cybersecurity

AI agents are changing where cybersecurity seed funding lands

AI agents are changing where cybersecurity seed funding lands 2026-07-31 at 07:30 By Anamarija Pogorelec Founders pitching a cybersecurity seed round this summer are joining a line that keeps getting longer. Product Hunt launches hit their highest level since late 2023 last quarter, and the Census Bureau’s count of high-propensity business applications kept climbing. Seed […]

AI agents are changing where cybersecurity seed funding lands Read More »

AI takes on a bigger role in finding Chrome vulnerabilities

AI takes on a bigger role in finding Chrome vulnerabilities 2026-07-30 at 20:01 By Sinisa Markovic Google has expanded the use of AI in Chrome’s security workflow, using it to find vulnerabilities, triage bug reports, generate patches, and review code to shorten the time between discovering software flaws and delivering security updates. “Historically, triaging a […]

AI takes on a bigger role in finding Chrome vulnerabilities Read More »

CISA sets a new SBOM baseline

CISA sets a new SBOM baseline 2026-07-30 at 15:23 By Anamarija Pogorelec The US Cybersecurity and Infrastructure Security Agency (CISA), together with its co-authoring partners, has released the 2026 Minimum Elements for a Software Bill of Materials (SBOM), replacing the 2021 guidance published by the National Telecommunications and Information Administration (NTIA). An SBOM is a […]

CISA sets a new SBOM baseline Read More »

Data breach cost 2026 averaged $4.99 million, AI attacks ran higher

Data breach cost 2026 averaged $4.99 million, AI attacks ran higher 2026-07-30 at 09:15 By Mirko Zorz More than one in four organizations hit by a malicious attack over the past year say AI drove it. Those breaches averaged about $1 million above the malicious attacks that ran without AI. Defenders bought similar technology and […]

Data breach cost 2026 averaged $4.99 million, AI attacks ran higher Read More »

200 new CVEs a day and no realistic way to patch them all

200 new CVEs a day and no realistic way to patch them all 2026-07-30 at 09:00 By Mirko Zorz Ryan Dewhurst, CEO at KEVIntel, explains how his team confirms exploitation that CISA’s catalog has not listed yet. He describes a global honeypot sensor network, AI triage, and human verification in a lab before a vulnerability […]

200 new CVEs a day and no realistic way to patch them all Read More »

Product showcase: Dashlane Password Manager is more security toolkit than password vault

Product showcase: Dashlane Password Manager is more security toolkit than password vault 2026-07-30 at 07:30 By Anamarija Pogorelec Dashlane is a password manager for individuals and families that stores passwords, passkeys, payment cards, personal information and secure notes in an encrypted vault. It also includes a password generator, password health reports, an authenticator, credential sharing, […]

Product showcase: Dashlane Password Manager is more security toolkit than password vault Read More »

Exposed credentials are giving attackers a head start many organizations don’t see

Exposed credentials are giving attackers a head start many organizations don’t see 2026-07-30 at 07:00 By Anamarija Pogorelec Compromised credentials can remain active long after passwords are created, leaving organizations trying to identify exposed accounts before attackers can use them. The 2026 Credential Risk Report from Enzoic shows growing awareness of the problem, but monitoring […]

Exposed credentials are giving attackers a head start many organizations don’t see Read More »

ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility

ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility 2026-07-29 at 16:00 By Help Net Security Research from Aryon reveals that each year, 3,731,699 short-lived cloud resources containing highly sensitive information are publicly exposed. This impacts any organization using AWS services that support public sharing. These exposures often last only minutes or hours, […]

ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility Read More »

The energy sector’s OT cybersecurity talent is retiring faster than it can be replaced

The energy sector’s OT cybersecurity talent is retiring faster than it can be replaced 2026-07-29 at 08:30 By Mirko Zorz A ransomware hit lands a chemical plant in a safe state. Nobody is hurt, the site holds steady, and the operators begin the restart. The systems stay down. Every attempt to bring them online meets […]

The energy sector’s OT cybersecurity talent is retiring faster than it can be replaced Read More »

Specter: Open-source NFC reader bug sweep for Flipper Zero

Specter: Open-source NFC reader bug sweep for Flipper Zero 2026-07-29 at 08:00 By Anamarija Pogorelec Specter is a Flipper Zero app that finds powered NFC readers by listening for the radio field they give off. The readers it hunts work at 13.56 MHz. The Flipper’s own chip does the sensing The onboard ST25R3916 carries a […]

