Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers https://firewall.firm.in/wp-content/uploads/2026/08/kiro-amazon.jpg Ravie LakshmananAug 27, 2026Vulnerability / Artificial Intelligence Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate data exfiltration via prompt injection and Kiro Powers. The security flaw, which does not have a CVE identifier, ...
Read More »Vulnerabilities & Exploits
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit https://firewall.firm.in/wp-content/uploads/2026/08/tiktok.jpg Ravie LakshmananAug 22, 2026Privacy / Regulation The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400 million to settle a 2024 lawsuit accusing the company of violating child privacy laws in the country. As part of the settlement, the social media platform will ...
Read More »Ex-Google engineer’s conviction for stealing AI secrets partially overturned
Ex-Google engineer’s conviction for stealing AI secrets partially overturned https://etimg.etb2bimg.com/thumb/msid-133390905,imgsize-1553937,width-1200,height=627,overlay-etciso,resizemode-75/data-breaches/ex-google-engineers-conviction-for-stealing-ai-secrets-partially-overturned.jpg A federal judge on Thursday tossed part of the conviction of former Google software engineer Linwei Ding, who was found guilty earlier this year of stealing AI trade secrets from the U.S. tech giant to benefit two Chinese companies. U.S. District Court Judge Vince Chhabria in San Francisco ruled there ...
Read More »Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot
Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot https://firewall.firm.in/wp-content/uploads/2026/08/windows.jpg Check Point Research has disclosed a technique that uses Microsoft Defender’s own legitimately signed boot-time remediation driver to perform arbitrary kernel-level file and registry operations on Windows systems ranging from Windows 7 through Windows 11 25H2, with no software flaw exploited and no driver imported from ...
Read More »Building trust in healthcare data: From pipelines to patient care
Building trust in healthcare data: From pipelines to patient care https://etimg.etb2bimg.com/thumb/msid-132711155,imgsize-71975,width-1200,height=627,overlay-etciso,resizemode-75/data-breaches/building-trust-in-healthcare-data-from-pipelines-to-patient-care.jpg In every healthcare organization, multiple validations are done before go-live. But once systems are live, changes continue, and trust in the data and process can begin to erode. Treating data trust as a one-time pre-launch step rather than an ongoing discipline leads to failed analytics, compliance exposure, and unreliable ...
Read More »Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps
Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps https://firewall.firm.in/wp-content/uploads/2026/08/copilot.jpg Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available to the victim’s Copilot session. The flaws, which the researchers collectively named ...
Read More »US House Democrats press Anthropic, OpenAI about rogue AI agents
US House Democrats press Anthropic, OpenAI about rogue AI agents https://etimg.etb2bimg.com/thumb/msid-133140626,imgsize-40282,width-1200,height=627,overlay-etciso,resizemode-75/data-breaches/us-house-democrats-press-anthropic-openai-about-rogue-ai-agents.jpg A coalition of U.S. House Democrats is calling on Anthropic CEO Dario Amodei and OpenAI CEO Sam Altman to explain how their AI systems escaped containment during a security test, adding that Congress should hold hearings about the incidents, according to letters the lawmakers sent to the companies on ...
Read More »⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More https://firewall.firm.in/wp-content/uploads/2026/08/cyber-recap.jpg Ravie LakshmananAug 17, 2026Cybersecurity / Hacking The expensive attacks are not always the clever ones. This week had plenty of proof. Exposed services got hit, old bugs found fresh use, browser sessions became attack paths, and supply-chain problems kept spreading farther than the original compromise. A ...
Read More »The Shift to Automated Compliance Platforms, ETCISO
The Shift to Automated Compliance Platforms, ETCISO https://etimg.etb2bimg.com/thumb/msid-133231913,imgsize-28038,width-1200,height=627,overlay-etciso,resizemode-75/data-breaches/compliance-spending-shifts-from-people-to-platforms-mid-year-grc-trends-2026.jpg The biggest governance conversations happening inside Indian organizations this year are no longer confined to compliance teams. They are happening inside product meetings where engineers are redesigning consent flows. They are surfacing in boardrooms, where a string of cyber incidents has sharpened the focus on resilience and directors increasingly want live risk ...
Read More »Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor https://firewall.firm.in/wp-content/uploads/2026/08/windows-shell.jpg The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen backdoor targeting defense and aerospace companies across France, Germany, Brazil, and India. The activity, per Check Point Research, is ...
Read More »
Firewall Security Company India Complete Firewall Security Solutions Provider Company in India











