Cybersecurity risk is increasingly extending beyond an organization’s own network, with incidents involving nonprofit technology providers and distant supply-chain partners exposing sensitive data. At the same time, the growing use of autonomous AI systems is creating a new class of security concerns that organizations will need to understand as these tools gain greater access and decision-making authority.
Over 1,000 Charities Affected by Beacon CRM Data Breach
UK-based nonprofit CRM provider Beacon disclosed a breach in which attackers downloaded customer database backups, potentially affecting more than 1,000 charities and exposing supporter information such as names, phone numbers, email addresses, and postal addresses. Investigators believe the attackers gained access through a compromised AWS access key that may have been exposed in publicly available JavaScript build artifacts.
U.S. Bank Links Ransomware Claims to Fourth-Party Incident
U.S. Bancorp says ransomware-related data theft claims stem from a cyber incident involving a contractor used by one of its third-party providers rather than a compromise of the bank’s own environment. While third-party providers are often discussed as risks, we rarely consider that their vendors (fourth parties) can present the same risk.
OWASP Identifies Top Security Risks for Agentic AI Applications
OWASP, popular for its for Top 10 Application Security list, has published a new Top 10 focused on Agentic AI. This list is a framework for understanding critical security risks associated with autonomous AI systems that can plan, act, and make decisions across complex workflows. Developed with input from more than 100 experts, researchers, and practitioners, the framework is intended to give builders, defenders, and organizational leaders a practical starting point for securing increasingly capable AI agents.
🔗 Read more on OWASP GenAI Security Project
HopeNet (HopeNetCISO.com) reviews a variety of security news sources so you do not have to! This list is curated specifically for churches, nonprofits, and other Organizations of Hope.
If this was shared with you and you would like to receive a copy directly to your email, please subscribe at HopeNetCISO.com. Thanks for reading!

Leave a Reply
You must be logged in to post a comment.