The latest update for #Foresiet includes "How Attackers are Hijacking #SaaS in 2026" and "CVE-2026-21513: APT28 Exploits MSHTML Zero-Day in Targeted Attacks".
"During several runs, the AI agents searched for vulnerabilities, escalated privileges, disabled security protections, and moved sensitive information outside internal systems." www.techradar.com/pro/security...
The latest update for #XonaSystems includes "Introducing Active Defense: Automated Session Enforcement for OT Remote Access" and "Xona Platform v5.5 is Now Available".
The latest update for #Opti9 includes "#Microsoft365#Backup for Law Firms: What Microsoft Doesn't Protect" and "Business Continuity for Law Firms: Protecting Billable Hours and Court Deadlines".
The latest update for #InterlinkSoftware includes "Event Intelligence for Agentic IT Operations" and "Event Intelligence Solutions Part Three: Best Practices for Successful Adoption".
The latest update for #archTIS includes "FERPA #Compliance in Higher Education: Controlling Access to Student Data" and "The Next Phase of Enterprise #DataSecurity: From Discovery to Control".
Google’s release of multimodal embedding models represents a significant step in unifying diverse data types—text, images, and video—into a single high-dimensional vector space. You can integrate unstructured data with imaging and video to enhance precision medicine blog.google/innovation-a...
The latest update for #ArcticWolf includes "The Six Key Benefits and Core Capabilities of Endpoint Security" and "Multiple Authenticated High and Critical Vulnerabilities in Veeam Backup & Replication".
In this Help Net Security video, Arvind Parthasarathi, CEO of CYGNVS, walks through a 10-step process for handling a cybersecurity breach. The first five steps cover preparation: setting up an out-of-band communication platform, identi… #hackernews#news
Hidden instructions in README files can make AI agents leak data
Developers rely on AI coding agents to set up projects, install dependencies, and run commands by following instructions in repository README files, which provide setup guidance for software projects. New research i… #hackernews#news
"Plaintiffs seek to hold OpenAI responsible for the substantial harm it is causing and illicit profits it is reaping by infringing on Plaintiffs’ copyrights and violating their trademark rights, "
The TechBeat: Google Antigravity: 20 Game-Changing Prompts for Complete Automation (3/17/2026)
This HackerNoon Techbeat summarizes trending articles on various tech topics. AI GTM strategy is shifting to AEO, emphasizing creator-led trust and AI visibility. Articles explore… #chatgpt#gemini#gpt
Crypto e-commerce platform Bitrefill was compromised in a cybersecurity attack on March 1, with tactics pointing to North Korean hacking groups Lazarus or BlueNoroff. The attackers used malware to access an employee’s laptop, draining hot wallet funds and probing 18,500 purchase records. Bitrefill…
Why AI Security Must Evolve Into Lifecycle Governance
As AI becomes embedded in core enterprise systems, cybersecurity must evolve beyond traditional defenses. Researchers argue that organizations need lifecycle governance covering data ingestion, training pipelines, deployment, … #hackernews#news
Ransomware group Safepay claims to have breached brookercg.com, a US-based general contracting and construction management firm in Chattanooga. Incident impacts the technology sector. #RansomwareAttack#Construction#UnitedStates
The best business desktops of 2025: Expert tested and reviewed
We tested the top business desktops from all the major brands like Dell, Lenovo, and Apple to find the best machines for productivity. #apple#hackernews#news
AI drone software company Swarmer closed up 520% in its Nasdaq debut, valuing it at $380M+; its tech has been deployed in 100K+ combat missions in Ukraine (Arvelisse Bonilla Ramos/Bloomberg)
The publishers allege ChatGPT scraped nearly 100,000 copyrighted articles to train its models and reproduces their content verbatim in user responses—while attributing hallucinated text to their trusted brands www.law.com/corpcounsel/...
Companies are starting to track employees' AI token use and tallying the costs to measure their return on AI investments, and to prevent potential token abuse (Katherine Bindley/Wall Street Journal)
Japan and ASEAN cooperate on cybersecurity measures “We believed we had taken the necessary and sufficient measures. However, this attack was advanced and sophisticated beyond what we had anticip...
"Gemini & Grok “factchecks” [claiming this photo is fake] are just one example of AI-generated slop engulfing coverage of Iran war. Experts say it is wasting investigative time, risks atrocities being denied, heralding alarming weaknesses as people increasingly rely on AI summaries for news & info."
