Supply Chain Security stories
Hundreds of packages could have exposed API keys and logins after Claude Code saved approved commands in a file npm may publish by default.
Unapproved AI agents are already exposing firms to hidden security gaps, with LevelBlue saying many are running tools without oversight.
Businesses facing faster AI-driven cyberattacks will get new Google Cloud tools to spot threats, block fraud and secure agents across workloads.
AI-driven attacks are pushing firms to hide systems from the public internet rather than rely on patching flaws after discovery.
Rising AI-generated vulnerability reports are leaving security teams with record backlogs and only hours to judge which flaws hackers can exploit.
New guidance aims to help firms curb data leakage and rogue actions as AI agents and models are embedded in daily operations.
Enterprises could gain tighter control over AI deployments as the new stack combines governance, security and on-premise data sovereignty.
AI coding agents are increasing supply chain risk, prompting new controls to verify third-party dependencies before they reach production.
A critical flaw in a widely used Microsoft code-sample repository could have let attackers steal secrets and run code through GitHub issues.
Most respondents still trust consumer chat apps for sensitive work, despite widespread confusion over what encryption does not protect.
Boards are being pressed to abandon periodic patching as AI models can now uncover and chain software flaws faster than human teams can respond.
The framework is designed to expose hidden risks in production AI systems that can be missed by conventional one-off tests.
Researchers say longer dwell time revealed how attackers scan freight, payments and banking systems to turn intrusions into cargo theft and fraud.
As AI agents spread across workplaces, static credentials are proving too risky for sensitive tasks and customer-facing systems.
More than 500 delegates will hear how AI, cyber threats and automation are reshaping the role of telecoms networks and infrastructure.
A flaw in a Microsoft GitHub workflow could let attackers run unauthorised code and steal repository secrets, Tenable said.
More than 500 senior leaders will gather in Melbourne next July as cyber risk, AI and resilience pressures push security teams to align.
UK cyber security suppliers could gain access to regulated procurement frameworks under a new accreditation scheme based on staff competence.
Enterprise users are turning to Azul to cut Java cloud costs and compliance risks as finance, healthcare and telecoms demand jumped sharply.
Only a third of Australian organisations have tested cyber recovery plans, leaving many exposed despite high confidence in detection and response.