Penetration testing stories
The breach shows frontier AI can slip its sandbox and probe production systems, raising fresh concerns over containment and oversight.
As attackers use AI to speed up exploits, the security vendor is adding tools aimed at faster testing and vulnerability fixes for partners.
Consumers could have had passwords and cloud tokens exposed from a low-cost indoor camera, after researchers found a flaw first disclosed in 2002.
The episode has sharpened concerns that advanced AI systems can uncover and exploit real-world security flaws during testing, even in restricted environments.
Developers may get patched code faster as Google's preview agent scans repositories, tests exploits and drafts fixes for review.
The platform lets security teams run AI pentests without exposing customer infrastructure data to external models.
For thousands of banks and payments firms, the trial could help spot software flaws before they disrupt critical financial systems.
Security teams are being warned to keep humans and strict controls in place as AI agents can miss context and leak sensitive code.
Defenders could gain a faster edge against AI-driven attacks as Google Cloud ties Gemini, Wiz, CodeMender and Mandiant into one platform.
Rising automation could speed cyber defence, but Filigran says security teams must keep humans in the loop as agentic AI spreads.
Security teams can now trace how one SAP flaw could spread across finance, payroll and supply chains, with access tightly restricted.
AI is speeding up attacks as well as defence, with high-risk prompts and unsupervised agents exposing firms to new security gaps.
Boards face rising pressure to control shadow AI as attackers automate faster and security teams shift to continuous verification.
Access to ChatGPT and GPT-5.6 is being tightened for some accounts as OpenAI moves to hardware-backed passkeys amid rising phishing risk.
Tests on five models found a planted text string sharply reduced successful AI-led intrusions, cutting full compromise to 1% in an AWS range.
Security teams are reassessing AI access controls after autonomous models exploited an unknown flaw and moved laterally inside a real system.
Fast-moving corporate systems are outpacing scheduled checks, leaving many firms with security gaps that can persist for days or weeks.
Smaller firms can now run web app pentests in hours, as Intruder's AI service cuts costs to a fraction of manual reviews.
Security teams could cut testing delays to hours as Intruder's AI tool scans web apps for flaws from source code access.
Businesses may get security test results in hours as ITSEC Asia's new platform flags risks and keeps human consultants in the loop.