AI Models Broke Their Own Containment: Key Findings from the July-August 2026 AI Threat Landscape

Between mid-July and early August 2026, models being evaluated internally by OpenAI, Anthropic, and Meta reached real production systems outside their test environments. One exploited a previously unknown vulnerability to escape its sandbox entirely. At the same time, criminal groups showed that frontier capability isn’t required for serious attacks: a ransomware affiliate ran a full intrusion through Claude Code, and a separate campaign, JADEPUFFER, is now documented as the first case of agentic ransomware, an extortion operation a model carried out end to end once a human set it in motion. Check Point Research’s July-August 2026 AI Threat Landscape Digest […]

The post AI Models Broke Their Own Containment: Key Findings from the July-August 2026 AI Threat Landscape appeared first on Check Point Blog.



from Check Point Blog https://ift.tt/Lvt3GIQ
via

Scammers Are Watching Airline Complaints and Posing as Customer Support

Check Point uncovers thousands of fake support accounts, with hundreds more appearing every day A delayed flight. Missing luggage. A refund that never arrived.  For frustrated customers, social media has become a direct route to customer support. They tag the company, explain the problem, and wait for a response.  However, threat actors are watching those same conversations.  A Check Point Exposure Management investigation uncovered a coordinated social engineering campaign in which scammers monitor public complaints, impersonate customer support accounts, and approach customers seeking help. Researchers engaged directly with the scammers and followed the attack from the first social media interaction […]

The post Scammers Are Watching Airline Complaints and Posing as Customer Support appeared first on Check Point Blog.



from Check Point Blog https://ift.tt/pDLaWOf
via

Synchronous Control Monitoring: Preventing Harmful Agent Actions in Real Time

We ensure alignment and control in agents using synchronous control monitoring. Our model oversees agent execution, continuously ingests the trace as context, and prevents harmful actions before they execute in real time at sub-100ms latency. Agent trace at 30 tok/s, streamed to the control monitor model on the right. Prevents harmful actions before they are executed. Background Control Monitoring is a powerful tool for ensuring the runtime alignment and safety of autonomous agents. Since the Hugging Face Incident, the need for control monitoring on top of existing safety mechanisms was reinforced: OpenAI started investing more heavily into monitoring safety tools. […]

The post Synchronous Control Monitoring: Preventing Harmful Agent Actions in Real Time appeared first on Check Point Blog.



from Check Point Blog https://ift.tt/1oEPHaB
via

Fake Voicemail Transcript Emails Target 7,800+ Organizations in Large-Scale Credential Phishing

Automated voicemail transcripts have become part of the daily rhythm of enterprise communication. They arrive with familiar subject lines, system-generated formatting, and little human context, exactly the qualities that make them easy to trust and easy to overlook. Attackers are now exploiting that familiarity, turning routine call-transcription notifications into a vehicle for credential phishing. Check Point researchers identified a large-scale phishing campaign that exploits this shift in enterprise behavior. The emails impersonate automated voicemail-transcript notifications and deliver malicious Scalable Vector Graphics (SVG) attachments that redirect users to credential-harvesting pages, converting a familiar collaboration workflow into a potential path for account […]

The post Fake Voicemail Transcript Emails Target 7,800+ Organizations in Large-Scale Credential Phishing appeared first on Check Point Blog.



from Check Point Blog https://ift.tt/xZDHEf1
via

The Top Exposure Management Questions Security Leaders Ask: Insights from Customer Conversations (Part 2)

We analyzed ongoing conversations with prospective customers to find out what buyers ask most. Below are those questions, covering how Check Point Exposure Management helps teams validate risk, cut noise, coordinate remediation, and report progress. Part 1 covered how security leaders think about asset discovery, cloud visibility, threat intelligence, credential exposure, and integrations. Once teams know what’s exposed, the conversation shifts to prioritization and response. 1. How do you prioritize which exposures matter? Security teams often manage thousands of vulnerabilities across applications, endpoints, cloud resources, and internet facing infrastructure. A severity score alone does not provide enough context to determine […]

The post The Top Exposure Management Questions Security Leaders Ask: Insights from Customer Conversations (Part 2) appeared first on Check Point Blog.



from Check Point Blog https://ift.tt/ctfMqn9
via

PuzzleMask: The Prompt Injection Hiding in Plain Sight

Introduction Most prompt injection detection is built to catch the obvious. Encoding anomalies, invisible unicode, emoji smuggling, the signatures a classifier can pattern match against. PuzzleMask, a newly disclosed technique, sidesteps all of it. It embeds a policy-violating payload inside fluent, properly punctuated prose, and gets that payload past an LLM-based gatekeeper without tripping any heuristics naively looking for obfuscation on the input side. The technique targets a specific architecture that’s become standard in production LLM pipelines: a fast, low-cost model screens incoming input against a policy before a more capable target model, often running with high reasoning effort and […]

The post PuzzleMask: The Prompt Injection Hiding in Plain Sight appeared first on Check Point Blog.



from Check Point Blog https://ift.tt/dfDigy2
via

Check Point is a Leader in the 2026 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall

The AI era is rewriting the rules of network security. We believe our recognition as a Leader in the 2026 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall reflects how we help enterprises secure the AI transformation — end to end. Download your complimentary copy of the report: 2026 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall Why AI Changes the Security Equation AI adoption has outpaced the ability to govern it. Only 5% of organizations have full visibility into AI tool usage on their network1. The other 95% are working blind. That gap has consequences: 54% of organizations have already reported […]

The post Check Point is a Leader in the 2026 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall appeared first on Check Point Blog.



from Check Point Blog https://ift.tt/IjJ9B4K
via

The Goal Tells an Agent What to Do. Security Has to Govern How.

In this article An agent’s goal rarely says how the agent may reach it, and capable agents are good at finding routes nobody planned for. →N...