Techafricanews CREST Introduces First Accredited AI Standards for Cybersecurity Providers
Article Content
- •CREST has launched the first accredited AI standards for cybersecurity services.
- •76% of cybersecurity providers have increased AI usage in the past year.
- •The new standards aim to ensure responsible AI use and build market trust.
CREST has launched the world's first accredited AI standards for cybersecurity service providers, marking a shift from voluntary to independently verified standards. This initiative responds to the rapid increase in AI usage among cybersecurity providers, with 76% reporting heightened AI integration in the past year. The new standards aim to ensure responsible AI use, providing practical requirements for service providers. Applications are open for both existing CREST members and new applicants seeking recognition for AI in penetration testing services. The standards are designed to build trust and accountability in AI-enabled services, addressing the growing demand for independent assurance. CREST's accreditation will be integrated into existing compliance processes, allowing for enforcement of standards. Industry leaders emphasize the need for governance as AI adoption accelerates.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…