The AI Agents Meant to Protect Us Can Be Turned Against Us Ask an AI coding agent to scan open-source code for security holes, and it...
Malware Finds a New Hideout: Your Work Calendar A newly discovered strain of malware is doing something that sounds almost too clever to be real: it...
Your public Instagram photos just became AI training material — whether you opted in or not Meta has quietly rolled out a new artificial intelligence tool...
The Researcher Who Dropped the Bomb In early June, a security researcher going by the handle Nightmare-Eclipse published a proof-of-concept (PoC) exploit for a critical vulnerability...
What Is the RoguePlanet Vulnerability? Microsoft shipped a quiet but critical fix for a RoguePlanet Defender flaw that let attackers climb from a low-privilege user account...
AI’s Habit of Making Things Up Becomes a Security Nightmare AI coding assistants have a well-known flaw: they hallucinate. Ask one to recommend a popular library...
False Positives Are a Plague. Capital One Built a Tool to End Them. Software security teams have a dirty secret: most of the alerts they chase...
The Old Playbook Is Outdated For years, the conventional wisdom held that Iran’s state-sponsored hackers mainly went after big, obvious targets: power plants, water utilities, oil...
When Code Assistants Look Like Intruders For a full week, Sophos watched its own endpoint detection logs and found something surprising. AI coding agents — tools...
LONGLEASH malware: A fresh tool for an old threat A Chinese advanced persistent threat group tracked as UAT-7810 has rolled out a new malware strain called...