Human penetration testers and automated security platforms each solve different problems. And here, Manish explains where manual penetration testing goes more in-depth & where automation scales better. You'll also learn why and how many security teams use both. www.freecodecamp.org/news/penetra...
~Trendmicro~
TrendAI aided INTERPOL's Operation Synergia III, resulting in 94 arrests and the takedown of 45,000 malicious IPs and servers globally.
-
IOCs: (None identified)
- #Cybercrime#LawEnforcement#ThreatIntel
Citizen Portal News South Carolina@citizenptnewssc.bsky.social
SCRA's president reveals groundbreaking initiatives in cybersecurity and rural health, alongside a transformative restructuring that promises to boost investment in South Carolina's communities!
Using Reinforcement Learning To Run A Cleaner Bot Reinforcement learning can be used to program a cleaner bot to clean the floor. The example given here uses the Markov Decision Process and code in...
Jozu Agent Guard targets AI agents that evade controls
Jozu has announced the launch of Jozu Agent Guard, a zero-trust AI runtime that executes agents, models, and MCP servers in secure environments with built-in policy enforcement and guardrails that cannot be disable… #claude#copilot#hackernews
Samsung says it is considering a shift toward multi-year contracts for memory chips that may help stabilize supply and ease concerns about a shortage (Yoolim Lee/Bloomberg)
Google Gemini’s Screen Automation finally starts hitting the Pixel 10 Here's how you can enable the new feature Gemini is ready to step into the role of a true autonomous agent that can tackl...
This week's show is up! Features @jameswilson.io, @metlstorm.risky.biz and yours truly talking through the week's news, from the Stryker breach to the latest research into "emergent cyber behaviours" in AI agents.
The Linux Foundation announces $12.5M in total grants from Google and others to help FOSS maintainers cope with the influx of AI-generated security findings (Simon Sharwood/The Register)
A new AI review! athasdev/athas ⭐3.7/5.0
Athas is an ambitious, modern code editor built on **Tauri (Rust) + React/TypeScript**, aiming for a “lightweight but capable” sweet spot. https://gitrated.com/athasdev/athas
GPT-5.4 mini and nano are smaller, faster versions of GPT-5.4 optimized for coding, tool use, multimodal reasoning, and high-volume API and sub-agent workloads.
A new AI review! notadamking/RLTrader ⭐3.0/5.0
RLTrader is a Python reinforcement-learning crypto trading project that bundles a CLI-driven workflow for **hyperparameter optimization (Optuna)**, **training/testing (stable-baselines PPO2)**, reporting (Qua... https://gitrated.com/notadamking/RLTrader
Building AI That Thinks With Memory LSARE is an AI system that builds a stable internal state that evolves over time. It can sit inside any system that processes general information. It's a way...
Introducing comprehensive Operational Technology (OT) Cybersecurity
Ready to secure your OT environment and ensure safety, availability, and compliance?
Connect with Evolvedge today to start your OT security journey.
🌐 www.theevolvedge.com
📧 info@theevolvedge.com
📞 +91 9311803027 / +91 9871191929
Sources: Microsoft weighs legal action against Amazon and OpenAI over whether AWS can offer OpenAI Frontier without breaching Microsoft-OpenAI agreement (Financial Times)
How to Sign ClickOnce Manifests with Visual Studio using the KSP Library?
A Key storage Provider (KSP) library is important in signing ClickOnce manifest with Visual Studio when you require a greater level of key protection and a state of the art cryptography. I have personally o… #hackernews#news
Good Evening European #cybersecurity and #infosec people. It's time for your Wednesday, March 18, 2026 | 05:23 UTC issue of The Straylight Sentinel Intelligence Brief and Podcast.
A new AI review! HarshCasper/Rotten-Scripts ⭐2.9/5.0
Rotten-Scripts is a large, community-driven “script cookbook” with utilities across Python, JavaScript, Bash, Go, PowerShell, and Rust. https://gitrated.com/HarshCasper/Rotten-Scripts
Everyone with an Android phone is urged to check one setting immediately A new alert has been issued to Android users with millions advised to check their settings now.
