NEW:

Radiology Associates of Richmond discloses second data breach

266k people affected by this one, and I have unanswered questions about both breaches:

https://databreaches.net/2026/05/22/radiology-associates-of-richmond-discloses-second-data-breach-266k-people-affected/

#HIPAA #hack-and-leak #databreach #incidentresponse #transparency

The more advanced your automated systems are, the more critical - and flawed - the human element becomes.

In this #InfoQ video, J. Paul Reed breaks down the "Ironies of Automation" - and how modern AI creates dangerous new traps for software operators (i.e., you), especially during high-consequence, high-tempo situations (aka incidents).

๐Ÿ“บ Watch now: https://bit.ly/4uqOD6j

๐Ÿ“„ #transcript included

#DevOps #AI #IncidentResponse #Automation

Oopsโ€ฆ AI-written security incident reports delivered mixed results - faster documentation, but accuracy and context still need human judgment. Automation helps, oversight matters. ๐Ÿค–๐Ÿ“ #AIOperations #IncidentResponse

https://www.theregister.com/security/2026/05/22/cisco-used-ai-to-write-security-incident-reports-with-mixed-results/5244692

Cisco used AI to write security incident reports, with mixed results

Youโ€™ll need a lot of detailed prompts to get solid output - and even then it may have errors and typos

theregister

Cisco Tests AI for Incident Reports, Finds Mixed Results

Cisco's experiment with AI-generated incident reports yielded mixed results, with large language models producing significant inaccuracies, unusual conclusions, and inconsistent writing styles when used for long-form technical content. The findings revealed four predictable failure modes, highlighting the need for guardrailsโ€ฆ

https://osintsights.com/cisco-tests-ai-for-incident-reports-finds-mixed-results?utm_source=mastodon&utm_medium=social

#ArtificialIntelligence #LargeLanguageModels #IncidentResponse #AiTesting #CiscoTalos

Cisco Tests AI for Incident Reports, Finds Mixed Results

Discover how Cisco tested AI for incident reports, finding mixed results and four predictable failure modes, and learn why LLMs need guardrails - read now.

OSINTSights

Peter Smith & RK Sharma - Beyond the Chatbot (including demo) | [un]prompted 2026

https://www.youtube.com/watch?v=XKKFje5IkGs

#cybersecurity #incidentresponse #aisecurity

Peter Smith & RK Sharma - Beyond the Chatbot (including demo) | [un]prompted 2026

YouTube

Investigating unauthorized access to GitHub-owned repositories

GitHub์€ ์ง์› ์žฅ์น˜๊ฐ€ ์•…์„ฑ VS Code ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ์— ๊ฐ์—ผ๋˜์–ด ๋‚ด๋ถ€ ์ €์žฅ์†Œ ์•ฝ 3,800๊ฐœ๊ฐ€ ๋ฌด๋‹จ ์ ‘๊ทผ ๋ฐ ์œ ์ถœ๋œ ์‚ฌ๊ฑด์„ ์‹ ์†ํžˆ ๋Œ€์‘ํ–ˆ๋‹ค. ๊ณ ๊ฐ ์ •๋ณด๋Š” ์™ธ๋ถ€ ์ €์žฅ์†Œ์— ์˜ํ–ฅ์ด ์—†์œผ๋ฉฐ, ์ค‘์š” ๋น„๋ฐ€ํ‚ค๋ฅผ ์šฐ์„  ๊ต์ฒดํ•˜๊ณ  ์ถ”๊ฐ€ ์กฐ์‚ฌ๋ฅผ ์ง„ํ–‰ ์ค‘์ด๋‹ค. ๋ณด์•ˆ ์ฑ…์ž„์ž์ธ Alexis Wales๋Š” ์ด๋ฒˆ ์‚ฌ๊ฑด์˜ ์ „ ๊ณผ์ •์„ ํˆฌ๋ช…ํ•˜๊ฒŒ ๊ณต๊ฐœํ•˜๊ณ  ํ–ฅํ›„ ๋ณด๊ณ ์„œ๋ฅผ ๋ฐœํ‘œํ•  ์˜ˆ์ •์ด๋‹ค.

https://github.blog/security/investigating-unauthorized-access-to-githubs-internal-repositories/

#github #security #supplychain #vscode #incidentresponse

Investigating unauthorized access to GitHub-owned repositories

If any impact is discovered, customers will be notified via established incident response and notification channels.

The GitHub Blog
Microsoft open-sources tools for designing and testing AI agents - Help Net Security

Microsoft open-sourced tools for reviewing the desing choices during AI agent development and continuously testing AI agents.

Help Net Security

What happens when global incident response experts gather in the heart of Switzerland?

The recent FIRST #TechnicalColloquia, โ€œPeak Incident Response,โ€ hosted by CH-CERTs as part of Geneva Cyber Week, created a space for collaboration, knowledge sharing, and discussion around the evolving cybersecurity landscape.

Catch the full event recap on the FIRST blog: https://www.first.org/blog/20260518-Peak-Incident-Response-2026

#FIRSTdotOrg #CyberCommunity #CyberDefense #IncidentResponse #GenevaCyberWeek

Peak Incident Response 2026

This year we held our first Swiss Technical Colloquium - Peak Incident Response - as part of the Geneva Cyber Week (GCW). So, why another TC? The GCW is an annual global platform to advance international cooperation and resilience in cyberspace. This sounds a bit like it could describe just about any FIRST event. But the GCW mostly caters to policy folks, diplomats, and members of civil society, including some of our trusted partners such as DCAF and the HD Centre.

FIRST โ€” Forum of Incident Response and Security Teams