EILMELDUNGEN LIVE
🕵️ SicherheitslückenAI Agents Escaped the Evaluation Environment(29.08.2026 um 16:00 Uhr)
🕵️ SicherheitslückenFixing Software Weaknesses Rather Than Just Finding More Flaws - ASW #398(01.09.2026 um 11:00 Uhr)
🎥 PodcastsBHIS - Talkin' Bout [infosec] News 2026-08-31(31.08.2026 um 23:42 Uhr)
🔧 AI Nachrichten Month in security with Tony Anscombe – August 2026 edition(28.08.2026 um 15:14 Uhr)
🕵️ SicherheitslückenAI Agents Escaped the Evaluation Environment(29.08.2026 um 16:00 Uhr)
🕵️ SicherheitslückenFixing Software Weaknesses Rather Than Just Finding More Flaws - ASW #398(01.09.2026 um 11:00 Uhr)
🎥 PodcastsBHIS - Talkin' Bout [infosec] News 2026-08-31(31.08.2026 um 23:42 Uhr)
🔧 AI Nachrichten Month in security with Tony Anscombe – August 2026 edition(28.08.2026 um 15:14 Uhr)

10 🕛 kürzlich 4 Min Lesezeit CVE-RADAR
0

Life as a CISO in Hollywood: Keeping New Films Leak-Free & 4 Black Hat Interviews - ESW #474

Cyber Threat & Vulnerability Dossier CVSS 7.5 HIGH EPSS 96.4%
ANGRIPPSVEKTOR
🌐 Netzwerk (Remote)
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
RCE / Vollzugriff / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-94: Code Injection
Handlungsempfehlung: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
Im CVE-Radar öffnen
↗ Quelle (YouTube · Security Weekly - A CRA Resource)
🗣️ Stimme:
📺
YouTube · Security Weekly - A CRA Resource
29 YouTube-Aufrufe
Interview with Dan Meacham, CISO at Legendary Entertainment

Dan Meacham joined us to share a preview of his leadership panel at InfoSec World. At this CRA event in October, Dan will be discussing *The Augmented Defender - What AI Actually Changes on the Front Line* with Daniel Bowden, the Global CISO at Marsh.

Dan dives into the unique world of securing data and assets when film production is largely handled by partners and contractors, working from systems you'll likely have limited access to and definitely can't install agents on. It's a fascinating conversation you should check out!

Visit https://securityweekly.com/infosecworld2026 and save 30% on your ISW pass with code: ISW26-SWSAVINGS

Black Hat Interview 1 - Google Cloud

Outpacing the Adversary with AI Threat Defense - Black Hat interview with John Hultquist, Chief Analyst, Google Threat Intelligence Group at Google

The cybersecurity landscape is undergoing a radical shift. AI is no longer just a productivity accelerator for developers and analysts—it has become actively weaponized by sophisticated threat actors to discover and exploit vulnerabilities at unprecedented speed. We'll discuss Google’s own approach to combating today’s threats and the need for security teams to transform vulnerability management with machine-speed defense.

Segment Resources:
-https://cloud.google.com/blog/products/identity-security/introducing-google-ai-threat-defense
-https://services.google.com/fh/files/misc/ebook_google_cloud_security_ai_threat_defense.pdf
-https://services.google.com/fh/files/misc/white_paper_combating_ai_driven_threats_google_machine_speed_defense.pdf

This segment is sponsored by Google Cloud. Visit https://securityweekly.com/googlebh to learn more!

Black Hat Interview 2 - Forcepoint

Decoding Agentic: Securing the Data Layer AI Just Set on Fire - Black Hat interview with Ronan Murphy, Chief Data Strategy Officer of Forcepoint

AI didn't ask permission — and it permanently changed what data risk looks like. Forcepoint Chief Data Strategy officer and member of the Artificial Intelligence Advisory Council in Ireland, shares insights on a clear call to action for agentic enterprises: stop locking AI down and start securing it where the risk actually lives, in the data itself. Learn why data trust is the foundation of the agentic era and how the world's leading enterprises are ending the false choice between AI innovation and data safety.

Segment Resources:
- https://www.forcepoint.com/resources/ebooks/enterprise-guide-ai-data-security
- https://www.forcepoint.com/blog/insights/forcepoint-announces-ai-data-security

This segment is sponsored by Forcepoint. Visit https://securityweekly.com/forcepointbh to learn more!

Black Hat Interview 3 - Keyfactor

From Secrets to Verified Workload Identity—at Enterprise Scale - Black Hat interview with Ellen Boehm, SVP, Strategy & AI Innovation at Keyfactor

As AI agents become autonomous participants inside enterprise environments, organizations can no longer rely on static credentials and traditional identity models to establish trust. Enterprise AI is driving a shift from possession-based access to cryptographically verified identity, as AI agents, cloud-native workloads, and automated services increasingly make decisions and interact with critical systems. In this discussion, we'll discuss why organizations need to continuously establish trust, govern machine identities and cryptography, and build a resilient foundation for securing AI across increasingly dynamic environments.

Segment Resources:
- https://www.keyfactor.com/blog/ai-agents-the-identity-problem-nobody-owns-yet/
- https://www.keyfactor.com/education-center/what-is-trust-infrastructure/
- https://www.keyfactor.com/resources/topic/col/products/the-trust-control-plane?pflpid=60788&pfsid=HsCXvwPWB1

This segment is sponsored by Keyfactor. Visit https://securityweekly.com/keyfactorbh to learn more!

Black Hat Interview 4 - Delinea

Delinea Delivers Runtime Authorization for AI Agents, Closing Access Control Gap - Black Hat interview with Frank Vukovits, Chief Security Scientist at Delinea

As AI agents move from experiments to autonomous operators inside production databases, cloud consoles, and Kubernetes clusters, enterprises face a new problem: agents with legitimate credentials taking actions no one authorized. Frank breaks down why verifying access at connection time is no longer enough and what it takes to enforce policy on every agent action before it executes. He explains how runtime authorization closes the gap between hiding credentials and actually controlling what agents do once they're inside a session.

This segment is sponsored by Delinea. Visit https://securityweekly.com/delineabh to learn more!

Visit https://www.securityweekly.com/esw for all the latest episodes!

Show Notes: https://securityweekly.com/esw-474
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf youtube.com.
↗ Original-Artikel auf youtube.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
112 Fachleser & IT-Security Experten haben diesen Report heute geteilt
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Community-Einschätzung (Live): 48 Stimmen
🟢 Gering: 45% 🟡 Beobachten: 35% 🔴 Akut: 20%

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 56%
🟡 In Evaluierung 28%
🟢 Keine Auswirkung 11%
Spannende Innovation 5%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
3 Quellen
Black Hat Asia 2026 | Exploiting DFIR Agents Through Adversarial Manipulation
1 Quelle
Month in security with Tony Anscombe – August 2026 edition
1 Quelle
Warmwind AI Employees Automate Typing, Clicking & Computer Use Like 1,000 Humans