AI

White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative

White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative 2026-07-15 at 13:18 By Eduard Kovacs The new program stems from an AI-focused Executive Order signed by President Trump on June 2. The post White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative Read More »

AWS retools Security Hub for AI and multicloud threats

AWS retools Security Hub for AI and multicloud threats 2026-07-15 at 11:56 By Anamarija Pogorelec AWS added AI workload protection and Microsoft Azure security monitoring to Security Hub, its centralized security platform for collecting and prioritizing security findings across cloud environments. Support for additional cloud platforms will follow. “Collecting findings was never the hard part. […]

AWS retools Security Hub for AI and multicloud threats Read More »

The MDR renewal question: What changes when AI can handle the alerts

The MDR renewal question: What changes when AI can handle the alerts 2026-07-15 at 08:00 By Help Net Security For most of the past decade, the managed detection and response (MDR) decision was a simple one: teams that couldn’t staff a 24/7 SOC outsourced detection and response to a provider who could. It solved a […]

The MDR renewal question: What changes when AI can handle the alerts Read More »

An AI overthinking attack can tie a robot up for over a minute

An AI overthinking attack can tie a robot up for over a minute 2026-07-15 at 07:30 By Anamarija Pogorelec Robots that read the world through cameras now lean on large vision-language models to interpret what they see and decide what to do next. These models handle images and text together, so any words that fall […]

An AI overthinking attack can tie a robot up for over a minute Read More »

Unpatched Claude for Chrome Flaw Lets Extensions Read Gmail, Calendar

Unpatched Claude for Chrome Flaw Lets Extensions Read Gmail, Calendar 2026-07-14 at 16:00 By Eduard Kovacs A ClaudeBleed-linked vulnerability reportedly persists across eight patches, exposing potentially sensitive data to other extensions.  The post Unpatched Claude for Chrome Flaw Lets Extensions Read Gmail, Calendar appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Unpatched Claude for Chrome Flaw Lets Extensions Read Gmail, Calendar Read More »

The best defense against AI attacks turns out to be a skeptical human

The best defense against AI attacks turns out to be a skeptical human 2026-07-14 at 09:00 By Mirko Zorz Analysts across the security industry now run generative AI through their daily work, from log triage to incident write-ups. Active use in cybersecurity strategy reached 78% of practitioners in 2026, up from half the field a […]

The best defense against AI attacks turns out to be a skeptical human Read More »

A hardware security AI assistant that checks chips for hidden backdoors

A hardware security AI assistant that checks chips for hidden backdoors 2026-07-13 at 08:00 By Sinisa Markovic Chip designers license blocks of circuitry from outside vendors and drop them into larger products. A single processor can carry components from a range of suppliers, each written by a company the buyer may never deal with directly. […]

A hardware security AI assistant that checks chips for hidden backdoors Read More »

99.9% of fixable AI vulnerabilities remain unpatched

99.9% of fixable AI vulnerabilities remain unpatched 2026-07-13 at 07:30 By Anamarija Pogorelec Organizations build, deploy, and operate AI in the cloud, but basic cybersecurity hygiene is often sacrificed for speed, according to Orca Security’s 2026 State of AI Security Report. Building AI without security Fifty-six percent of AI adopters have deployed agent frameworks into […]

99.9% of fixable AI vulnerabilities remain unpatched Read More »

Enterprises are rethinking where their AI applications run

Enterprises are rethinking where their AI applications run 2026-07-13 at 07:00 By Anamarija Pogorelec Growing demand for compute capacity, power, cooling and low-latency connectivity is prompting organizations to reassess where AI applications run, according to CoreSite. Public cloud continues to support experimentation and rapid deployment, while colocation is increasingly used for workloads that require predictable […]

Enterprises are rethinking where their AI applications run Read More »

‘HalluSquatting’ Turns AI Hallucinations Into Botnet Delivery Mechanism

‘HalluSquatting’ Turns AI Hallucinations Into Botnet Delivery Mechanism 2026-07-10 at 11:32 By Eduard Kovacs Researchers demonstrate adversarial hallucination squatting against popular AI assistants to achieve remote code execution. The post ‘HalluSquatting’ Turns AI Hallucinations Into Botnet Delivery Mechanism appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

