Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Black Hat FOMO? Dojo AI Demo

On this episode of Masters of Data, we take you inside the Dojo AI demo we're bringing to the show floor at Black Hat. We walk through the SOC Analyst Agent, Mobot, and MCP back to back. SOC Analyst Agent triages every tier one alert down to the one that actually matters, and Mobot picks up from there, running the investigation in plain English to track down other phishing victims and lateral movement. We also show how MCP pulls that same insight into Claude or Slack. SOC leads tired of alert fatigue and analyst burnout will want the numbers here: 100% of tier one alerts triaged automatically, and 25 hours a week back per person.

MCP's Auth Hardening: What the Six New OAuth SEPs Fix, and What They Still Don't

In short, the MCP 2026-07-28 release candidate is getting attention for going stateless. The quieter story is a package of six SEPs that harden the protocol’s OAuth layer: issuer validation, credential binding, client type declaration, and cleanups around refresh tokens, scopes, and discovery. All six are worth shipping, and all six fix real failure modes. But they harden how a client authenticates to a server, and that was never the whole problem.

Move faster than AI-driven risk: Inside Mend.io's latest AI application security update

AI didn’t just change how fast you ship. It changed what your AI application security program has to protect. Two years ago, security teams protected code, open source, and containers. Today they also have to protect AI agents, MCP servers, models, prompts, and runtime interactions, configured or deployed faster than any team can manually review. The attack surface didn’t grow. It exploded.

AI Pentesting vs Traditional Pentesting: A Comparison, Cost, and Coverage Breakdown

If there’s one thing all of us can agree about modern security, it is that penetration testing is no longer a once-a-year activity. Modern attack surfaces do not stay still. New code ships faster, cloud infrastructure is constantly changing, and APIs are multiplying across product ecosystems. To keep up, engineering teams have moved security earlier in the development lifecycle through shift-left practices.

Natural disasters and government interference: examining Q2 2026's major Internet disruption events

Like most infrastructure, the Internet's fragility is easy to overlook — as long as it's working. When it fails, its complexity comes into full view. Cloudflare is in a unique position to detect and document the moments when one of the interrelated systems the Internet depends on breaks down and connectivity suffers as a result. Each quarter, we summarize the disruptions we detect and annotate on Cloudflare Radar.

What CISSP Still Proves That a Stack of Tool Certs Doesn't

Look at almost any security resume and you will find a wall of product badges. A cloud provider's associate cert, a SIEM vendor's operator credential, an EDR platform's specialist track, maybe a firewall qualification or two. Every vendor runs a certification program, every tool ships a badge, and collecting them is a reasonable way to prove you can do the job in front of you.

Homeschooling Families Run a School Network With No IT Department

A homeschool day often ends the way an office day does, with data entry. A parent logs attendance in one app, uploads a scanned writing sample to a second, and reviews a progress dashboard on a third. The laptop is shared. The router came from the internet provider years ago and has not been touched since.

Why Cybersecurity Is Becoming Critical for Crypto Market Infrastructure

Digital asset markets have developed quickly, but their long-term growth depends on more than trading volume or market interest. As crypto becomes more connected to institutional finance, payment systems, fintech platforms, and treasury operations, the infrastructure behind these markets is coming under greater scrutiny. Speed and liquidity matter, but so do security, resilience, access control, and operational transparency.