Tag: ai
163 articles

Researchers bypass Grafana AI with stealthy data exfiltration technique
Imagine a tool meant to reveal operational insights being turned into a stealthy spy, siphoning off sensitive corporate secrets - that's what happened when researchers exploited Grafana's AI with a cunning technique called indirect prompt injection. Dubbed GrafanaGhost, this attack bypasses Grafana's defenses, exfiltrating data without leaving a digital trail.

LiteLLM Supply-Chain Compromise Exposes Mercor Data
A single faulty AI dependency can become a backdoor for attackers - as seen in the recent LiteLLM supply-chain compromise that exposed sensitive data, source code, and internal credentials at Mercor. This alarming incident highlights the risks of relying on third-party dependencies and the importance of securing your supply chain.

Mercor AI Startup Discloses Data Breach Involving Open AI, Anthropic Partnerships
Mercor, an AI startup partnered with industry giants OpenAI and Anthropic, has confirmed a data breach - raising concerns about the potential impact on users and the company's ability to regain trust. The incident has left many questions unanswered, including what data was compromised and who might be affected.

Mercor Hit in Widespread LiteLLM Supply-Chain Attack
Thousands of companies, including AI hiring startup Mercor, have been hit by a widespread LiteLLM supply-chain attack, marking the first publicly disclosed downstream casualty of a software supply-chain intrusion. This incident raises a critical question: how can organizations trust their tech toolchains when the chain itself can be compromised?

AI Revamps SAST to Cut Noise, Boost AppSec Effectiveness
Tired of static application security testing (SAST) screaming false alarms, only to be ignored by your team? AI is revolutionizing SAST by cutting through the noise, helping you focus on real threats and making application security more effective.

Anthropic Exposes Closed-Source Code in NPM Package Leak
A single character typo in a package manifest led to a major oops for Anthropic, the creators of Claude AI, as they accidentally leaked the source code for their closed-source language model, Claude Code. Fortunately, the company quickly acknowledged the mistake and assured that no customer data or credentials were compromised.

AI Arms Race Sparks Alarming Cybersecurity Urgency
The AI arms race has ignited a pressing cybersecurity urgency, as threat actors supercharge their attacks with artificial intelligence, leaving organizations scrambling to keep pace. Can we outsmart the machines before it's too late?

AI in security: Must-Have Best Practices for Resilience
AI can supercharge defenses — but only if we secure the AI stack; discover practical best practices to protect data, harden models, and keep automation from becoming a single point of failure.

Tech Grad Hiring Crisis: Stunning 46% Plunge
UK tech graduate hiring has collapsed 46% in a year, with another 53% drop forecast. GenAI is replacing routine junior roles, squeezing Gen Z out of entry-level jobs and threatening the talent pipeline unless employers and universities adapt.

Agentic AI: Must-Have or Risky Revolution
When software stops asking permission and starts setting its own goals, governments face a leap from helpful automation to powerful but risky agentic AI—promising faster services but raising urgent questions about accountability, oversight, and public trust.

Generative AI: Stunning, Risky Redesign of Politics
AI is already reshaping how campaigns persuade, personalize, and mislead voters—if we don’t act, the next election could be redesigned by synthetic media and automated messaging. We can still steer this tech toward strengthening democracy, but it will take clearer rules, better tools, and civic vigilance before habits harden.

AI-capable workforce: Stunning Best Practices
At the AIX Summit, technologists, agency leaders and vendors wrestled with the real challenge of scaling AI in government—not just the tools, but the people, policies and protections that make deployments safe and effective. Three practical takeaways emerged—hire hybrid-skilled teams, build layered governance for agentic systems, and make security and workforce resilience non-negotiable—offering an immediate roadmap for moving from pilots to production.

AI SOC: Must-Have Guide to Best (and Risky) Platforms
By 2026 SOCs will run as much on software agents as on analysts, with copilots, autonomous agents, and hybrid platforms transforming detection, response, and who holds decision authority. Pick tools that speed response but also deliver clear explainability, strong governance, and real adversarial testing so automation amplifies human wisdom instead of human error.

AI browsers Risky: Stunning Security Wake-Up
A new SquareX Labs analysis warns that AI browsers—promising smarter, hands‑free browsing—may open fresh security gaps by blending models, plugins and persistent state, creating new attack surfaces for credential theft and model poisoning. Users and enterprises should treat AI-driven suggestions cautiously and push for stronger sandboxing, permission controls and oversight before convenience outpaces safety.

Clearview AI Stunning ICO Win Sparks Risky Fallout
After a big court win, the ICO can now press ahead with a proposed £7.5m fine against Clearview AI — a landmark ruling that reinforces the UK’s power to hold foreign tech firms to account for using Britons’ facial data without consent.

Embed AI Now: Must-Have Fix to Reduce Risk
AI can find vulnerabilities in seconds but also flood teams with noisy alerts — embedding AI thoughtfully with context-aware scoring, human-in-the-loop checks, and better telemetry turns automation into a force-multiplier that speeds remediation and reduces risk.

AI-enabled influence operation: Dangerous, Exclusive Alert
Researchers uncovered PRISONBREAK, a coordinated AI-powered network of 50+ fake X accounts pushing Iranians toward unrest — a campaign that spiked in 2025 and appears tied to foreign actors and even military timing. It’s a wake-up call: generative AI is reshaping propaganda, and platforms, policymakers, and users must act fast to protect democratic discourse and digital trust.

AI systems: Stunning Guide to Best Integration
AI’s next phase isn’t just smarter models — it’s about weaving technology, infrastructure, and people together so systems actually serve and protect communities; get that right and cities, health care, and emergency services improve, get it wrong and those same systems can deepen inequality and fragility.

AI Security Posture Management: Must-Have Best Practices
Rushing to adopt generative AI? Before you buy that shiny AI‑SPM dashboard, ask five practical questions—about assets and ownership, integration, real threat detection, provenance, and legal obligations—to ensure your security investment actually reduces risk instead of just creating paperwork.

AI-driven election interference: Exclusive Risky Alert
Imagine hyper-real deepfakes, laser-targeted messaging, and automated amplification reshaping the 2026 midterms — AI won’t just help campaigns, it will remake how voters see truth. We can blunt the threat with transparency, better detection tools, and stronger support for local election systems, but only if policymakers, platforms, and the public act now.

Context wins: Must-Have Best AI Defense Tactics
Context wins — whoever understands systems fastest will shape the outcome of the AI-accelerated attack/defense race. Build inventories, sharpen telemetry, harden processes, and share actionable intelligence to tilt the balance back toward defenders.

Generative AI: Stunning, Dangerous Scam Surge
When a convincing video or familiar voice asks for money, generative AI makes the split-second choice to trust or verify riskier than ever; Bruce Schneier’s “Scam GPT” reveals how cheap, scalable synthetic text, images and voices are automating old cons and spawning new ones. We’ll need smarter tech, clearer rules and stronger community safeguards to keep deception from becoming the new normal.

2025 cybersecurity assessment: Exclusive Risky Alert
Bitdefender’s 2025 Cybersecurity Assessment warns that a dangerous habit of hiding breaches is spreading as AI empowers attackers and leadership drifts from frontline reality. The report calls for transparency, tighter attack-surface hygiene, and cultural change before secrecy turns incidents into disasters.

AI security Must-Have: Best Defense Tactics
PwC finds organizations are now prioritizing AI security over cloud and network defenses, reallocating budgets to protect models, training data and inference pipelines from novel attacks. That shift means stronger governance, adversarial testing and monitoring are needed to make AI a strategic asset rather than a new liability.