Articles Tagged “Threat Detection”
20 articles found

Gurucul AI Risk and Response: What Is Available Now?
Gurucul launches AI Risk and Response for security teams on September 24. Detection is generally available, while runtime prevention stays in preview.

Lookout Social Engineering Protection Targets AI Scams
Lookout Social Engineering Protection scans SMS, RCS, calls and voicemail on iOS and Android to flag AI voice clones and scam links before users bite.

Agent Anomaly Detection Watches AI Agents at Work
Google's Agent Anomaly Detection hit private preview, scanning agent traces for tool misuse, privilege abuse, runaway loops and other OWASP agentic risks.

Invisible Unicode Phishing: How to Spot and Block It
Microsoft tracked 2.37 million daily messages hiding invisible Unicode inside words. Normalizing tag characters before filtering stops the trick.

Sality Botnet Takedown Ends a 23-Year P2P Malware Run
CrowdStrike and global police cut the Sality botnet's operator off from 15,000 infected machines by poisoning its peer lists with defender sinkholes.

Claude Session Theft: How to Protect Your AI Account
Anthropic is signing out users whose Claude sessions were stolen by infostealer malware, refunding charges and removing saved cards. Here is the fix.

CISA Red Team Advisory Shows What Fast Detection Buys
CISA's new advisory compares two red team assessments where one SOC contained the intrusion in 2 to 20 minutes, and explains what made the difference.

Mandiant AI Agents Found 100 Critical Flaws in 2 Days
Google's Mandiant published its AVDH blueprint after the agent pipeline verified 100+ critical vulnerabilities in 48 hours and produced 12 assigned CVEs.

OpenAI Model Security Adds Sandboxes and 30-Min Alerts
OpenAI published a new internal security bar: hard sandboxing, activation classifiers on sampled tokens, and a 30-minute alert-or-pause rule.

Windows 11 Drops WMIC, a Longtime Malware Favorite
Microsoft has removed the WMIC command-line tool from Windows 11 24H2 and 25H2, closing a living-off-the-land binary abused by ransomware for years.

OpenAI Daybreak Splits Into Blue and Red Defender Tiers
OpenAI restructured Daybreak into Blue and Red tiers on August 10 and added GPT-5.6-Cyber, a purpose-trained model gated to vetted security partners.

Google Threat Intelligence Ships Agentic AI Defense
Google Threat Intelligence moved its agentic AI to general availability, automating threat hunting, triage, and malware analysis with cited results.

Prompt Injection Becomes a Defense With Context Bombs
Tracebit's 'context bombs' plant text in cloud decoys that trip an AI attacker's own guardrails — cutting attack success from 91% to 15%.

AgentMon 3 Gives AI Agents Self-Refining Guardrails
Codenotary's AgentMon 3, out July 7, learns each org's normal AI-agent behavior and auto-tunes runtime policies, cutting manual upkeep up to 80%.

Sophos Fusion Unifies Security Tools With Agentic AI
Sophos launched Fusion on July 15 — an AI-native platform that unifies endpoint, SIEM, identity, and network tools with shared threat intel.

Rustinel Is a Fast Open-Source EDR Built in Rust
Rustinel, launched July 8, is an open-source endpoint detection tool in Rust that unifies Windows and Linux monitoring into one clean codebase.

Google's New AI Agents Defend the Security Operations Center
Google added defensive AI agents to Security Operations that auto-write detection rules and triage alerts, cutting 30-minute reviews to about 60 seconds.

Cisco's Cloud Control Puts AI Security Agents and No-Downtime Patching in One View
Cisco's new Cloud Control platform unites human operators and AI security agents in a single view, with runtime 'Live Protect' patching and quantum-safe defenses.

Agentic AI Is Giving Security Operations Centers Their Edge Back
Enterprises running agentic AI in their SOC see 40% faster threat detection — as autonomous investigation and response tools compress human-driven timelines from hours to minutes.

Push Security Ships Automatic Detection and Blocking for Malicious Browser Extensions
Push Security's new capability identifies and neutralizes known-malicious browser extensions before they can exfiltrate data or hijack sessions.
