News
AWS Continuum offers devs help with securing code
1+ hour, 43+ min ago (425+ words) AI coding agents are making it easier than ever to produce software. Ensuring that software is secure before deployment is another matter " one that AWS thinks AI should help with too. As enterprises adopt agentic development workflows, the volume of…...
Klue breach exposed Salesforce CRM data through stolen OAuth tokens
2+ day, 21+ hour ago (478+ words) An attacker broke into competitive-intelligence vendor Klue, stole OAuth tokens its customers use to connect to Salesforce and other platforms, and accessed data across multiple customer environments prompting the company to revoke customer OAuth tokens and disabled affected integrations. "An…...
Anatomy of a retail ransomware attack: Tabletop simulates modern mayhem methods
2+ day, 21+ hour ago (462+ words) An "Enter the War Room" incident response exercise sheds light on the rising access vectors and disruption and reputation-damaging activities attackers employ today....
6 security leader tips for mastering business risk
4+ day, 7+ hour ago (1012+ words) Longtime security leader Doug Kersten has expanded his list of responsibilities. As CISO of software maker Appfire, he now has accountability for business risks, such as how security tools and processes within customer products and services impact their costs and,…...
Why Southeast Asia CISOs Need Zero Trust as Their AI Control Plane - AI Agents, Data Borders and Supply Chains
6+ day, 9+ hour ago (1092+ words) At Zenith Live 2026 held on 16-17 June in Vienna, Zscaler sharpened a reality that Southeast Asia CIOs and CISOs are already sensing, which are, AI agents are quickly becoming digital workers inside their organisations, while regulators tighten data residency rules and…...
Security considerations for adopting Claude Code and Cowork for SMBs
4+ day, 9+ hour ago (1777+ words) You are a security leader at a small or medium-sized business (SMB), and your organization has decided to adopt Claude. If you are like me, after the initial "surprise" wears off, you probably want to quickly get your arms around…...
Breaking the SOC triangle: How AI reshapes security operations trade-offs
3+ day, 9+ hour ago (572+ words) A simple framework has always governed security operations that I call the SOC Triangle. It is a balance between quality, consistency and cost efficiency. For years, the SOC Triangle has shaped how security teams are built and how they perform....
Microsoft says web-enabled AI agents can trigger host-level RCE
3+ day, 9+ hour ago (410+ words) Microsoft is warning of a novel remote code execution (RCE) path possible through web-enabled AI agents, demonstrating the technique against Auto Gen Studio, its open-source interface for building and testing multi-agent applications. The demonstration showed that a malicious webpage rendered…...
M365 Copilot Search Leak: Your prompt injection attack surface just got bigger
3+ day, 16+ hour ago (624+ words) A recent proof-of-concept attack against Microsoft's M365 Copilot Enterprise highlights what could be a much broader prompt injection threat based on a common way many AI-enhanced web services operate. Dubbed Search Leak, the attack hinged on a typical malicious objective: to…...
New CISO appointments 2026
5+ day, 9+ hour ago (277+ words) The upper ranks of corporate security are seeing a high rate of change as companies try to adapt to the evolving threat landscape. Many companies are hiring a chief security officer (CSO) or chief information security officer (CISO) for the…...