惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
T
The Blog of Author Tim Ferriss
K
Kaspersky official blog
宝玉的分享
宝玉的分享
T
Tor Project blog
L
Lohrmann on Cybersecurity
V
Visual Studio Blog
L
LINUX DO - 热门话题
Hugging Face - Blog
Hugging Face - Blog
P
Proofpoint News Feed
C
CERT Recently Published Vulnerability Notes
J
Java Code Geeks
罗磊的独立博客
博客园 - Franky
Apple Machine Learning Research
Apple Machine Learning Research
P
Proofpoint News Feed
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
IT之家
IT之家
Stack Overflow Blog
Stack Overflow Blog
T
Tenable Blog
D
Darknet – Hacking Tools, Hacker News & Cyber Security
酷 壳 – CoolShell
酷 壳 – CoolShell
T
Tailwind CSS Blog
博客园 - 司徒正美
Cyberwarzone
Cyberwarzone
Cisco Talos Blog
Cisco Talos Blog
N
News and Events Feed by Topic
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Jina AI
Jina AI
N
Netflix TechBlog - Medium
S
Secure Thoughts
月光博客
月光博客
The Register - Security
The Register - Security
C
Check Point Blog
N
News and Events Feed by Topic
C
Cybersecurity and Infrastructure Security Agency CISA
TaoSecurity Blog
TaoSecurity Blog
博客园 - 聂微东
博客园_首页
Hacker News: Ask HN
Hacker News: Ask HN
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
S
Security Archives - TechRepublic
The Hacker News
The Hacker News
Vercel News
Vercel News
阮一峰的网络日志
阮一峰的网络日志
The Cloudflare Blog
Microsoft Azure Blog
Microsoft Azure Blog
C
Cisco Blogs
E
Exploit-DB.com RSS Feed
The GitHub Blog
The GitHub Blog

