
NEWS
News & Perspectives
Selected stories on AI security, data protection and data sovereignty. Each with a short take on why it matters for secure enterprise AI.
Agentic Security·The Hacker News“Phishing 3.0”: Security Researchers Say the Next Wave of Attacks Is Agent Versus Agent
New analysis describes a shift from static phishing emails to AI agents that generate personalized, conversational, multi-channel lures faster than a person — or a traditional filter — can keep up with. A 2026 Dark Reading readership poll found 48% of security professionals now rank agentic AI as the top attack vector of the year, ahead of deepfakes, while independent testing found Microsoft 365 and Google Workspace's built-in email defenses are missing hundreds of phishing messages per 100 mailboxes every month.
Source: The Hacker NewsRead article
Supply chain·heise.deLiteLLM attack: over 2500 companies affected
Manipulated packages in the Python index gave attackers access to roughly 434,000 automated build pipelines across more than 2,500 companies, among them Airbus, Samsung, Salesforce and Volkswagen. Cloud keys, repository tokens, SSH keys, Kubernetes secrets and AI provider keys were taken. The malicious packages were online for only 40 minutes.
Source: heise.deRead article
Data Breach Costs·helpnetsecurity.comData breach cost 2026 averaged $4.99 million, AI attacks ran higher
The 2026 IBM Cost of a Data Breach Report, released this morning and based on Ponemon Institute interviews at more than 600 breached organizations, puts the average breach at $4.99 million — a record, and up more than a tenth year over year. Employees using unapproved AI tools figured in 43% of security incidents, more than double the prior year's share; about half of those incidents ended in data loss or compromise and roughly one in five drew a regulatory fine. Among organizations that suffered an incident involving an AI model or application, 92% lacked role-based access, multifactor authentication or comparable controls on those systems, and close to seven in ten breached organizations h
Source: helpnetsecurity.comRead article