AI

Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates

Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates 2026-07-22 at 12:33 By Eduard Kovacs Many of the vulnerabilities fixed with the July 2026 Critical Patch Update were likely discovered by AI. The post Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates Read More »

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter 2026-07-22 at 11:21 By Anamarija Pogorelec Google’s Gemini 3.5 Flash Cyber model finds, validates, and patches vulnerabilities before they can be exploited while helping mitigate broader misuse. It is part of a limited-access pilot program that will soon be available to governments and trusted partners through […]

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter Read More »

OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face 

OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face  2026-07-22 at 10:48 By Eduard Kovacs The admission comes days after Hugging Face disclosed an attack powered by autonomous AI agents.  The post OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face  appeared first on SecurityWeek. This article is an excerpt from […]

OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face  Read More »

Small teams are the heaviest users of AI coding agents

Small teams are the heaviest users of AI coding agents 2026-07-22 at 09:00 By Sinisa Markovic The pull request arrives with the tests already run and the description already written, the work of an agent that handled the whole thing on its own. Somebody still has to read it. On GitHub that somebody is usually […]

Small teams are the heaviest users of AI coding agents Read More »

Security teams keep finding critical flaws after scheduled testing ends

Security teams keep finding critical flaws after scheduled testing ends 2026-07-22 at 08:00 By Anamarija Pogorelec Enterprise environments change between scheduled security assessments, leaving organizations with periods where new vulnerabilities can go undetected. Synack’s State of Continuous Security Validation report found that 95% of surveyed organizations identified high- or critical-severity vulnerabilities outside planned testing windows […]

Security teams keep finding critical flaws after scheduled testing ends Read More »

AI can’t fix cybersecurity’s hiring problem

AI can’t fix cybersecurity’s hiring problem 2026-07-22 at 07:30 By Anamarija Pogorelec Organizations are redefining cybersecurity roles through workforce frameworks and placing greater emphasis on verified skills as AI and new regulatory requirements change hiring. The SANS 2026 Cybersecurity Workforce Survey found demand for specialists in new roles more than doubled over the past year, […]

AI can’t fix cybersecurity’s hiring problem Read More »

Cloud operations become the next big role for agentic AI

Cloud operations become the next big role for agentic AI 2026-07-22 at 07:00 By Anamarija Pogorelec Companies are using agentic AI to manage growing application environments, automate routine tasks, and support decisions. Business and IT leaders increasingly see the technology as part of cloud application management, according to Unisys’ AI & Cloud Insights Report. To […]

Cloud operations become the next big role for agentic AI Read More »

Cisco Launches Low-Cost AI Models for Source Code Security

Cisco Launches Low-Cost AI Models for Source Code Security 2026-07-21 at 20:44 By Kevin Townsend The open-weight Antares models are designed to pinpoint known vulnerabilities in codebases faster and at a fraction of the cost of larger AI models. The post Cisco Launches Low-Cost AI Models for Source Code Security appeared first on SecurityWeek. This […]

Cisco Launches Low-Cost AI Models for Source Code Security Read More »

JadePuffer returns with ransomware built to target AI models and infrastructure

JadePuffer returns with ransomware built to target AI models and infrastructure 2026-07-21 at 16:38 By Zeljka Zorz JadePuffer, the threat actor behind the recently documented extortion operation executed end-to-end by an AI agent, is now attempting to leverage ENCFORGE, novel ransomware created to target AI and machine learning (ML) infrastructure. The extortion contact embedded in […]

JadePuffer returns with ransomware built to target AI models and infrastructure Read More »

Cisco’s open-weight Antares models make vulnerability localization cheaper

Cisco’s open-weight Antares models make vulnerability localization cheaper 2026-07-21 at 16:01 By Mirko Zorz A security analyst opens an unfamiliar repository, pulls up a vulnerability advisory, and starts hunting for the file where the weakness lives. The naming conventions belong to someone else. Evidence sits in scattered corners of a codebase that runs to thousands […]

Cisco’s open-weight Antares models make vulnerability localization cheaper Read More »