Cyber Security News

Maine Takes Data Breach Reporting Portal Offline After Fake VRChat and Discord Filings 152 Chrome Extensions Hide Ad Tracking and Fake Google Search Traffic New Agentjacking Attack Hijacks Your AI Coding Agent to Run Code From Hackers Server BugHunter - Bug Bounty Toolkit Powered by Claude and Free AI Providers Splunk Enterprise Pre-Auth RCE Chain Exposes Database With Zero Authentication Anthropic Fable 5 and Mythos 5 Access Blocked to All Users Following Government Directive Fancy Bear Hackers Abuse EdgeRouters and Cloud Services to Launch Stealthy Cyberattacks Hackers Abuse Legitimate NinjaOne RMM Software to Bypass Traditional Malware Detection Malicious npm Campaign Steals SSH Keys, API Tokens, Cloud Credentials, and Wallet Secrets Hackers Use OnyxC2 Malware-as-a-Service to Steal Credentials From 210 Applications Facebook and Instagram Down Globally, Users Reporting Multiple Issues Google Sues Chinese Cybercrime Network for Using Gemini AI to Launch Cyberattacks 400+ Arch Linux AUR Packages Compromised in a Supply Chain Attack Deploying Infostealers Critical Vulnerability Chain in LangGraph Allows Attackers to Gain Full Server Control SHEETCREEP C# RAT Abuses Google Sheets API as C2 to Target Diplomatic Organizations Authorities Dismantle Cryptocurrency Laundering Services ‘AudiA6’ Used by Ransomware Gangs Hackers Use Free Spotify Premium Hacks on TikTok and Instagram to Spread Vidar Infostealer Solana FakeFix Campaign Uses 25 Malicious npm and PyPI Packages to Steal Developer Secrets Microsoft Outlook and Word Vulnerabilities Allow Attackers to Execute Malicious Code Palo Alto PAN-OS Vulnerability Allows Attackers to Execute Arbitrary Commands as Root User Google Patches 28 Chrome Vulnerabilities that Allow Attackers to Execute Malicious Code Microsoft Teams for Android Vulnerability Allows Attackers to Disclose Sensitive Data Oracle PeopleSoft 0-Day RCE Vulnerability Exploited in Attacks by ShinyHunters CISA Requires Federal Agencies to Patch Critical Vulnerabilities Within 3 Days OceanLotus APT Compromises FireAnt MetaKit in Supply-Chain Attack on Stock Investors GoFlateLoader Uses Massive PE Overlay to Deliver Lumma, Vidar, and StealC Infostealers Critical Langflow Vulnerability Exploited to Execute Malicious Code Hackers Abuse SniperDz PhaaS Ecosystem for Brand Impersonation and Browser Hijacking Researcher Hacked Google Using AI and Earned $500,000 Bug Bounty GitHub to Automate Disable npm Script Installs to Block Supply Chain Attacks Claude Mythos Turning N-Days Into N-Hours With Rapid Working Exploit Creation CISA Warns of Check Point Security Gateway Vulnerability Actively Exploited in Ransomware Attacks Hackers Use Weaponized DMG Files to Target macOS Users With Infostealer Malware Hackers Use BLUERABBIT Backdoor to Encrypt Files and Wipe Disks Across Windows Systems Hackers Abuse Residential Proxy Networks to Hide Malicious Activity and Evade Detection Cybercriminals Abuse Chinese-Language Guarantee Marketplaces to Trade Stolen Credentials Ivanti Command Injection Vulnerability Exploited in Attacks Following PoC Release PoC Exploit Released for Guest-to-Host Escape Linux Kernel Vulnerability Oracle Emergency Security Update to Fix Critical RCE Vulnerability GreatXML BitLocker Bypass 0-Day Exploited Via Windows Defender Offline Scan Hackers Abuse VMware-Signed Binary to Sideload NIGHTFORGE Loader in Espionage Attacks Multiple Splunk Enterprise Vulnerabilities Allow Attackers to Execute Malicious Script Hackers Abuse AWS CloudTrail and Google Cloud Logging to Evade Detection and Exfiltrate Logs China-Linked JDY Botnet Uses 1,500+ SOHO and IoT Devices for Rapid Vulnerability Exploitation CISA Warns of SolarWinds Serv-U Vulnerability Exploited in Attacks Top 5 Best Tools for Simulated DDoS Attacks in 2026 Critical Vulnerability in Hugging Face Transformers Enables Remote Code Execution Attacks OWASP CVE Lite CLI - New Tool to Scan for Vulnerabilities in Your Projects Anthropic's Claude Services Down — claude.ai, Claude Code, and Cowork Affected [Updated] Hackers Publish Malicious Python Package Mimicking Legitimate Parsimonious Parser Hackers are Increasingly Weaponizing Trusted Tools to Deploy Notorious Malware New Magecart Attack Turns Stripe into a Malware Command Server Hola Browser for Windows Delivery Pipeline Compromised to Deliver Cryptominer New Gafgyt Variant Targets Multiple Linux Architectures With Modular Propagation Microsoft 365 Service Degradation Bypassed Windows Driver Auto-Update Controls New SHub Stealer Variant Malware Targets Chrome, Firefox, Brave, Edge, Opera, and Crypto Wallets Malicious Browser Add-Ons Target ChatGPT, Claude, Copilot, Gemini, and DeepSeek Users
Criminal IP at Infosecurity Europe 2026: Introducing AITEM, the Next Chapter of Attack Surface Management
Kavichselvan · 2026-06-15 · via Cyber Security News

Torrance, United States / California, June 11th, 2026, CyberNewswire

Criminal IP by AI SPERA, a cyber threat intelligence platform delivering decision-ready intelligence and attack surface visibility to security teams worldwide, participated in Infosecurity Europe 2026 at ExCeL London this week, marking the company’s second consecutive appearance at Europe’s leading cybersecurity event.

Alongside live demonstrations of Criminal IP’s Attack Surface Management (ASM) capabilities, the company introduced AITEM (AI-based Threat Exposure Management), a conceptual framework representing the next evolution of exposure management in an era increasingly shaped by AI.

From Visibility to Action: Why ASM Must Evolve

Traditional ASM tools have served a critical purpose: helping organizations discover internet-facing assets like servers, domains, IP addresses, and admin panels, before attackers do. But discovery alone is no longer enough.

