Visualização de leitura

Claude Can Now Send Emails in Gmail and Manage Files in Google Drive

Anthropic has moved Claude out of the draft-only inbox and into live Google accounts. In an August 18, 2026 post, the company said users can ask Claude to reply to a Gmail thread and have the assistant draft and send the response, while Google Drive support now covers day-to-day file work.

Approval stays under user control. The connectors live in Claude’s connectors menu and are listed as available on all paid plans.

Claude can now send emails in Gmail and manage files in Google Drive.

Ask Claude to reply to a thread, and it drafts and sends the response. You control when it needs your approval.

Connect Gmail or Google Drive from the connectors menu to try. Available on all paid plans. pic.twitter.com/cFZEjh3MgB

— Claude (@claudeai) August 18, 2026

That send action is the real change. Earlier Google Workspace connectors already let Claude search mail, write drafts, and pull documents. Sending, forwarding, and changing Drive files turns the assistant into an agent that acts inside a connected Google identity rather than a chatbot that only proposes text.

Claude Can Now Send Emails in Gmail

Anthropic’s help documentation now states that Claude can send, reply to, and forward Gmail, and can share, move, and trash files in Drive. By default, it asks before each of those writes.

On Team and Enterprise, an Owner or Primary Owner must enable the connectors first, and those owners decide whether members may let write actions run without a prompt.

For security teams, the useful part is also the exposure. A model that can press Send, change a sharing link, move a folder, or trash a file can turn a bad parse, a prompt-injection payload sitting in a received email, or a sloppy always-allow setting into a real outbound message or a leaked document. An unsent draft is recoverable.

A sent email or a trashed shared folder is not. Claude still cannot read Gmail attachment contents, only metadata, and it extracts text from Drive files rather than images, comments, or suggestions. Those limits close some quiet exfil paths. They do not shrink the blast radius of send, share, move, or trash.

Anthropic says Claude authenticates through the user’s Google account, sees only that account, mirrors existing Workspace permissions, and retrieves the minimum data needed when the user asks.

Retrieved connector data is stored with the chat on Anthropic’s servers, encrypted in transit and at rest, and can be removed by deleting the chat. The company says it does not train models on Gmail, Drive, or Calendar connector data.

Consumer Free, Pro, and Max users who opted in to training should still treat anything they paste from those services, or any Claude reply that repeats it, as in scope for training.

Google’s OAuth screen already names send permission, which now matches the product instead of sitting unused. Workspace tenants may need an admin to mark Claude as a trusted app under third-party API controls before the connector works. Rate limits, large mailboxes, and some advanced Gmail filters remain rough edges.

The practical advice is boring and correct. Leave approval on for send, share, move, and trash. Do not grant always-allow on a mailbox that handles payroll, legal hold, or customer secrets. Test with a message to yourself before anyone lets Claude touch a live thread.

Treat every inbound email Claude is asked to handle as untrusted input, because the model is now one approval away from acting on it. Connectors that act are more valuable than chatbots that only advise.

They are also a new identity and data-loss surface, and that is the part worth configuring before anyone celebrates the saved clicks.

 Strengthen Your SOC by Accelerating Threat Detection & Rapid Investigations. -> Integrate ANY.RUN With Your SOC Now.

The post Claude Can Now Send Emails in Gmail and Manage Files in Google Drive appeared first on Cyber Security News.

OpenAI Introduces AI Security Platform as Cyber Defense Race Heats Up

OpenAI Daybreak

OpenAI has officially entered the AI cybersecurity race with the launch of OpenAI Daybreak, a new initiative focused on helping security teams identify, validate, and fix software vulnerabilities faster using artificial intelligence. Announced through the company’s LinkedIn post, OpenAI described Daybreak as its vision for “a new era of cyber defense,” where AI systems can assist defenders across secure code reviews, vulnerability analysis, remediation, and threat investigation workflows. The launch reflects a growing industry trend in which AI companies are positioning advanced language models as cybersecurity tools capable of reducing the time between vulnerability discovery and remediation. While AI-generated coding tools have often raised concerns around insecure code generation, companies are now increasingly focusing on using AI defensively to strengthen software security practices. According to OpenAI, AI models are already changing how security teams operate by enabling them to reason across large codebases, identify subtle vulnerabilities, validate fixes, and analyze unfamiliar systems more efficiently. However, the company also acknowledged that advanced AI cybersecurity capabilities require “trust, verification, safeguards, and accountability,” particularly as AI systems become more capable of handling sensitive defensive workflows.

What Is OpenAI Daybreak?

