top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


Anthropic Opens Mythos-Class AI to the Public With Claude Fable 5 Safety Controls
Anthropic has released Claude Fable 5, a new artificial intelligence model that brings much of its restricted Mythos technology to the public while attempting to block its most dangerous capabilities. Fable 5 generally allows users to access Mythos-class reasoning for complex tasks. When Anthropic’s systems detect requests involving high-risk areas, such as biological weapons or software exploitation, the query will instead be handled by the older Claude Opus 4.8 model. “We w
Jun 10


ServiceNow Security Flaw Exploited to Access Customer Instance Data
ServiceNow has disclosed a security incident involving a vulnerability that allowed unauthenticated users to access information inside some customer instances. The enterprise software provider said it detected anomalous activity connected to the flaw and found evidence that attackers successfully queried instance tables belonging to a subset of customers. ServiceNow privately notified the affected organizations and deployed a security update to hosted environments on June 5,
Jun 10


AI-Assisted Researchers Uncover ‘HTTP/2 Bomb’ Attack That Can Cripple Major Web Servers in Seconds
A newly disclosed denial-of-service attack is raising concerns across the cybersecurity community after researchers demonstrated how a single machine can overwhelm enterprise web servers and consume tens of gigabytes of memory within seconds. The attack, dubbed HTTP/2 Bomb, targets implementations of the HTTP/2 protocol used by some of the world's most widely deployed web infrastructure platforms, including NGINX, Apache HTTP Server, Microsoft IIS, Envoy, and Cloudflare's Pin
Jun 3


Carnival Data Breach Exposes Passenger Information After Social Engineering Attack
A cybersecurity incident at Carnival Corporation has once again highlighted how human-focused attacks continue to bypass traditional security defenses, exposing sensitive customer information despite the presence of enterprise-grade security controls. The cruise giant disclosed that threat actors gained unauthorized access to company systems in April after successfully manipulating an employee through a social engineering scheme. While Carnival said it moved quickly to contai
Jun 1


7AI Unveils New AI Threat Hunting Capabilities for Security Teams
AI security startup 7AI has launched three new capabilities designed to give security teams greater control over autonomous security operations: Threat Hunt, Threat Intel Hunt, and Skills. The additions allow analysts to proactively investigate threats, automate intelligence-driven investigations, and customize how AI agents operate within their environments. Rather than relying solely on alerts, Threat Hunt enables analysts to launch hypothesis-driven investigations using na
Jun 1


Self-Propagating Software Supply Chain Attacks Signal a New Phase of Cybercrime
A sophisticated cybercrime campaign is reshaping how attackers exploit the modern software ecosystem, moving beyond isolated breaches into a model where compromise can spread autonomously across trusted development pipelines. BlueVoyant security researchers tracking an actor known as Replicating Marauder say the group has evolved its operations into a multi-phase supply chain campaign that leverages developer tools, package registries, and CI/CD workflows as both entry points
May 27
bottom of page