Infosec stories
Ransomware losses and third-party risks are testing policy limits as Willis data show most breach costs are still covered.
Security teams want daily scanning and clearer risk rankings as cloud sprawl and third-party reliance widen attack surfaces, a survey found.
Most security leaders now see AI as a cybersecurity opportunity, even as concerns over supplier exposure and domain attacks remain high.
Remote hiring teams face a wider security risk after researchers found North Korean operatives won 76 offers from 166,893 US job applications.
Law firms can now cut hidden document data from Outlook attachments without maintaining their own server infrastructure.
Enterprises running SAP may gain around-the-clock protection as the partners target ransomware, fraud and staffing gaps in ERP security.
IT teams on Apple fleets can now set rules, spot unsanctioned tools and generate compliance reports as AI use spreads across Macs.
Most enterprise AI use is slipping beyond oversight, with 86% of organisations lacking visibility into data moving to and from tools.
EU backers are seeking €74.3 million to roll out a system that proves a person was present without exposing personal data.
Mac users at many firms can now be covered by the same AI data-loss rules as Windows, closing a governance gap for sensitive work.
Private preview access is now available as security teams race to govern AI agents and harden identity controls for a post-quantum era.
A near-decade of undetected access raises fresh concern after investigators found the group had hidden in a disconnected network since 2016.
Public release of the Mini Shai-Hulud code means copycat attacks can now hit developers, CI/CD systems and open-source supply chains.
Demand for AI security controls is rising as embedded tools in SaaS platforms expand the attack surface and strain security teams.
The acquisition aims to curb standing privileges as firms grapple with AI agents and machine identities reaching sensitive systems.
Security teams can now spot unmanaged devices and services on live traffic as Corelight extends Open NDR with passive asset classification.
Exploited software flaws are now overtaking stolen passwords as the main breach route, sharpening pressure on security teams to patch faster.
Rising AI failures are forcing firms to isolate response teams from the corporate network as incidents multiply across models and agents.
The deal gives employers more access to cyber and AI training as breaches rise and skills shortages deepen across finance, tech and government.
The recognition underscores growing demand for cyber advisers who can tie technical decisions to business risk as threats and cloud use intensify.