Attack Surface Management stories
Security teams can now tighten oversight of service accounts, API keys and AI agents as machine identities outnumber staff in many enterprises.
Rising use of deepfakes and voice cloning is forcing firms to rethink staff training as insurers and buyers scrutinise human risk more closely.
Security teams could cut alert overload as Google ties exposed assets to live attacker activity, helping prioritise the riskiest flaws first.
The real risk is growing backlogs and patching delays, as AI speeds up exploit development faster than security teams can respond.
Security teams are being pushed to prioritise more than ever, as vulnerabilities now make up 42.6% of critical exposures, Check Point says.
Security teams face a new governance gap as AI agents spread across Microsoft systems, with many lacking inventories, controls or monitoring.
Only a small share of alerts proved urgent, but critical vulnerability exposures more than doubled as phishing also surged in the report.
The endorsement may help Tenable win buyers as security teams weigh AI risks alongside cloud, identity and container exposures.
Security teams gain wider visibility into risky AI agent activity as Exabeam doubles behavioural detections and adds Claude telemetry.
Organisations have only days to patch gaps as AI-driven attackers automate the same old weaknesses, Five Eyes warned.
Criminals are using AI to scale phishing and hunt flaws faster, forcing firms to harden defences as alert volumes and risks rise.
Attackers are already using AI to exploit flaws faster than many organisations can detect them, Five Eyes agencies warned.
Security teams are still struggling to turn vulnerability alerts into fixes, leaving companies exposed for months when IT and operations must act separately.
The recognition underscores rising demand for cyber-risk tools that show measurable returns, as buyers demand faster deployment and continuous monitoring.
Industrial operators can now test cyber exposures without touching live systems, helping prioritise fixes that could prevent costly downtime.
The pilot could speed up vulnerability hunting across government systems, but it also leaves human teams to verify and fix each AI flag.
Security teams may be able to cut false alarms as Picus says its new platform proves whether a vulnerability can actually be exploited.
Mid-market security teams can now get permanent vulnerability and cloud checks free, easing access to tools often priced for larger enterprises.
More than half of Singapore respondents lacked full visibility of employee AI use, heightening fears over shadow tools, data leaks and breaches.
Enterprise customers face growing risks as autonomous software gains access to internal systems, prompting fresh demand for agent security tools.