IT Brief UK - Technology news for CIOs & IT decision-makers

Supply Chain Security stories

Flux result bda8fa3f b9b2 421e 992b 6bbacbd7b7cc

Capsule Security raises $7 million to guard AI agents

Today
#
pam
#
cloud security
#
application security
Capsule Security emerges from stealth with $7 million backing to police AI agents at runtime as enterprises widen their use.
Flux result be5832d1 2647 4b40 8c3f 54ddb15bfb62

OpenAI expands cyber access for verified defenders

Today
#
application security
#
socs
#
physical security
OpenAI broadens Trusted Access for Cyber to verified defenders, giving vetted users GPT-5.4-Cyber for tougher security work and code analysis.
Flux result 20e12820 27f4 4e8a 9da9 1c2ee2ea902d

Sonatype warns of surge in trusted open-source malware

Yesterday
#
application security
#
devsecops
#
supply chain
Sonatype flags 21,764 malicious open-source packages in Q1 2026, with npm hit hardest as attackers used trusted workflows to steal secrets.
Flux result a9728700 c776 49bf 8db8 24a3633e70c0

Cyber teams unready for major attack, Sygnia finds

Yesterday
#
ransomware
#
digital transformation
#
public cloud
Most companies lack confidence in cyber defences as a Sygnia survey finds major gaps in visibility, coordination and board-level readiness.
Flux result 745407e4 b822 4943 98f8 2e27ef605348

UK firms urged to bolster cyber security after breaches

Yesterday
#
malware
#
firewalls
#
vpns
Business Hub warns UK firms to tighten basic cyber defences as government figures show 43% hit by breaches, phishing and ransomware in past year.
Ian rogers

Ledger appoints Ian Rogers to lead AI security push

Yesterday
#
crypto
#
fintech
#
mdm
Ledger names Ian Rogers as Chief Human Agency Officer, putting hardware approval and human oversight at the centre of its AI security push.
Flux result 8ee5bb76 0ccb 474f 8e40 23893661b265

KnowBe4 launches Agent Risk Manager for AI agent security

Yesterday
#
data protection
#
digital transformation
#
physical security
KnowBe4 unveils Agent Risk Manager to monitor autonomous AI agents in real time, flag prompt injections and curb rogue data access.
Flux result 15775f93 6354 42eb 9892 8efeae6bf886

GitLab expands Google Cloud partnership for Vertex AI

Yesterday
#
devops
#
hybrid cloud
#
cx
GitLab deepens Google Cloud partnership so Duo Agent Platform users can tap Vertex AI models, while counting the spend against existing commitments.
Flux result 69d8aedf 698f 4136 9525 1ed7c7a0ec10

Forrester says Anthropic AI could break patch playbook

2 days ago
#
hybrid cloud
#
digital transformation
#
application security
Forrester warns Anthropic's Project Glasswing could overwhelm vulnerability management, as AI uncovers flaws faster than patching teams can respond.
Flux result d25c2701 0034 45e9 883a 9aeb9fa61d60

Booking.com warns some customers of possible data exposure

3 days ago
#
data protection
#
endpoint protection
#
mfa
Booking.com tells some customers to watch for phishing after suspicious activity exposed reservation details, contact data and messages linked to bookings.
Flux result f3a23773 f3c5 4ab1 8315 098438942b1a

AI agents expose major API security gap, Salt warns

Last week
#
manufacturing
#
digital transformation
#
cloud security
Salt warns AI agents are widening the API security gap, with 92% of organisations still short of advanced defences and 47% delaying releases.
Flux result a551e609 c277 41e0 a40d 9441732a3040

Cloudsmith survey finds SBOM gaps before cyber law

Last week
#
devops
#
cloud security
#
application security
Cloudsmith survey finds most engineering teams still lack automated SBOM checks, leaving many unready for fast EU Cyber Resilience Act audits.
Flux result 2dc55ca1 35de 468c b46e 1d9fd52fe6d7

Yokogawa lands cyber certification for plant control systems

Last week
#
manufacturing
#
iot security
#
supply chain
Yokogawa wins three cybersecurity approvals for control, safety and connectivity products as plant operators face tighter scrutiny over cyber risk.
Flux result 241e3ccd 7dcb 4941 95cc 1a5ef9df5d45

Intruder adds container image scanning to cloud platform

Last week
#
virtualisation
#
devops
#
hybrid cloud
Intruder expands cloud security platform with registry-level container image scanning for AWS, Google Cloud and Azure users.
Flux result 5b263814 3fad 44ef 9433 96aeced156c1

Anthropic launches Project Glasswing for cyber defence

Last week
#
firewalls
#
hyperscale
#
network security
Anthropic enlists Amazon, Apple and Microsoft in Project Glasswing to use Claude Mythos Preview for hunting vulnerabilities in critical software.
Flux result 6e43f861 242a 4606 a620 43480305c4e9

Orca Security flags AI secrets & supply chain gaps

Last week
#
malware
#
devops
#
mfa
Orca Security warns that AI credentials, vulnerable dependencies and lax pipeline controls are leaving production environments exposed across US and Europe.
Flux result 4efc9e48 c2a0 4512 b608 693628c8d2d4

Distology signs Snyk distribution deal across Europe

Last week
#
devops
#
digital transformation
#
cloud security
Distology adds Snyk's AI and agent security tools to its portfolio, as the distributor broadens support for resellers across Northern Europe.
Email attachment20260409 980833 ho90zp

2N urges tougher cyber rules for access control devices

Last week
#
edutech
#
data protection
#
hyperscale
2N calls for tougher cyber rules on access control, urging stronger vulnerability reporting, tighter component sourcing and longer support lifecycles.
Flux result 61d33e88 d8de 4343 9f2e 7d62c316216e

Identity compromise emerges as top cyberattack route

Last week
#
digital transformation
#
pam
#
mfa
Identity failures are now the main way cyber attackers breach firms, with experts warning that non-human credentials are widening the risk.
Flux result 5e5adb51 c7dd 4117 b0f7 5aff6540c83a

Anthropic launches Glasswing AI cyber coalition with partners

Last week
#
firewalls
#
hyperscale
#
cloud security
Anthropic and partners unveil Project Glasswing, using Claude Mythos Preview to hunt software flaws faster amid fears of AI-boosted cyber attacks.