Près de 150 juges retraités soutiennent #Anthropic dans sa bataille contre l’administration Trump, critiquant la désignation de « risque de chaîne d’approvisionnement » par le Pentagone ⚖️ #IA#CyberSecurity
SEO Poisoning Campaign Uses Signed Trojans To Harvest VPN Credentials In mid-January 2026, Microsoft Defender Experts uncovered a credential theft operation orchestrated by the financially motivate...
AWS Bedrock AgentCore Flaw Enables Stealthy C2 Channels and Data Theft A newly disclosed vulnerability in AWS Bedrock AgentCore Code Interpreter has raised serious concerns after researchers demons...
Google, Microsoft, OpenAI and Anthropic Pledge $12.5 Million to Secure Open Source Software Against AI-Driven Threats Seven of the world’s leading technology companies have committed $12.5 millio...
Anthropic looks to install guardrails to prevent ‘catastrophic misuse’ Some experts warn that this approach gives AI tools information about weapons - even if they have been instructed not to u...
Correlation-based detection and behavior-based detection both try to answer the same question. They just get there differently. And when responders are piecing together what happened, that difference matters more than most teams realize.
Learn more about the detection models: https://loom.ly/66i_kK4
Credential-Stealing npm Malware Found In Popular React Native Packages On March 16, 2026, researchers discovered a coordinated supply chain attack targeting two popular React Native npm packages. T...
Intel 471 debuts integrated platform for external threat management
Intel 471 has announced its latest product offering, the Cyber Threat Exposure Bundle, on its Verity471 platform. This new bundle combines Attack Surface Exposure, Third-Party Exposure, and Brand Exposure into a … #hackernews#news
The #FCA is introducing stricter #cyber reporting rules as UK financial firms face an escalating wave of digital threats. Companies must now provide more frequent & detailed updates on their #security posture to ensure market resilience. #CyberSecurity
A mystery 1T-parameter AI model called Hunter Alpha, which appeared on OpenRouter on March 11, sparks speculation that DeepSeek is quietly testing its V4 model (Eduardo Baptista/Reuters)
NCA director general Graeme Biggar says that technology had helped criminals get smarter, faster and more connected, boosting case for National Police Serivce...
👉 [read]
Rwanda struck a deal with Anthropic to embed its AI systems across the country’s health ministry, public agencies and education system, raising questions about whether an external review should have occurred, Javaid Iqbal Sofi writes.
Boston Metro Weather Forecast Bot@boston-4castbot.bsky.social
NWS Boston (via Facebook): Another cooler day is expected today with highs in the 30s. Trending more unsettled late week and into the weekend with periodic chances for showers and warmer temperatures. [Link]#MaWX
Samsung and AMD sign a preliminary deal for Samsung to supply its next-gen HBM4 for AMD's MI455X accelerators, used in data centers, and DDR5 for AMD's Helios (Yoolim Lee/Bloomberg)
-EU finally imposes more cyber sanctions
-US-Israeli strikes killed Iranian cyber chief
-UK fixes major bug in Companies House portal
-Celebrity phisher continued phishing while in detention
-Digg shuts down after bot attack
XM Cyber advances AI security with enhanced exposure and attack path visibility
XM Cyber has enhanced its Continuous Exposure Management Platform to help organizations adopt AI without exposing themselves to new and emerging threats. The release introduces three major capabilitie… #hackernews#news
📰 Claude Cowork: Remote-Control Your AI Desktop Agent from Your Smartphone
Anthropic has launched Dispatch, a new feature allowing users to remotely operate the AI desktop agent Claude Cowork from their smartphones. This breakthrough bridges desktop automation with mobil...
Sam Altman’s World Unveils Human Check for AI Shopping Bots
World, a new tool designed to verify whether real humans are behind AI-powered shopping agents, has been launched amid growing concerns about trust and fraud in automated online commerce. The product, a brainchild of Sam Altman, was…
Xona Systems brings real-time threat response to OT remote access sessions
Xona Systems has introduced Active Defense, a new capability that enables organizations to stop threats during live remote access sessions in operational technology (OT) environments automatically, without… #hackernews#news
A Stanford study of 391K messages across 5,000 chats: AI chatbots affirmed user messages in nearly 66% of responses, frequently validating delusional thinking (Cristina Criddle/Financial Times)
The Board — Geopolitical Analysis@geoworldpolitical.bsky.social
Prompt Drift: Will Claude & Gemini Fail in 2026?
