EU unveils action plan to strengthen AI-powered cybersecurity
The European Commission has released the EU Action Plan on Cybersecurity and Artificial Intelligence, outlining a coordinated approach to strengthen cybersecurity while promoting the safe and responsible use of advanced AI. The plan focuses on three priorities: expanding access to trusted AI capabilities for cybersecurity, strengthening Europe's ability to evaluate AI-related cyber risks, and accelerating the adoption of AI-powered cybersecurity solutions across Member States. It also emphasizes closer collaboration among governments, industry, and research organizations, while building on existing frameworks such as the AI Act, NIS2 Directive, and Cyber Resilience Act. The initiative aims to enhance Europe's cyber resilience while supporting the development and deployment of secure AI technologies.
 
OpenAI launches ChatGPT Work for AI-powered productivity
OpenAI has introduced ChatGPT Work, an AI agent designed to help users complete complex, multi-step work across documents, spreadsheets, presentations, websites, and business applications. Powered by GPT-5.6, ChatGPT Work combines ChatGPT with Codex, enabling users to generate deliverables, take actions across connected apps and files, and work on projects for extended periods. The platform integrates with tools including Gmail, Google Drive, Slack, and CRM systems, allowing users to automate workflows without coding. ChatGPT Work is initially available to Pro, Enterprise, and Edu customers, with broader availability planned. 
 
NetSuite highlights equipment lifecycle management for better asset performance
NetSuite’s asset management capabilities support key lifecycle activities, including asset tracking, depreciation management, transfers, revaluation, and disposal, helping organizations improve efficiency, reduce unexpected downtime, and make more informed investment decisions. NetSuite highlights equipment lifecycle management as an important approach for organizations to optimize the management of physical assets throughout their entire lifecycle, from acquisition and deployment to maintenance and retirement. Effective lifecycle management enables companies to maintain accurate equipment records, monitor asset performance, schedule preventive maintenance, and better understand operational costs. By connecting equipment information with financial and operational processes, businesses can improve visibility into asset utilization, depreciation, repair history, and replacement planning.
 
SAP expands self-service capabilities for partners in SAP Store
SAP has expanded self-service capabilities in SAP Store, enabling partners to independently manage private offers, pricing, discounts, and customer approvals through a unified interface. The update allows partners to create customized pricing, submit offers directly to customers, monitor approval status, and manage transactions without relying on manual coordination with SAP teams. SAP states that the new experience streamlines the sales process, reduces administrative effort, and shortens approval cycles while providing greater visibility into deal progress. The enhancement is designed to improve efficiency for both partners and customers by simplifying commercial workflows and accelerating the delivery of partner solutions through SAP Store.
 
Linux Foundation launches Akrites to strengthen open source security against AI-enabled threats
Linux Foundation, together with more than 20 technology organizations including Amazon, Anthropic, Google, Microsoft, NVIDIA, OpenAI, GitHub, and Red Hat, has launched Akrites, a collaborative initiative designed to improve the security of critical open source software against AI-enabled cyber threats. The project establishes a shared Security Incident Response Team (SIRT) and a standardized Coordinated Vulnerability Disclosure (CVD) process, enabling security researchers, maintainers, and participating organizations to confidentially identify, validate, remediate, and disclose vulnerabilities before they are publicly exploited. By providing common workflows and industry-standard tooling, Akrites aims to accelerate coordinated vulnerability response while protecting software that underpins critical infrastructure and AI systems.
 
Hackers abuse OpenAI organization invitations to steal enterprise data
Push Security has disclosed a new Poisoned Tenant attack targeting OpenAI organizations, in which attackers create fraudulent ChatGPT workspaces impersonating legitimate companies and invite employees using OpenAI’s official invitation system. Because the invitations are sent from OpenAI’s legitimate email infrastructure, they can appear trustworthy and bypass standard email security checks. Once users join the attacker-controlled workspace, they may unknowingly upload sensitive documents, source code, customer information, or internal discussions into an environment controlled by the attacker. Push Security notes that the technique exploits organizational trust rather than a software vulnerability, highlighting a growing risk as AI collaboration platforms become part of enterprise workflows.