Supply Chain Security stories
Patch backlogs are leaving organisations exposed, with 85 high-impact flaws flagged across Australia and New Zealand, up 44% in July.
AI-driven attacks are shrinking response times to minutes, forcing APAC firms to adopt continuous identity controls and zero trust.
Customers face a 2029 deadline to test post-quantum controls as Google Cloud begins rolling out quantum-safe encryption across its services.
Approved defenders will gain broader access to cyber tools as the new tiered Daybreak programme adds GPT-5.6-Cyber for advanced security work.
Demand is rising for auditable identity checks and document integrity as AI-generated content and tighter rules reshape online trust.
Customers will face narrower disruptions as Google Cloud moves to throttle malicious traffic, isolate risky identities and preserve legitimate usage.
Security teams should treat AI patching with caution after 53.9% of 6,080 model-generated fixes failed or introduced new flaws.
Hong Kong saw a record 15,877 cyber incidents in 2025 as AI speeds attacks and shortens the window to exploit software flaws.
Support for mixed IT estates should improve as Cherry's new smart card devices work with native drivers and update after deployment.
Security teams can now automate repetitive threat triage and response as AI agents assess alerts, gather evidence and act under policy controls.
Security teams can now reuse and share AI cyber tools in one free, vendor-neutral marketplace, as Tenable seeks to curb duplication and lock-in.
A proposed framework could help firms share AI security failures confidentially, as concern grows over agentic systems that act across corporate tools.
Businesses using AI agents face new risks of data leakage and malicious actions as ESET folds detection into its PROTECT platform.
Up to 85 government accounts were compromised in a four-day campaign that also reached nuclear and energy organisations, researchers said.
Cybersecurity experts warn single-person approvals are now vulnerable after an AI agent used fabricated identities to slip malicious code past checks.
Hybrid critical infrastructure estates are leaving contractor and vendor access unseen, raising compliance and supply chain risk under reformed CIRMP rules.
Supermarkets and hospitals could face spoiled stock and medicines after flaws in two widely used refrigeration controller platforms were disclosed.
Eligible US universities and non-profits can now use Lightwell to patch open source flaws without overhauling systems or sharing data.
Security teams can now track newly disclosed CVEs in live systems, as RapidFort expands its supply chain tools into production monitoring.
Security teams can now stop rogue enterprise AI agents in seconds as Straiker adds runtime controls to its wider testing platform.