Supply Chain Security stories
Manufacturers face credential theft and engineering-data loss after a tailored Windchill web shell tied to Clop exploited CVE-2026-12569.
Enterprise software teams are facing far more vulnerabilities as AI-assisted development multiplies application output and speeds exposure growth.
In two days, the system uncovered more than 100 critical bugs in stolen code repositories, outpacing manual review and aiding incident response.
Unauthorised access could let attackers send arbitrary commands to spacecraft and instruments via NASA's AIT-GUI console, now fixed in version 2.5.2.
Patch backlogs are leaving organisations exposed, with 85 high-impact flaws flagged across Australia and New Zealand, up 44% in July.
AI-driven attacks are shrinking response times to minutes, forcing APAC firms to adopt continuous identity controls and zero trust.
Customers face a 2029 deadline to test post-quantum controls as Google Cloud begins rolling out quantum-safe encryption across its services.
Approved defenders will gain broader access to cyber tools as the new tiered Daybreak programme adds GPT-5.6-Cyber for advanced security work.
Demand is rising for auditable identity checks and document integrity as AI-generated content and tighter rules reshape online trust.
Customers will face narrower disruptions as Google Cloud moves to throttle malicious traffic, isolate risky identities and preserve legitimate usage.
Security teams should treat AI patching with caution after 53.9% of 6,080 model-generated fixes failed or introduced new flaws.
Singapore banks and telcos face a narrower window to stop AI-assisted attackers chaining small flaws into major breaches.
The move gives the crypto exchange's security team AI help to hunt flaws in critical code as threats to financial infrastructure grow.
States risk losing strategic autonomy as cloud, chip and cryptographic dependencies spread beyond borders and into foreign-controlled systems.
Malicious packages can now be held back before reaching developers, as Cloudsmith expands repository controls amid rising supply chain attacks.
Customer demand is helping the Boston and London startup expand as enterprises race to secure AI systems against fresh attack risks.
Up to 85 government accounts were compromised in a four-day campaign that also reached nuclear and energy organisations, researchers said.
Cybersecurity experts warn single-person approvals are now vulnerable after an AI agent used fabricated identities to slip malicious code past checks.
Hybrid critical infrastructure estates are leaving contractor and vendor access unseen, raising compliance and supply chain risk under reformed CIRMP rules.
Supermarkets and hospitals could face spoiled stock and medicines after flaws in two widely used refrigeration controller platforms were disclosed.