NIST wants to overhaul its vulnerability database for the AI age

NIST is seeking public input to modernize the National Vulnerability Database to keep pace with AI-driven cyber threats and machine-scale security data.

The post NIST wants to overhaul its vulnerability database for the AI age appeared first on CyberScoop.

Continue reading NIST wants to overhaul its vulnerability database for the AI age

Chinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable servers

A Chinese threat actor operating under the aliases “knaithe” and “KnYuan” used multiple LLMs to automate cyberattacks against internet-facing systems with limited human intervention. Researchers at Palo Alto Networks’ Unit… Continue reading Chinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable servers

Companies push AI, sysadmins keep it on a short leash

In 2024, sysadmins expected AI to automate patch management optimization, vulnerability prioritization, infrastructure monitoring, and incident response within two years. Action1’s 2026 Survey Report: AI Impact on Sysadmins found that those expec… Continue reading Companies push AI, sysadmins keep it on a short leash

Marathon Petroleum’s CISO on OT security automation, supply chain risk

In this interview with Help Net Security, Mary Rose Martinez, CISO at Marathon Petroleum, talks about what happens to security when automation reaches deep into refineries, pipelines, and terminals. She explains why the old idea of air-gapped operation… Continue reading Marathon Petroleum’s CISO on OT security automation, supply chain risk

The AI code vulnerabilities that grow with your app

Theori built 28 apps with AI coding agents and scanned each one through its pentesting platform. Five models did the building, split between Anthropic and OpenAI, across apps written from a spec, thrown together from a casual prompt, and rewritten from… Continue reading The AI code vulnerabilities that grow with your app

OpenAI Presence connects AI agents to enterprise data with built-in guardrails

OpenAI has introduced Presence, a product designed to help companies deploy AI agents that handle customer support and internal service requests across voice and chat. (Source: OpenAI) The company describes Presence as a deployment platform rather than… Continue reading OpenAI Presence connects AI agents to enterprise data with built-in guardrails

AI can’t fix cybersecurity’s hiring problem

Organizations are redefining cybersecurity roles through workforce frameworks and placing greater emphasis on verified skills as AI and new regulatory requirements change hiring. The SANS 2026 Cybersecurity Workforce Survey found demand for specialists… Continue reading AI can’t fix cybersecurity’s hiring problem