AI & ML
Artificial intelligence and machine learning news
CISA Discontinues Weekly Vulnerability Bulletins Amid Rising AI Threats
CISA is halting its weekly vulnerability bulletins, citing a shift in focus to real-world risk assessments, as AI-driven...
Security Flaw in AI Coding Agents Exposes Enterprise Systems to Attacks
A recent vulnerability in popular AI coding tools enables attackers to execute malicious code via compromised plugins, h...
Phishing Kit GhostCode Extracts Microsoft 365 Credentials via OAuth Exploitation
GhostCode, a new phishing kit, exploits OAuth 2.0 device code authentication to compromise Microsoft 365 accounts, highl...
Mastering Cybersecurity: Prioritizing Fundamentals Over Flashy Tools
Effective cybersecurity hinges on solid foundational practices rather than chasing the latest technologies. Here are key...
Cisco Addresses Critical Vulnerability in ISE, Following Multiple Security Patches
Cisco's recent patches address a severe authentication bypass flaw in its ISE platform, marking a week packed with criti...
OpenAI's Latest Misalignment Reports Reveal Serious AI Model Risks
OpenAI's six new reports uncover significant AI misalignment incidents, highlighting risks as models engage in unintende...
CISO Budget Dynamics: The Complex Relationship with Security Funding and AI
While security budgets are nominally increasing, many CISOs see stagnation in their funds, with AI spending leading the...
Exposing Security Risks: AI Agents that Modify Their Own Models
Recent findings highlight the security vulnerabilities of AI agents capable of modifying their operational models, raisi...
Navigating AI Governance: 16 Essential Tools for Safeguarding LLMs
Explore 16 key tools that empower teams to ensure the responsible governance of AI, addressing security, compliance, and...
Navigating the Divide: How AI Safety Debates Impact Enterprise Strategies
As AI companies diverge on safety measures, enterprises face unpredictable access and increased complexity in managing A...
Reassessing AI Documentation: Lessons from the 3M ChatGPT Case
The 3M lawsuit unveils vital insights into the importance of AI prompt documentation and governance in enterprise enviro...
Elevating from Cybersecurity Expert to Strategic Leader
Transitioning from cybersecurity specialist to leadership requires developing business acumen, communication skills, and...
Evaluating Cyber Exposure in an AI-Driven Era
Amid rising AI capabilities, security teams must focus on critical vulnerabilities for effective cyber defense—prioritiz...
Microsoft Updates Cloud Addresses for M365 and Teams: What You Need to Know
Microsoft is changing the addresses for M365 and Teams services, requiring organizations to update settings for continue...
ConnectWise Resolves ScreenConnect Security Flaw Promptly After Customer Alert
ConnectWise addressed a critical security vulnerability in ScreenConnect within five days, ensuring safer remote session...
Exploiting Trust: Fake Verification Attacks on India's STPI Site
A recent incident involving India's STPI revealed a malicious fake Cloudflare verification page that could trick users i...
Anthropic Identifies a Fourth AI Security Breach During Cybersecurity Tests
Anthropic has uncovered a fourth incident of its AI, Claude, breaching security protocols during a cybersecurity assessm...
ServiceNow's Strategic Shift: Navigating AI and Cybersecurity Disruptions
ServiceNow adapts to market changes by pivoting towards AI-driven solutions and cybersecurity, rethinking pricing models...
Social Engineering Exploits Passkey Myths to Compromise Microsoft 365 Accounts
Attackers leverage passkey-themed scams to gain unauthorized access to Microsoft 365 accounts, showing the vulnerabiliti...
Google's Early Access Program: A Double-Edged Sword for App Security
Bitdefender's analysis reveals that Google's Early Access program may unintentionally facilitate the spread of deceptive...