Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
The article explains how organizations can use their existing Data Loss Prevention (DLP) policies to govern AI agent access to sensitive data. It emphasizes that no new tools are needed, as current DLP infrastructure can be extended to control AI agent behavior.
Broadcom (Symantec) advises using existing DLP policies to secure open-source AI agents, governing how they access and move enterprise data. This approach leverages current security investments to address AI agent risks.
This article explains how organizations can secure open-source AI agents using their existing data loss prevention (DLP) policies. It argues that current DLP controls can be extended to monitor and restrict how AI agents access and transfer enterprise data.
Use the DLP policies you already rely on to govern how AI agents access and.
Public exploit details were released for a pre-authentication remote code execution vulnerability in vBulletin (CVE-2026-61511). An unauthenticated request can reach PHP's eval() function to execute code on unpatched forum servers without requiring an account or user interaction.
A public exploit was released on July 27 for a pre-authentication remote code execution flaw in vBulletin, allowing attackers to execute arbitrary code on unpatched servers without requiring user interaction. The vulnerability, tracked as CVE-2026-61511, affects vBulletin versions 6.2.1 and earlier, as well as 6.1.6 and earlier, and stems from improper input sanitization in the template engine's `runMaths()` method.