vendor
20 articles
When AI-Accelerated Discovery Outruns Patching, Exploitability Proof Decides What Gets Fixed First
Why Qualys joined the Athena coalition, and what it means for how you prioritize risk. Qualys is proud to have joined Athena, the industry coalition Chaingua...
Designing for the inevitable: System prompt leakage and mitigations in generative AI applications
System prompts form the foundation of generative AI applications. A system prompt is a collection of instructions and operational context provided to a large...
FortiBleed: Credential Reuse, Legacy Hashes, and the Risk of Internet-Exposed FortiGate Devices
Key Takeaways FortiBleed refers to June 2026 public reporting of large-scale credential exposure and abuse targeting internet-reachable FortiGate management ...
HPC AI Workloads Need Runtime Security. The Architecture Already Exists.
Learn how to secure HPC AI infrastructure against runtime and supply chain threats via continuous behavioral monitoring.
The CISO’s guide to post-quantum mandates and migrations
Over a dozen major economies have now published post-quantum cryptography (PQC) adoption guidance. As a CISO, you’re probably well into your migration plan a...
Suspected Chinese snoops caught breaking into universities' Roundcube mailservers
Security Teams Are Ready To Become More Preemptive. What’s Holding Them Back?
The shift toward preemptive security is underway, but most organizations are still navigating the realities of limited resources, fragmented tools, and emerg...
Introducing Meerkat: an experiment in global consensus
Cloudflare Research is building a global consensus service called Meerkat that uses a new consensus algorithm called QuePaxa. We plan to use Meerkat to build...
Falcon Secure Access Sets the Standard for Zero Trust Browser Security
What It Takes to Secure Claude Cowork Across the AI Enterprise
You've watched the demos. Whether it's Claude Cowork, ChatGPT Enterprise, GitHub Copilot, Cursor, or internally developed agents, AI systems are no longer an...
Enforce zero data retention on Amazon Bedrock with Bedrock Projects and service control policies
With the introduction of models that require data sharing with third-party providers—such as Claude Fable 5—organizations need a way to centrally enforce dat...
Cloudflare proudly joins the UK government's Cyber Resilience Pledge
The pledge is a voluntary framework inviting organizations to commit to foundational cyber security governance, board-level accountability, and supply chain ...
CrowdStrike Uncovers New Prompt Injection Techniques
Enforce least-privilege authorization in multi-agent AI chains using Cedar
If you’re building multi-agent AI systems, you need to prevent authorization scope from silently expanding as agents delegate tasks through multi-hop chains....
A Day With Your Vector Command Red Team Pod
Anyone trying to understand continuous red teaming usually gets the same high-level explanation: it is ongoing, attacker-informed, and designed to uncover ri...
Your Worker can now have its own cache in front of it
We are launching Workers Cache, a regionally tiered cache that sits directly in front of your Worker entrypoints.
It Might Feel Like We’ve Been Here Before, But We Haven’t
As artificial intelligence (AI) adoption surges and organisations move from the ‘should we?’ phase to the ‘how do we?
How AI-leading Security Teams Are Building the Agentic SOC
Weekly Metasploit Update: Modules for SMB-to-Meterpreter, Peyara Remote Mouse RCE exploit, and more
It's Time to Upgrade Your SMB Session This week, Metasploit contributor Dean Welch has added an SMB to Meterpreter session upgrade module. It uses PsExec to ...