Supply Chain Security stories
Security teams could cut exposure faster as the model helps rank exploitable flaws and apply temporary defences before vendor fixes arrive.
Growing use by major tech groups is helping open source secrets manager OpenBao win trust as cloud and AI credential risks mount.
Regulated teams can now keep AI processing inside GitLab Dedicated, with new secret handling, spending caps and security fixes added in 19.3.
The deal extends Fortinet's reach into AI runtime protection as companies race to secure agents, models and tools across production systems.
Australia's new scams rules are adding pressure on firms to detect fraud faster as AI-powered attacks expose weak governance and identity controls.
Misconfigured models are giving attackers a fresh route into cloud systems, raising the risk of data theft and service compromise.
Businesses could face years of costly upgrades as OpenSSL brings developers and policymakers together in Prague to plot post-quantum encryption.
The new tool aims to catch Bitcoin software flaws between formal audits after a regression led to more than USD $116 million stolen.
Developers can now scan C code earlier in the process, as Endor Labs says its buildless AI SAST found 96 of 102 known bugs in tests.
Researchers can claim up to USD $1 million for breaking Vercel Sandbox's isolation, as the cloud provider opens its boundary to public scrutiny.
Ransomware groups are keeping up pressure on smaller rivals, with mid-market firms still making up 73% of victims across North America and Europe.
Manufacturers face credential theft and engineering-data loss after a tailored Windchill web shell tied to Clop exploited CVE-2026-12569.
Enterprise software teams are facing far more vulnerabilities as AI-assisted development multiplies application output and speeds exposure growth.
In two days, the system uncovered more than 100 critical bugs in stolen code repositories, outpacing manual review and aiding incident response.
Unauthorised access could let attackers send arbitrary commands to spacecraft and instruments via NASA's AIT-GUI console, now fixed in version 2.5.2.
Millions of rooftop batteries are now subject to mandatory cyber standards as Canberra widens scrutiny of grid-connected home devices.
Rising use of AI coding tools is widening software supply-chain risks for businesses across the Middle East, Türkiye and Africa.
The new tools aim to cut the gap between finding a flaw and fixing it from weeks to hours as attacks accelerate.
Singapore banks and telcos face a narrower window to stop AI-assisted attackers chaining small flaws into major breaches.
The move gives the crypto exchange's security team AI help to hunt flaws in critical code as threats to financial infrastructure grow.