Specter: Open-source NFC reader bug sweep for Flipper Zero Read More »

Your AI agents can reach data no one approved

Your AI agents can reach data no one approved 2026-07-29 at 07:30 By Mirko Zorz A credential expired. An AI agent kept using it anyway, and a mid-sized company’s systems went down for a quarter’s worth of trouble before anyone traced the failure back to a non-human account no one had been logging. That agent […]

Your AI agents can reach data no one approved Read More »

VERITAS project could change the way scientists secure AI

VERITAS project could change the way scientists secure AI 2026-07-28 at 14:02 By Sinisa Markovic The AI models, datasets, and automated systems researchers depend on can be compromised in ways conventional cybersecurity tools aren’t designed to detect. A new project called VERITAS (VERified Infrastructure for Trustworthy AI in Science) aims to close that gap by […]

VERITAS project could change the way scientists secure AI Read More »

Shadow AI incident response begins with logs that may already be gone

Shadow AI incident response begins with logs that may already be gone 2026-07-28 at 09:00 By Mirko Zorz In this Help Net Security interview, Brandy Wityak, VP of Complex Matters at LevelBlue, explains what happens in the hours after a shadow AI incident. She describes how quickly logs roll over, why firewall records of outbound […]

Shadow AI incident response begins with logs that may already be gone Read More »

Microsoft unveils MAI-Cyber-1-Flash, promises cybersecurity AI at half the cost

Microsoft unveils MAI-Cyber-1-Flash, promises cybersecurity AI at half the cost 2026-07-27 at 22:23 By Sinisa Markovic Microsoft has introduced MAI-Cyber-1-Flash, a security-focused AI model built into MDASH, the company’s multi-agent vulnerability identification and remediation system. MAI-Cyber-1-Flash is Microsoft’s first model built specifically for cybersecurity work, and the company stated that it went through review by […]

Microsoft unveils MAI-Cyber-1-Flash, promises cybersecurity AI at half the cost Read More »

Tech giants form alliance to put open AI in cyber defenders’ hands

Tech giants form alliance to put open AI in cyber defenders’ hands 2026-07-27 at 17:43 By Sinisa Markovic NVIDIA and a group of tech companies have formed an alliance to promote the use of open AI models in cybersecurity, days after OpenAI disclosed that one of its own AI models breached Hugging Face’s systems during […]

Tech giants form alliance to put open AI in cyber defenders’ hands Read More »

Google changes how it names cyber threat actors

Google changes how it names cyber threat actors 2026-07-27 at 16:08 By Sinisa Markovic Google Threat Intelligence Group (GTIG) has started using a new naming system for the threat actors it tracks. The change comes after Mandiant and Google’s Threat Analysis Group (TAG) merged into one unit, leaving the company with two separate naming schemes […]

Google changes how it names cyber threat actors Read More »

ChatGPT joins the most impersonated brands in phishing attacks

ChatGPT joins the most impersonated brands in phishing attacks 2026-07-27 at 14:08 By Anamarija Pogorelec Microsoft continued to be the most impersonated brand in Q2 2026, accounting for 23% of all brand phishing attempts. LinkedIn, Google, Apple, and Amazon followed, with the five brands together making up more than half of all brand phishing attempts […]

ChatGPT joins the most impersonated brands in phishing attacks Read More »

Google gives developers an AI bug hunter that also writes patches

Google gives developers an AI bug hunter that also writes patches 2026-07-24 at 11:53 By Sinisa Markovic Google has launched a preview of CodeMender, an AI agent built to scan code for security flaws, confirm they are exploitable, and generate fixes for developers to review. (Source: Google) The company describes it as a response to […]

Google gives developers an AI bug hunter that also writes patches Read More »

Google’s newest sign-in method asks you to look at the camera

Google’s newest sign-in method asks you to look at the camera 2026-07-24 at 11:33 By Anamarija Pogorelec Google’s selfie video sign-in option verifies that an account owner is a real person and that the account wasn’t created or used by computer programs or bots for the purpose of abuse, such as spamming. It is not […]

Google’s newest sign-in method asks you to look at the camera Read More »

The automotive software vulnerabilities hiding in your dashboard

The automotive software vulnerabilities hiding in your dashboard 2026-07-24 at 09:30 By Anamarija Pogorelec Pop the hood on a new car and you won’t find much you can fix with a wrench. What you’ll find is software, and a lot of it. The screen in the dash probably runs Android or a flavor of Linux. […]

The automotive software vulnerabilities hiding in your dashboard Read More »

Scroll to Top