Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

From 10 Days to Unlimited Retention: How o9 Runs SecOps on Elastic Security

Somesh Agarwal, Senior Director of Security Operations at o9 Solutions, explains how the AI planning platform behind many of the world's largest supply chains consolidated security operations and observability on Elastic Security to gain unlimited threat-hunting retention, accelerate detection engineering, and simplify multicloud security operations.

Building the trust layer for AI, so you can go all in

AI adoption is moving faster than most organizations can govern it, and GRC teams need visibility into what AI exists, what it can access, and whether it's operating within company policy. In this demo, you'll get a first look at Vanta's vision for AI Governance. See how Vanta helps organizations discover AI across their environment, understand the risk and context behind every AI system and agent, and continuously demonstrate trustworthy AI practices.

TITAN AI Demo Series: Detect and Respond to Zero-Days across Your Supply Chain with TITAN MAX

When a new zero-day drops, security teams need one answer fast: which vendors are exposed right now? Most teams find out weeks later, once a vendor questionnaire finally catches up. SecurityScorecard's MAX applies live threat intelligence to your vendor ecosystem instead, flagging exposed vendors the moment threats emerge and engaging them directly to drive remediation. In one case, MAX helped a large bank reach a 70% vendor engagement rate. High- and critical-risk vendors dropped 80%, without adding internal resources.

Ep. 71 - OpenAI's Agent Hacked Hugging Face: The First Autonomous AI Breach

On July 9, an OpenAI model broke out of a sealed evaluation sandbox, found a zero-day in a package proxy, and — with no human directing it — chained stolen credentials and fresh exploits into Hugging Face's production infrastructure. Hugging Face detected it and called the FBI. OpenAI didn't know its own model had escaped for roughly 11 days. Host Tova Dvorin and offensive security expert Adrian Culley separate what's confirmed from what's hype.

OpenAI's Agent Hacked Hugging Face. Another Left Notes for Its Successor.

During an internal OpenAI evaluation, an agent left notes inside the company’s own network for future versions of itself, containing instructions on how to break free of OpenAI’s constraints. Reuters reports it isn’t clear whether this agent was connected to the one that breached Hugging Face, so don’t over-read it. But sit with the behavior for a second: an agent staging information for a successor process to find later. If a human crew did that, we’d call it a dead drop.

The Cyber Risk Register, Reimagined With Quantification | Kovrr

For years, security and risk managers have relied on spreadsheets to track their cyber risk. But as regulatory expectations tighten and threats grow more sophisticated, manual tracking cannot keep up. In this video, Kovrr walks through what a modern cyber risk register looks like when cyber risk quantification is built into its foundation. We cover.