Supply Chain Security stories
Zscaler joins Anthropic Project Glasswing on cyber AI
Yesterday
#
firewalls
#
vpns
#
network security
Zscaler joins Anthropic's Project Glasswing to test Claude Mythos Preview in software scans, as the firm pushes zero trust against AI-driven attacks.
HackerOne launches h1 Validation to tackle AI flaws
Yesterday
#
digital transformation
#
application security
#
socs
HackerOne unveils h1 Validation as vulnerability reports surge 76% and AI tools speed up discovery, leaving firms struggling to triage real threats.
CIS launches AI security guides for models & agents
Yesterday
#
digital transformation
#
application security
#
devsecops
CIS, Astrix and Cequence publish AI security guides for large language models, autonomous agents and MCP environments.
SUSE launches AI Factory with NVIDIA for enterprise control
Yesterday
#
private cloud
#
devops
#
hybrid cloud
SUSE and NVIDIA unveil an enterprise AI stack aimed at regulated sectors, offering on-premise control, governance and sovereignty for production use.
Chainguard & Cursor tackle AI code supply chain risks
Yesterday
#
devops
#
application security
#
devsecops
Chainguard and Cursor strike partnership to embed verified open source dependencies into AI coding, aiming to curb supply chain risks at machine speed.
Tenable flags Microsoft GitHub workflow flaw exposing code
Yesterday
#
devops
#
cloud security
#
application security
Tenable warns a GitHub Actions bug in Microsoft's Windows-driver-samples repo could let attackers run code and steal secrets via public issues.
BlackBerry survey flags secure messaging gaps in government
Yesterday
#
data protection
#
encryption
#
mdm
BlackBerry survey finds government and infrastructure security chiefs relying on WhatsApp for sensitive talks despite major misunderstandings over encryption.
AI vulnerability discovery forces boards to rethink cyber risk
Yesterday
#
data protection
#
application security
#
iam
AI models that can hunt and chain software flaws are forcing boards to rethink cyber defences, while scrutiny grows over Anthropic's MCP design risks.
LangWatch launches open-source tool for AI red-teaming
2 days ago
#
data protection
#
devops
#
data analytics
LangWatch releases open-source AI red-teaming framework to expose hidden vulnerabilities in production agents through multi-turn attack simulations.
Proofpoint tracks cargo theft gang's post-breach tactics
2 days ago
#
endpoint protection
#
iot security
#
advanced persistent threat protection
Proofpoint says a cargo theft gang spent weeks inside a decoy network, probing banking, fleet payment and load board systems for fraud.
Sysdig report says cloud security shifts to machine speed
3 days ago
#
digital transformation
#
pam
#
cloud security
Sysdig says companies are increasingly leaning on automated defence as AI-driven attacks accelerate, with machine identities now dominating cloud access.
Mythos changes everything: Is your AI agent security ready?
3 days ago
#
firewalls
#
data protection
#
dr
Anthropic's Mythos spots corporate network attacks in hours, while security experts warn unmanaged AI agents are becoming a critical enterprise risk.
FIRST conference highlights AI & CVE disclosure push
Last week
#
iot security
#
application security
#
supply chain
FIRST conference in Scottsdale draws 500-plus as security leaders and AI firms debate vulnerability disclosure, CWE's role and CVE's future.
OpenAI launches Trusted Access for Cyber with major names
Last week
#
firewalls
#
network security
#
cloud security
OpenAI expands Trusted Access for Cyber with Bank of America, BlackRock and others, backing defenders, researchers and open-source security teams.
Cyber insurance now common among North American SMBs
Last week
#
endpoint protection
#
cybersecurity insurance
#
mfa
ESET survey finds North American SMBs increasingly buying cyber cover, with insurers shaping controls and managed detection services after repeated breaches.
GitLab 18.11 adds AI agents for security & pipelines
Last week
#
devops
#
application security
#
devsecops
GitLab 18.11 rolls out AI agents for security remediation, pipeline setup and delivery analytics, plus new spending caps on GitLab Credits.
Azul momentum surges as enterprise Java demand jumps
Last week
#
devops
#
data analytics
#
digital transformation
Azul wins a bigger enterprise foothold as FY26 bookings leap, partners expand and a Thoma Bravo-backed deal and Payara buyout widen its Java push.
OpenSearch foundation launches long-term support programme
Last week
#
data analytics
#
digital transformation
#
martech
OpenSearch set out its first enterprise support framework as new long-term releases promise 18-month cover, faster CVE fixes and certified vendors.
Ransomware activity stays high as new groups surge
Last week
#
ransomware
#
advanced persistent threat protection
#
supply chain
GuidePoint says ransomware attacks stayed elevated in Q1 as The Gentlemen surged, construction became a top target and extortion-only tactics spread.
Manufacturing leads ransomware targets in 2025 report
Last week
#
dr
#
vpns
#
ransomware
Manufacturing was the most targeted sector for ransomware in 2025, as Check Point counted 1,466 attacks worldwide amid rising supply chain exposure.