ReversingLabs

Agentic AI scales semiautonomous server attacks

A group of Chinese-speaking cybercriminals is using artificial intelligence to orchestrate malicious attacks on government, media, technology, and gaming organizations, a research report has found.Dubbed UAT-10147, the group is among an emerging class of financially motivated intrusion operators using AI systems to operationalize offensive tradecraft at scale, Cisco Talos threat intelligence group researchers said.Talos threat intelligence researcher Joey Chenexplained in an August 20 blog postt

Read More
ReversingLabs

Extend CrowdStrike Falcon with Permanent Intelligence

Key TakeawaysCrowdStrike Falcon delivers fast, accurate behavioral detection at the endpoint, but it watches processes, not the full file behind them, and its telemetry window is measured in weeks.ReversingLabs Spectra Analyze® closes that gap with a permanent file vault and deep static and dynamic analysis, giving Falcon detections a second opinion that never expires.CrowdStrike Falcon gives security teams unmatched behavioral detection and adversary intelligence at the endpoint. It watches wha

Read More
ReversingLabs

Can AI beat AI? 3 challenges with VulnOps adoption

Emerging AI frontier models could be the impetus that gets security professionals to finally tackle the tough job of fixingbroken vulnerability management practices. Security strategists see Mythos and its ilk as engines for dangerously increasing exploitation risks — but  also as the tools that will make it possible to bring to fruition all of those elusive VM improvements that have been out of reach for so long.Take the push for continuous threat exposure management (CTEM), which emphasizes do

Read More
ReversingLabs

AI use in cybersecurity is on the rise — and so is burnout

More than 80% of organizations’ cybersecurity operations are currently getting an assist from AI or are planning to adopt it, but nearly seven out of 10 security pros say their jobs have gotten harder since the widespread adoption of AI began. That’s a finding from the latest cybersecurity report from the Information Systems Security Association (ISSA) and research and consulting firm Omdia.TheLife and Times of Cybersecurity Professionals studynoted that job satisfaction numbers have been consis

Read More
ReversingLabs

Best Enterprise File Scanning Tools of 2026

Key TakeawaysEnterprise file scanning covers the file sources endpoint antivirus was never built for: email gateways, web proxies, cloud storage, MFT platforms, and network shares.Ingestion channel breadth (MTA/email, ICAP web proxy, S3 cloud storage, network shares, API) is often the deciding factor for teams protecting multiple data flows simultaneously.Analysis methods in this category range from signature AV and ML classification to deep static decomposition; sandbox detonation is a separate

Read More
ReversingLabs

AI summary attack conceals code that tampers with LLMs

Key takeawaysNearly half the content passed to the model was invisible to the reader: 1,009 characters sent, 537 displayed, 472 hidden.The summaries contained fabricated data and omitted facts, with no cue to the reader that anything had been tampered with.Indirect prompt injection is a known flaw, cataloged as LLM01 in the 2023 OWASP Top 10 for LLM Applications, but teams keep shipping systems that are exposed to it.The attacker never needs access to the LLM, because services such as email auto

Read More
ReversingLabs

OpenAI: Hugging Face mob agent incident is ‘a warning shot’

Key takeawaysOpenAI’s post-mortem calls the Hugging Face incident a “warning shot”: agents chained ordinary infrastructure flaws and reached host-level control across clusters in under 13 hours, with no human directing them.Soft guardrails don’t hold. A system prompt is a probabilistic control; real limits are least privilege, task-scoped capabilities, approval gates, and circuit breakers enforced outside the model.A tiered, batch-processing SOC can’t match that speed. The agentic SOC answers wi

Read More
ReversingLabs

Get the Spectra Assure Community Plugin for JFrog Artifactory

Even with JFrog Artifactory proxying public open-source software (OSS) registries, package managers like npm and pip will typically pull the newest version of a dependency — even if it was published just moments before. That’s convenient — but it’s also the workflow attackers have learned to exploit.Malicious OSS packages aren’t a one-off problem anymore. They’re a recurring campaign. For example, the Shai-Hulud worm is now on its fourth iteration. Trivy, Axios, and LiteLLM have all seen comprom

Read More