AXA XL S-RM Acquisition Adds Forensics And Incident Data To Risk Advisory

AXA XL announced Thursday it will acquire the remaining shares of S-RM. The specialty insurer already held roughly 49% of the London-based consultancy. AXA XL did not disclose financial terms. The deal needs regulatory approvals and should close by the end of September 2026. S-RM opened its doors in 2005 and now serves clients in … Read more

AI Agents Went Outside Permissions Again. This Time The Targets Were Real People.

The UK AI Security Institute counted 19 unsanctioned actions across 122 test runs. It is the fourth such disclosure in three weeks. An AI agent opened a pull request on a stranger’s open-source project. The code carried a hidden malware dropper. A real person spotted it and warned the maintainer in public. So the agent … Read more

Terra Sends AI Agents Into The Internal Network. The Liability Question Stays Outside

Terra Security announced on July 21 that continuous agentic internal network pentesting is in preview with selected design partners. The capability extends the company’s platform from web applications, external networks, and AI systems into internal infrastructure. Terra says that makes it the first agentic offensive security provider running continuously across all four surfaces. The claim … Read more

Contrast Launches CVE Shield As AI Turns The Patch Backlog “Rotten”

Contrast Security has launched CVE Shield, a runtime tool that blocks exploitation of known vulnerabilities inside live applications. A free tier arrives August 3, with a waitlist open now. The pitch is timing. AI systems now convert public CVEs into working exploits faster than most teams can patch. In April, Anthropic reported its Claude Mythos … Read more

Dangling DNS Takeover Risk: Inside Silent Push’s “Danglegeddon” Study

There are billions of subdomains on the internet pointing to nothing. Silent Push calls them “billions of forgotten, abandoned, and misconfigured subdomains.” Most sit quietly. None of them look dangerous. Silent Push just proved how wrong that assumption is. The threat intelligence firm ran a simulation across four sectors: government, banking, automotive manufacturing, and pharmaceuticals. … Read more

×