Imagine an AI coding agent asked to fix a production bug. It has authenticated correctly, received access to the repository and been given the tools it needs. Reading the relevant code is reasonable. Running tests is reasonable. But those same credentials may also let the agent inspect unrelated files, call an external service or perform […]
For most of enterprise AI’s short history, the risk ended with the answer. A chatbot could summarise a document, draft an email or suggest a next step, but a person still decided what happened afterward. AI agents change that bargain. Once software can update a CRM, query a financial system, call internal tools or trigger […]
AIR’s researchers started with something that looked harmless: a useful AI skill. They placed it inside a respected open-source ecosystem, where it inherited the credibility of roughly 37,000 GitHub stars, promoted it to ordinary users, and watched security scanners approve it. People installed it. Eventually, AIR says the experiment reached more than 26,000 AI agents. […]
Mindgard began with the conclusion that traditional application security was looking at the wrong kind of problem. Research led by Dr. Peter Garraghan at Lancaster University had been examining AI security for more than a decadebefore Mindgard was founded in 2022. The challenge was increasingly clear: AI systems could behave probabilistically and opaquely, introducing exploitable […]
Cybersecurity is starting to challenge that assumption. As advanced models become better at finding vulnerabilities and assisting with complex security research, the question is increasingly about capability and control: who should be allowed to use the most powerful cyber models, under what conditions, and with what safeguards? OpenAI is addressing that problem with GPT-5.6-Cyber, a […]
A cybersecurity startup called Corma launched this week with $60 million from Sequoia Capital and a single, unsettling claim: the same AI making your company faster is arming your attackers faster than it’s arming your defenders. They call the widening space between the two the “Defensive Gap,” and closing it may be one of the […]
Vibe coding is making application development faster, but it is also creating a new form of shadow IT. Employees can now build apps with sensitive business data before security teams know those apps exist. Superblocks has launched Superblocks 3.0, a private enterprise vibe-coding platform developed through a strategic partnership with Amazon Web Services. It allows […]

Employee laptops are no longer running only approved business software. AI agents, MCP servers, browser extensions and code packages can now access company systems without appearing in traditional endpoint inventories. Tel Aviv-based Bloom Security has emerged from stealth with a $20 million Seed round, co-led by Glilot Capital Partners and Ten Eleven Ventures. Okta Ventures […]

Most cybersecurity products are built to stop an attacker at the network perimeter. Beelzebub starts from a less comfortable assumption: the attacker may already be inside. The Milan-based cybersecurity startup has raised €3 million in Seed funding, led exclusively by United Ventures. The round follows an earlier €300,000 pre-seed investment and brings the company’s total […]

Enterprise devices are filling up with AI assistants, software agents and new applications faster than security teams can approve them. That pace creates a basic visibility problem: organizations cannot protect what they do not know is running. Glow has emerged from stealth with $180 million in funding at a $1.2 billion valuation to build an […]