“Seeing a threat and responding to it are completely different challenges,” said Byungtak Kang, CEO of AI SPERA. “Building a safer cyber world requires a shift from visibility to action. Organizations today have more visibility than ever, fewer can effectively prioritize and act on the risks it reveals. By applying AI to filter noise, enrich context, and guide investigations, security teams can focus on the exposures that matter most and respond in real time, turning insight into meaningful action.”

The gap between detection and action has become even more critical as AI lowers the barrier for attackers. Automated scanning, published proof-of-concept exploit code, and AI-assisted vulnerability discovery mean that threat actors can identify and target exposed assets faster than ever.

In this environment, Criminal IP believes AI agents will increasingly assume repetitive operational tasks that consume security teams’ time today — collecting context, correlating information, and assisting with routine investigative processes — allowing analysts to focus on decision-making, prioritization, and response. This shift in the division of labor between humans and AI forms one of the core ideas behind AITEM.

Introducing AITEM: A Conceptual Framework for AI-Driven Threat Exposure Management

AITEM, as introduced by Criminal IP, envisions the integration of agentic AI into the full CTEM (Continuous Threat Exposure Management) operational cycle, moving beyond asset inventory to encompass threat prioritization, owner attribution, vulnerability impact analysis, and guided remediation.

Key capabilities envisioned under the AITEM framework include:

  • Natural language security operations — Security teams directing workflows in plain language rather than manually configuring complex query logic or alert rules.
  • Automated asset owner identification — When a new external asset is discovered, AI agents query internal systems such as Slack, Confluence, Jira, and email to trace ownership and responsible teams — eliminating one of the most time-consuming steps in ASM operations today.
  • CVE impact triage — Rather than manually checking every new vulnerability, AI continuously monitors newly disclosed vulnerabilities and threat intelligence from global security sources, automatically mapping emerging CVEs to the organization’s live external asset inventory and surfacing only the exposures that require immediate attention.
  • Shadow AI detection — As employees increasingly use unsanctioned AI services, those services become part of the organization’s attack surface. AITEM envisions monitoring for unauthorized AI tool usage through firewall log analysis and domain intelligence.
  • Guided remediation — When immediate patching isn’t feasible, the system suggests mitigation paths: hardening configurations, disabling vulnerable components, or generating escalation tickets with context.

AITEM is not yet a formally defined industry category. It is a framework Criminal IP is introducing to describe where ASM must go, and what Criminal IP ASM is being built toward.

CEO Presentation: From Visibility to Threat Hunting

At Infosecurity Europe 2026, CEO Byungtak Kang delivered a case study session titled “From Visibility to Threat Hunting: A Case Study of AI-Driven Attack Surface Management” as part of the official conference program which was his second consecutive time representing at the event.

Drawing from real-world examples, the session explored how threat intelligence and attack surface visibility can support faster investigation and more effective security operations. The introduction of AITEM expanded that conversation by asking what comes next.

The Broader Industry Shift

The direction Criminal IP is pursuing with AITEM aligns with trends observed across the global security industry. Even at the RSAC 2026, agentic AI, AI SOC, and shadow AI detection emerged as defining themes, with major vendors including Cisco/Splunk, Microsoft, and CrowdStrike all signaling a shift from siloed tools toward integrated, AI-driven security operations.

“The competition in ASM is no longer about who finds the most assets,” said Kang. “It will be about who can operate faster, respond more effectively, and mobilize the organization. AI should handle the repetitive analytical work. Humans should focus on judgment, accountability, and prioritization.”

About Criminal IP by AI SPERA

Criminal IP is a cyber threat intelligence solution operated by AI SPERA that provides decision-ready threat intelligence, and attack surface management solutions to security teams worldwide.

By continuously scanning the global internet, Criminal IP aggregates and contextualizes threat signals across IPs, domains, URLs, and attack infrastructure, covering malicious indicators, known vulnerabilities, exposed assets, and attacker behavior.

Criminal IP’s mission is to give organizations real visibility into their cyber landscape and accelerate threat detection and response by delivering the intelligence needed to outsmart attackers. For more information, users can visit www.criminalip.io

Contact

Michael Sena

AI SPERA

support@aispera.c