Prompt drift threatens Claude & Gemini's reliability by 2026. Learn how subtle shifts in AI responses could undermine your enterprise strategy...and what i…
“Electronic ordering systems belonging to the The medical device company Stryker are still down a week after a cyberattack believed to have wiped thousands of company devices of all information.” therecord.media/stryker-cybe...
How AI's post-training process suppresses the creativity and whimsicality seen in earlier models like GPT-2, leading to bad writing from many top AI models (Jasmine Sun/The Atlantic)
Google is rolling out Personal Intelligence to free Gemini, Chrome, and AI Mode users in the US. This feature personalizes responses using your data from Google apps like Gmail and Photos. Opt-in required. #AI#News
SCW Trust Agent: AI tracks AI influence in code to reduce software risk
Secure Code Warrior has announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit, enabling enter… #hackernews#news
This is a huge issue I think we should do more #responsibleAI work on. www.404media.co/ai-job-loss-... "huge parts of social media websites and Google search results have been overtaken by AI slop. Chatbots themselves have killed traffic to lots of websites that were once able to rely on ad revenue"
There’s been a lot of focus on #AI recently, but it’s interesting to see where companies are choosing to build.
As #Anthropic put it:
"The talent here is exceptional.”
It’s a good reflection of the strength of Ireland’s tech talent today. www.independent.ie/business/tec...
Apple Fixed a Safari Security Bug in iOS 26.1 — But Isn’t Saying What It Was Dubbed "background security improvements" it'll be avaliable for iOS, iPadOS, and macOS. Apple has start...
iPhone 18 leans on its own tech—A20 chip and C2 modem—to keep prices steady. A surprising shift, but it aims for smoother use and fewer surprises.
Read More: azat.tv/en/apple-iph...
China's Chengdu says Tim Cook attended Apple's 50th anniversary event in the city; state media called for Apple to fix its "monopolistic" App Store practices (Bloomberg)
The Department of Defense filed a court brief defending its "supply chain risk" designation of Anthropic, saying continued access would "introduce unacceptable risk" to warfighting supply chains; Anthropic sued for an injunction after agencies were ordered to stop using technology.
Nvidia lets its 'claws' out: NemoClaw brings security, scale to the agent platform taking over AI
Every few years, a piece of open-source software comes out that changes how the industry thinks about computing. Linux did it for servers. Docker did it for deployment. OpenClaw – the autonomous AI…
Agentic AI Run Fraud Campaigns Earning 4.5 Times More: Interpol The most dangerous fraudster in the world today may not be a person at all. Interpol's second edition Global Financial Fraud Thre...
Yes siree, never a shortage of critical cybersecurity news, so check out today's Metacurity for the most important developments you should know, including
AI-Powered Cyber Warfare: How Autonomous Attack Agents Are Changing the Threat Landscape Introduction to Malware Binary Triage (IMBT) Course Looking to level up your skills? Get 10% off using coupo...
Six tech firms (Anthropic, AWS, GitHub, Google, Microsoft, OpenAI) pledged $12.5 million to a Linux Foundation effort run by Alpha‑Omega with the OpenSSF to fund tooling and triage support for FOSS maintainers facing AI‑generated vulnerability reports.
The Justice Department told a court it lawfully penalized Anthropic and that the DOD designated the company a supply-chain risk, saying it 'can't be trusted with warfighting systems,' after Anthropic sought to restrict military use of its Claude models.
149 retired federal and state judges filed a brief supporting Anthropic, saying the Defense Department's February designation of Anthropic as a "supply-chain risk to national security" was unfounded and procedurally improper.
Microsoft is considering suing to block Amazon Web Services from offering OpenAI's Frontier, arguing that doing so would breach OpenAI's agreement to route model access through Microsoft's Azure, while Amazon and OpenAI say they are developing a compatible system.
At GTC 2026, Nvidia CEO Jensen Huang proposed using AI tokens in engineer compensation, and OpenAI CEO Sam Altman said tokens could be tradable compute slices, amid warnings about tripling AI costs and large data-center buildouts.
On my flight back to the U.S. this week, I wrote some words for this.weekinsecurity.com about why age verification laws threaten the security and privacy of everyone on the internet.
By requiring people to upload their IDs, governments are sleepwalking the world into an inevitable data disaster.
Critical Telnetd Vulnerability Enables Remote Attacker to Execute Arbitrary Code via Port 23 A critical buffer overflow vulnerability in the GNU Inetutils telnetd daemon. Tracked as CVE-2026-32746,...
