A data breach at global logistics company Ceva has exposed the personal information of its partners’ customers and disrupted operations at various warehouses, resulting in delays.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Attackers now have access to the same AI-powered tools that defenders use to discover weaknesses, and they can use them just as quickly. Fully autonomous cyberattacks are now an inevitable evolution.
A U.K. police database hack has exposed the personal information of over 100,000 law enforcement officers, criminal justice professionals, officials, and government partners.
After multiple stories of OpenAI and Anthropic AI models going rogue and independently opting to breach live targets on the internet, Meta has joined in with claims that at least one AI model made its way to the internet and exploited a security vulnerability in a target.
Testing of frontier AI agents by the UK’s AI Security Institute (AISI) found that "autonomous, unsanctioned action" took place on the open internet in about 1 out of 12 runs, with the agents cited as attempting to socially engineer humans into taking action and in at least one case attempting to hack an open-source project using a variety of different approaches.
A massive supply chain attack on the Node Package Manager (npm) registry has infected over 400 packages with over 2...
Russian hackers are exploiting hotel Wi-Fi networks at various locations that attract corporate travelers to compromise Microsoft 365 accounts and install malware.
In the wake of news that OpenAI agents independently breached Hugging Face and accounts with several other services, Anthropic has conducted a sweeping review of Claude activity and found that its own AI models have hacked their way to unauthorized internet access and into other organization's networks on at least three occasions.
Internal documents indicate Microsoft entirely has its hands full addressing the security vulnerabilities rated "critical" and "important" that Mythos Preview has surfaced, with additional hundreds more rated "moderate" or lower forced into a deferred maintenance status until some undetermined future date.
A coordinated cyber attack by suspected Iranian hackers hit 36 Minnesota water utilities by targeting programmable logic controllers, causing outages at some facilities.










