Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

The Simplest Place to Start Securing AI

Every enterprise is racing to adopt AI, and every security team is racing to keep up without becoming the department that says no. Most are still evaluating tooling built specifically for AI agents. But there's a faster, simpler starting point available today: the large majority of AI activity right now runs on behalf of a signed-in user, what we call “on-behalf-of” (OBO) access. Secure that identity well, and you've secured the AI acting through it.

Open-source AI Needs Security: Why Cyberhaven Is Joining the Open Secure AI Alliance

Today, Cyberhaven is joining the Open Secure AI Alliance to help advance a future in which enterprises can adopt open-source AI without compromising security, compliance, or control over their data. Cyberhaven is betting on a world where companies are free to choose from many models, agent frameworks, and open harnesses, as well as run them on infrastructure they control. That choice matters. Enterprises will not standardize on a single model or AI platform.

Arctic Wolf Cocktail Chats - Dan Schiappa, President, Technology & Services | Black Hat 2026

Arctic Wolf President of Technology & Services Dan Schiappa sits down for a cocktail chat with Arctic Wolf SVP of Corporate Marketing Ilina Cashiola at Black Hat USA 2026 to break down the momentum behind the Aurora Agentic SOC and what's next for AI-led security operations.

Arctic Wolf Cocktail Chats - Nick Schneider, President & CEO | Black Hat 2026

Arctic Wolf President & CEO Nick Schneider sits down with Ilina Cashiola, SVP of Corporate Marketing, for a cocktail chat at Black Hat USA 2026 to break down three major announcements shaping the next chapter of AI-led security operations.

From Connected Project Data to Construction Intelligence: Building the Foundation for AI-Powered Construction

Construction firms have invested heavily in technology to connect project information. Drawings, specifications, RFIs, submittals, BIM models, photos, and field reports are increasingly accessible from anywhere, helping office and field teams work from the same information. Connecting project information is a critical first step. It improves collaboration, reduces rework, and helps office and field teams work from the same information.

Weekly Cyber Security News 06/08/2026

Let’s catch up on the more interesting vulnerability disclosures and cyber security news gathered from articles across the web this week. This is what we have been reading about on our coffee break! I was a little concerned when I saw an email from a charity alerting to this that I don’t recall ever contacting… Did I or was it phishing? Hmmm.

CTEM vs Vulnerability Management: What's the Difference?

Traditional vulnerability management focuses primarily on identifying, prioritizing, and remediating known vulnerabilities. CTEM is a broader, continuous framework that also considers other exposures, validates which risks are realistically exploitable, and mobilizes the right teams to reduce them. CTEM does not replace vulnerability management; it builds on it by adding the business context and operational focus needed to address the exposures that matter most.

AI Did Not Invent Social Engineering But It Did Industrialize It.

This year National Social Engineering Day falls on Aug. 6. This day is designed to give us an opportunity to remind people that cybercriminals do not always need sophisticated malware, an undisclosed vulnerability or a dark room filled with glowing monitors, sometimes, all they need is a good story. Social engineering existed long before computers. Confidence tricks, impersonation, false authority and appeals to greed or fear have been used for centuries.

Remove standing access before AI agents exploit it

AI has changed the calculus of a credential attack. Before, finding and exploiting credentials in an enterprise environment required time, patience, and human judgment. An attacker had to decide which accounts were worth testing and which systems were worth reaching. Many credentials never made the list.