Source code stories
Financial institutions still face hidden fourth-party risks even after Microsoft, Google Cloud, AWS and Oracle were designated as critical providers.
Smaller firms can now run web app pentests in hours, as Intruder's AI service cuts costs to a fraction of manual reviews.
Security teams could cut testing delays to hours as Intruder's AI tool scans web apps for flaws from source code access.
Developers can now scan C code earlier in the process, as Endor Labs says its buildless AI SAST found 96 of 102 known bugs in tests.
In two days, the system uncovered more than 100 critical bugs in stolen code repositories, outpacing manual review and aiding incident response.
Paid Cursor subscribers can now host repositories and manage pull requests in one place, as Origin enters early beta against GitHub and GitLab.
The new tool aims to speed enterprise app building while keeping AI-generated outputs governable, auditable and easier to deploy safely.
Prompt-injection attacks and data leaks are the main risks as businesses connect Copilot and Gemini to email, files and internal tools.
The tie-up aims to help security teams turn validated AI findings into ranked fixes before vulnerabilities pile up and attackers move first.
Boards are under pressure to curb staff use of ChatGPT and similar tools, as pasted data could expose customer records and source code.
Organisations using Wayfinder Frontier AI Services will now get help turning validated vulnerabilities into prioritised fixes and post-deployment checks.
Organisations face a growing risk of silent data theft as criminals exploit cloud identities and credentials for extortion instead of encryption.
Critical vulnerability backlogs have swelled 29-fold, prompting a tool that sends fix plans into engineering systems and AI coding tools.
The hybrid system aims to help security teams spot serious flaws in AI-generated code faster, as production code becomes harder to review.
Downstream AI data leaks have more than doubled in a year, with connected services now returning unauthorised information to staff and agents.
Approved AI tools are cutting shadow use by staff, but Cohesity warns the bigger risk is corrupted enterprise knowledge and weak governance.
Security teams could cut hours from patching work as open-weight Antares models narrow flaws to the relevant code segment.
The tool aims to help developers cut vulnerability backlogs and reach no exploitable flaws within 90 days as AI coding expands risk.
A faulty token check let low-privilege users view other applicants' identities, payment details and Social Security numbers in a financial onboarding app.
Users and researchers can now inspect how the Sydney-based search engine ranks results and handles privacy after its code was opened.