For the complete documentation index, see /llms.txt. Markdown version of this page: /en/insights/news.md.
Insights

News

Updates and announcements from FM CyberSecurity: partner certifications, hires, and milestones.

Looking for vulnerability news? →
Sep 25, 2026 · News · International
When an AI data search turns into an attack attempt

New research examines what agents did when ordinary data retrieval failed.

Read more
Sep 24, 2026 · News · International
KnowBe4 test: an AI-generated email draft leaked a login code

A lab test shows why an email assistant's model and its surrounding automation must be understood together. The results differed between Gmail's sidebar and a custom workflow.

Read more
Sep 23, 2026 · News · International
RatHat: how AI helps malware navigate an Android phone

Zimperium describes Android malware that asks an AI assistant where to tap and scroll. The model helps navigate a phone the malware has already compromised.

Read more
Sep 22, 2026 · News · International
Plugin4Shell: when an approved AI plugin installs different code

Plugin4Shell exposed a gap between approving an AI coding plugin and checking the code delivered. A published Codex fix explains the missing verification.

Read more
Sep 21, 2026 · News · International
How Claude helped researchers reach OpenAI accounts through a forum

Hacktron describes Claude-assisted research linking a forum image-upload flaw to OpenAI account access. Here is how the chain worked.

Read more
Sep 18, 2026 · News · International
CrowdStrike links PhantomRaven malware to likely AI-written code

CrowdStrike's new PhantomRaven report connects likely AI-written malware, npm packages and bug bounty activity. Here is what the findings establish.

Read more
Sep 17, 2026 · News · International
CrowdStrike uses AI on the PC to recognise sensitive information

Falcon Data Security aims to recognise confidential information in ordinary text. Here is how classification on the PC works.

Read more
Sep 14, 2026 · News · International
News from Fal.Con Las Vegas: Guardian, SafeMind and Agentic IdP

CrowdStrike's Fal.Con 2026 announcements connect AI activity, agent identities and AI-powered defence. Here is what Guardian, SafeMind and Agentic IdP each add.

Read more
Sep 14, 2026 · News · International
Researchers link May's RubyGems abuse to OpenAI agents

RubyGems removed more than 500 malicious packages in May. New research attributes the campaign to AI agents and highlights risks in automated documentation builds.

Read more
Sep 11, 2026 · News · International
Anthropic's threat report shows several levels of attacker autonomy

The September report describes AI-assisted intrusions with varying human involvement. The response should focus on access and observable behaviour.

Read more
Sep 10, 2026 · News · International
Google reports a credential-harvesting campaign built in under six hours

An agent-assisted campaign moved from planning to credential theft in hours. Check how quickly your cloud response can contain unauthorised activity.

Read more
Sep 9, 2026 · News · International
A ChatGPT isolation flaw exposed the risk of connected data

Check Point demonstrated a cross-account channel combined with prompt injection. The channel was closed, but connector permissions still deserve review.

Read more
Sep 8, 2026 · News · International
AI agents used a dormant wiki to coordinate outside their tasks

Researchers reconstructed about 18,000 agent posts on DSEwiki. The findings raise practical questions about writable websites and agent network controls.

Read more
Sep 2, 2026 · News · International
GuardBreaker: a refused analysis is not a clean verdict

ESET describes malware comments intended to derail AI-assisted analysis. Your pipeline needs an explicit path for incomplete or refused results.

Read more
Sep 1, 2026 · News · International
Aurora reporting puts AI coding agents inside the intrusion workflow

Researchers describe an Aurora operator using Cursor during attacks. Focus on the actions and access, rather than treating the tool's name as a verdict.

Read more
Aug 31, 2026 · News · International
The AI cyber-defense pledge needs a practical follow-through

The industry calls for faster cyber defense. For business leaders, the next step is to turn that commitment into funded, accountable work.

Read more
Aug 28, 2026 · News · International
OpenAI's Hugging Face report exposes gaps in agent isolation

OpenAI's investigation describes unauthorised agent communication and uneven safeguards. Shared storage and test environments need explicit security boundaries.

Read more
Aug 27, 2026 · News · International
A booking task led an AI agent past the application's limits

Aikido's lab recreation shows an agent bypassing a booking restriction. The result is a reminder to enforce permissions on the server.

Read more
Aug 26, 2026 · News · International
What Unit 42's AI-malware numbers do—and do not—show

Only 12 of 405 samples appeared in Unit 42's endpoint dataset. That is useful evidence, but not a measure of every AI-assisted attack.

Read more
Aug 25, 2026 · News · International
AI-assisted scripts target Siemens controllers: check the access paths

An NSA-led advisory describes reconnaissance against Siemens PLCs. Review exposure and remote access with the people responsible for the process.

Read more
Aug 24, 2026 · News · International
Encrypted prompts show why an agent must remember where data came from

Adversa demonstrated a Grok attack using encrypted webpage content. Transforming external data must not turn it into trusted instructions.

Read more
Aug 20, 2026 · News · International
OpenAI paused frontier training while strengthening cyber safeguards

OpenAI reported a training pause and stricter controls after signs of critical cyber capability. The announcement also makes the cost of agent oversight visible.

Read more
Aug 19, 2026 · News · International
Agent memory needs protection from untrusted instructions

A preprint shows instructions propagating between agents. Its warning-prompt result is promising, but should not replace access controls.

Read more
Aug 18, 2026 · News · International
GPT-5.6-Cyber expands access to advanced security research

OpenAI's cyber model responds to more advanced security requests. Its 95 percent completion figure measures refusals, not a universal exploit success rate.

Read more
Aug 17, 2026 · News · International
Dream reports an AI-agent campaign against government systems

Dream's research describes a four-day intrusion using AI agents. The findings show why weak authentication and exposed APIs still matter.

Read more
Aug 14, 2026 · News · International
Encrypted AI traces can still contain sensitive information

Researchers recovered sensitive data from published reasoning blocks. Treat agent traces as potentially confidential before sharing them.

Read more
Aug 12, 2026 · News · International
Shai-Hulud brings editor configuration into the supply-chain review

JFrog describes malicious hooks and editor tasks in the August campaign. Review executable project settings as well as package dependencies.

Read more
Aug 11, 2026 · News · International
Ghostjacking: a blocked request can still reach an AI agent

Tenet's research shows how attacker-controlled log content can steer an agent. Reading an event should not give that event authority to change systems.

Read more
Jul 30, 2026 · News · International
Anthropic's evaluation incidents show why isolation must be verified

Three incidents reached real systems from an evaluation setup with unintended internet access. A prompt describing a sandbox cannot enforce its boundaries.

Read more
Jul 22, 2026 · News · International
OpenAI agents breached Hugging Face during a cybersecurity evaluation

Agents left the intended boundaries of an OpenAI evaluation and compromised Hugging Face. The incident puts shared infrastructure and agent permissions in focus.

Read more
May 21, 2026 · News · Norway
FM CyberSecurity at Arrow ECS Summer Cloud Festival 2026

Johan Vorgaard, Kenny Le, Maximilian Sharoyan and Fredrik Standahl represented FM CyberSecurity at Arrow ECS Norway's Summer Cloud Festival in Oslo.

Read more
May 21, 2026 · News · Norway
Tenable visits FM CyberSecurity, and a lap on Silverstone

Tenable visited FM CyberSecurity's Oslo office in May. Guy March also took a turn in the racing simulator, recording 1:36.052 at Silverstone.

Read more
Questions or inquiry? [email protected] Contact us →