‘HalluSquatting’ Turns AI Hallucinations Into Botnet Delivery Mechanism Read More »

Microsoft is rewriting Windows patch guidance because of AI

Microsoft is rewriting Windows patch guidance because of AI 2026-07-10 at 09:00 By Anamarija Pogorelec Microsoft is recommending that organizations shorten Windows update deployment timelines, warning that advances in AI are reducing the time attackers need to identify and exploit vulnerabilities after security updates are released. The company says organizations should reassess how quickly they […]

Microsoft is rewriting Windows patch guidance because of AI Read More »

AWS gives its ERP agent deny-by-default rules and a separate identity

AWS gives its ERP agent deny-by-default rules and a separate identity 2026-07-10 at 08:00 By Sinisa Markovic Accounts receivable teams at large companies spend hours each day matching incoming bank payments to invoices by hand. When those payments sit unmatched for days, cash flow suffers and days sales outstanding climbs. The same pattern repeats across […]

AWS gives its ERP agent deny-by-default rules and a separate identity Read More »

UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge

UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge 2026-07-09 at 17:19 By Kevin Townsend Two announcements on July 7, 2026, demonstrate the government’s determination to improve the level of cybersecurity within the UK. The post UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge appeared first on SecurityWeek. This article […]

UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge Read More »

Your coding agent says no in chat and yes in the code

Your coding agent says no in chat and yes in the code 2026-07-09 at 13:44 By Mirko Zorz Millions of developers share their keyboard with GitHub Copilot. Inside Visual Studio Code, it opens their files, writes and edits code, runs scripts, and reworks its own output across many turns. The safety testing that vets these […]

Your coding agent says no in chat and yes in the code Read More »

AI Coding Tools Tricked Into Hacking Developer Machine via Decades-Old Technique

AI Coding Tools Tricked Into Hacking Developer Machine via Decades-Old Technique 2026-07-09 at 11:52 By Eduard Kovacs Wiz has disclosed the details of a new AI coding assistant attack method it has dubbed GhostApproval. The post AI Coding Tools Tricked Into Hacking Developer Machine via Decades-Old Technique appeared first on SecurityWeek. This article is an […]

AI Coding Tools Tricked Into Hacking Developer Machine via Decades-Old Technique Read More »

Malicious AI agent skills can slip past the scanners built to stop them

Malicious AI agent skills can slip past the scanners built to stop them 2026-07-09 at 10:24 By Sinisa Markovic Developers who build with AI coding agents grab capabilities off public marketplaces the same way they grab packages from npm or PyPI. The add-ons are called agent skills. Each one is a little bundle of plain-English […]

Malicious AI agent skills can slip past the scanners built to stop them Read More »

Attackers using Langflow flaw for credential harvesting (CVE-2026-55255)

Attackers using Langflow flaw for credential harvesting (CVE-2026-55255) 2026-07-08 at 17:03 By Zeljka Zorz The US Cybersecurity and Infrastructure Security Agency (CISA) is warning about yet another Langflow vulnerability (CVE-2026-55255) leveraged by attackers in the wild. The flaw was added to the agency’s Known Exploited Vulnerabilities catalog on Tuesday, July 7, nearly two weeks after […]

Attackers using Langflow flaw for credential harvesting (CVE-2026-55255) Read More »

Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations

Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations 2026-07-08 at 15:15 By Ionut Arghire The “Rogue Agent” vulnerability could have enabled attackers to silently manipulate AI conversations, exfiltrate data, and compromise every Dialogflow CX agent within the same Google Cloud project. The post Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations […]

Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations Read More »

Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection

Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection 2026-07-08 at 13:30 By Ionut Arghire Researchers show how attackers can use a crafted public GitHub Issue to trick AI-powered workflows into exposing data from private repositories without authentication. The post Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection appeared first on SecurityWeek. This article […]

Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection Read More »

Thousands of malicious AI skills found capable of stealing data, running malware

Thousands of malicious AI skills found capable of stealing data, running malware 2026-07-08 at 12:00 By Anamarija Pogorelec AI agents can browse the web, use external tools, execute commands, and perform tasks on behalf of users. Many rely on skills that define how they interact with services and data. Malicious skills can abuse those capabilities […]

Thousands of malicious AI skills found capable of stealing data, running malware Read More »

Scroll to Top