Supply Chain Security stories
More than 40 critical software groups will use Claude Mythos Preview to hunt flaws, as Anthropic commits USD $100 million in credits.
Leaked AI credentials and unpatched dependencies are leaving production systems exposed across US and European organisations, Orca Security said.
New EU rules could force access control makers to prove stronger patching, sourcing and disclosure processes as cyberattacks rise.
Weak identity controls are now driving most attacks on Australian organisations, with breaches hitting revenue, customers and supply chains.
Defenders may gain faster vulnerability discovery, but the same AI leap is also sharpening concerns that attackers will exploit flaws in minutes.
Security researchers say long automated jobs can make Claude Code’s deny rules fall back to user prompts, weakening protections in CI/CD pipelines.
The move aims to reduce the risk of arbitrary code execution as open-weight models are shared and deployed at scale.
Access to advanced AI security tools will be limited to vetted groups as Anthropic backs open-source defenders with USD $100 million in credits.
Greater scrutiny of connected-device software is driving demand for product security tools, as Finite State adds another senior hire.
Malicious downloads can now be caught at runtime, as the new tool records hidden network calls and file writes before deployment.
Broader supplier chains and open standards are leaving mission-critical broadband networks more exposed as operators move to 4G and 5G.
Rising identity-based attacks and exposed cloud services are forcing Australian organisations to rethink security assumptions as threats accelerate.
Businesses face growing exposure to API and AI-driven attacks as Check Point’s web application firewall earns top marks for accuracy.
Modern regulators now sit below software defences, raising the risk of attacks that could disrupt services, corrupt data or damage hardware.
Organisations remain exposed as malware in open-source packages surged in 2025, with most advisories and account takeovers reported last year.
Broad exposure across thousands of applications is feared after Google tied the axios npm supply chain attack to suspected North Korean hackers.
Growing demand for earlier code security has prompted Distology to add Snyk’s application and AI tools to its UK, DACH and Benelux channel offer.
Australian firms risk shifting bottlenecks from coding to testing and security as AI boosts developer output but leaves workflows fragmented.
Australian developers can now access free vulnerability tools as Vulnetix takes a formal role in global software flaw tracking.
Australian organisations face fresh risk of cloud and identity compromise as the cyber watchdog reissues its alert on repository attacks.