Infosec stories
Wallarm names Shayne Higdon chief executive in leadership reshuffle as it pivots from pure API protection to securing wider AI-driven risks.
Organisations test just a third of their attack surface as reliance on agentic AI grows, raising fresh concerns over unseen cyber risks.
Polygraf unveils a desktop AI overlay that flags sensitive data in real time as staff type, aiming to curb leaks across workplace tools.
Menlo launches a browser-based platform to govern human users and AI agents with unified security controls as machine traffic surges.
Delinea warns that rapid AI rollout is eroding identity controls, leaving machine accounts exposed and widening security blind spots.
SpecterOps broadens BloodHound Enterprise to map identity attack paths across Okta, GitHub and Jamf-managed Macs in hybrid environments.
Rapid7's Exposure Command now adds runtime validation and DSPM to rank real attack paths in hybrid and multi-cloud environments.
Entro launches AGA to map, monitor and control AI agents in enterprises, tackling shadow AI and non-human identity risks at scale.
Security flaws in 17 AI companion apps used by 150m people could expose intimate chats, photos and voice messages to attackers.
Cohesity bakes Sophos malware scanning into its Data Cloud to spot hidden threats in backups and cut reinfection risk during recovery.
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
Versa teams with Intel on AI at the edge, debuts a secure enterprise browser and launches inbound SSE to protect internet-facing apps.
Cobalt launches Security Program Manager service to run enterprise pentesting, align tests with business goals and speed up remediation.
Token Security launches intent-based controls to govern AI agents' access by purpose, aiming to curb over-privileged, autonomous system behaviour.
Coalfire's new DivisionHex service hunts shadow AI and rogue agents as most firms report AI-driven security incidents without proper oversight.
AppViewX acquires AI identity start-up Eos and appoints its co-founder Archit Lohokare as Chief Executive, targeting non-human identity security.
World Backup Day now warns boards that backup is no mere IT chore, but a frontline defence against ransomware targeting recovery itself.
North Korean IT workers using Western collaborators and fake identities are infiltrating remote jobs to funnel foreign salaries home.
Lineaje launches UnifAI, a security and governance layer to centralise control, discovery and policy for enterprise agentic AI deployments.
Backslash adds cross-tool governance to discover, vet and monitor 'Skills' powering AI coding assistants like Cursor, Claude Code and Copilot.