Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

The New Reach Security: Autonomous Security Control Assurance

AI-powered attacks, meet AI-powered defense. Reach Security's rebranded site is live today. Most of what changed came from customers. Security leaders have been telling us they need a faster, more continuous way to know where their controls are weak, understand what matters most, and close the gaps before attackers exploit them. Our new website reflects that signal. It brings greater clarity to the problem we solve, the category we are building, and how Reach helps security teams identify blind spots, prioritize action, guide remediation, and continuously validate the controls they already own.

JumpCloud - Secure Every Identity. Human or not.

AI is advancing. Governance is lagging behind. AI agents are now managing critical tasks across your workforce. And they need access to your enterprise IT systems to do it. JumpCloud manages the entire lifecycle for human, non-human, and agentic identities from a single platform. Every identity, verified. Every action, governed.

A Safer Future with Agents

We built agents to act on their own. We're somehow surprised when they do. Two weeks ago, OpenAI ran a cyber eval with the model's guardrails turned down. The model got hyperfocused on solving the benchmark. So it broke out of its sandbox exploiting a zero-day in jFrog Artifactory, reached the open internet, exploited another zero-day to break into HuggingFace, all to steal the answers and cheat on the test.

Zenity Raises $125 Million to Secure the Era of Autonomous AI

A few years ago, when Michael and I started Zenity, most of the industry was not ready to hear what we believed. Software itself was changing. AI would let millions of people, not just engineers, build and automate real work. And securing that world would take a completely new approach, because we would no longer be protecting software. We would be protecting systems that think, decide, and act on their own.

CVE-2026-18556 / CVE-2026-18577: N-able N-central Authentication Bypass Vulnerabilities Require Immediate Patching

Threat actors are actively exploiting two high-severity authentication bypass vulnerabilities, CVE-2026-18556 and CVE-2026-18577, in N-able N-Central, a widely deployed remote monitoring and management (RMM) platform used by MSPs and enterprise IT teams. N-able began investigating anomalous activity on July 31 and released an emergency hotfix (2026.3.1.7) on August 2, 2026, to remediate both vulnerabilities.

You Can't Buy Your Way Out of Downtime

A ransomware note doesn’t take down a business. The weeks of downtime after it does. That’s the distinction I hear missed most in boardroom conversations about cyber risk. Leaders ask what it costs to stop an attack. The harder question, and the one that actually decides whether a business comes out the other side, is what it takes to keep operating while you recover from one.

Scale, Trust, and Value: How the Aurora Agentic SOC Delivers for Customers

AI didn’t just make defenders faster. It made attackers faster too. The moment both sides got access to the same speed, speed stopped being the advantage. With speed no longer separating attackers from defenders, the deciding factor moved somewhere else. Ask a CISO what’s actually kept agentic security out of reach, and it comes down to this: they can’t afford to build it, and even if they could, they’d struggle to trust it. Neither half of that problem outweighs the other.

RAID vs JBOD: Best Storage Option for Hypervisor Backups

When configuring storage on local servers or Network Attached Storage (NAS) devices, RAID and JBOD are the two common options. Both involve combining multiple drives into a single volume, but they differ significantly in how data is distributed, protected and accessed. Choosing the wrong configuration can lead to performance degradation or data loss. This post covers the differences between JBOD and RAID and identifies the optimal storage types for backups and VM datastores.

Shadow IT in the Interconnected Web: A CISO Advisor's View

On World Wide Web Day (August 1), it’s worth celebrating what the web has made possible. It enabled remote work to function at scale, SaaS platforms to deliver capabilities in days instead of months and instantaneous collaboration through shared docs, chats, whiteboards and task tools that update in real time.