AppSec stories
The rise of AI agents is forcing security teams to rethink access controls, as the identity vendor passes USD $300 million in ARR.
Prompt-injection attacks and data leaks are the main risks as businesses connect Copilot and Gemini to email, files and internal tools.
Defenders will test prompt-injection tactics against AI agents as CrowdStrike and AWS offer USD $100,000 in prizes for a virtual red-team contest.
The tie-up aims to help security teams turn validated AI findings into ranked fixes before vulnerabilities pile up and attackers move first.
The suite aims to cut security backlogs and tighten oversight of AI agents as companies face a surge in machine identities and fragmented tools.
Browser-based AI agents will face tighter enterprise oversight as Google moves to curb data leaks and unauthorised actions in Chrome.
Security teams face a wider visibility gap as Tenable adds Google Gemini, MCP and AI coding tools to its exposure management platform.
Enterprise security teams face fresh oversight burdens as Reco joins OpenAI's partner network to monitor agent access and permissions.
Security teams face fresh blind spots as AI-built apps and traditional code pipelines increasingly expose company data and cloud systems.
Centralised oversight for AI traffic should help firms cut prompt-injection and data-leakage risks as models shift into production.
Smaller security teams can now access autonomous testing on demand, as the platform drops its minimum commitment and adopts consumption pricing.
Security teams can now track newly disclosed CVEs in live systems, as RapidFort expands its supply chain tools into production monitoring.
Security teams can now stop rogue enterprise AI agents in seconds as Straiker adds runtime controls to its wider testing platform.
The update aims to cut remediation costs and stop teams wasting time by re-analysing vulnerabilities without enough business context.
AWS customers can now buy Chainguard Libraries through Security Hub Extended, as open-source dependency attacks push firms to tighten supply chain checks.
Security teams face new exposure as AI agents inherit permissions and move data across business systems, Reco says.
Existing customers can now govern AI agents more tightly, as Cequence links model, API and tool access to role-based policy controls.
Security gaps in AI workflows and enterprise Java could expose secrets, trigger remote code execution and disrupt supply chains.
Open source package attacks can now be blocked earlier, as NetRise brings trust checks into editors, command lines and AI coding tools.
Customers can now track security weaknesses in real time, as GuardNest moves beyond annual checks to constant scanning and remediation.