❌

Reading view

There are new articles available, click to refresh the page.

Prophet Security research finds AI is cutting SOC investigation times, but nearly half of in-house builds fail to stick

Security teams are turning to AI as they struggle to investigate the volume of alerts coming into the SOC, according to new research from Prophet Security. The State of AI in Security Operations 2026 report surveyed 250 IT and cybersecurity professionals. Forty percent said AI is already part of their day-to-day SOC workflow, and 56% [...]

A reverse image search platform exposed more than 9 million facial images

A publicly accessible database linked to reverse image search service ClarityCheck exposed more than nine million images, including photographs of adults, teenagers, and children. Cybersecurity researcher Jeremiah Fowler discovered the database, which was neither password-protected nor encrypted. It contained approximately 9,042,977 image files, amounting to 450.2GB of data. Most were stored in folders labeled β€œfaces” [...]

AI agents taking unsanctioned action during cyber testing

The UK’s AI Security Institute (AISI) has disclosed a security incident in which frontier AI agents took unsanctioned actions against real people and organisations during a controlled cybersecurity evaluation.Β  This included attempts to socially engineer software maintainers and insert malicious code into an open-source project.Β  The incident happened during routine cyber capability testing between 25 [...]

10th Annual Security Serious Unsung Heroes Awards Open for Nominations

Cybersecurity PR agency Eskenzi PRΒ  has opened nominations for its tenth annual Security Serious Unsung Heroes Awards. The awards celebrate the UK’s most extraordinary cybersecurity professionals who work to make the industry not only more secure, but also more diverse, healthier and better informed about current events. Key sponsors include CultureAI, OneAdvanced and The Zensory. [...]

One-click Claude Desktop flaw could enable hidden prompt injection and code execution

Security researchers at Oasis Security have disclosed a vulnerability in Claude Desktop that could allow attackers to execute hidden prompts, access local files, exfiltrate conversation history, or execute code with a single click on a malicious link. The vulnerability, dubbed PromptFiction, affects the way Claude Desktop handled claude:// links.Β  According to the researchers, clicking one [...]

Russian state attackers exploiting misconfigured routers, new multi-nation advisory warns

Russian state-sponsored actors are compromising poorly secured routers and networking devices around the world, with critical infrastructure organisations among the primary targets, reveals a new joint cybersecurity advisory from 20 government agencies.Β  The advisory attributes the activity to cyber actors associated with the Russian Federal Security Service (FSB) Center 16, saying the group continues to [...]

Filigran report: Organisations can see their threats but can’t act fast enough

Fragmented tools and manual processes are widening the gap between threat awareness and effective CTEM. Only 41% of organisations have a fully consolidated view of cyber risk exposure, and security teams spend 42% of their time investigating risks that turn out to be low priority or non-exploitable At the same time, AI-driven CTEM processes expected [...]
❌