At the center of the announcement is OpenAI Daybreak, a cybersecurity-focused platform powered by GPT-5.5 and Codex, OpenAI’s coding-focused agentic system. OpenAI said the platform is designed to help organizations move from vulnerability discovery to remediation faster while improving visibility into the entire security workflow. The system combines AI reasoning with coding automation to support several defensive security functions, including:
  • Secure code reviews
  • Threat modeling
  • Patch validation
  • Malware analysis
  • Dependency risk analysis
  • Remediation guidance
  • Vulnerability triage
  • Detection engineering
One of the more notable capabilities highlighted by OpenAI is the platform’s ability to generate and test patches directly within repositories. According to the company, these workflows operate under monitored and controlled access models while also producing audit-ready reports that help security teams verify remediation activity. The emphasis on auditability suggests OpenAI is attempting to address one of the biggest concerns surrounding AI in cybersecurity: the need for accountability and human oversight in automated decision-making.

OpenAI Introduces Tiered Cybersecurity Access

OpenAI is rolling out Daybreak through three different access levels depending on the sensitivity and complexity of cybersecurity operations. The first layer uses GPT-5.5 for broader security assistance and general workflows. The second tier, GPT-5.5 with Trusted Access for Cyber, is aimed at defensive cybersecurity tasks such as secure code review, malware analysis, vulnerability triage, detection engineering, and patch validation. The highest tier is powered by GPT-5.5-Cyber, which OpenAI says is intended for specialised and authorised workflows including penetration testing, red teaming, and controlled validation exercises. The structured access model indicates OpenAI is taking a cautious approach toward releasing advanced cyber capabilities, especially as concerns grow around dual-use AI systems that can potentially be misused by threat actors.

AI Cybersecurity Competition Continues to Grow

The launch of OpenAI Daybreak also comes at a time when AI companies are increasingly competing to establish themselves in cybersecurity operations. Recently, Anthropic introduced Claude Mythos, a cybersecurity-focused AI system that the company claimed could identify software vulnerabilities at a scale beyond what human experts can typically achieve. However, Anthropic stated that Claude Mythos would not be released publicly due to risks associated with its advanced cyber capabilities. That contrast highlights a broader debate currently shaping the AI cybersecurity sector. While companies see AI as a major force multiplier for defenders, there are ongoing concerns about how powerful cyber-focused AI models should be deployed, monitored, and restricted. For OpenAI, Daybreak appears to position the company toward enterprise-controlled and monitored security environments rather than open public access.

AI’s Role in Cyber Defense Is Expanding

The launch of OpenAI Daybreak reflects how rapidly AI is becoming embedded into cybersecurity workflows. Security teams are increasingly under pressure to manage growing attack surfaces, software complexity, and faster-moving threats, making automation and AI-assisted analysis more attractive. At the same time, the rollout of advanced cyber-focused AI systems is likely to intensify discussions around governance, oversight, and responsible deployment. With companies like OpenAI and Anthropic now building specialised cybersecurity AI platforms, the next phase of cyber defense may increasingly depend on how effectively organizations balance AI-driven speed with security safeguards and human verification.

Capsule Security Emerges From Stealth to Secure AI Agents at Runtime

Capsule, capsule security,

Capsule Security emerges from stealth with a $7M seed round to launch a runtime security platform for AI agents. Featuring the open-source ClawGuard, the platform enforces governance and mitigates prompt injection risks like ShareLeak and PipeLeak without requiring SDKs or proxies.

The post Capsule Security Emerges From Stealth to Secure AI Agents at Runtime appeared first on Security Boulevard.

Claude Code Security: The AI Shockwave Hitting Cybersecurity

Anthropic’s Claude Code Security research preview promises AI-powered code analysis and vulnerability detection at scale. The announcement triggered strong reactions across the cybersecurity community and sent several vendor stocks lower. In this episode, we break down what the tool actually does, where it fits in modern AppSec, and whether AI automation threatens traditional security products […]

The post Claude Code Security: The AI Shockwave Hitting Cybersecurity appeared first on Shared Security Podcast.

The post Claude Code Security: The AI Shockwave Hitting Cybersecurity appeared first on Security Boulevard.

💾

Anthropic Didn’t Kill Cybersecurity. It Just Reminded Us There Are Two Doors.

Anthropic’s Claude Code Security sparked a sharp SaaS market selloff, but investors missed a critical reality: AI code scanning addresses only half of modern cyberattacks. Identity, credentials, and human factors remain the dominant breach vectors.

The post Anthropic Didn’t Kill Cybersecurity. It Just Reminded Us There Are Two Doors. appeared first on Security Boulevard.

Attacker Breached 600 FortiGate Appliances in AI-Assisted Campaign: Amazon

AI technology, security, AI security, visibility, insights, security platform, Arctic Wolf, zero-trust encrypted AI Trend Micro cybersecurity poverty line, data-centric, SUSE cloud Wiz Torq AirTag Skyhawk SASE security cloud security visibility PwC Survey Finds C-Level Execs Now View Cybersecurity as Biggest Risk

An single threat actor used AI tools to create and run a campaign that compromised more then 600 Fortinet FortiGate appliances around the world over five weeks, according to Amazon threat researchers, the latest example of how cybercriminals are using the technology in their attacks.

The post Attacker Breached 600 FortiGate Appliances in AI-Assisted Campaign: Amazon appeared first on Security Boulevard.

❌