Security teams are turning to AI as they struggle to investigate the volume of alerts coming into the SOC, according to new research from Prophet…
Tag: Information Security Buzz
Prophet Security research finds AI is cutting SOC investigation times, but nearly half of in-house builds fail to stick
Security teams are turning to AI as they struggle to investigate the volume of alerts coming into the SOC, according to new research from Prophet…
Architectural intent is the cornerstone for the future of software security
With agentic AI further boosting productivity, human code review becomes a serious bottleneck. Developers need to move upstream, establishing the ground…
There is no Zero Trust in Zero Trust
In January, the Cloud Security Alliance asked security professionals how they handle the identities on which their AI systems run. Fewer than a quarter of…
Post-DEF CON phishing campaign delivered AMOS and NetSupport malware
A phishing campaign targeting attendees of Black Hat and DEF CON conferences involved distributing information-stealing malware and remote access malware…
A reverse image search platform exposed more than 9 million facial images
A publicly accessible database linked to reverse image search service ClarityCheck exposed more than nine million images, including photographs of adults,…
AI agents taking unsanctioned action during cyber testing
The UK’s AI Security Institute (AISI) has disclosed a security incident in which frontier AI agents took unsanctioned actions against real people and…
Walking the AI Security and ROI Tightrope
Organisations across every sector are accelerating their adoption of generative AI, driven by board-level expectations for rapid innovation and measurable…
Fake evidence: How generative AI is changing fraud capabilities
Scams are evolving with technology. Generative AI is a game changer for scammers and has been blamed for the rise in increasingly sophisticated phishing…
10th Annual Security Serious Unsung Heroes Awards Open for Nominations
Cybersecurity PR agency Eskenzi PR has opened nominations for its tenth annual Security Serious Unsung Heroes Awards. The awards celebrate the UK’s most…
Expert panel: AI is writing the code. Who is defending it?
AI is changing the way software is being developed. From generating code, helping developers make sense of new frameworks, reviewing pull requests, and…
One-click Claude Desktop flaw could enable hidden prompt injection and code execution
Security researchers at Oasis Security have disclosed a vulnerability in Claude Desktop that could allow attackers to execute hidden prompts, access local…
Russian state attackers exploiting misconfigured routers, new multi-nation advisory warns
Russian state-sponsored actors are compromising poorly secured routers and networking devices around the world, with critical infrastructure organisations…
One-click Claude Desktop flaw could enable hidden prompt injection and code execution
Security researchers at Oasis Security have disclosed a vulnerability in Claude Desktop that could allow attackers to execute hidden prompts, access local…
Russian state attackers exploiting misconfigured routers, new multi-nation advisory warns
Russian state-sponsored actors are compromising poorly secured routers and networking devices around the world, with critical infrastructure organisations…
Americans are ignoring scam calls, but phishing emails still fool many
Americans are becoming more effective at avoiding spam calls and texts, but new research suggests that the strategy comes with an unexpected cost. A new survey of 1,000 Americans from privacy company Cloaked, revealed that two-thirds of respondents have missed…
AI-assisted software engineering is creating a new delivery paradox
AI can generate code faster than most software organizations can absorb it. This should be a productivity breakthrough, but it also exposes a larger problem: many of the processes surrounding software delivery still happen at human speed. A new white…
Sysdig uncovers first documented agentic ransomware operation
Security researchers at Sysdig have documented what they believe is the first documented case of an AI agent running a ransomware operation from end to end. Dubbed JADEPUFFER, the operation used a large language model (LLM) to automate an attack…
Filigran report: Organisations can see their threats but can’t act fast enough
Fragmented tools and manual processes are widening the gap between threat awareness and effective CTEM. Only 41% of organisations have a fully consolidated view of cyber risk exposure, and security teams spend 42% of their time investigating risks that turn…
The next phase of endpoint security starts with simplicity
For years, enterprise endpoints were expected to handle everything locally, including productivity, collaboration, storage, and security, while supporting increasingly complex operating systems and applications. But as more workloads have moved into cloud-delivered environments, that model has started to break down.…
