Aggregator
抢先加入AI时代顶尖安全团队!阿里云2027届实习生招聘来了!
The LA Metro Attack Wasn’t Hacktivism. It Was a State Operation With a Costume On.
Закон Мура умер — да здравствует закон Тау? Huawei придумала, как надуть физику и санкции одновременно
Claude now reviews and fixes vulnerabilities as you write code
Anthropic introduced a security-guidance plugin for Claude Code that reviews code changes for common vulnerabilities and helps Claude identify and fix issues during the same development session. The company says the plugin is designed to catch issues such as injection flaws, unsafe deserialization, and insecure DOM APIs before code reaches pull requests, reducing the amount of manual security review later in the development process. Once installed, the plugin runs automatically during development sessions, without requiring … More →
The post Claude now reviews and fixes vulnerabilities as you write code appeared first on Help Net Security.
Cogent targets exploit-to-remediation gap with new AI-powered security capabilities
Cogent has launched two new platform capabilities designed to reduce the time between vulnerability disclosure and confirmed remediation. Zero Day Response identifies exposure within minutes of public disclosure, without waiting for scanner signatures. Autonomous Remediation determines the right fix, assesses business impact before execution, and confirms that the vulnerability has been resolved. The releases arrive as AI-assisted exploit development compresses attacker timelines faster than most security programs can keep pace. Time to exploit has collapsed … More →
The post Cogent targets exploit-to-remediation gap with new AI-powered security capabilities appeared first on Help Net Security.
CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain
CrowdStrike has dismantled the Glassworm botnet in an operation aided by Google and Shadowserver, stripping the operators’ access to infrastructure that helped threat actors infect hundreds of pieces of open-source software with malware since early 2025, the company said Tuesday. The coordinated effort involved the simultaneous takedown of four attacker-controlled servers that were designed to […]
The post CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain appeared first on CyberScoop.
Infosecurity Europe: Why Burnout in Cybersecurity Demands Risk-Based Response
5 Steps to Managing Shadow AI Tools Without Slowing Down Employees
Glassworm botnet disrupted after resilient C2 infrastructure takedown
Dutch police arrest man over cyber breach at Ajax football club
Ping Identity advances agentic security with AI governance and trusted access
Ping Identity announced new capabilities that extend the Ping Identity Platform for the agentic enterprise, where AI agents, automation, and developers increasingly shape how access is managed, governed, and secured across organizations. AI agents are changing both sides of the identity equation. They are new actors that need to be discovered, governed, and managed across their lifecycle, and they are also new operators that can help builders administer and secure identity environments through machine-native interfaces. … More →
The post Ping Identity advances agentic security with AI governance and trusted access appeared first on Help Net Security.