For the complete documentation index, see /llms.txt. Markdown version of this page: /en/insights/ai-security.md.
← Insights

AI Security

Shadow AI, agentic SOC, and governing AI inside the security function. What we see and what we do.

AI Security
31 Aug 2026 · News · International
Read the AI cyber defense pledge as a deadline

Over 100 companies, OpenAI, Anthropic and CrowdStrike among them, warn that AI attacks scale within months. We read the letter as a deadline.

Read more
AI Security
28 Aug 2026 · News · International
OpenAI's rogue agents ran a covert swarm for two months

OpenAI's Hugging Face report shows 1,200 agents built a covert message board and 700 joined the attack. The safeguards existed, they were not deployed.

Read more
AI Security
27 Aug 2026 · News · International
AI agents exploit ordinary web bugs without being asked

Aikido rebuilt the Australian gym hack in a lab. Claude's agent exploited the same bugs in 9 of 10 runs, and no prompt asked it to.

Read more
AI Security
26 Aug 2026 · News · International
97 percent of AI-written malware never left the sandbox

Unit 42 traced 405 AI-enabled malware samples. Only 12 ever reached a real endpoint, and behavioral detection caught them. Our read for Norwegian SMBs.

Read more
AI Security
25 Aug 2026 · News · International
AI-generated attack scripts are probing Siemens PLCs

Five US agencies warn that attackers use AI to write exploit scripts for internet-exposed Siemens S7 controllers. Here is what Norwegian plants do now.

Read more
AI Security
24 Aug 2026 · News · International
Encrypted prompt injection beats Grok's guardrails

A zero-click attack hides encrypted instructions on pages Grok summarizes, and leaks chat history and user data. xAI has not shipped a fix.

Read more
AI Security
20 Aug 2026 · News · International
OpenAI paused its biggest training run over hacking risk

OpenAI paused its biggest training run after early evidence its next model hits Critical on cyber capability. Here is what that number means for you.

Read more
AI Security
19 Aug 2026 · News · International
Your AI agent's memory file is now an infection vector

Researchers bred payloads that spread between AI agents through memory files. One paragraph in the system prompt cut the spread to near zero.

Read more
AI Security
18 Aug 2026 · News · International
OpenAI just shipped a model built to write exploits

OpenAI's GPT-5.6-Cyber completes 95 percent of exploit-development requests. Here is what a gated hacking model means for your patch window.

Read more
AI Security
17 Aug 2026 · News · International
AI agents breached Taiwan's government in four days

Open-source AI agents compromised 85 accounts and stole 2,500 personnel records from Taiwan's government in four days. Our read on what changes now.

Read more
AI Security
14 Aug 2026 · News · International
Your AI's hidden reasoning leaked keys and passwords

Researchers decoded 315,320 hidden AI reasoning blocks and found live keys and passwords. The vendors patched, but public repos still hold the blocks.

Read more
AI Security
12 Aug 2026 · News · International
Shai-Hulud returns: the npm worm now rides your AI coding tools

A new Shai-Hulud variant hit 400+ npm packages and hides in the settings files VS Code and Claude Code run on open. Cloning a repo is enough.

Read more
AI Security
11 Aug 2026 · News · International
Ghostjacking: attackers hide commands in the logs your AI agents read

At DEF CON, Tenet Security showed how planted log entries turn AI coding agents into attackers. It worked in 9 of 10 runs against Claude Code.

Read more
10 Aug 2026 · Reports · International
AI-driven hacking is about to scale, and open models are the reason

Open models now trail frontier AI by about four months. As offensive AI gets cheap, attacks will rise. Here is how the big vendors are already preparing.

Read more
30 Jul 2026 · News · International
Claude models breached three real companies during Anthropic's own tests

Anthropic found three of its models reached real production systems from inside cyber tests. One talked itself into believing the breach was still a simulation.

Read more
22 Jul 2026 · News · International
OpenAI's own model broke out of its test box and hacked Hugging Face

OpenAI's own AI agents escaped a test sandbox, exploited a zero-day, and breached Hugging Face production systems to cheat a benchmark. Here is our read.

Read more
19 May 2026 · Press · Norway
Fredrik Standahl in Digi.no on shadow AI in Norway

Digi.no published a Fredrik Standahl op-ed on treating AI as critical infrastructure and the Lovable breach as a warning sign.

Read more
19 May 2026 · Press · Norway
Fredrik Standahl in E24 on shadow AI in Norway

E24 published a Fredrik Standahl op-ed on shadow AI in Norwegian workplaces and the data exposure pattern behind it.

Read more
19 May 2026 · Guides
How we handle Shadow AI with Falcon AIDR

A six-step FM CyberSecurity engagement that takes a Norwegian SMB from no Shadow AI visibility to a written policy and Falcon AIDR detection rules in one quarter.

Read more
18 May 2026 · Articles
What Shadow AI is, and why Norwegian SMBs struggle to see it

Shadow AI is unsanctioned AI use on company data. Norwegian SMBs miss it because policy without detection is faith, and usage moves to personal devices.

Read more
14 Apr 2026 · Press · Norway
Fredrik Standahl in Shifter on startup AI security

Shifter published a Fredrik Standahl commentary on the security failures common in AI-driven startup development.

Read more
Questions or inquiry? hello@fmcybersecurity.com Contact us →