cd/entity/OWASP· home entities OWASP
grep -l @owasp /news/*.json | wc -l → 253

OWASP

mentions 253 type Organization page 2/13 feed RSS

// recent coverage 253 mentions

11:59
2026-09-01
brightsec.com
ai-tools

AI pentesting for APIs: REST, GraphQL, and gRPC at scale

A new report argues that AI-powered API pentesting must adapt to the semantics of REST, GraphQL, and gRPC rather than treating them as interchangeable endpoints, warning that sending more payloads doe…

11:57
2026-09-01
brightsec.com
artificial-intelligence

AI pentesting vs legacy tools: Why runtime proof wins

Bright Security's AI Pentesting Module distinguishes runtime-validated AI pentesting from legacy automated tools by emphasizing deterministic proof of exploitability, with a five-stage workflow (Disco…

11:54
2026-09-01
brightsec.com
ai-safety

AI security for enterprise agents: A testing guide

A new testing guide from Bright Security argues that the riskiest part of an enterprise AI agent is not the model but the authority wrapped around it, and that security testing must cover the executio…

17:47
2026-08-30
dev.to
ai-safety

AI Red Teaming in 2026: The Frameworks and Tools That Matter

A developer's guide to AI red teaming in 2026 distinguishes between risk management frameworks like NIST AI 100-1 and practical tools such as garak, PyRIT, and promptfoo. The article emphasizes that f…

01:06
2026-08-30
oconeeruntime.com
ai-safety

Why Prompt Filtering Isn’t Enough for AI Coding Agents

Prompt filtering alone is insufficient to secure AI coding agents, according to OWASP guidance and security expert Henry Thomas, because these agents can execute commands, modify files, and access API…

00:00
2026-08-29
digitalapplied.com
ai-safety

Should Your AI Agent Ask First or Act First?

A new analysis argues that AI agents should ask before irreversible actions and act first for reversible ones, citing AWS's documentation that its Kiro agent's ask-first mode is 'a code review workflo…

10:00
2026-08-28
csoonline.com
ai-safety

The first 24 hours of an AI agent security incident

A senior incident responder outlines a practical hour-by-hour playbook for the first 24 hours of an AI agent security incident, citing Anthropic's GTG-1002 campaign, Microsoft 365 Copilot's EchoLeak f…

00:00
2026-08-27
digitalapplied.com
ai-safety

Stopping Your AI Agent From Showing the Wrong Data

PostgreSQL row-level security is the recommended enforcement point for AI agents querying business data, as UI-level scope checks fail when agents compose their own queries, according to a guide from …

07:00
2026-08-24
c1.ai
ai-policy

Six Domains, One Control Plane: Mapping C1 to SACR's ARMCF

Software Analyst Cyber Research (SACR) published the AI and Agentic Risk Management and Control Framework (ARMCF) in July, outlining six governance domains—GOVERN, IDENTIFY, PROTECT, DETECT, RESPOND, …

← prev page 2 / 13 next →
// co-occurs with top 8 entities
// topics top 6 topics