Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

You Can Automate Data Security Workflows. You Can't Automate Accountability.

The most pressing security question isn't whether AI will automate your workflows. It's what remains once it does. The answer, consistently, is judgment, and judgment has always belonged to a human. The SEC charged SolarWinds' CISO personally for misrepresenting the company's cybersecurity practices. Uber's CISO was convicted of a federal crime for concealing a data breach.

OpenAI's Sol, Terra, Luna Explained: Which One Should You Use?

-OpenAI has completely overhauled its model naming system with the release of GPT-5.6, introducing three distinct tiers: Sol, Terra, and Luna. In this video, we put OpenAI's new flagship model, GPT-5.6 Sol, to the ultimate test. Using the Codex extension in VS Code, we throw our classic "Build me a secure notes app or I get fired" prompt at Sol. Watch as we break down the pricing and reasoning differences of the new tiers, run a full security audit using Snyk, and see if Sol's $5/$30 price tag is truly production-ready or if a small local CSRF bug gets us "fired" first.

Does NIS2 Apply to Your Organization Ask These 5 Questions

Many organizations assume the NIS2 Directive only applies to large enterprises based in Europe. In reality, organizations with operations, customers, suppliers, or digital services connected to the EU may also have cybersecurity compliance obligations. In this short video, we cover five practical questions that can help determine whether your organization may fall within the scope of NIS2. You'll learn.

Identity-Centric PAM: The Future of Privileged Access Management

Privileged Access Management (PAM) has become a cornerstone of enterprise security, but the environments it protects have changed dramatically. Organizations now manage cloud infrastructure, SaaS applications, remote workforces, third-party vendors, machine identities, and AI-driven workloads that constantly request privileged access. Security teams need to verify every identity, understand the context of each request, and grant only the minimum level of access required.

DPDP Act Penalties: Fines for Non-Compliance Explained

The Digital Personal Data Protection (DPDP) Act, 2023, has shifted data privacy from a regulatory obligation into a critical business risk. With the DPDP Rules, 2025 providing operational clarity, businesses are expected to implement reasonable security safeguards, manage consent, protect children's data, and respond promptly to personal data breaches.

Why WatchGuard Is Investing Across the Frontier AI Ecosystem

Artificial intelligence is quickly becoming one of the most transformative technologies in cybersecurity. Unfortunately, it's not transforming the industry exclusively for defenders. Attackers are already experimenting with AI to accelerate reconnaissance, analyze software for vulnerabilities, develop fully-functional exploits, and automate nearly all parts of the attack lifecycle.

Cato CTRL Threat Brief: AsyncAPI Supply Chain Attack Delivers Miasma Malware Through Trusted npm Packages

On July 14, 2026, attackers compromised release processes connected to the AsyncAPI open- source project and published malicious versions of four widely used npm packages with a combined reach of approximately 2.9 million weekly downloads.

Kovrr's Insurance Data Insights: Connecting Cyber Exposure to Coverage

‍ ‍Cyber insurance has become a standard line item in enterprise risk management, and for good reason. The financial consequences of a significant cyber event, whether a ransomware attack that halts operations for weeks or a data breach that triggers regulatory scrutiny and third-party liability, can far exceed what any operational budget was sized to absorb. Insurance exists to handle that tail. Most organizations recognize this benefit and carry a policy.

The Security Risks of AI Agents in the Enterprise

AI agents introduce a category of security risk that traditional application security, identity management, and even standard AI security programs were not designed to handle. Unlike a generative model that only produces text, an agent takes autonomous action against real systems, chains API calls together to accomplish goals, and often holds permissions broad enough to touch data across multiple business systems.

Governing non-human identities with Identity Manager 10.0

Most organizations today have more non-human identities than human identities. These NHIs often hold privileged access, operate continuously and are difficult to track. Get a handle on every identity in your environment with Identity Manager by One Identity.