Google AI Threat Defense fuses the reasoning power of Gemini and other frontier models, the contextual risk prioritization of @wiz_io, the code remediation capabilities of Gemini and CodeMender, and the frontline expertise of @Mandiant.
Check out the Wiz details and demo ⬇️
Our quarterly AI Threat Tracker is out today. We found a threat actor using a zero day exploit developed with AI. Read about our recent findings here @googlecloud https://t.co/NA7mDSAon0
An update from NIST. Due to volume they’re only going to enrich CVEs that are meaningful to USG federal systems and critical software (some more nuance in the blog post). This means if you’re relying on the NVD data for your enterprise security program and use other software, your tools may not flag software you use as at risk. https://t.co/pI2o2XootK
Google Threat Intelligence Group took down a massive, longterm intrusion campaign into global telcos and government. This PRC-nexus actor built a vast surveillance tool across 42 confirmed countries and another 20 suspected countries. 1/x
🦞🛡️ OpenClaw × VirusTotal: every ClawHub skill now auto-scanned for malware
🔍 AI Code Insight catches reverse shells, crypto miners & exfiltration
⚡ ~30s verdicts
🚦 Benign/Suspicious/Malicious tiers
🔄 Daily re-scans
This is not a silver bullet, but it is another layer to the shell 🦞https://t.co/2HmT6Ubrdm
Google took out a MASSIVE pool of residential proxies.
Threat actors have been having a hard time ever since, whining in hacking forums, attempting to seek out new providers that don’t have KYC (Know Your Customer/Identity Verification)
This is a huge win for cybersecurity world-wide 👏 well done Google Threat Intelligence Group
https://t.co/yz22WNiPbL
Sharing intelligence is a necessary but insufficient response to the threats we face in 2026. It’s time to operationalize intelligence through active defense and disruption. Really appreciate all the incredible teams at Google and external partners who worked on this. On to the next one.
@googlecloud@mandiant https://t.co/ucpsAxlytX
Google Threat Intel is tracking widespread exploitation of on-prem SharePoint vulns: CVE-2025-53770 & CVE-2025-53771.
This is a severe threat. We recommend patching, threat hunting and rotating keys.
Learn more, incl. how to detect this threat in Google SecOps: https://t.co/reP7kIrXMU @GoogleCloudSec@Mandiant
New from our security teams: Our AI agent Big Sleep helped us detect and foil an imminent exploit. We believe this is a first for an AI agent - definitely not the last - giving cybersecurity defenders new tools to stop threats before they’re widespread.
It’s that time of the year when the Joyce Clan converges on Aspen to think big thoughts about cybersecurity. Happy to join Sandra Joyce and Sean Joyce and all the Aspen Digital team!
@JumpforJoyce@Sean_M_Joyce@AspenDigital
This afternoon @Google's @jmmanfra spoke to the US House Committee on Homeland Security on the need for harmonized regulation with strong cybersecurity standards that are agile enough to keep pace with evolving tech and threats: https://t.co/7KS7HPrwkt
@Mandiant ‘s M-Trends is here. Some great insights here, including a decrease in espionage intrusions but with more sophistication and complexity. Enjoy. M-Trends 2025: Data, Insights, and Recommendations From the Frontlines @googlecloud https://t.co/928iZ6izUo
Excited to share Google’s agreement to acquire @wiz_io !! Together, with our frontline intelligence and Google SecOps detection capabilities, we believe organizations will have greater visibility into and protection against the most complex attack paths. https://t.co/0TqEBIx9wS
“Cybercrime has unquestionably become a critical national security threat to countries around the world." @JumpforJoyce comments on the evolution of cybercrime. Find Google Threat Intelligence Group's latest report here: https://t.co/l1TMF5N2g1