Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

The Agentic Attacker: One Objective, One Prompt, Forty Minutes, Domain Admin - Game Over

In a controlled enterprise lab, we tested how far an agentic attack stack could go by harnessing a frontier model with an agent platform, MCP-enabled tooling, operational context, and enough autonomy to execute a complete attack path.

AI Traffic Security: The Hidden Risk of Unstructured Data Leakage #aisecurity

Understanding the nuances of AI Traffic Security is critical because traditional firewalls and API gateways are fundamentally ill-equipped to inspect unstructured natural language. In the past, enterprise data remained safely within the corporate perimeter. Today, employees are pasting highly sensitive information directly into external models, creating a massive vulnerability where the risk lies in the meaning and content, rather than syntax or connections.

AIDR: How CrowdStrike Is Defining the Next Era of Cybersecurity

Every foundational shift in computing has created a new security category. The internet created network security, the rise of workstations created the need for endpoint detection and response (EDR), and cloud computing created the need for cloud security. Each technology transition has moved faster than the one before it. None has moved faster than AI.

AI is moving fast. Exploits are right behind.

Chris Luft and Matt Bromiley cover four stories in this week's Intel Chat that all point to the same trend: attackers are keeping pace with how fast AI tools are being built and deployed. They break down a chatbot pipeline vulnerability in Google Dialogflow CX, a phishing technique that hides malicious content until it renders in the browser, four newly exploited vulnerabilities added to CISA's KEV catalog, and an attack that exploits AI coding assistants' tendency to hallucinate fake repository names.

Who Gets to Control AI? The Governance Crisis Nobody's Solving

The EU just pushed back its AI Act enforcement by 16 months. The US is deregulating. China is governing through infrastructure. And the UK is doing nothing and hoping for the best. Welcome to Razorwire, the podcast where we share our take on the world of cybersecurity with direct, practical advice for professionals and business owners alike. I'm Jim and in this episode, I'm joined by Richard Cassidy, Field CISO at Rubrik, and Jonathan Care, Head of the AI Practice at KuppingerCole.

Report: Social Engineering Remains a Central Part of AI-assisted Attacks

Threat actors continue to rely on social engineering as AI is incorporated into their attacks, according to ESET’s Threat Report for the first half of 2026. ESET’s Director of Threat Prevention Labs, Jiří Kropáč, stated, “Rather than relying on entirely new methods and tools, attackers are quickly adapting established techniques to new platforms, technologies, and user behaviors.

The Permission Boundary Myth: Why Authorized Doesn't Mean Appropriate for Coding Agents

Coding agent security has a framing problem. Most security conversations around these tools center on the wrong question. 'Did the agent have permission to do that?' is a reasonable place to start, but in the context of autonomous AI systems, it's not where the risk actually lives. In Zenity Labs' research into the coding agent threat model, the pattern that keeps surfacing isn't that agents are doing things they aren't allowed to do.

Understanding the Importance of Advanced Medical Imaging

When pain, swelling, dizziness, or strange symptoms refuse to explain themselves, "wait and see" can feel pretty unsettling. You want answers. Your doctor does too. That is where advanced medical imaging becomes so valuable. It gives clinicians a clearer look inside the body when an exam, blood test, or symptom checklist is not enough.