Security testing stories
Customer data and service security may be at risk, as nearly one in five UK telecom web servers leak configuration details, a study finds.
Security teams are turning to continuous, risk-based assessment as fragmented tools leave them unable to see which exposures matter most.
As logins replace break‑ins, experts urge a shift from perimeter defence to operational cyber resilience grounded in identity security.
Offensive AI is widening exposure gaps for firms that test only a third of their attack surfaces on average, Synack says.
Boards in regulated sectors now have firmer assurance after Abacus secured CREST approval for penetration testing, renewed annually.
Businesses face growing exposure to API and AI-driven attacks as Check Point’s web application firewall earns top marks for accuracy.
Sensitive chats and uploaded files could have been quietly leaked from ChatGPT via DNS tunnelling before OpenAI fixed the flaw.
Corporate buyers may take note as eScan’s Enterprise EDR earned AV-TEST’s Best Advanced Protection award for consistency against ransomware and infostealers.
Approved developers can now build software directly on Mercury MP Intelligent Controllers, aiming to add edge-based integrations without replacing core systems.
Many enterprises still cannot prove they can restore data quickly enough as cloud, container and AI systems outpace traditional backup plans.
Security teams now have a beta tool to probe large language model apps for prompt injection, jailbreaks and data theft before attackers do.
Horizon3.ai doubles ARR as more than 5,200 organisations adopt its NodeZero platform, fuelled by MSSP demand and rising cyber risks.
NSS Labs warns many enterprise AI guardrails fail basic security tests, urging independent, real-world validation of protections.
Barcelona startup Galtea raises USD $3.2 million to scale its AI agent testing platform and launch a self-service product for developers.
Rapid7 warns that hands-on attacks against cellular IoT hardware can pivot through trusted modules to breach cloud and backend systems.
Commvault and TIME unveil a CISO of the Year award spotlighting security leaders driving cyber resilience amid rising AI and cloud threats.
Kroll warns boards are overestimating cyber resilience as attacks cost firms an average USD $2.2 million a year and response plans lag reality.
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
Projects in Lunar Strategy’s network will now get earlier security checks, as Cyberscope moves into smart contract audits before token launches and expansion.
Organisations test just a third of their attack surface as reliance on agentic AI grows, raising fresh concerns over unseen cyber risks.