โŒ

Normal view

DHS Official Resigns, Citing โ€˜War on Immigrantsโ€™

27 July 2026 at 20:34
The outgoing executive director of the Office of Homeland Security Statistics is one of very few federal officials to speak out against the Trump administrationโ€™s immigration crackdown.

Microsoft's solution to AI security: more AI and more acronyms

27 July 2026 at 19:50
AI agents can break through security, but they are also the solution to defending against an increasingly dangerous ecosystem of threats. On Monday, Microsoft announced a new security model that it says helped outperform several rival AI systems on a vulnerability benchmark while cutting costs by about half. Unsurprisingly, at Redmondโ€™s security event on Monday, execs touted the tech giantโ€™s AI security prowess and introduced a new agentic security system called Project Perception, and also unveiled its first security-specialized model, MAI-Cyber-1-Flash, designed for software vulnerability analysis. Microsoft packed MAI-Cyber-1-Flash, based on Microsoft AI (MAI)โ€™s internally developed MAI-Thinking-1 reasoning model, inside its MDASH bug-hunting harness. Its execs claim the duo - with a GPT-5.4 boost - outperforms Anthropicโ€™s bug-hunting machine Mythos and OpenAIโ€™s powerful standalone models, and costs about half the price of other leading commercial models. CyberGymโ€™s benchmarking found that MAI-Cyber-1-Flash, combined with GPT-5.4, both stuffed inside the MDASH harness, achieved a 95.95 percent success rate. For comparison, OpenAIโ€™s GPT-5.5 Cyber scored 85.6 percent and its GPT-5.6 Sol scored 83.6 percent, while Anthropicโ€™s Mythos 5 successfully handled real-world vulnerabilities 83.8 percent of the time. Googleโ€™s Gemini 3.5 Flash Cyber in CodeMender achieved an 83.2 percent success rate. โ€œThis is really quite a remarkable result,โ€ Mustafa Suleyman, CEO of Microsoft AI, said during the Monday event. Within MDASH, MAI-Cyber-1-Flash handles up to 90 percent of all queries, detecting and patching the vulnerabilities while also confirming the fixes worked, and hands the remaining 10 percent of tasks off to the larger GPT-5.4, Suleyman explained. โ€œGPT 5.4, which is obviously a larger model, about 10X larger, solves those [queries],โ€ he said. โ€œAs the models hand off between each other, they are not just able to deliver better performance than all of the other models combined, they do so at 50 percent of the cost.โ€ In addition to the multi-model bug hunting system, Microsoft announced Project Perception, which coordinates three types of agents: red team agents that find and simulate attack paths, blue team agents that investigate and determine risk, and green team agents that remediate the issues. โ€œWe need to make sure that the defenders can defend at the scale and the speed of the attackers,โ€ Hayete Gallot, executive vice president of Microsoft Security, said. โ€œYou need a new cyber stack. So we built it. This is what we call Perception.โ€ Aside from the new security products, Redmond introduced a new AI security research arm called Microsoft Security FORGE (Frontier Offensive Research and Generative Exploration) Labs, led by Microsoft VP of Security Research Taesoo Kim, and an AI red team alliance. The latter, called the External Red Team Alliance (EXTRA), aims to expand AI safety research through a two-part initiative. First, Redmondโ€™s own AI red team provided "unrestricted gifts " to 18 university labs across six continents to support AI safety research, Microsoft data cowboy and AI red team lead Ram Shankar Siva Kumar said in a blog. โ€œThe funding is unrestricted because the objective is not to direct research outcomes toward product requirements or predefined deliverables,โ€ he wrote. โ€œSome universities are examining the cybersecurity implications of AI systems themselves - including how models can be attacked, manipulated, or abused in operational environments. Other labs are exploring the inverse problem: how AI systems can assist defenders and improve cyber operations.โ€ The second EXTRA component will build a distributed network of specialists to participate in red teaming across very specific areas. โ€œThat includes researchers, practitioners, and regional experts who understand specific attack classes, languages, cultural contexts, or technical domains that internal teams may not fully cover alone,โ€ he added. ยฎ

NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework

27 July 2026 at 18:10
NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and share open technologies, techniques, and tools for securing software and artificial intelligence (AI) agents. The 37-member group spans cloud, security, enterprise software, and AI companies, including Microsoft, Cisco, Cloudflare, CrowdStrike, Hugging Face, IBM, Palo Alto Networks, Red Hat, and the Linux

โŒ