AppSec stories - Page 5
Tenable reveals 'LookOut' flaws that endanger Google Looker
Fri, 6th Feb 2026
#
firewalls
#
data analytics
#
network security
Tenable warns 'LookOut' flaws in Google Looker could hand attackers server control, expose secrets and enable cross-tenant cloud access.
Moltbook 'vibe-coded' flaw exposed AI chats & keys
Fri, 6th Feb 2026
#
dr
#
cloud security
#
application security
Moltbook left a Supabase key exposed, leaking AI chats, 30,000 emails and 1.5 million API keys in a cautionary tale of vibe coding risk.
Qodo 2.0 debuts multi-agent AI code review upgrade
Fri, 6th Feb 2026
#
devops
#
application security
#
devsecops
Qodo 2.0 launches multi-agent AI code review to boost trust in autogenerated code, claiming 11% better detection of critical issues.
Developers' AI agents pose rising software supply risks
Fri, 6th Feb 2026
#
data protection
#
cloud security
#
application security
Developers granting AI agents broad, unsupervised access to code and systems are creating new software supply chain and data exposure risks.
DryRun unveils AI DeepScan Agent for faster code risk
Thu, 5th Feb 2026
#
application security
#
physical security
#
devsecops
DryRun launches DeepScan Agent, an AI tool that scans whole codebases in hours to rank real-world security risks and speed remediation.
Tenable reveals Looker flaws risking cross-tenant attacks
Thu, 5th Feb 2026
#
data analytics
#
cloud security
#
application security
Tenable warns unpatched self-hosted Google Looker systems face remote takeover, data theft and cross-tenant cloud attack risks.
RapidFort raises USD $42m for automated vuln fixes
Thu, 5th Feb 2026
#
cloud security
#
application security
#
devsecops
RapidFort secures USD $42m Series A to scale automated software supply chain security and continuous vulnerability remediation.
Security Journey unveils AI-era developer manifesto
Thu, 5th Feb 2026
#
application security
#
devsecops
#
supply chain
Security Journey launches AI-era developer manifesto and revamped platform to embed secure coding into everyday workflows and tooling.
AI agents expose risks in insecure default databases
Wed, 4th Feb 2026
#
firewalls
#
data protection
#
network security
A security lapse at AI agent service Moltbook exposes risky default database settings, raising fresh alarms over agentic system safeguards.
DigiCert warns of prolonged online demand & attacks
Fri, 30th Jan 2026
#
firewalls
#
network security
#
application security
DigiCert warns Q4 internet traffic stayed high as DDoS and app-layer attacks grew longer and more intense, eroding traditional peak seasons.
AI security drives demand for faster pentesting models
Fri, 30th Jan 2026
#
devops
#
digital transformation
#
cloud security
AI security fears and rapid release cycles are pushing firms to demand faster, deeper pentesting - and many are ready to ditch existing vendors.
HackerOne unveils AI‑driven continuous pentesting service
Thu, 29th Jan 2026
#
devops
#
cloud security
#
application security
HackerOne launches Agentic PTaaS, blending AI agents with human experts to deliver continuous, always-on penetration testing for enterprises.
AI reshapes data privacy as firms shift to real-time defence
Thu, 29th Jan 2026
#
saas
#
data protection
#
devops
AI-driven cloud adoption is forcing firms to swap static privacy checklists for continuous, real-time defence of sensitive data flows.
Cloudbrink boosts AI security for hybrid enterprises
Wed, 28th Jan 2026
#
firewalls
#
data protection
#
digital transformation
Cloudbrink adds Safe AI controls to its zero trust platform, securing hybrid enterprise use of AI agents and browser-based AI services.
Radware buys Pynt to bolster pre-production API security
Tue, 27th Jan 2026
#
devops
#
digital transformation
#
cloud security
Radware acquires Pynt to add pre-production testing and deliver unified lifecycle API security from design through to runtime defence.
Radware unveils cloud service for unified API security
Fri, 23rd Jan 2026
#
firewalls
#
hybrid cloud
#
digital transformation
Radware launches cloud-based API Security Service unifying discovery, posture management and runtime defence to counter evolving API threats.
Attackers target AI agents with prompt & tool hacks
Wed, 21st Jan 2026
#
application security
#
advanced persistent threat protection
#
rpa
Attackers are already exploiting AI agents, extracting hidden prompts, bypassing safety checks and abusing tools tied to data and systems.
Cobalt launches two-way Microsoft Teams pentesting tool
Wed, 21st Jan 2026
#
uc
#
devops
#
digital transformation
Cobalt debuts a two-way penetration testing integration for Microsoft Teams, promising faster remediation and real-time security collaboration.
GitLab rolls out Duo AI Agent Platform for DevOps teams
Fri, 16th Jan 2026
#
devops
#
application security
#
physical security
GitLab releases Duo AI Agent Platform to orchestrate AI across the full DevOps lifecycle, promising faster, governed software delivery.
F5 launches AI Guardrails & Red Team for runtime security
Thu, 15th Jan 2026
#
saas
#
firewalls
#
data protection
F5 rolls out AI Guardrails and AI Red Team to harden runtime security, blending adversarial testing with real-time policy enforcement.