Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

NIS2 and DORA Compliance for Kubernetes Backup

EU regulations are putting real pressure on how organizations protect and recover their data. If you run Kubernetes workloads in financial services, insurance, healthcare, energy, telco, and public administration, your backup strategy is no longer just an IT concern. It is something regulators and auditors can examine directly. Most Kubernetes environments were set up for operational convenience rather than compliance.

Adopting an AI-Native SDLC: Egnyte Search Team Case Study

By Bhumika Sharma | Manager, Engineering at Egnyte We ran an AI-native SDLC—here's what it changed about how we lead engineering. Egnyte's Search team serves 22,000+ enterprise customers across petabytes of content, and like every engineering org right now, we're figuring out how deeply AI tools should reshape how teams actually build software. Earlier this year, we kicked off a new project.

Secure at Inception: Announcing the Snyk Studio Integration for Snowflake Cortex Code

Building on our initial partnership that brought Snyk’s security intelligence into the Snowflake AI Data Cloud, we are taking the next step in securing the future of data-driven development. This new collaboration integrates Snyk Studio directly with Snowflake Cortex Code, ensuring that as organizations move their application logic to where their data lives, security remains an inherent part of the process rather than a secondary hurdle. Play Video: YouTube video 1.

Find Your Security Gaps Before AI Does

Before AI Finds Your Forgotten Data, Find the Security Gaps Around It – AI does not need to bypass security when outdated permissions already provide a path. Ask an enterprise AI assistant to summarize what your organization knows about a customer, project, employee, or acquisition. Within seconds, it may surface years-old files, inactive collaboration spaces, past emails and chats, and documents that were shared more broadly than anyone remembers. No system had to be hacked.

Stronger Teams Build Stronger Cyber Resilience

LevelBlue has been named a U.S. News & World Report 2026–2027 Best Company to Work For, earning recognition across three categories: Best Companies to Work For Overall, Best Companies to Work For in Information Technology, and Best Companies to Work For in the Midwest. We are proud of this recognition because it reflects something central to who we are: our people.

What Claude Mythos Means for Vulnerability Management Programs

If you've been following the cybersecurity conversation over the last several weeks, you've heard some version of the phrase “Claude Mythos changes everything.” It’s dominated the industry news cycles since early April. While the capabilities these stories tout are very much real, I have an issue with the framing being wrong when it comes to vulnerability management. There’s a narrative that Mythos and other frontier models will find too many vulnerabilities to deal with.

CertKit Private PKI: A private certificate authority without running one yourself

In May I wrote that you probably don’t need private PKI for internal infrastructure, because DNS validation gets a publicly trusted certificate onto hosts that never touch the internet. In June I pointed out that Apple enforces an 825-day cap on private certificates, so your own CA doesn’t even free you from the browser vendors. Two days ago I told you that public client certificates stop renewing in October, and that the replacement is a private certificate authority.

The Fuyao Enterprise: Building an Ad-Fraud Empire with AI and Kids' Coding Blocks

In this post, we will uncover the “Fuyao Enterprise,” a previously unknown, sophisticated and highly modular botnet operating within Android TV boxes. This operation marks a shift in modern ad-fraud, where automated bots fake both clicks and views to defraud advertisers and ad-networks. While deploying novel tactics and techniques, Fuyao managed to escape public research for several years. Now, its operators openly advertise their network of over 120,000 “AI digital humans.".