Supply Chain Security stories
Capsule Security raises $7 million to guard AI agents
Today
#
pam
#
cloud security
#
application security
Capsule Security emerges from stealth with $7 million backing to police AI agents at runtime as enterprises widen their use.
OpenAI expands cyber access for verified defenders
Today
#
application security
#
socs
#
physical security
OpenAI broadens Trusted Access for Cyber to verified defenders, giving vetted users GPT-5.4-Cyber for tougher security work and code analysis.
Sonatype warns of surge in trusted open-source malware
Yesterday
#
application security
#
devsecops
#
supply chain
Sonatype flags 21,764 malicious open-source packages in Q1 2026, with npm hit hardest as attackers used trusted workflows to steal secrets.
Cyber teams unready for major attack, Sygnia finds
Yesterday
#
ransomware
#
digital transformation
#
public cloud
Most companies lack confidence in cyber defences as a Sygnia survey finds major gaps in visibility, coordination and board-level readiness.
UK firms urged to bolster cyber security after breaches
Yesterday
#
malware
#
firewalls
#
vpns
Business Hub warns UK firms to tighten basic cyber defences as government figures show 43% hit by breaches, phishing and ransomware in past year.
Ledger appoints Ian Rogers to lead AI security push
Yesterday
#
crypto
#
fintech
#
mdm
Ledger names Ian Rogers as Chief Human Agency Officer, putting hardware approval and human oversight at the centre of its AI security push.
KnowBe4 launches Agent Risk Manager for AI agent security
Yesterday
#
data protection
#
digital transformation
#
physical security
KnowBe4 unveils Agent Risk Manager to monitor autonomous AI agents in real time, flag prompt injections and curb rogue data access.
GitLab expands Google Cloud partnership for Vertex AI
Yesterday
#
devops
#
hybrid cloud
#
cx
GitLab deepens Google Cloud partnership so Duo Agent Platform users can tap Vertex AI models, while counting the spend against existing commitments.
Forrester says Anthropic AI could break patch playbook
2 days ago
#
hybrid cloud
#
digital transformation
#
application security
Forrester warns Anthropic's Project Glasswing could overwhelm vulnerability management, as AI uncovers flaws faster than patching teams can respond.
Booking.com warns some customers of possible data exposure
3 days ago
#
data protection
#
endpoint protection
#
mfa
Booking.com tells some customers to watch for phishing after suspicious activity exposed reservation details, contact data and messages linked to bookings.
AI agents expose major API security gap, Salt warns
Last week
#
manufacturing
#
digital transformation
#
cloud security
Salt warns AI agents are widening the API security gap, with 92% of organisations still short of advanced defences and 47% delaying releases.
Cloudsmith survey finds SBOM gaps before cyber law
Last week
#
devops
#
cloud security
#
application security
Cloudsmith survey finds most engineering teams still lack automated SBOM checks, leaving many unready for fast EU Cyber Resilience Act audits.
Yokogawa lands cyber certification for plant control systems
Last week
#
manufacturing
#
iot security
#
supply chain
Yokogawa wins three cybersecurity approvals for control, safety and connectivity products as plant operators face tighter scrutiny over cyber risk.
Intruder adds container image scanning to cloud platform
Last week
#
virtualisation
#
devops
#
hybrid cloud
Intruder expands cloud security platform with registry-level container image scanning for AWS, Google Cloud and Azure users.
Anthropic launches Project Glasswing for cyber defence
Last week
#
firewalls
#
hyperscale
#
network security
Anthropic enlists Amazon, Apple and Microsoft in Project Glasswing to use Claude Mythos Preview for hunting vulnerabilities in critical software.
Orca Security flags AI secrets & supply chain gaps
Last week
#
malware
#
devops
#
mfa
Orca Security warns that AI credentials, vulnerable dependencies and lax pipeline controls are leaving production environments exposed across US and Europe.
Distology signs Snyk distribution deal across Europe
Last week
#
devops
#
digital transformation
#
cloud security
Distology adds Snyk's AI and agent security tools to its portfolio, as the distributor broadens support for resellers across Northern Europe.
2N urges tougher cyber rules for access control devices
Last week
#
edutech
#
data protection
#
hyperscale
2N calls for tougher cyber rules on access control, urging stronger vulnerability reporting, tighter component sourcing and longer support lifecycles.
Identity compromise emerges as top cyberattack route
Last week
#
digital transformation
#
pam
#
mfa
Identity failures are now the main way cyber attackers breach firms, with experts warning that non-human credentials are widening the risk.
Anthropic launches Glasswing AI cyber coalition with partners
Last week
#
firewalls
#
hyperscale
#
cloud security
Anthropic and partners unveil Project Glasswing, using Claude Mythos Preview to hunt software flaws faster amid fears of AI-boosted cyber attacks.