Please turn on your JavaScript for this page to function normally.
Focus spotlight
- Java library vulnerabilities: IBM and Red Hat fix 400+ previously unknown flaws
- FortiBleed is still active, with attackers locking admins out of Fortinet firewalls
- AI Agent Gateway: Open-source tool keeps credentials out of agent configs
- Even with OT network visibility, critical infrastructure operators struggle with legacy equipment
- AI endpoint management: Visibility, compliance, and remediation
- Automation, AI agents or people? Sorting out who handles each security finding
Industry news
- Gremlin Foresight AI finds system weaknesses and verifies the fixes
- Imply Lumi connects SIEM tools and AI agents to more security data
- Vijil DART tests AI agents for security flaws and policy violations
- Edgescan Atomic validates attack paths with controlled AI testing
- Trustero automates vendor document reviews with human approval
CISO focus
- Thousands of wind and solar park systems sit exposed on the internet across Europe
- Pricing your bad days and how to build an economic model for security decisions
- U.S. Bank CISO says the security role keeps growing and no one can own all of it
- Three questions a hospital CISO should ask a healthcare fintech vendor
- Botnets, adversarial attacks and data poisoning top leaders’ AI threat list
AI
- PCI SSC calls for human approval of AI agent actions involving cardholder data
- Companies want autonomous IT operations but hesitate to let AI act alone
- Anthropic’s new budget model gets much better at ignoring hidden commands
- Cryptomining botnet hides C2 addresses in GitHub poem, infects over 3,400 servers
- GitHub adds AI to catch passwords before a code push





















