Security Posture stories
Researchers can now earn up to USD $6,000 for exposing flaws in Agoda's core web services, APIs and mobile app via HackerOne.
The deal gives customers red teaming and runtime protection for AI systems as enterprises rush to secure models and autonomous agents.
Consumers on hospitality and eCommerce sites are at risk of having passwords and payment details stolen through fake webpages run by the platform.
Enterprise security teams are being pushed to track what AI agents can access and do across apps, identities and workflows before data is exposed.
The update gives Microsoft customers faster visibility into AI-driven access risks, after Netwrix linked broader identity footprints to higher breach rates.
IT teams are under pressure to expose hidden SharePoint permissions before AI assistants in Microsoft 365 surface confidential files.
Security leaders can now map team gaps more precisely as the platform adds crisis simulation, AI coaching and SOC training tools.
The hire signals Spektrum's push to turn growing demand for cyber resilience tools into repeatable global sales and channel growth.
IT teams can now spot oversharing and AI-readiness risks in Microsoft 365 from one chat window, as governance workloads rise.
Organisations risk missed exposures as cloud, APIs and AI systems change far faster than annual security checks can keep up.
Enterprise buyers are treating software supply chain security as a standalone priority as Gartner creates a dedicated Magic Quadrant for the category.
Teams can now spot unapproved infrastructure changes in minutes, helping reduce outage and audit risk as firms face tighter resilience scrutiny.
Security teams are being offered new tools to track shadow AI and block prompt injection as enterprises rush to deploy agents and models.
Businesses adopting autonomous AI agents face a new pre-deployment security check as Exabeam's Praxen tests whether permissions match duties.
Enterprise security teams gain a new AI-assisted way to spot exploitable code flaws, as IBM widens its cyber work with OpenAI.
Managed service providers could cut hours of manual vulnerability work per client as the update links scans, remediation and audit evidence.
With phishing and stolen credentials driving most breaches, organisations are being urged to replace passwords with passkeys for safer logins.
Despite reported gains, fewer than one in four UK organisations trust their cyber defences to withstand a major incident, a survey found.
Most UK cybersecurity managers say rushed certification can undermine trust and leave controls weaker than ongoing monitoring would reveal.
Continuous attack testing aims to help customers spot exploitable gaps before criminals do, including misconfigurations hiding outside core systems.