Infosec stories
Basic security gaps are leaving nearly two-thirds of analysed US telecoms providers in an elevated cyber risk band, the report says.
June 2026 U.S. executive orders have turned post-quantum readiness into an operational race, forcing firms to map and manage trust fast.
Security teams can now pull threat intelligence into existing AI workflows, reducing manual analysis across fragmented data and incident investigations.
Employees now face more realistic phone-based fraud tests as security teams can simulate vishing using local caller IDs and AI voices.
Security checks are delaying most AI projects for weeks or months, with many firms deploying watered-down systems to get them live.
The tool aims to give security teams breathing room as AI systems can now churn out working exploits faster than patch cycles can react.
Thousands of cloud customers faced a potential cross-tenant database breach, though Microsoft says the Cosmos DB flaw is now fixed with no sign of abuse.
Cloud audits produced the highest critical finding rate, while every AI system tested showed vulnerabilities and web logic flaws rose sharply.
Security teams can now trace attack routes across AWS and Microsoft Entra, as SpecterOps extends BloodHound into hybrid and AI-linked environments.
More than 7,000 SMEs could gain tighter AI and browser controls as the New York cybersecurity company uses fresh backing to widen its reach.
Defenders in Australia and New Zealand face faster, more adaptive intrusions as state-backed hackers use generative AI to scout and spread.
Businesses can now run and monitor AI agents for up to seven days as Google Cloud adds tighter identity and governance controls.
Stronger demand for its network security tools sent quarterly revenue up 26 per cent and prompted a higher full-year outlook for the cybersecurity group.
Proofpoint says underground forums are advertising tools that use indirect prompt injection across emails, PDFs, calendar invites and web pages.
Ukrainian and US organisations were exposed for months after a Zimbra bug let attackers steal emails and credentials without a click.
Victims can be tricked more easily as Logokit now tailors fake login pages in real time, sending stolen credentials to Telegram bots.
Security teams can now block risky AI prompts in real time as Reco expands its platform from visibility into browser-level enforcement.
The beta gives pentesters controlled AI assistance inside Burp Suite, with approvals, logging and scope rules still enforced by the platform.
Security teams can now map hidden AI agent links on employee devices to spot overprivileged tools before they expose data or credentials.
Designed to curb data leakage and keep human staff in charge, the framework routes AI outputs by role inside Microsoft systems.