Upwind just dropped a new product announcement today, and it signals a fundamental shift in how the company thinks about AI risk. CEO Amiram Shachar published a lengthy post this morning laying out Upwind’s “Security for AI” thesis, the companion piece to their earlier push around agentic AI capabilities. The core argument is simple: AI security isn’t a standalone product […]<br /> This story continues at The Next Web [...]
For years, software supply chain attacks focused on compromising widely used applications after they had already been deployed. Increasingly, however, attackers are shifting their attention further up [...]
When cloud computing transformed enterprise IT, security vendors followed the workloads. Visibility into cloud infrastructure became a central requirement as organizations shifted applications and d [...]
Developers often assume that packages published through official channels have passed through a secure release process. That assumption is fundamental to modern software development, where open sourc [...]
Any development environment that installed or imported one of the 172 compromised npm or PyPI packages published since May 11 should be treated as potentially compromised. On affected developer workst [...]
For the last 24 months, one narrative justified every over-provisioned data center and bloated IT budget: the GPU scramble. Silicon was the new oil, and H100s traded like contraband. Reserve capacity [...]
An attacker on Tuesday took over the GitHub account of the developer who maintains keyv, a small key-value storage library that npm serves roughly 127 million times a week. Within hours, poisoned vers [...]
Hybrid cloud security was built before the current era of automated, machine-based cyberattacks that take just milliseconds to execute and minutes to deliver devastating impacts to infrastructure. The [...]
Bose announced its latest earbuds in June, but the QuietComfort Ultra Earbuds (2nd gen) ($299) won’t arrive until early September. Today, though, they’re available for preorder, and I’ve spent t [...]
Wiz researchers found a single credential that could unlock every database running on Microsoft’s Azure Cosmos DB. They named it the Cosmos Master Key. And the vulnerability hunter that helped find [...]