News

CSO Online
csoonline. com > article > 4187917 > aws-continuum-offers-devs-help-with-securing-code-2. html

AWS Continuum offers devs help with securing code

2+ hour, 12+ min ago  (425+ words) AI coding agents are making it easier than ever to produce software. Ensuring that software is secure before deployment is another matter " one that AWS thinks AI should help with too. As enterprises adopt agentic development workflows, the volume of…...

Symbols: d05.S0,u11.S0,z74.S0,584.S0,a31.S0,btc-usd
CSO Online
csoonline. com > article > 4187907 > klue-breach-exposed-salesforce-crm-data-through-stolen-oauth-tokens. html

Klue breach exposed Salesforce CRM data through stolen OAuth tokens

2+ day, 22+ hour ago  (478+ words) An attacker broke into competitive-intelligence vendor Klue, stole OAuth tokens its customers use to connect to Salesforce and other platforms, and accessed data across multiple customer environments prompting the company to revoke customer OAuth tokens and disabled affected integrations. "An…...

CSO Online
csoonline. com > article > 4187548 > why-southeast-asia-cisos-need-zero-trust-as-their-ai-control-plane-ai-agents-data-borders-and-supply-chains. html

Why Southeast Asia CISOs Need Zero Trust as Their AI Control Plane - AI Agents, Data Borders and Supply Chains

6+ day, 9+ hour ago  (1092+ words) At Zenith Live 2026 held on 16-17 June in Vienna, Zscaler sharpened a reality that Southeast Asia CIOs and CISOs are already sensing, which are, AI agents are quickly becoming digital workers inside their organisations, while regulators tighten data residency rules and…...

Symbols: ivn.to,cone.v,bng.to,sply.cn,fgfl.cn,win.ne
CSO Online
csoonline. com > article > 4186872 > security-considerations-for-adopting-claude-code-and-cowork-for-smbs. html

Security considerations for adopting Claude Code and Cowork for SMBs

4+ day, 9+ hour ago  (1777+ words) You are a security leader at a small or medium-sized business (SMB), and your organization has decided to adopt Claude. If you are like me, after the initial "surprise" wears off, you probably want to quickly get your arms around…...

Symbols: nasdaq:ntsk
CSO Online
csoonline. com > article > 4186877 > breaking-the-soc-triangle-how-ai-reshapes-security-operations-trade-offs. html

Breaking the SOC triangle: How AI reshapes security operations trade-offs

3+ day, 9+ hour ago  (572+ words) A simple framework has always governed security operations that I call the SOC Triangle. It is a balance between quality, consistency and cost efficiency. For years, the SOC Triangle has shaped how security teams are built and how they perform....

Symbols: btc-usd,eth-usd,xrp-usd,sol-usd,ivn.to,cone.v
CSO Online
csoonline. com > article > 4187155 > microsoft-says-web-enabled-ai-agents-can-trigger-host-level-rce. html

Microsoft says web-enabled AI agents can trigger host-level RCE

3+ day, 9+ hour ago  (410+ words) Microsoft is warning of a novel remote code execution (RCE) path possible through web-enabled AI agents, demonstrating the technique against Auto Gen Studio, its open-source interface for building and testing multi-agent applications. The demonstration showed that a malicious webpage rendered…...

Symbols: btc-usd,nasdaq:msft
CSO Online
csoonline. com > article > 4186970 > m365-copilot-searchleak-your-prompt-injection-attack-surface-just-got-bigger. html

M365 Copilot Search Leak: Your prompt injection attack surface just got bigger

3+ day, 16+ hour ago  (624+ words) A recent proof-of-concept attack against Microsoft's M365 Copilot Enterprise highlights what could be a much broader prompt injection threat based on a common way many AI-enhanced web services operate. Dubbed Search Leak, the attack hinged on a typical malicious objective: to…...

Symbols: cwe-77,btc-usd,ati-h.v,gray.cn,cacr.ne,vrts.to
CSO Online
csoonline. com > article > 4186983 > oracle-releases-245-new-security-patches-all-rated-high-priority-security. html

Oracle releases 245 new security patches, all rated "high-priority security

4+ day, 6+ hour ago  (732+ words) The Oracle Critical Security Patch update (CSPU) released this week contains 245 newly-announced fixes for supported on-premises software, some of which impact multiple products. It is in reaction to an industry trend to announce and fix security holes much more quickly,…...

Symbols: cwe-79,nasdaq:msft
CSO Online
csoonline. com > article > 4186790 > fortibleed-campaign-exposes-75000-fortinet-firewalls-worldwide. html

Forti Bleed campaign exposes 75, 000 Fortinet firewalls worldwide

4+ day, 9+ hour ago  (448+ words) A massive credential-compromise campaign dubbed "Fortibleed" has been found to expose tens of thousands of Fortinet devices worldwide, with researchers warning of persistent attacker access to affected enterprise environments. Further details came from SOCRadar after its team independently discovered an…...

Symbols: nasdaq:ftnt
CSO Online
csoonline. com > article > 4186569 > 5-new-security-operations-roles-the-ai-soc-will-create. html

5 new security operations roles the AI-SOC will create

4+ day, 9+ hour ago  (644+ words) For years we've heard the frightening prediction that AI will take jobs away from people. It will and it already is, but that doesn't mean it won't also create new jobs and skills demands " like every other labor trend driven…...

Symbols: nasdaq:csco,btc-usd