Articles Tagged “Threat Detection”
13 articles found

Mandiant AI Agents Found 100 Critical Flaws in 2 Days
Google's Mandiant published its AVDH blueprint after the agent pipeline verified 100+ critical vulnerabilities in 48 hours and produced 12 assigned CVEs.

OpenAI Model Security Adds Sandboxes and 30-Min Alerts
OpenAI published a new internal security bar: hard sandboxing, activation classifiers on sampled tokens, and a 30-minute alert-or-pause rule.

Windows 11 Drops WMIC, a Longtime Malware Favorite
Microsoft has removed the WMIC command-line tool from Windows 11 24H2 and 25H2, closing a living-off-the-land binary abused by ransomware for years.

OpenAI Daybreak Splits Into Blue and Red Defender Tiers
OpenAI restructured Daybreak into Blue and Red tiers on August 10 and added GPT-5.6-Cyber, a purpose-trained model gated to vetted security partners.

Google Threat Intelligence Ships Agentic AI Defense
Google Threat Intelligence moved its agentic AI to general availability, automating threat hunting, triage, and malware analysis with cited results.

Prompt Injection Becomes a Defense With Context Bombs
Tracebit's 'context bombs' plant text in cloud decoys that trip an AI attacker's own guardrails — cutting attack success from 91% to 15%.

AgentMon 3 Gives AI Agents Self-Refining Guardrails
Codenotary's AgentMon 3, out July 7, learns each org's normal AI-agent behavior and auto-tunes runtime policies, cutting manual upkeep up to 80%.

Sophos Fusion Unifies Security Tools With Agentic AI
Sophos launched Fusion on July 15 — an AI-native platform that unifies endpoint, SIEM, identity, and network tools with shared threat intel.

Rustinel Is a Fast Open-Source EDR Built in Rust
Rustinel, launched July 8, is an open-source endpoint detection tool in Rust that unifies Windows and Linux monitoring into one clean codebase.

Google's New AI Agents Defend the Security Operations Center
Google added defensive AI agents to Security Operations that auto-write detection rules and triage alerts, cutting 30-minute reviews to about 60 seconds.

Cisco's Cloud Control Puts AI Security Agents and No-Downtime Patching in One View
Cisco's new Cloud Control platform unites human operators and AI security agents in a single view, with runtime 'Live Protect' patching and quantum-safe defenses.

Agentic AI Is Giving Security Operations Centers Their Edge Back
Enterprises running agentic AI in their SOC see 40% faster threat detection — as autonomous investigation and response tools compress human-driven timelines from hours to minutes.

Push Security Ships Automatic Detection and Blocking for Malicious Browser Extensions
Push Security's new capability identifies and neutralizes known-malicious browser extensions before they can exfiltrate data or hijack sessions.
