Archive for July 31, 2026

Finite State Joins DEF CON 2026 with AI Offensive Security and RAISE Act Sessions and a Hands-On Manufacturing Incident Response Challenge

Posted in Commentary with tags on July 31, 2026 by itnerd

At DEF CON 2026, Finite State will speak at two sessions focused on emerging cybersecurity challenges, including AI-driven security testing, IoT vulnerabilities, and the impact of new AI regulations. The company will also host the Factory Floor MVP Incident Response Challenge, a hands-on competition where participants investigate simulated attacks against a manufacturing environment.

WHO:

Larry Pesce, VP of Services, will discuss how AI is transforming security testing and vulnerability discovery, including where AI excels and where it falls short, and a practical blueprint for building AI-assisted security testing workflows in his session, “Dr. Strangepwn: How I Learned to Stop Worrying and Love the LLM.”

Joshua Marpet, Senior Product Security Consultant, will explore emerging AI regulations through a security researcher’s lens, including where the legislation strengthens transparency, where critical gaps remain, and what security professionals should understand in his session, “AI Safety Theater: What the RAISE Act Regulates, and What It Does Not.”

WHEN & WHERE:

DEF CON 2026, Las Vegas Convention Center | Las Vegas, NV

Speaking Sessions:
Dr. Strangepwn: How I Learned to Stop Worrying and Love the LLM
Friday, Aug 7 | 12:30-1:15 PM, at IoT Village, Stage 3

AI Safety Theater: What the RAISE Act Regulates, and What It Does Not
Saturday, Aug 8 | 5:00-5:30 PM, at Creators Stage 1

Factory Floor MVP Incident Response Challenge:
Friday, Aug 7 and Saturday, Aug 8 | 1:00-3:00 PM, at AppSec Village

Participants will step into the role of a defender responsible for protecting a modern manufacturing environment as they investigate active cyberattacks across industrial control systems, engineering workstations, sensors, historians, and connected infrastructure.

For more information on the Finite State sessions and challenge, visit: https://finitestate.io/events/defcon-2026.

Endra opens in New York, San Francisco, and London to break the engineering bottleneck holding up construction

Posted in Commentary with tags on July 31, 2026 by itnerd

Every building eventually runs into the same constraint: the engineering capacity required to make it real. As the world races to build data centers, electrify infrastructure, and meet net-zero demands by 2030, the bottleneck is becoming impossible to ignore. Endra was built to remove it.

Endra, the Stockholm-based AI company, today announced its expansion into the United States and the United Kingdom, with a North American headquarters in New York, a West Coast office in San Francisco, and an UK office in London. The expansion follows Endra’s $50 million Series A led by Andreessen Horowitz earlier this year and sets the stage for Epoch, the company’s launch event in Las Vegas this September.

The constraint inside every major building project

MEP engineering sits behind every major building project. Engineers calculate loads and flows, size systems, place thousands of devices, route cabling, ductwork, and piping, coordinate across disciplines, and produce the documentation contractors price and build from. When MEP slips, the whole project slips.

The pressure on that workflow is accelerating. Data centers, hospitals, electrified buildings, dense urban developments, and net-zero mandates all add engineering complexity. At the same time, the industry is facing a shortage of qualified MEP engineers and cannot train new engineers fast enough to keep up. Endra’s view is that engineering firms do not need another drafting tool. They need a way to scale their expertise.

What Endra is building

Endra is a purpose-built AI platform for MEP engineering, built for enterprise consultancies. The platform ingests standard building model files, integrates with BIM tools like Revit, and reconstructs each building in a detailed 3D environment. From there, it automates system design, device placement, routing, model generation, and compliance-ready documentation across 3D and 2D deliverables. A code-compliant electrical design for a 500,000-square-foot commercial building that traditionally takes around two months can be completed in less than a day.

A new phase of global expansion

The US is now the centerpiece of Endra’s growth strategy. Co-Founder and President Anton Juric is leading the company’s US go-to-market expansion. Endra is already in active engagement with engineering consultancies across the country, including several of the world’s largest engineering firms.

In parallel, Endra is deepening its presence in the United Kingdom. Its London office serves major engineering consultancies and acts as a strategic hub for enterprise customers across Europe and the Middle East. The company is actively hiring across engineering, sales, and customer success in New York, San Francisco, and London, pacing toward 100 employees globally as it scales its offices over the next twelve months. Open roles are listed at endra.ai/careers.

Winning the US and UK is as much an engineering challenge as a commercial one. Hadla Bergman, who joined Endra from Swedish autonomous freight pioneer Einride, is one of the world-class engineers making the platform native to these markets — local codes, standards, and design workflows — and will work hand in hand with the new teams, first and foremost in the US.

What comes next: Epoch

The expansion sets the stage for Epoch, taking place in Las Vegas on September 14, 2026. At Epoch, Endra will bring together leading engineers and innovators to unveil its electrical module and set out its vision for AI-native MEP engineering, with speakers including chess grandmaster Garry Kasparov. More information is available at endra.ai/epoch.

