<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/">
 <id>https://www.scworld.com/topic/latest</id>
 <title>SCM feed for Latest</title>
 <updated>2026-09-12T02:57:10+00:00</updated>
 <link href="https://www.scworld.com/topic/latest" rel="alternate" type="text/html"/>
 <link href="/feed/topic/latest" rel="self" type="application/atom+xml"/>
 <link href="https://pubsubhubbub.appspot.com/" rel="hub"/>
 <category term="latest" label="Latest"/>
 <logo>https://files.cyberriskalliance.com/logo/scm-horizontal-white-with-resource.png</logo>
 <rights type="html">Copyright &amp;copy; 2026 CyberRisk Alliance, LLC All Rights Reserved</rights>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943623</id>
  <title>Max severity GitLab path traversal flaw under active reconnaissance</title>
  <updated>2026-09-11T17:20:00-04:00</updated>
  <author>
   <name>Laura French</name>
   <uri>https://www.scworld.com/contributor/laura-french</uri>
  </author>
  <summary type="html">&lt;p&gt;The flaw could enable sensitive files to be read with just an HTTP request. &lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/news/max-severity-gitlab-path-traversal-flaw-under-active-reconnaissance" type="text/html"/>
  <category term="vulnerability-management" label="Vulnerability Management"/>
  <category term="patchconfiguration-management" label="Patch/Configuration Management"/>
  <published>2026-09-11T17:19:47-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/AdobeStock_905940070_Editorial_Use_Only.jpg" type="image/jpeg" medium="image" height="533" width="800"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,884131</id>
  <title>9/11 at 25, OfferLoader, Gemini CLI, Liquid, 10% Doom, Josh Marpet, and More - SWN #615</title>
  <updated>2026-09-11T15:10:04-04:00</updated>
  <author>
   <name>Aaran Leyland</name>
   <uri>https://www.scworld.com/contributor/aaran-leyland</uri>
  </author>
  <author>
   <name>Joshua Marpet</name>
   <uri>https://www.scworld.com/contributor/joshua-marpet</uri>
  </author>
  <summary type="html"></summary>
  <link rel="alternate" href="https://www.scworld.com/podcast-segment/15298-9-11-at-25-offerloader-gemini-cli-liquid-10-doom-josh-marpet-and-more-swn-615" type="text/html"/>
  <category term="aiml" label="AI/ML"/>
  <published>2026-09-11T17:00:00-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/SWN_615_FRI_Thumbnail_SWN_1920x1080-op1_775134b1-57ce-4bc7-8eb4-a385c2f56bcf.jpg" type="image/jpeg" medium="image" height="1080" width="1920"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943586</id>
  <title>Check Point patches two critical VPN gateway bugs</title>
  <updated>2026-09-11T15:00:20-04:00</updated>
  <author>
   <name>Steve Zurier</name>
   <uri>https://www.scworld.com/contributor/steve-zurier</uri>
  </author>
  <summary type="html">&lt;p&gt;Check Point fixed two 9.8-severity VPN flaws before any known exploitation in the wild.&lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/news/check-point-patches-two-critical-vpn-gateway-bugs" type="text/html"/>
  <category term="vulnerability-management" label="Vulnerability Management"/>
  <category term="patchconfiguration-management" label="Patch/Configuration Management"/>
  <published>2026-09-11T15:00:00-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/091126_vpn.jpg" type="image/jpeg" medium="image" height="675" width="1200"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943588</id>
  <title>Dead drops in public: What the AI agent stashed on Hugging Face</title>
  <updated>2026-09-11T14:33:59-04:00</updated>
  <author>
   <name>Hidden Layer Research Team</name>
   <uri>https://www.scworld.com/contributor/hidden-layer-research-team</uri>
  </author>
  <summary type="html">&lt;p&gt;A technical breakdown of artifacts the agent left in public repositories during the July 2026 Hugging Face intrusion.&lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/native/dead-drops-in-public-what-the-ai-agent-stashed-on-hugging-face" type="text/html"/>
  <category term="aiml" label="AI/ML"/>
  <category term="application-security" label="Application Security"/>
  <published>2026-09-11T14:33:54-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/091126_ai_data_center.jpg" type="image/jpeg" medium="image" height="778" width="1382"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943563</id>
  <title>Anthropic finds 4th real-world attack by Claude agent, details models’ ‘biased reasoning’</title>
  <updated>2026-09-11T13:51:24-04:00</updated>
  <author>
   <name>Laura French</name>
   <uri>https://www.scworld.com/contributor/laura-french</uri>
  </author>
  <summary type="html">&lt;p&gt;Mythos 5 was highlighted as being especially prone to believing the real world was a simulation. &lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/news/anthropic-finds-4th-real-world-attack-by-claude-agent-details-models-biased-reasoning" type="text/html"/>
  <category term="aiml" label="AI/ML"/>
  <category term="application-security" label="Application Security"/>
  <published>2026-09-11T13:51:11-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/AdobeStock_2177063444_Editorial_Use_Only.jpg" type="image/jpeg" medium="image" height="533" width="800"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943561</id>
