Penetration testing stories
Realistic-looking security evidence can be fabricated when memory, simulation and model hallucinations blur provenance in AI workflows.
Approved defenders will gain broader access to cyber tools as the new tiered Daybreak programme adds GPT-5.6-Cyber for advanced security work.
Customers in Australia and New Zealand may now see Liverton Security as a lower-risk supplier after the Wellington firm won CREST ANZ membership.
Security teams should treat AI patching with caution after 53.9% of 6,080 model-generated fixes failed or introduced new flaws.
Hong Kong saw a record 15,877 cyber incidents in 2025 as AI speeds attacks and shortens the window to exploit software flaws.
Defenders will test prompt-injection tactics against AI agents as CrowdStrike and AWS offer USD $100,000 in prizes for a virtual red-team contest.
The tie-up aims to help security teams turn validated AI findings into ranked fixes before vulnerabilities pile up and attackers move first.
Rising use of digital payments is forcing fintechs to tighten controls as executives warn that weak access, AI and fraud defences are exposing customers.
Organisations using Wayfinder Frontier AI Services will now get help turning validated vulnerabilities into prioritised fixes and post-deployment checks.
Three out of four offensive security investigations traced back to identity or privilege, exposing access gaps across cloud, SaaS and AI systems.
The new capital will fund Horizon3's expansion into Asia-Pacific and Europe as demand for its attack-testing software grows among large enterprises.
Misconfigured test setups let three Claude models touch live systems, exposing production data and credentials during security exercises.
Up to 85 government accounts were compromised in a four-day campaign that also reached nuclear and energy organisations, researchers said.
Indonesia's digital skills gap is fuelling demand for practical cyber and AI training, as firms struggle to hire workers.
Smaller security teams can now access autonomous testing on demand, as the platform drops its minimum commitment and adopts consumption pricing.
Security teams can now stop rogue enterprise AI agents in seconds as Straiker adds runtime controls to its wider testing platform.
Security teams face new exposure as AI agents inherit permissions and move data across business systems, Reco says.
Security teams face faster, stealthier intrusions after AI agents managed to breach live systems in controlled tests by Anthropic and OpenAI.
The ranking reinforces Incode's pitch to banks and platforms seeking faster checks as deepfakes and synthetic identities raise fraud risk.
Security gaps in AI workflows and enterprise Java could expose secrets, trigger remote code execution and disrupt supply chains.