A US federal watchdog has outlined how the National Institute of Standards and Technology (NIST) failed to effectively manage the growing backlog of unprocessed cybersecurity vulnerabilities in the National Vulnerability Database (NVD).
Microsoft has open-sourced two tools aimed at bringing security discipline to AI agent development: Clarity, a structured design review tool, and RAMPART, a continuous testing framework.
Vulnerability exploitation has overtaken stolen credentials as the most common way attackers gain initial access to target networks, according to the 2026 Verizon Data Breach Investigations Report. The rise of AI-assisted vulnerability research performed by threat actors might sound like the most likely explanation, but the analyzed data predates this "explosion".
Things to know, ideas to consider, practices to implement
Subscribe to get regular updates from Help Net Security. Choose between our daily and weekly newsletters, or you can also opt for specialized newsletters:
Breaking news – sent for major events
Cybersecurity jobs – sent weekly
Open-source cybersecurity tools – sent monthly
Open-source cybersecurity tools you should check out
Agent Threat Rules - Open detection rule format for AI agent security threats
No comments:
Post a Comment