Security testing stories
Buyers of AI tools now have a benchmark to judge testing providers, as CREST's new standard targets gaps in assurance and due diligence.
Australian and New Zealand businesses face greater pressure to prove cyber controls work as the firms back continuous testing over periodic reviews.
The deal extends Fortinet's reach into AI runtime protection as companies race to secure agents, models and tools across production systems.
The new tool aims to catch Bitcoin software flaws between formal audits after a regression led to more than USD $116 million stolen.
Developers can now scan C code earlier in the process, as Endor Labs says its buildless AI SAST found 96 of 102 known bugs in tests.
Researchers can claim up to USD $1 million for breaking Vercel Sandbox's isolation, as the cloud provider opens its boundary to public scrutiny.
In two days, the system uncovered more than 100 critical bugs in stolen code repositories, outpacing manual review and aiding incident response.
CyberCatch's continuous compliance tools will be folded into Datavault AI's data platforms if the all-cash deal wins approvals.
Customers deploying AI agents face wider security gaps as Fortinet adds runtime protection and validation through its Virtue AI deal.
Disruption has spread beyond Ceva as retailers and brands report delayed shipments and possible exposure of customers' personal data.
Realistic-looking security evidence can be fabricated when memory, simulation and model hallucinations blur provenance in AI workflows.
Approved defenders will gain broader access to cyber tools as the new tiered Daybreak programme adds GPT-5.6-Cyber for advanced security work.
Customers in Australia and New Zealand may now see Liverton Security as a lower-risk supplier after the Wellington firm won CREST ANZ membership.
Tighter safeguards and pauses on internal work follow early tests that left OpenAI unable to rule out critical cyber capabilities in Astra.
Security teams gain a single workflow to validate real exploit paths as BreachLock folds autonomous testing into its wider platform.
The hire underscores a sector-wide scramble to attract staff who can bridge artificial intelligence tools and human-led security work.
The combined group now serves more than 3,000 customers in 57 countries as Brinqa adds validation tools to close the remediation gap.
Stolen credentials can become an operational foothold within hours, leaving annual assessments too slow to catch the real attack paths.
UK security leaders are warning that AI-generated code is outpacing controls, with a quarter already seeing incidents from flaws it introduced.
Standardising its international projects, TMX will use a new AI-enabled platform to share expertise as it expands in the US and Europe.