Please turn on your JavaScript for this page to function normally.
Focus spotlight
- Hackers deploy Linux rootkit on F5 BIG-IP APM devices, hiding web shell in memory
- Gartner: 70% of SOCs will pilot AI agents. Only 15% will see results
- What breach and attack simulation needs to become in the AI era
- Trezor customers hit with phishing calls and letters after shipping-partner breach
- “Zero-click” WeChat worm could hijack accounts and spread via a single call
- Product showcase: Doppler secures secrets for humans, pipelines, and AI agents
- ToolHive: The open-source way to run any MCP server securely
Industry news
- Kiteworks expands runtime data governance with Bonfy.AI acquisition
- Automox Mitigation Worklets cut endpoint exposure to unpatchable flaws
- Scytale expands vendor risk management with AI-powered TPRM tools
- Akeyless adds real-time enforcement for AI agents in production
- Orchid Security targets AI agent risk with drift detection and kill switches
CISO focus
- Building a ransomware decision tree before the call comes in
- AI adoption brings new security headaches for already stretched CISOs
- September 2026 Patch Tuesday: Record patch count, 2 zero-days, and a SigRed successor
- Ransomware negotiation tactics have turned into a business process
- When AI quietly breaks things, who pays?
AI
- AI agents exploited PaperCut flaws to breach 395 organizations
- AI is changing what Salesforce security needs to govern
- AI adoption brings new security headaches for already stretched CISOs
- A new open standard locks AI weights to approved hardware
- Chinese AI firms are siphoning capabilities from American models, CISA warns





















