New infosec products of the month: August 2026
ServiceNow announced an acceleration of its Autonomous Security vision with six unified solutions for prevention-first, AI-native cyber defense, covering unified exposure management, continuous vulner…
ServiceNow announced an acceleration of its Autonomous Security vision with six unified solutions for prevention-first, AI-native cyber defense, covering unified exposure management, continuous vulner…
ScienceLogic announced Skylar AI 2.5, expanding secure deployment options for organizations with stringent security, sovereignty, and compliance requirements, while introducing enhancements that stren…
Searchlight Cyber launched its Preemptive Threat Exposure Management (PTEM) platform, combining exposure visibility with real-world attacker intelligence to help organizations prioritize and reduce th…
AI tools are accelerating vulnerability discovery at an unprecedented pace, with Microsoft patching 570 CVEs in a single July 2026 Patch Tuesday—its largest ever—attributed to its internal MDASH syste…
Attackers are actively exploiting CVE-2026-6875, a critical sandbox escape in the ServiceNow AI Platform that allows unauthenticated remote code execution. The flaw, disclosed by Searchlight Cyber and…
Hackers are mass-exploiting two WordPress flaws, dubbed wp2shell, within hours of patches being shipped in versions 7.0.2 and 6.9.5, with an AI model used both to discover the chain and to weaponize i…
Security researcher Adam Kues used OpenAI's GPT-5.6 Sol Ultra to discover a pre-authentication remote code execution chain in WordPress, dubbed wp2shell, in about 10 hours at an API cost of $25. WordP…
Attackers are actively exploiting CVE-2026-6875, a critical pre-authentication remote code execution vulnerability in the ServiceNow AI Platform, according to threat intelligence firm Defused. The fla…
Searchlight Cyber researcher Adam Kues spent $25 of GPT-5.6 Sol Ultra tokens and 10 hours of multi-agent analysis to discover CVE-2026-63030 ('wp2shell'), a pre-authentication SQLi-to-RCE chain in Wor…
Adam Kues of Searchlight Cyber spent about $25 of model time using OpenAI's GPT-5.6 "Sol Ultra" to chain a routine SQL injection in WordPress (CVE-2026-60137) with a batch-route confusion bug (CVE-202…
Exploit brokers are paying up to $500,000 for WordPress remote code execution vulnerabilities, but a researcher using OpenAI's GPT5.6 Sol Ultra model and a $25 budget discovered a critical chain. The …
The article proposes a new vulnerability severity model based on "collision count," where bugs reported by multiple researchers or accompanied by working exploits receive higher severity and shorter p…