AppSec stories
Security teams can now validate scanner findings in minutes as Intruder rolls out AI agents to cut false positives and speed remediation.
It lets developers use AI coding tools without pasting sensitive credentials into prompts, reducing the risk of secrets leaking into logs or source control.
Security teams can now validate scanner alerts in minutes as Intruder’s new AI agents cut false positives and speed up triage.
The release aims to curb a growing security risk as enterprises let autonomous agents into internal apps with broad human-style access.
Attackers could soon exploit software flaws faster and at scale, as security firms say AI is narrowing defenders' response time.
The Belfast-based software firm will use fresh capital to expand after strong growth, as AI coding tools heighten software supply chain risks.
Customers gain broader visibility into AI risks as Wiz adds cloud, edge and coding-tool coverage, with Red Agent now in public preview.
Boards face mounting pressure to fix AI-found code flaws faster, as CrowdStrike and partners launch a service to rank exploit risks.
Most firms are still flying blind on AI-generated code, even as 89% say they can secure it and 86% have already adopted it.
Hundreds of packages could have exposed API keys and logins after Claude Code saved approved commands in a file npm may publish by default.
Enterprises using autonomous AI agents could get tighter controls as the tie-up adds governance and live monitoring to Google Cloud deployments.
Security teams are struggling to review surging AI-generated code, with 62% saying the workload is getting harder to manage.
AI-driven attacks are pushing firms to hide systems from the public internet rather than rely on patching flaws after discovery.
Rising AI-generated vulnerability reports are leaving security teams with record backlogs and only hours to judge which flaws hackers can exploit.
AI coding agents are increasing supply chain risk, prompting new controls to verify third-party dependencies before they reach production.
Seven critical weaknesses were found in live production systems over a weekend, showing AI-driven pentests can now uncover basic flaws cheaply.
It aims to cut the time security teams need to spot exploitable flaws and deploy temporary defences before attackers strike.
Payment failures now surface in seconds for Modulus Labs after it unified monitoring and security, cutting resolution time by more than 40 per cent.
A flaw in a Microsoft GitHub workflow could let attackers run unauthorised code and steal repository secrets, Tenable said.
More than 500 senior leaders will gather in Melbourne next July as cyber risk, AI and resilience pressures push security teams to align.