~Akamai~
AI agents like OpenClaw face severe security risks from prompt injection and malicious plugins, requiring defense-in-depth cloud isolation.
-
IOCs: (None identified)
- #AIAgents#CloudSecurity#ThreatIntel
~Akamai~
Akamai reports a 104% rise in L7 DDoS and highlights API and AI vibe coding risks.
-
IOCs: Kimwolf botnet, Aisuru botnet
- #API#DDoS#ThreatIntel
Today, we are announcing plans to launch a new MSP program as a part of our Rubrik Transform Partner Program (RTPP) to deepen our commitment to MSP-led cyber resilience. 🌎
Is All OAuth The Same For MCP? Is the "S" in MCP missing? Explore the current state of Model Context Protocol security, from stdio vs. HTTP transport risks to the complexities of CIMD and O...
🔍 Firefox's new Smart Window AI sends your queries to Google, OpenAI & Alibaba. Your searches, browsing history, health questions - all shared with third parties by default. This same risk applies to grammar […]
‘A definitive preview of the AI era’: Why Google DeepMind’s AlphaGo breakthrough paved the way for the generative AI revolution | Google’s Gemini models use “some of the techniques” pioneered with AlphaGo and its successor | ITPro
Silicon Valley Bet on War. The Bets Are Paying Off. www.nytimes.com/2026/03/18/t... After years of criticism and financial risk, Palantir, Anthropic and small start-ups are generating rewards from their investments in defense tech.
Exploited high and critical vulnerabilities increased 105% YoY‼️
Attackers are moving faster than ever, collapsing disclosure timelines, industrializing ransomware, and accelerating attacks with AI. More in the new 2026 Global Threat Landscape Report: https://r-7.co/4dsL49S
OpenAI has released GPT-5.4 mini and nano, its latest small, cost-efficient language models for rapid AI tasks and workloads. They excel in coding, reasoning, and real-time analysis, offering speed and affordability for developers. alternativeto.net/news/2026/3...
RunSybil, an AI cybersecurity startup that uses AI agents to automatically hack company software to find security weaknesses, has secured $40 million in venture capital funding.
“If ChatGPT becomes outmoded, it won’t be the result of OpenAI losing ground or failing to innovate. Instead, the entire generative-AI sector will have become a commodity, like soft drinks or facial tissues. That process has already begun.” @ibogost.com
Sources: Fluidstack withdraws from a €10B, 1GW AI data center project in Bosquel, France, and a Mistral-linked project in Paris, as it pivots toward the US (Benoit Berthelot/Bloomberg)
What is #DMARC Alignment and Why Is it Important? Alignment is a key concept in the introduction of DMARC. Learn more about identifier alignment and how to achieve it: dmarcian.com/alignment/#compliance#Cybersecurity
It's really simple folks: a private company has the right to say how its product may not be used. A government does not have the right to punish a private company for refusing to allow them to use its product in a contrary manner. www.cnn.com/2026/03/17/t...
New detail from the gov't opposition: DoJ argues Anthropic staff might "sabotage or subvert" Claude during active combat operations. The company's ability to update its own model is reframed as a threat vector.
Same capability that enables responsible AI development = the thing they're afraid of.
A group of hackers suspected of working at least in part for the Russian government targeted iPhone users in Ukraine with a new set of hacking tools designed to steal their personal data, as well as potentially steal cryptocurrency, according to cybersecurity researchers.
RunSybil, whose AI agent runs continuous autonomous penetration testing on live apps to find and document vulnerabilities, raised $40M led by Khosla Ventures (Sharon Goldman/Fortune)
New, by me: Marquis, a technology company used by hundreds of banks to analyze and visualize their customers’ data, says over 672,000 people had their personal and sensitive financial information stolen in a ransomware attack last year.
🚨 NEW 🚨 Mythical Beasts is back. 🦄 Our latest issue brief investigates the role of intermediaries in the proliferation of offensive cyber capabilities. Who are they? What do they do? And how do we regulate them? www.atlanticcouncil.org/in-depth-res...
New post from Joe Mullin, EFF's Sr. Policy Analyst: Publishers say they’re blocking the Internet Archive because they fear AI scraping. This is a misguided notion: it won’t stop AI, but it will erase the web’s historical record.