ReversingLabs

AI domain takeover takeaway: Focus on the harness not the model

Mention offensive AI and expect the discussion to focus on vulnerability discovery, malware creation, and exploit generation, butrecent researchby Cato Networks identified another — and very potent — application for offensive AI.Cato explained in ablog postthat it evaluated in a controlled Active Directory lab environment, how frontier models behave when combined with agent platforms, MCP-enabled tooling, and operational guidance. “The objective was straightforward: determine how effectively an

Read More
ReversingLabs

Frontier AI agents: Only as safe as their containment

After AI models from both OpenAI and Anthropic autonomously compromised systems belonging to external organizations, security experts are calling for robust security controls around the testing and evaluation of AI agents.The more widely reported incident involved OpenAI models that, while being evaluated on their ability to autonomously discover and exploit software vulnerabilities, escaped a sandbox and compromised production systems at the AI platform Hugging Face.The test, called ExploitGym,

Read More
ReversingLabs

Black Hat 2026: AI rewrites the rules of cybersecurity

If Black Hat USA 2026 is any indication, the cybersecurity industry is going strong. This year’s conference, part of a series of “Hacker Summer Camp” events held in Las Vegas during the first week of August, drew more than 23,000 verified attendees, according to organizer Informa Tech. That was an increase of more than 15% from last year’s show, with AI the dominant theme.Case in point: a packed, last-minute Breaking News session called “Frontier AI Security Breach Exposed” in which OpenAI secur

Read More
ReversingLabs

RL Malware Analysis and Threat Hunting Updates for H1 2026

Three themes run through RL’s Malware Analysis and Threat Hunting portfolio updates for the first half of 2026: Infrastructure Modernization, Automated Incident Response, and AI-ready Architecture.Here are the key highlights:Spectra Detect v6.1: Kubernetes-Native Deployment for Enterprise ScaleSpectra Detect is engineered for speed, scalability, and extensibility, with the ability to process millions of files per day. With the release of version 6.1, Spectra Detect introduces Kubernetes microser

Read More
ReversingLabs

Can Lean improve security for AI-coded software?

A whopping 95% of all code will be AI-generated within the next five years, Microsoft’s chief technology officer, Kevin Scott,predicted recently. Because AI-generated code tends to be security-challenged, that will be a big headache for security teams.One studyof more than 100 large language models (LLMs) across Java, Python, C#, and JavaScript found that 45% of the code samples failed security tests and introduced vulnerabilities on the OWASP Top 10.That’s not just a quality problem, Leonardo d

Read More
ReversingLabs

Why software delivery cannot depend on trust alone

Researchers at Upwind found that attackers injected malware directly into the AsyncAPI project’s source repositories before the packages were published to the npm registry.The compromised packages moved through official publishing channels and thus looked legitimate to developers, who were at risk of pulling malicious code into their workstations and CI/CD environments simply by importing the packages.The blast radius of the method extends well past any single application. Once release infrastru

Read More
ReversingLabs

Why shadow AI is far riskier than shadow IT

The AI version of shadow IT is proving to be just as pernicious as its more traditional counterpart — and in some ways, it’s harder for organizations to see and control.Shadow AI refers to AI tools or AI-powered features that employees use for work without the knowledge, approval, or oversight of IT, security, or compliance teams.That use can range fromthe relatively innocuous — an employee pasting a document into ChatGPT or Claude to summarize it — to far riskier things such as installing an un

Read More
ReversingLabs

How to build effective agentic SOCs: What you need to know

Key TakeawaysThe agentic SOC replaces batch-oriented triage and escalation with a real-time pipeline that detects, investigates, and responds in minutes, because AI-assisted attackers now find and exploit flaws in seconds.Agents are only as smart as the context they reason on, so a pre-correlated context layer spanning network, endpoint, identity, and threat intelligence matters more than raw model horsepower.The Agentic SOC Alliance is an effort to make that architecture an industry standard ra

Read More