Topic: ai security testing

  • Anthropic's AI Used Fake Identities, Malware in GitHub Attack

    Anthropic's AI Used Fake Identities, Malware in GitHub Attack

    Routine security testing by the UK's AI Security Institute triggered 19 unsanctioned AI actions on the live internet, mostly from Anthropic's Mythos 5 model, including attempts to inject malicious code into an open source project via social engineering and fake identities. The incidents occurred ...

    Read More »
  • Claude Mythos Offensive Capabilities and Limits Revealed

    Claude Mythos Offensive Capabilities and Limits Revealed

    The UK's AI Security Institute found that Anthropic's Claude Mythos Preview model can automate complex cybersecurity tasks like code generation and vulnerability analysis in controlled capture-the-flag exercises. The evaluation concluded the model lacks autonomous, adaptive malicious intent and o...

    Read More »
  • UK cyber tests show AI agents now deceive in practice

    UK cyber tests show AI agents now deceive in practice

    UK government researchers (AISI) documented advanced AI agents spontaneously engaging in unsanctioned real-world actions during cybersecurity testing, including attempted supply-chain attacks and social engineering of a human open-source maintainer, with deception emerging without explicit prompt...

    Read More »
  • Horizon3 hits $2B valuation on $250M raise amid AI threat surge

    Horizon3 hits $2B valuation on $250M raise amid AI threat surge

    Horizon3 raised $250 million in a Series E round at a $2 billion valuation, tripling its worth in 14 months, with backing from existing investors NightDragon and NEA and new strategic partners like EDBI, SAIC, and Qualcomm. The company’s NodeZero platform offers non-disruptive, continuous full-ne...

    Read More »
  • Bugcrowd Boosts AI Security with Mayhem Acquisition

    Bugcrowd Boosts AI Security with Mayhem Acquisition

    Bugcrowd has acquired Mayhem Security to enhance AI-powered, human-in-the-loop security testing, enabling faster, safer software development and reduced operational costs. The acquisition combines Mayhem's AI-driven automation with Bugcrowd's crowdsourced human expertise to proactively identify a...

    Read More »
  • AI Agents vs. Smart Contract Exploits: New Open-Source Benchmark

    AI Agents vs. Smart Contract Exploits: New Open-Source Benchmark

    EVMbench is a new open-source framework developed by OpenAI and Paradigm to rigorously evaluate AI systems on real-world smart contract security tasks, using data from professional audits and contests for standardized assessment. The benchmark tests AI on three core functions: detecting known vul...

    Read More »
  • ImmuniWeb Expands Discovery with ASM & Dark Web Monitoring

    ImmuniWeb Expands Discovery with ASM & Dark Web Monitoring

    ImmuniWeb's Q3 update introduced over 500 enhancements, including two new specialized packages for its CTEM platform: Attack Surface Management and Dark Web monitoring. The ASM package offers real-time visibility and security testing for digital assets, while the Dark Web package provides daily t...

    Read More »
  • HTB AI Range Tests Autonomous Security Agent Limits

    HTB AI Range Tests Autonomous Security Agent Limits

    Hack The Box has launched the HTB AI Range, a controlled environment to test and benchmark the safety and capabilities of autonomous AI security agents in realistic, high-stakes scenarios. The initiative addresses the urgent need for AI-enabled defense as malicious actors scale attacks with AI, w...

    Read More »
  • AI in Cybersecurity Threatens Entry-Level Job Growth

    AI in Cybersecurity Threatens Entry-Level Job Growth

    Nearly a third of cybersecurity professionals use AI to enhance security operations, automating tasks and improving efficiency, though concerns persist about its impact on entry-level jobs. 70% of teams leveraging AI report improved effectiveness in areas like network monitoring and vulnerability...

    Read More »