CSO Online
PulseAugur coverage of CSO Online — every cluster mentioning CSO Online across labs, papers, and developer communities, ranked by signal.
-
AI excels at finding vulnerabilities but struggles with secure code generation
AI models are showing promise in identifying zero-day vulnerabilities, but they still struggle with reliably generating secure code. While AI can assist in finding security flaws, its current capabilities do not extend …
-
AI in Security Operations Depends on Data Quality
The success of AI in security operations hinges on the quality of data it processes. As artificial intelligence systems are increasingly integrated into Security Operations Centers (SOCs) to automate threat triage and a…
-
Exposure Management Emerges as Successor to Vulnerability Management
Exposure management is emerging as a successor to traditional vulnerability management, addressing the limitations of current security approaches. This shift acknowledges that visibility alone is insufficient for effect…
-
AI safety certificates often fail at runtime, CSO Online reports
AI safety certificates issued by enterprise technology vendors are often ineffective when applied in real-world runtime scenarios. This is because these certificates may not accurately reflect the actual performance or …
-
Elite Security Engineers: 7 Essential Skills for Cybersecurity
Elite security engineers possess seven key skills and traits crucial for enterprise cybersecurity. These professionals are responsible for designing and implementing robust security measures to protect organizations fro…
-
Critical RCE vulnerability in LiteLLM exploited in the wild, CISA adds to KEV list
A critical remote code execution vulnerability, CVE-2026-42271, has been identified in LiteLLM, a popular open-source AI model gateway. This flaw, when combined with a Starlette host-header bypass (CVE-2026-48710), allo…
-
AI agents tricked into leaking data in phishing tests
Researchers have demonstrated that autonomous AI agents can be tricked into revealing sensitive information through carefully crafted phishing attacks. By presenting these agents with simulated phishing scenarios, the A…
-
Anthropic's Claude Code tool suffers critical security flaw
Anthropic's Claude Code, a tool designed to assist developers with coding tasks, has been found to have a critical security vulnerability. This flaw, referred to as an MCP (Master Control Program) issue, could potential…
-
GitHub VSCode Editor Flaw Exposes User Tokens
A security vulnerability has been identified in GitHub's browser-based VSCode editor, potentially allowing attackers to steal user tokens. This flaw could expose sensitive information and grant unauthorized access to us…