Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Emerging Threat: (July 2026 Release) Apache Traffic Server Denial of Service and Access Control Bypass

The July 2026 Apache Traffic Server security release addresses a large batch of vulnerabilities across the proxy core and its plugin ecosystem, disclosed on July 29, 2026 and fixed in versions 9.2.15 and 10.1.4. Published counts of the batch differ. The Apache Traffic Server project describes the release as addressing 34 CVEs, while Belgium’s Centre for Cybersecurity puts the figure at 38 vulnerabilities.

The 14-Hour Recovery: Rethinking Healthcare Cyber Resilience

Ransomware recovery for healthcare IT depends on isolated recovery environments (IRE) and the ability to find clean data for patient safety. Jeremy Cathey shares insights on building cyber resilience by moving away from traditional disaster recovery toward a model that handles systemic cyberattacks. He details the three essential zones of an IRE: the clean room for forensics, the staging zone for validation, and the standby production environment where clinicians resume work.

From 10 Days to Unlimited Retention: How o9 Runs SecOps on Elastic Security

Somesh Agarwal, Senior Director of Security Operations at o9 Solutions, explains how the AI planning platform behind many of the world's largest supply chains consolidated security operations and observability on Elastic Security to gain unlimited threat-hunting retention, accelerate detection engineering, and simplify multicloud security operations.

Falcon AIDR Now Protects Copilot Studio Agents and Claude Code

Employees are already using AI at work. They build agents in Microsoft Copilot Studio, write code with Claude Code, and paste sensitive data into chatbots in the browser. Each of these actions can expose sensitive information outside of approved workflows, and most of it happens where traditional endpoint, network, and data loss prevention (DLP) security controls can't see the prompt or the tool call.

Top Security Risks of AI Agents

AI agents are rapidly moving from experimental projects into everyday business operations. Unlike traditional AI systems that generate content or answer questions, AI agents can take action. They can call APIs, access applications, retrieve data, execute workflows, and make decisions with limited human intervention. That shift is creating a new security challenge for enterprises.

Scaling security reviews at 1Password: Solving the context and nondeterminism problems

In our last post, we shared how we began to scale our security code review process with SAGE. We discussed how we gathered historical Product Security (ProdSec) review records to create a 1Password-specific ruleset, the three-stage Finder/Critic/Judge pipeline, and the limitations of our v1 implementation.

The 1Password Environments MCP Server is now on Cursor Marketplace

AI agents are doing more than just generating code. Increasingly, they are working autonomously on complex coding challenges, touching production APIs, databases, and infrastructure across development environments, often without thorough human review. To perform these operations and access multiple systems, agents rely on developer secrets and non-human identities (NHI). But often, developers lack a secure way to share these secrets, leading to overprivileged, invisible access.

How to Turn Cyber Risk Insights Into Concrete Mitigation Decisions

Every mature cyber program eventually hits the same wall. Security teams collect enormous amounts of telemetry, threat intelligence, and control data, and yet the conversation with the CFO about what to fund next still feels like an argument about opinions rather than evidence. The reason is not that the data is missing.