Security testing stories
AI flaws & supply-chain risks top new pentesting report
Last week
#
data protection
#
devops
#
application security
Cobalt's annual pentesting study says AI and supplier tools are exposing fresh weaknesses, with security teams struggling to keep pace with rapid deployment.
HackerOne launches h1 Validation to tackle AI flaws
Last week
#
devops
#
digital transformation
#
application security
HackerOne unveils h1 Validation as vulnerability reports surge 76% and AI tools speed up discovery, leaving firms struggling to triage real threats.
Cyber Scheme launches company accreditation programme
Last week
#
devops
#
iot security
#
socs
Cyber Scheme extends professional standards to firms with new company accreditation backed by UK council benchmarks and procurement access.
LangWatch launches open-source tool for AI red-teaming
Last week
#
data protection
#
devops
#
data analytics
LangWatch releases open-source AI red-teaming framework to expose hidden vulnerabilities in production agents through multi-turn attack simulations.
UK telecom servers expose security details, study finds
This month
#
vpns
#
ransomware
#
devops
Study finds UK telecom firms exposing security-critical server data as Europe-wide analysis flags widespread certificate failures and critical asset weaknesses.
Synack launches Glasswing readiness test for attack gaps
This month
#
firewalls
#
devops
#
digital transformation
Synack launches AI-driven assessment to expose overlooked attack surface gaps as offensive tools speed up vulnerability discovery.
From vulnerability management to AI-powered exposure assessment: building a modern CTEM program
This month
#
devops
#
hybrid cloud
#
digital transformation
AI-driven exposure assessment is reshaping CTEM, helping cyber security teams move beyond vulnerability lists to prioritise business risk and cut exposure.
Abacus wins CREST approval for penetration testing
This month
#
firewalls
#
data protection
#
devops
Abacus secures CREST accreditation for penetration testing, bolstering its pitch to regulated sectors as demand rises for verified cyber security assurance.
GigaOm names Check Point leader in app & API security
This month
#
firewalls
#
devops
#
hybrid cloud
GigaOm names Check Point a third-year application security leader as its WAF posts strong detection rates and low false positives.
ChatGPT flaw let hackers steal data via DNS queries
This month
#
firewalls
#
data protection
#
devops
ChatGPT flaw may have let attackers siphon sensitive user data via DNS queries, prompting OpenAI to issue a fix after researchers exposed the bug.
eScan wins AV-TEST award for enterprise protection
This month
#
firewalls
#
ransomware
#
endpoint protection
eScan bags AV-TEST honour as Enterprise EDR is named among the few products to win Best Advanced Protection for corporate users.
Mercury Security launches app platform for controllers
This month
#
devops
#
iot security
#
edge computing
Mercury Security opens controller app platform to approved developers, with partner software bringing edge integrations and stricter security checks.
Security leaders warn backup gaps as threats evolve
Last month
#
virtualisation
#
data protection
#
dr
Security executives say organisations must move beyond simple backups, as Kubernetes, AI and ransomware strain recovery plans ahead of World Backup Day.
Novee launches AI red teaming tool for LLM app risks
Last month
#
devops
#
cloud security
#
application security
Novee unveils an autonomous AI red teaming tool to probe LLM apps for prompt injection, jailbreaks and other emerging security flaws.
Horizon3.ai revenue doubles as NodeZero demand surges
Last month
#
devops
#
cloud security
#
application security
Horizon3.ai doubles ARR as more than 5,200 organisations adopt its NodeZero platform, fuelled by MSSP demand and rising cyber risks.
Galtea raises USD $3.2m to test AI agents reliably
Last month
#
saas
#
devops
#
apm
Barcelona startup Galtea raises USD $3.2 million to scale its AI agent testing platform and launch a self-service product for developers.
NSS Labs backs AI guardrail tests amid security fears
Last month
#
firewalls
#
devops
#
digital transformation
NSS Labs warns many enterprise AI guardrails fail basic security tests, urging independent, real-world validation of protections.
Rapid7 warns of cellular IoT hardware attack risks
Last month
#
uc
#
firewalls
#
devops
Rapid7 warns that hands-on attacks against cellular IoT hardware can pivot through trusted modules to breach cloud and backend systems.
Commvault, TIME launch CISO award for cyber resilience
Last month
#
data protection
#
devops
#
digital transformation
Commvault and TIME unveil a CISO of the Year award spotlighting security leaders driving cyber resilience amid rising AI and cloud threats.
Re-thinking cyber security from prevention to operational resilience
Last month
#
malware
#
data protection
#
dr
As logins replace break‑ins, experts urge a shift from perimeter defence to operational cyber resilience grounded in identity security.