News
AI agents are accelerating vulnerability discovery. Here's how AppSec teams must adapt.
46+ min ago (441+ words) It has never been easier to quickly and at scale find security vulnerabilities. Linus's Law, Eric Raymond's famous dictum about open source software, states that "given enough eyeballs, all bugs are shallow." In other words, if enough people look at…...
Rising identity complexity: How CISOs can prevent it from becoming an attacker’s roadmap
1+ hour, 30+ min ago (670+ words) Identity has always been the thread that stitches enterprise IT together, but the nature of that identity has changed dramatically. Twenty years ago, identity meant a username and password sitting in a corporate directory. Access was tied to a desktop…...
cURL’s Daniel Stenberg: AI slop is DDoSing open source
4+ day, 4+ hour ago (605+ words) At FOSDEM 2026 in Brussels, Belgium, Daniel Stenberg, creator of the popular open source data transfer program, cURL,described AI as a force that "augments us humans" in two directions: "The bad way or the good way." On the one hand,…...
OpenClaw is being called a security “Dumpster fire,” but there is a way to stay safe
4+ day, 7+ hour ago (921+ words) OK, so we know OpenClaw is a security "Dumpster fire" right now, as we have reported. I looked at Deno sometime ago; it treats TypeScript as a first-class citizen. I couldn't help notice this detail in their recent Sandbox update:…...
The hunt for truly zero-CVE container images
1+ week, 2+ day ago (574+ words) Vendors chasing "zero-CVE" container images on top of traditional Linux distributions are running into structural limits in upstream release models. CVEs remain a useful, but imperfect metric, for measuring safety." We all want zero Common Vulnerabilities and Exposures (CVEs) in…...
Chainguard's AI-powered factory hits 500 million builds
1+ week, 3+ day ago (502+ words) Just a week after Chainguard announced Chainguard Factory 2.0, the company has hit a major milestone that demonstrates the scale of the system now running in production. Last week, Chainguard said that its software factory, rebuilt around its DriftlessAF open-source agentic…...
Operant AI targets ‘shadow’ AI agents with real-time security platform
1+ week, 6+ day ago (359+ words) As AI agents fan out across enterprise apps, APIs, and data stores, they're creating a security blind spot: autonomous systems with access to sensitive data that move faster than security teams can track. Operant AI's new Agent Protector platform aims…...
How Homepage simplifies monitoring your self-hosted services
1+ week, 6+ day ago (675+ words) Slowly but surely, I've been migrating over to self-hosted services so I can finally cut the cord to third parties. By keeping things within my LAN, I enjoy more security and privacy than I would if I continued using cloud…...
The one structural shift CISOs must make before AI outpaces their security strategy
2+ week, 1+ hour ago (488+ words) Enterprise CISOs are stuck at a crossroads. Their budgets aren't growing fast enough, AI is sucking up every bit of enterprise data, and the software environments for which chief information security officers are responsible have become increasingly diverse and dynamic....
It took a researcher fewer than 2 hours to hijack OpenClaw
2+ week, 5+ hour ago (624+ words) All those security fears about the OpenClaw AI agent and its social network, Moltbook, are already proving true, according to security researchers who have been cataloguing and reporting vulnerabilities. But now it's become a live-fire security exercise for the entire…...