AWS wants GuardDuty to automate the first steps of threat investigations

AWS wants GuardDuty to automate the first steps of threat investigations 2026-07-21 at 12:14 By Anamarija Pogorelec Amazon GuardDuty investigation agent is now in public preview. The feature provides AI-powered investigations of GuardDuty findings, AWS accounts and AWS organizations, helping security teams reduce investigation time. During the public preview, the investigation agent is available at […]

AWS wants GuardDuty to automate the first steps of threat investigations Read More »

Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software

Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software 2026-07-20 at 17:54 By SecurityWeek News Neo raised money across seed and Series A funding rounds from Andreessen Horowitz, Bessemer Venture Partners, and others. The post Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software appeared first on […]

Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software Read More »

A forensic tool for backdoored code completions in AI assistants

A forensic tool for backdoored code completions in AI assistants 2026-07-20 at 08:00 By Sinisa Markovic Developers lean on AI coding assistants for a growing share of their daily work, letting the tools predict the next few lines and accepting many suggestions with a quick glance. Those tools learn from large collections of code, and […]

A forensic tool for backdoored code completions in AI assistants Read More »

Nearly half of open-source AI projects never reach production

Nearly half of open-source AI projects never reach production 2026-07-20 at 07:00 By Anamarija Pogorelec Open models are moving into production across more organizations, and the work of securing those deployments increasingly extends beyond the model weights. Mozilla’s The State of Open Source AI 2026 identifies deployment, governance and operational tooling as persistent obstacles as […]

Nearly half of open-source AI projects never reach production Read More »

Prompt injection is becoming the XSS of the web agent era

Prompt injection is becoming the XSS of the web agent era 2026-07-17 at 09:00 By Anamarija Pogorelec Autonomous web agents read whatever a page displays, and much of that content comes from strangers. Product reviews, seller listings, and advertisements sit beside trusted site menus on a single page. An agent that reads all of that […]

Prompt injection is becoming the XSS of the web agent era Read More »

AI Data Centers Are Being Built Faster Than They Can Be Secured

AI Data Centers Are Being Built Faster Than They Can Be Secured 2026-07-16 at 16:00 By Kevin Townsend AI infrastructure introduces new security risks that traditional data center designs were never built to handle. The post AI Data Centers Are Being Built Faster Than They Can Be Secured appeared first on SecurityWeek. This article is […]

AI Data Centers Are Being Built Faster Than They Can Be Secured Read More »

Russian cybercriminal used jailbroken Gemini CLI to rebuild botnet infrastructure in six minutes

Russian cybercriminal used jailbroken Gemini CLI to rebuild botnet infrastructure in six minutes 2026-07-16 at 15:08 By Sinisa Markovic A Russian-speaking threat actor known as “bandcampro” used a jailbroken Gemini CLI, Google’s open-source terminal-based AI agent, to deploy and operate a small command-and-control (C2) botnet, according to Trend Micro. Operational overview (Source: Trend Micro) In […]

Russian cybercriminal used jailbroken Gemini CLI to rebuild botnet infrastructure in six minutes Read More »

GPT-Red beat human red teamers on a prompt injection test

GPT-Red beat human red teamers on a prompt injection test 2026-07-16 at 06:49 By Mirko Zorz GPT-Red is an automated red-teaming model that OpenAI trains to find prompt injection weaknesses. It works the way a human red-teamer does. It sends a prompt, watches how a GPT model responds, and iterates toward a goal such as […]

GPT-Red beat human red teamers on a prompt injection test Read More »

Unpatched Cursor Vulnerability Exposes Users to Code Execution

Unpatched Cursor Vulnerability Exposes Users to Code Execution 2026-07-15 at 17:37 By Ionut Arghire An attacker can create a malicious repository containing a git.exe in the project root, and Cursor executes it automatically. The post Unpatched Cursor Vulnerability Exposes Users to Code Execution appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Unpatched Cursor Vulnerability Exposes Users to Code Execution Read More »

White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative

White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative 2026-07-15 at 13:18 By Eduard Kovacs The new program stems from an AI-focused Executive Order signed by President Trump on June 2. The post White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative Read More »

Scroll to Top