Archive for November, 2025

By Ionut Arghire

An attacker can inject indirect prompts to trick the model into harvesting user data and sending it to the attacker’s account.

The post Claude AI APIs Can Be Abused for Data Exfiltration appeared first on SecurityWeek.

…read more

Source:: securityweek

By Associated Press

Kolter leads a panel at OpenAI that has the authority to halt the ChatGPT maker’s release of new AI systems if it finds them unsafe.

The post Who is Zico Kolter? A Professor Leads OpenAI Safety Panel With Power to Halt Unsafe AI Releases appeared first on SecurityWeek.

…read more

Source:: securityweek

By Kevin Townsend

CISO burnout is increasing. Are we simply more aware of the condition? Or have demands on the CISO grown and burnout is now the inevitable result? In 2019, burnout was defined by the World Health Organization as an occupational phenomenon rather than a medical condition. In 2025, this non-medical condition, initially given the same symptoms […]

The post CISO Burnout – Epidemic, Endemic, or Simply Inevitable? appeared first on SecurityWeek.

…read more

Source:: securityweek

By Matias Madou

To deploy AI tools securely and ethically, teams must balance innovation with accountability—establishing strong governance, upskilling developers, and enforcing rigorous code reviews.

The post How Software Development Teams Can Securely and Ethically Deploy AI Tools appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

Yuriy Igorevich Rybtsov, aka MrICQ, was arrested in Italy and lost his appeal to avoid extradition to the US.

The post Ukrainian Extradited to US Faces Charges in Jabber Zeus Cybercrime Case appeared first on SecurityWeek.

…read more

Source:: securityweek

Security leaders will discuss the impact that public-private partnerships have on community security and public safety.

…read more

Source:: Security magazin

By Ionut Arghire

The November 2025 Android patches resolve two vulnerabilities, both in the platform’s System component.

The post Android Update Patches Critical Remote Code Execution Flaw appeared first on SecurityWeek.

…read more

Source:: securityweek

By Eduard Kovacs

SPLX red teaming, asset management, and threat inspection technology will enable Zscaler to expand its Zero Trust Exchange platform.

The post Zscaler Acquires AI Security Company SPLX appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

Apple has released iOS 26.1 and macOS Tahoe 26.1 with patches for over 100 vulnerabilities, including critical flaws.

The post Apple Patches 19 WebKit Vulnerabilities appeared first on SecurityWeek.

…read more

Source:: securityweek

By Eduard Kovacs

Bugcrowd said the acquisition of Mayhem has nearly doubled its valuation — previously reported at over $1 billion.

The post Bugcrowd Acquires Application Security Firm Mayhem appeared first on SecurityWeek.

…read more

Source:: securityweek