(Adobe Stock) Paperclip authorization bug exploited, leads to control plane takeoverSteve ZurierAugust 6, 2026Critical Paperclip flaws let attackers seize AI agent platforms, escalate privileges, and execute code.
Black Hat 2026: Why AI software bills of materials are essential to AI trustDana SimberkoffAugust 5, 2026
Black Hat 2026: 6 qualities security pros should look for in agentic AI systemsMorey J. Haber August 4, 2026
Salesforce’s Agentforce 360 platform approved for sensitive Defense Department dataSC StaffAugust 6, 2026
NVM Express updates specifications with post-quantum cryptography and SSD virtualization supportSC StaffAugust 6, 2026
Precision privilege containment: Eliminating local admin rights without disrupting productivityPaul WagenseilJuly 31, 2026
The modern path to unified Linux identity security: Securing hybrid infrastructure in a cloud-first worldPaul WagenseilJuly 30, 2026
Black HatAgentic anarchy: Why using AI browsers just isn’t worth the riskPaul WagenseilAugust 6, 2026Using an AI browser sounds like a good idea until you realize you've just given it the keys to your online identity.
Black HatBlack Hat 2026: OpenAI reveals agents planned ‘collective attacks’ via secret ‘message board’Laura FrenchAugust 5, 2026OpenAI also said its agents exploited a different JFrog Artifactory zero-day weeks before the Hugging Face attack.
AI/MLAI agents caught using social engineering in UK security testsSteve ZurierAugust 5, 2026UK researchers found AI agents using deceptive tactics to manipulate humans in security tests.
Black HatData breaches don’t doom most small businesses, researcher findsPaul WagenseilAugust 5, 2026Despite scary made-up statistics, most small- and medium businesses beat data breaches.
Endpoint/Device SecurityRussia-linked Midnight Blizzard targets hotel Wi-Fi networks in US, EuropeSteve ZurierAugust 4, 2026Hotel Wi-Fi phishing campaign targets business travelers, Microsoft warns.
Supply chainKeyv, cacheable npm supply chain attack hits 400-plus packagesLaura FrenchAugust 4, 2026The attack is believed to be related to Mini Shai-Hulud.
AI/MLResearchers find ‘agent-to-agent’ privilege escalation in Google’s ADK for Python repoLaura FrenchAugust 4, 2026A low-privileged agent triggered by a PR or issue could be led to manipulate a high-privileged agent.
RansomwareINC Ransomware chains two SonicWall SMA 1000 zero-days in attacksSteve ZurierAugust 3, 2026INC ransomware exploits SonicWall zero-days, prompting compromise fears.