Penetration testing stories
New tools for governing AI agents are moving to the fore as Google picks 33 cybersecurity startups for its first cybersecurity forum cohort.
The AWS badge could help XBOW win more enterprise deals as buyers seek continuous testing that shows which vulnerabilities are exploitable.
Firms with manually rotated ADFS certificates could still be exposed, as attackers may recover live signing keys and forge SAML logins.
The real risk is growing backlogs and patching delays, as AI speeds up exploit development faster than security teams can respond.
New safeguards will let Fable 5 block more harmful cyber prompts, as Anthropic also seeks a common scale for jailbreak risk.
Demand for sovereign AI compute has forced the Gagarin site to expand within weeks, with capacity set to rise to 5MW by year-end.
Vendor reviews could be cut from days to minutes as the new AI tool centralises evidence and automates lower-risk approvals.
Attackers are already using AI to exploit flaws faster than many organisations can detect them, Five Eyes agencies warned.
The tie-up gives NCC Group early access to GPT-5.5-Cyber, as OpenAI seeks trusted testers for defensive uses of its cyber tools.
Organisations risk missed exposures as cloud, APIs and AI systems change far faster than annual security checks can keep up.
The pilot could speed up vulnerability hunting across government systems, but it also leaves human teams to verify and fix each AI flag.
Managed service providers can now offer broader cyber security services without building their own security operations from scratch.
Security teams may be able to cut false alarms as Picus says its new platform proves whether a vulnerability can actually be exploited.
The recognition could help buyers identify cyber providers whose staff meet UK professional standards, amid skills shortages and crowded markets.
A financial services cloud was taken over in seconds in a test, highlighting how approved permissions can still let attackers reach full AWS control.
Enterprise customers face growing risks as autonomous software gains access to internal systems, prompting fresh demand for agent security tools.
False negatives from automated scanning tools are fuelling a shift towards human-led AI security testing across large organisations.
The certifications may help reassure UK customers and public-sector buyers as cyber breaches remain widespread and scrutiny of suppliers intensifies.
Despite reported gains, fewer than one in four UK organisations trust their cyber defences to withstand a major incident, a survey found.
Researchers can now earn up to USD $6,000 for exposing flaws in Agoda's core web services, APIs and mobile app via HackerOne.