Please turn on your JavaScript for this page to function normally.
Focus spotlight
- Apple squashes zero-day bug exploited in “extremely sophisticated” attack (CVE-2026-86950)
- 16-year-old researcher breaks into Microsoft analytics service with access to 17 trillion rows of data
- Authorizer: Open-source authentication and authorization for your apps
- Other users can watch your browsing and time your keystrokes through OS file notifications
- “Drunk” AI is terrible at keeping secrets
- If you do one security check this quarter, make it agent memory
Industry news
- Genea brings AI agents to access control with role-based permissions
- LastPass warns employees before they share sensitive data with AI tools
- Postman adds security controls for AI agents, APIs, and MCP servers
- Vega II brings security-trained AI and lasting memory to the SOC
- Docker introduces OCI-based Kits to package agents and their guardrails
CISO focus
- Most organizations need six months or longer to roll out new security controls
- Cybersecurity hiring practices leave little room for junior talent
- If you do one security check this quarter, make it agent memory
- Threat detection dashboards are masking security coverage gaps
- Stop watching what AI agents say and start watching what they do
AI
- Security tools can now scan Claude Enterprise chats and uploads for sensitive data
- Meta gives small businesses an AI agent that knows their work
- Deepfakes become a board priority once an executive falls for one
- OpenAI’s GPT-6 Astra ran supply chain attacks despite being told not to
- Cybersecurity hiring practices leave little room for junior talent





















