Advertisement

Google Gemini Hijacked on Android via Poisoned Notifications
Researchers demonstrate how WhatsApp and Slack notifications can trigger indirect prompt injection in Google Gemini, leading to memory poisoning.
Evaluating AI Agent Security: 100 Agents Tested for Vulnerabilities
An industry-first evaluation of 100 AI agents highlights critical security gaps in defense and the high impact of potential agentic compromises.

Managing AI-Driven Vulnerability Exploitation Timelines
AI-driven exploitation tools are shrinking the window between vulnerability disclosure and weaponization to hours, forcing a shift in defensive strategies.
CrowdStrike and NVIDIA: Securing BlueField-3 DPU AI Workloads
CrowdStrike and NVIDIA partner to secure the AI Factory, integrating Falcon with BlueField-3 DPUs to protect AI workloads and enterprise infrastructure.
Mitigating Security Tool Sprawl to Accelerate Incident Response
Research indicates that excessive security tools are hindering incident response. Learn how automation and AI-assisted workflows reduce MTTR and analyst burnout.

Anthropic Project Glasswing Uncovers 10,000 High-Severity Flaws
Anthropic's Claude Mythos AI identifies over 10,000 critical and high-severity vulnerabilities in systemically important software via Project Glasswing.

Linux Rootkits and Router Zero-Day Exploits: ThreatsDay Analysis
Recent intelligence highlights a surge in Linux rootkits and router zero-day vulnerabilities targeting trusted system components and AI-driven intrusions.

AI-Generated Code and Autonomous Agents: New Risks for Defenders
AI agents are automating vulnerability discovery in AI-generated codebases, forcing a shift in defensive security strategies and response times.
G7 Hiroshima AI Process Releases AI SBOM Transparency Guidance
New G7 guidance establishes minimum requirements for AI Software Bill of Materials to improve transparency and security within the global AI supply chain.
Fixing Operational Gaps in Network Incident Response Workflows
Address systemic delays in network incident response by leveraging AI-assisted automation to bridge the gap between security and IT operations.
Braintrust AWS Breach: Immediate AI Provider API Key Rotation Required
Braintrust prompts users to rotate API keys after unauthorized AWS account access compromised AI provider secrets. Learn about the impact and mitigation.

AI CLI Tools Vulnerable to RCE via Malicious Repositories
TrustFall research reveals RCE risks in Claude Code and Cursor CLI. AI agents can be manipulated via malicious repositories to execute arbitrary commands.