Endra’s ambition is to make MEP engineering the place where the future of construction begins. The company is building toward a world where every major building is designed with the speed, precision, and intelligence the next era of infrastructure will demand.

Anthropic AI Models Escaped Testbed And Attacked Three Companies 

Posted in Commentary with tags on July 31, 2026 by itnerd

Bad news for those who rely on AI for pretty much anything. Anthropic has reported the following:

we found three incidents in which a Claude model reached the internet from within or while interacting with a third-party evaluation environment, and then gained unauthorized access to the real systems of three different organizations.”

The BBC has more:

US technology firm Anthropic says its AI models hacked into the systems of three organisations on their own, during a private security experiment.

The models found a weakness in what was supposed to be an isolated test environment and connected to the internet.

It comes just days after rival OpenAI said that its models had breached the systems of other companies, including AI tools hub Hugging Face.

John Strand, Owner, Black Hills Information Security (https://www.blackhillsinfosec.com/):

“The fact that Anthropic reportedly only detected this after the OpenAI breach, and only after reviewing logs after the fact, is negligent and raises serious questions about their security posture. Organizations running frontier AI models should have continuous detection capabilities, active network threat hunting, and monitoring designed to identify attempts to escape containment in real time. Waiting until after an incident to discover suspicious behavior is not an acceptable security strategy.”

Ryan McCurdy, VP, Liquibase (https://www.liquibase.com/):

“The Anthropic and OpenAI incidents shouldn’t be viewed as isolated failures. Together they point to a broader shift in enterprise AI. As AI agents move beyond generating content to taking actions across production systems, governance can no longer depend on continuous human oversight alone. Every major technology transition has forced enterprises to move governance closer to where operational risk is introduced. AI is no different. Organizations need visibility into what AI changed, confidence that those changes comply with policy, and governance that operates at the speed of autonomous software delivery. The question isn’t whether AI will become more capable. It’s whether enterprise governance evolves just as quickly.”

Nick Mo, CEO, Ridge Security (https://ridgesecurity.ai/):

“First, these incidents prove that we cannot rely on frontier AI companies to self-police. As we are seeing across the industry, that approach is clearly failing.

“Second, we cannot allow a handful of model providers to gatekeep how AI is used for defense. When vendors over-police their platforms, we end up with an asymmetrical cybersecurity landscape: bad actors freely leverage advanced AI for malicious purposes, while legitimate defenders are constrained by vendor guardrails. To level the playing field, enterprises need access to open-weight and open-source models paired with purpose-built offensive cybersecurity toolkits like agentic offensive platform to proactively identify threats and protect themselves.

“Finally, this raises a serious legal question. Hacking corporate networks is a crime. Why should unauthorized breaches be excused with a PR blog post simply because an AI pulled the trigger?”

Lydia Zhang, President, Ridge Security (https://ridgesecurity.ai/)

“In my opinion, AI can benefit society in countless ways. I don’t understand why frontier AI models are making cybersecurity such a major area of competition.

“Cybersecurity is a highly specialized field. Offensive security capabilities should be left to dedicated cybersecurity companies that have spent years building security guardrails and developing deep domain expertise.

“For enterprises, I believe self-hosted open-source models are the right approach. By combining the strong reasoning and language capabilities of open-source models with enterprise-grade security controls, cybersecurity vendors can deliver safe, controlled, and effective agentic solutions for organizations to use.”

Should you feel safe? No? Should you take control of your AI and put as much as you can between it and the outside world? Yes. Should you make sure that you can’t get pwned by a rouge AI? Absolutely. The question is if you will do all of these things and more. I say you should and quickly.

Form.io Launches E-Sign+

Posted in Commentary with tags on July 31, 2026 by itnerd

Form.io, the enterprise data platform trusted by government agencies and regulated industries, today announced Form.io E-Sign+, that enables certifiable digital signatures to be embedded directly into applications. E-Sign+ eliminates the need to route users, data, and signature workflows through a separate, costly third-party service. For organizations operating under strict governance and compliance requirements, this product introduces a digital signature solution that operates entirely within the security boundaries of an enterprise, a radical departure from legacy third-party, document based solutions.

Enterprise signature workflows have long depended on costly external platforms — document-centric services that sit outside the application and outside the organization’s own governance controls. Every signature captured that way means data leaving the environment where it’s managed, secured, and audited, plus another vendor relationship to maintain. As enterprise applications take on more responsibility for security and compliance natively, treating signatures as a separate, outsourced step no longer fits.

Signatures, Native to the Enterprise Stack

E-Sign+ captures signatures directly against submission data inside a self-hosted technology stack, and cryptographically verifies that the signed data hasn’t changed since signing. Rather than exporting a document to a signing platform and importing the result back, organizations sign where the data already lives — inside their own environment, governed by their own controls.

With E-Sign+, organizations gain:

  • Self-hosted signature creation: Keep signature workflows and signature data inside the organization’s own environment, never a third-party platform.
  • Cryptographic verification: Confirm that signed submission data has not been altered after signing, with the signature automatically invalidated if protected data changes.
  • Consolidated infrastructure: Remove the high cost and complexity of a separate signature vendor and disconnected document workflow.
  • Full ownership: Maintain control of data, signature records, APIs, and cryptographic key strategy.
  • PDF support without PDF dependency: Continue producing signed PDFs where needed, without the burden of a document based solution.

