Threat modelling stories
Enterprise security teams can now move from fragmented asset views to explainable risk scoring, as the platform reaches general availability.
Security teams are being warned to keep humans and strict controls in place as AI agents can miss context and leak sensitive code.
Security teams can now trace how one SAP flaw could spread across finance, payroll and supply chains, with access tightly restricted.
Security checks will now cover more Arm processors, as the chip designer broadens use of Arteris' Radix tool to spot flaws earlier.
Working output from the latest AI coding tools was secure barely a third of the time, exposing a widening risk for software teams.
Weak default safeguards and uneven sandboxing could leave developers exposed to command execution before workspace trust is granted.
Encrypted data could be exposed years before practical quantum computers arrive, putting identity, telecoms and payments under pressure.
The AWS badge could help XBOW win more enterprise deals as buyers seek continuous testing that shows which vulnerabilities are exploitable.
New safeguards will let Fable 5 block more harmful cyber prompts, as Anthropic also seeks a common scale for jailbreak risk.
Its internal security team says automated agents now speed vulnerability checks, patching and production monitoring as attacks intensify.
The move aims to help defenders turn faster vulnerability discovery into working fixes, as OpenAI broadens access to its cyber tools and partners.
MDR buyers risk missing attacks if they focus on price and log limits instead of coverage across identities, endpoints and cloud systems.
Periodic penetration tests miss most systems, prompting Australian and New Zealand firms to use AI-driven checks for broader coverage and faster risk spotting.
Millions of downloads were exposed to silent code execution as a flaw in Hugging Face Transformers let malicious models run on load.
Microsoft patched a CVE-2025-59199 flaw in October after researchers showed a single click could let low-integrity code escape Windows 11's sandbox.
Banks face a shrinking window to harden legacy systems as cheap AI tools make vulnerability hunting and repeat attacks far easier for criminals.
Industrial operators can now test cyber exposures without touching live systems, helping prioritise fixes that could prevent costly downtime.
Security teams may be able to cut false alarms as Picus says its new platform proves whether a vulnerability can actually be exploited.
A financial services cloud was taken over in seconds in a test, highlighting how approved permissions can still let attackers reach full AWS control.
The chip could bolster banking and cloud security by proving its randomness is intact even as hardware ages, drifts or is tampered with.