Infosec stories
Basic security gaps are leaving nearly two-thirds of analysed US telecoms providers in an elevated cyber risk band, the report says.
June 2026 U.S. executive orders have turned post-quantum readiness into an operational race, forcing firms to map and manage trust fast.
Security teams can now pull threat intelligence into existing AI workflows, reducing manual analysis across fragmented data and incident investigations.
Security teams could be missing thousands of related files, as Stairwell says published malware hashes often expose only part of an attack.
Thousands of cloud customers faced a potential cross-tenant database breach, though Microsoft says the Cosmos DB flaw is now fixed with no sign of abuse.
Cloud audits produced the highest critical finding rate, while every AI system tested showed vulnerabilities and web logic flaws rose sharply.
Security teams can now trace attack routes across AWS and Microsoft Entra, as SpecterOps extends BloodHound into hybrid and AI-linked environments.
More than 7,000 SMEs could gain tighter AI and browser controls as the New York cybersecurity company uses fresh backing to widen its reach.
Defenders in Australia and New Zealand face faster, more adaptive intrusions as state-backed hackers use generative AI to scout and spread.
Businesses can now run and monitor AI agents for up to seven days as Google Cloud adds tighter identity and governance controls.
Stronger demand for its network security tools sent quarterly revenue up 26 per cent and prompted a higher full-year outlook for the cybersecurity group.
Proofpoint says underground forums are advertising tools that use indirect prompt injection across emails, PDFs, calendar invites and web pages.
Ukrainian and US organisations were exposed for months after a Zimbra bug let attackers steal emails and credentials without a click.
Victims can be tricked more easily as Logokit now tailors fake login pages in real time, sending stolen credentials to Telegram bots.
Security teams can now block risky AI prompts in real time as Reco expands its platform from visibility into browser-level enforcement.
Windows users face session theft risk as MedusaHVNC lets attackers operate in hidden browser desktops using existing cookies and log-ins.
Security teams could cut incident response from hours to minutes as Team Cymru folds telemetry, investigation and AI access into one platform.
The beta gives pentesters controlled AI assistance inside Burp Suite, with approvals, logging and scope rules still enforced by the platform.
Security teams can now map hidden AI agent links on employee devices to spot overprivileged tools before they expose data or credentials.
Designed to curb data leakage and keep human staff in charge, the framework routes AI outputs by role inside Microsoft systems.