Supply Chain Security stories
Three-quarters of organisations now see third-party software as a top risk, as AI flaws and supply-chain gaps slow security fixes.
The Belfast-based software firm will use fresh capital to expand after strong growth, as AI coding tools heighten software supply chain risks.
Boards face mounting pressure to fix AI-found code flaws faster, as CrowdStrike and partners launch a service to rank exploit risks.
Customers can keep existing workflows as web application and API protection moves inside Google Cloud, reducing latency and operational overhead.
Most firms are still flying blind on AI-generated code, even as 89% say they can secure it and 86% have already adopted it.
Hundreds of packages could have exposed API keys and logins after Claude Code saved approved commands in a file npm may publish by default.
Unapproved AI agents are already exposing firms to hidden security gaps, with LevelBlue saying many are running tools without oversight.
Businesses facing faster AI-driven cyberattacks will get new Google Cloud tools to spot threats, block fraud and secure agents across workloads.
AI-driven attacks are pushing firms to hide systems from the public internet rather than rely on patching flaws after discovery.
Rising AI-generated vulnerability reports are leaving security teams with record backlogs and only hours to judge which flaws hackers can exploit.
New guidance aims to help firms curb data leakage and rogue actions as AI agents and models are embedded in daily operations.
Enterprises could gain tighter control over AI deployments as the new stack combines governance, security and on-premise data sovereignty.
AI coding agents are increasing supply chain risk, prompting new controls to verify third-party dependencies before they reach production.
Existing deployments can gain stronger protection against post-compromise persistence without changing Dockerfiles, CI/CD pipelines or runtime workflows.
UK firms face automatic certification failures if any cloud account lacks MFA, as the revised scheme also tightens patching deadlines.
Procurement teams in defence and critical infrastructure may now view White Rook Cyber more favourably after its CREST testing approval.
Native checks will now flag prompt injection and data leakage across more of the AI agent stack as enterprises push systems into production.
Security chiefs say unauthorised access to Anthropic AI's Mythos model shows generative tools could speed phishing, scanning and exploit discovery.
More than 500 delegates will hear how AI, cyber threats and automation are reshaping the role of telecoms networks and infrastructure.
A flaw in a Microsoft GitHub workflow could let attackers run unauthorised code and steal repository secrets, Tenable said.