  <title>AI governance needs to become part of the CISO’s GRC program</title>
  <updated>2026-09-11T12:21:48-04:00</updated>
  <author>
   <name>Michael Petrov</name>
   <uri>https://www.scworld.com/contributor/michael-petrov</uri>
  </author>
  <summary type="html">&lt;p&gt;Here's why CISOs must include Ai in the company's GRC program. &lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/perspective/ai-governance-needs-to-become-part-of-the-cisos-grc-program" type="text/html"/>
  <category term="governance-risk-and-compliance" label="Governance, Risk And Compliance"/>
  <published>2026-09-11T12:21:45-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/07/072426_ai_restrictions_security.jpg" type="image/jpeg" medium="image" height="614" width="1101"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943569</id>
  <title>Ping YOUniverse: How to classify and manage AI agents</title>
  <updated>2026-09-11T12:12:35-04:00</updated>
  <author>
   <name>Paul Wagenseil</name>
   <uri>https://www.scworld.com/contributor/paul-wagenseil</uri>
  </author>
  <summary type="html">&lt;p&gt;There are four kinds of AI agents, and each must be handled differently, Ping executives said.&lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/resource/ping-youniverse-how-to-classify-and-manage-ai-agents" type="text/html"/>
  <category term="identity" label="Identity"/>
  <category term="aiml" label="AI/ML"/>
  <category term="application-security" label="Application Security"/>
  <published>2026-09-11T12:09:03-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/07/073126_machine_identity.jpg" type="image/jpeg" medium="image" height="614" width="1075">
   <media:description type="html">Credit: Adobe Stock Images</media:description>
  </media:content>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943555</id>
  <title>How coding agents are changing application risk</title>
  <updated>2026-09-11T12:01:12-04:00</updated>
  <author>
   <name>Hidden Layer Research Team</name>
   <uri>https://www.scworld.com/contributor/hidden-layer-research-team</uri>
  </author>
  <summary type="html">&lt;p&gt;Coding agents expand application risk beyond AI models to the tools, context and systems around them. &lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/native/how-coding-agents-are-changing-application-risk" type="text/html"/>
  <category term="application-security" label="Application Security"/>
  <category term="aiml" label="AI/ML"/>
  <published>2026-09-11T12:00:56-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/091126_ai_coding_assistant.jpg" type="image/jpeg" medium="image" height="633" width="1125"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,884059</id>
  <title>It's More Secure When It's Disabled - PSW #943</title>
  <updated>2026-09-10T16:26:03-04:00</updated>
  <author>
   <name>Paul Asadoorian</name>
   <uri>https://www.scworld.com/contributor/paul-asadoorian</uri>
  </author>
  <author>
   <name>Jeff Man</name>
   <uri>https://www.scworld.com/contributor/jeff-man</uri>
  </author>
  <author>
   <name>Joshua Marpet</name>
   <uri>https://www.scworld.com/contributor/joshua-marpet</uri>
  </author>
  <author>
   <name>Larry Pesce</name>
   <uri>https://www.scworld.com/contributor/larry-pesce</uri>
  </author>
  <author>
   <name>Mandy Logan</name>
   <uri>https://www.scworld.com/contributor/mandy-logan</uri>
  </author>
  <author>
   <name>Sam Bowne</name>
   <uri>https://www.scworld.com/contributor/sam-bowne</uri>
  </author>
  <summary type="html"></summary>
  <link rel="alternate" href="https://www.scworld.com/podcast-segment/15240-its-more-secure-when-its-disabled-psw-943" type="text/html"/>
  <category term="vulnerability-management" label="Vulnerability Management"/>
  <category term="aiml" label="AI/ML"/>
  <category term="ai-benefitsrisks" label="AI Benefits/risks"/>
  <published>2026-09-10T17:00:00-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/PSW_942_Thumbnail_PSW_1920x1080-op1_ff0ddfe4-413d-43e9-928c-7032a4ef92ce.jpg" type="image/jpeg" medium="image" height="1080" width="1920"/>
 </entry>
 <entry>
  <id isPermaLink="false">tag:www.scworld.com:post,943463</id>
  <title>When English becomes exploit code: The hidden risk inside MCP servers</title>
  <updated>2026-09-10T16:28:05-04:00</updated>
  <author>
   <name>Paul Wagenseil</name>
   <uri>https://www.scworld.com/contributor/paul-wagenseil</uri>
  </author>
  <summary type="html">&lt;p&gt;A harmless-looking sentence can influence an agent's choices once it enters a model's context. &lt;/p&gt;
</summary>
  <link rel="alternate" href="https://www.scworld.com/resource/when-english-becomes-exploit-code-the-hidden-risk-inside-mcp-servers" type="text/html"/>
  <category term="aiml" label="AI/ML"/>
  <category term="malware" label="Malware"/>
  <published>2026-09-10T16:28:01-04:00</published>
  <media:content url="https://files.cyberriskalliance.com/wp-content/uploads/2026/09/robot-poisoned-letter-socialsightai.jpg" type="image/jpeg" medium="image" height="768" width="1376">
   <media:description type="html">Created with SocialSight AI</media:description>
  </media:content>
 </entry>
</feed>
