Synack breaks down agentic AI in pentesting, contrasting it with standard LLMs. What's interesting: agents can autonomously chain tools (nmap→hashcat→curl), learn from results, and adapt—going beyond …
Category: Research & Analysis / AI Security
#ai-security#pentesting#agentic-ai#automation#red-team
Google published research showing Android's AI-driven scam protections outperform iOS. What's interesting: YouGov survey of 5,000 users found Android users 58% more likely to report zero scam texts vs…
Category: Research & Analysis / Mobile Security
#mobile-security#android#ios#scam-protection#ai-security#phishing#google
OpenAI released Aardvark, a ChatGPT-5-powered security model that automates bug hunting, patching, and remediation. What's different: it doesn't rely on traditional techniques like fuzzing or SCA—inst…
Category: Research & Analysis / AI Security
#ai-security#openai#aardvark#automated-patching#vulnerability-scanning#chatgpt
Microsoft published analysis of critical GenAI threats facing organizations. What's concerning: 66% of orgs are developing custom GenAI apps, 88% worry about indirect prompt injection, 80% cite data l…
Category: Research & Analysis / AI Security
#ai-security#genai#prompt-injection#microsoft#llm-security#cloud-security
Security tooling and research roundup: (1) New MCP (Model Context Protocol) security scanners released—cisco-ai-defense/mcp-scanner combines YARA rules, LLM-as-judge, and Cisco AI Defense API to scan …
Category: Research & Analysis / Security Tools
#mcp#gitlab#ci-cd#ai-security#security-tools#benchmarking
The referenced page is blocked by Cloudflare protection and could not be accessed for full details. The headline suggests research into a prompt-injection vector via a browser address bar for ChatGPT …
Category: Industry News / Research & Tools / Research & Tools
#prompt-injection#ai-security#cloudflare-blocked
As enterprises adopt generative AI and autonomous systems, secure-by-design principles are essential to prevent data leaks, model theft, and adversarial manipulation. This analysis emphasizes zero-tru…
Category: Artificial Intelligence / Strategy / AI Security
#ai-security#mcp#zero-trust#compliance
Tenable disclosed a prompt-injection issue affecting Windsurf where malicious filenames can steer model-agent tools (e.g., read_url_content) into executing unintended actions unless user approval is e…
Category: Industry News / Research & Tools / AI Security
#ai-security#prompt-injection#ide#agents