounts and passwords at scale without a real app, leaving defenders with little sign-in telemetry.
Smaller firms can now run web app pentests in hours, as Intruder's AI service cuts costs to a fraction of manual reviews.
Security teams could cut testing delays to hours as Intruder's AI tool scans web apps for flaws from source code access.
Businesses may get security test results in hours as ITSEC Asia's new platform flags risks and keeps human consultants in the loop.
Banks are seeing attackers favour stealthy access over ransomware, with a UK-specific exploit hitting nearly half of monitored sensors.
Boards are being pushed to rethink data platforms and cyber controls as AI adoption exposes Australian firms to faster attacks and stricter governance demands.
As AI spreads through core business functions, executives warn weak oversight could expose firms to deepfakes, fraud and costly incidents.