Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Industrial patch management: securing legacy Windows 10 and XP systems

How OT teams can run safe, OEM-validated patch management on operating systems Microsoft no longer supports. For plant security leads, OT engineers and industrial CISOs. Industrial patch management is the practice of identifying, validating and applying security patches to PC-based assets in industrial environments: HMI workstations, SCADA servers, engineering workstations and historians.

How to Prevent Data Leakage to GenAI Applications

An analyst pulls up the DLP console expecting to see alerts on the source code, customer records, and financial data employees paste into ChatGPT, Copilot, and a dozen other AI tools every day. Instead, the console is quiet, because the policies enacted by the legacy DLP system were built to catch file transfers and email attachments. But, none of the above traffic looks like a file transfer.

Agentic Trust Controls

As organizations adopt agentic AI, we believe open collaboration is the fastest path to building trustworthy AI governance. Today, we're introducing a new open source project: Agentic Trust Controls. Agentic Trust Controls are designed to help the GRC community evaluate and govern AI agents with greater consistency and confidence. Explore the project and share your feedback at trustcontrols.ai.

How AI Is Accelerating the Cyber Kill Chain?

AI Is Accelerating the Cyber Kill Chain: Faster Attacks, Greater Risk AI is changing the speed and scale of modern cyber attacks. From accelerating reconnaissance to reducing the time required for initial access, attackers are leveraging AI to move faster across the entire cyber kill chain. In this video, Paul Girardi explains how AI is impacting each stage of the attack lifecycle, including: As attackers automate more of the kill chain, security teams need smarter approaches to detect, disrupt, and deceive adversaries before they can achieve their objectives.

Can we defend against ai-powered attackers?

In this week's Intel Chat, Chris Luft and Matt Bromiley discuss how the same AI capabilities fueling adversaries are available to defenders too. Matt's takeaway: you don't need to buy an AI product to keep pace. The same way an attacker points AI at a code base, defenders can point it at detection rules and telemetry. Chris adds that as more developers use these models to check their own code, the playing field will level out, though the next year or two will likely bring a spike in exploits from lower-skilled attackers leveraging AI before defenses catch up.

The best third party risk management software solutions for enterprises

Accelerating security solutions for small businesses‍ Tagore offers strategic services to small businesses. A partnership that can scale‍ Tagore prioritized finding a managed compliance partner with an established product, dedicated support team, and rapid release rate. Standing out from competitors‍ Tagore's partnership with Vanta enhances its strategic focus and deepens client value, creating differentiation in a competitive market.

Keeper Security Surpasses $225M in ARR With Transformative Growth and Is Emerging as the Market Standard for AI-Native Identity Security

Keeper protects over 95,000 organizations, which includes many Fortune 500 enterprises and public sector agencies. The company is quickly emerging as the market standard for AI-native identity security for enterprises globally with its leading zero-trust and zero-knowledge identity security platform.

Lithic powers the infrastructure behind modern card issuing - S3E13

In this episode, we're excited to introduce Robin Gandhi, Chief Product Officer at Lithic, the programmable card issuing and processing infrastructure for developers, digital banks, and financial institutions handling billions in annual volume. Robin brings over a decade of deep fintech expertise across product, partnerships, and global operations. Before joining Lithic, he served as CPO at Nium, defining payment strategy across 190+ countries, and held leadership roles at Navan (formerly TripActions) and Adyen, where he scaled global issuing and North American partnerships.