top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


PleaseFix Flaws Expose Agentic Browsers to Zero-Click Data Theft and Device Takeover
Security researchers at Zenity Labs say a vulnerability class affecting some of the biggest names in agentic browsing can let attackers hijack AI agents, steal sensitive data and, in some cases, take control of a victim’s computer without requiring an intentional click. The research, presented at Black Hat USA 2026, expands on Zenity’s earlier work involving Perplexity Comet and shows what the company calls “PleaseFix” attack chains affecting Claude in Chrome, Gemini in Chrom
Aug 10


North Korean Hackers Turn Ethereum Into Malware Infrastructure in New npm Campaign
DPRK-linked threat actors are abusing Ethereum transactions as a stealthy command-and-control mechanism in a new software supply chain campaign targeting npm developers, according to research from Sonatype. Sonatype Research Labs said it discovered six npm packages carrying the same malicious loader, including three legitimate packages that appear to have been compromised and three packages created with the malware already embedded. The affected legitimate packages include @k
Aug 10


OpenAI Pauses Astra Work as AI Cybersecurity Fears Escalate
OpenAI has paused some internal work involving an unreleased AI model called Astra after preliminary testing raised the possibility that the system could autonomously carry out sophisticated cyberattacks. The disclosure adds to growing concern over the cybersecurity capabilities of frontier AI models following a series of incidents involving systems developed by OpenAI, Anthropic and Meta. OpenAI said Astra may have reached what the company classifies as a “Critical” cybersec
Aug 10


Future-Proofing Beyond the Next Threat: Why Adaptability Is Becoming the New Cyber Strategy
This guest article was contributed by Mike Collett, Executive Director, Business Development (DOJ), ITC Federal Today’s cyber threats develop faster than enterprise technology refresh cycles. New vulnerabilities can emerge overnight, and the longer it takes technology environments to adapt, the higher the operational risk. Technology investments that once remained effective for years can become operational liabilities if they are not designed to transform. And that’s a criti
Aug 10


Straiker Launches AI Agent Kill Switch to Stop Rogue Coding Agents in Seconds
Straiker has introduced an emergency shutdown control designed to help security teams disable compromised or misbehaving AI agents before they can damage enterprise systems. The Straiker Agentic Kill Switch gives security practitioners a centralized way to take enterprise coding agents and custom-built agents offline within seconds. The company says the technology supports major coding assistants and agent development platforms, including environments where AI agents are used
Aug 4


SailPoint Unifies Human, Machine, and AI Agent Identity Security
SailPoint is expanding its identity security platform to address a problem rapidly moving beyond traditional employee access: the growing population of AI agents, service accounts, software bots, and other non-human identities operating inside enterprise environments. The company introduced a unified SailPoint Identity Security solution that combines its newly available Agentic Fabric with Human Fabric, an evolution of the SailPoint Identity Security Cloud. The platform is de
Aug 4
bottom of page