Security testing stories
Boards in regulated sectors now have firmer assurance after Abacus secured CREST approval for penetration testing, renewed annually.
Businesses face growing exposure to API and AI-driven attacks as Check Point’s web application firewall earns top marks for accuracy.
Sensitive chats and uploaded files could have been quietly leaked from ChatGPT via DNS tunnelling before OpenAI fixed the flaw.
Corporate buyers may take note as eScan’s Enterprise EDR earned AV-TEST’s Best Advanced Protection award for consistency against ransomware and infostealers.
Approved developers can now build software directly on Mercury MP Intelligent Controllers, aiming to add edge-based integrations without replacing core systems.
Many enterprises still cannot prove they can restore data quickly enough as cloud, container and AI systems outpace traditional backup plans.
Security teams now have a beta tool to probe large language model apps for prompt injection, jailbreaks and data theft before attackers do.
Horizon3.ai doubles ARR as more than 5,200 organisations adopt its NodeZero platform, fuelled by MSSP demand and rising cyber risks.
NSS Labs warns many enterprise AI guardrails fail basic security tests, urging independent, real-world validation of protections.
Barcelona startup Galtea raises USD $3.2 million to scale its AI agent testing platform and launch a self-service product for developers.
Rapid7 warns that hands-on attacks against cellular IoT hardware can pivot through trusted modules to breach cloud and backend systems.
Commvault and TIME unveil a CISO of the Year award spotlighting security leaders driving cyber resilience amid rising AI and cloud threats.
Kroll warns boards are overestimating cyber resilience as attacks cost firms an average USD $2.2 million a year and response plans lag reality.
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
Cobalt launches Security Program Manager service to run enterprise pentesting, align tests with business goals and speed up remediation.
NetSPI unveils an AI-powered overhaul of its pentesting platform UX, promising two-click workflows and sharper risk-based remediation focus.
HackerOne launches live Agentic Prompt Injection Testing to expose real-world AI exploit paths as prompt injection threats surge 540%.
Projects in Lunar Strategy’s network will now get earlier security checks, as Cyberscope moves into smart contract audits before token launches and expansion.
As logins replace break‑ins, experts urge a shift from perimeter defence to operational cyber resilience grounded in identity security.
Organisations test just a third of their attack surface as reliance on agentic AI grows, raising fresh concerns over unseen cyber risks.