Because E-Sign+ runs inside the customer’s own application, the signature stays bound to the data it signs even preparing for when those applications eventually take on AI and agentic workflows, where an unbroken chain of custody for data becomes essential.

The shift is the same across every regulated industry. A government agency capturing citizen consent, a bank recording a loan disclosure, a law firm executing a contract, an insurer documenting a claims authorization: instead of exporting data to an external signing platform, each workflow captures the signature directly as part of the submission data already being collected within its own application. If anything changes after signing, the signature is automatically invalidated, preserving integrity without data ever leaving the organization’s environment.

Availability

E-Sign+ is available now as a licensed add-on for Form.io enterprise deployments. Organizations new to Form.io can contact the team to discuss requirements and free trial.

Contact Form.io: https://form.io/contact-us/

Learn more: https://form.io/e-sign-plus/

CosmosEscape exposes cloud tenant-isolation risk

Posted in Commentary with tags on July 31, 2026 by itnerd

Wiz Research is reporting that a vulnerability chain it named CosmosEscape could have provided cross-tenant access to Microsoft Azure Cosmos DB accounts, including private and network-isolated databases.

According to Wiz, the vulnerability could have enabled full read and write access to customer databases across the service. Microsoft has fully remediated the issue and reported finding no evidence of customer impact. No customer action is required.

Waseem Ahmed, Head of Engineering at Secure.com:

“A cross-tenant flaw in a shared cloud database is significant even after it is patched, because it breaks the core promise cloud infrastructure is built on: that customers on the same platform stay isolated from each other. Wiz assessed this one could have reached any customer’s data across the Cosmos DB service, which sits under thousands of Microsoft customers and the data behind their applications, chatbots, and AI features. When one flaw can touch everyone’s data at once, the blast radius is the whole platform. That is why this is news, not a footnote.

“The reason it is not a catastrophe is timing. A security firm found it before attackers did, and Microsoft says it is fully fixed with no evidence of exploitation. Serious potential, contained outcome.

“Microsoft fixed this on its side, and unlike some past Cosmos DB incidents, there is nothing for customers to install or rotate. But nothing to patch is not the same as nothing to learn.

“Cloud-side flaws like this typically receive no CVE and are fixed quietly, which means customers often cannot determine whether they were exposed. That is why researcher disclosure matters. It is also why assuming the next one gets caught before attackers do is not a security strategy.

“If you hold sensitive data in Cosmos DB, review your access logs and treat this as a prompt toward real defence in depth, private endpoints, least-privilege access controls, and application-layer encryption, rather than relying entirely on the provider’s perimeter. The patch closes this door. It does not tell you what posture you should have had while it was open.”

Beau Bullock, Director of Emerging Threats and Advanced Testing at Black Hills Information Security:

“The researchers here identified a critical vulnerability that would have allowed an attacker to access virtually any Microsoft Cosmos DB account belonging to Microsoft’s customers, including Microsoft’s own Cosmos databases used by services like Entra ID, Teams, and more. What the researchers found was essentially a ‘master key’ that could have been used to retrieve access keys across customers and tenants, providing full read and write access. The researchers also demonstrated how it was possible to query Cosmos DB’s internal account directory to enumerate databases and precisely target organizations by tenant or subscription ID, making it much easier for an attacker to find and access data belonging to specific customers.

“This issue is related to something many people fear when they think about the shared nature of cloud services and just how segmented they actually are. This is not the first time a lack of boundaries between cloud provider customers has been demonstrated, and it likely will not be the last. Microsoft patched the issue and stated that it found no evidence of unauthorized exploitation, but the biggest takeaway is that organizations using cloud services cannot completely protect themselves from vulnerabilities in the underlying provider infrastructure that could allow cross-customer access.”

John Carberry, Solution Sleuth at Xcape Inc.:

“While it is true that no action is required by customers, this story has gained attention because a short attack path led to a multi-tenant compromise. This is alarming because it means internal security boundaries were ineffective and the broader architecture is lacking.

“The issue is very serious because a relatively simple attack path led to the compromise of the control plane in that multi-tenant environment.

“This was a sandbox escape facilitated by AI. Such attacks will continue and are likely to become less novel over time as LLMs and AI evolve. It is an opportunity to recognize a case where transparency in disclosure can benefit the entire industry. Lessons learned can be applied to other cloud environments and distributed multi-tenant architectures. The severity of this issue has more to do with fundamental flaws in the architecture of this fabric. When security depends on an unscoped, god-mode key for all tenants, we can expect these attack chains to become common. This is cause for alarm.

“Customers have nothing to do in terms of incident response, but they should remain aware that even when data is stored in the cloud, they still have a responsibility to understand the risks involved in such hosting.”

Cosmo DB appears to not be your friend at this point. Maybe you should examine your logs and look for intrusions. Because it is better to be safe than sorry.