SC Media
20 articles
Spear Phishing: How the attack works and how to stop it
How to build an OT security operating model
What OT Resilience Actually Controls
The AI Security Control Problem: Why AI Requires a Different Security Discipline
New CISA-hosted VINCE-NT system revealed for coordinated vulnerability disclosure
CISA says the new system is more streamlined and secure, enabling faster coordination.
Closing the AI control gap: From shadow AI to continuous protection
AI security depends on dynamic protection based on constant monitoring of connection points.
Bacteria, Spartans, AI gone wild, Cisco, WordPress, Settra, Plugin4Shell, Josh Marpet - SWN #617
Congress pledges mental health support after Cyber Command suicides
Lawmakers seek more mental health resources after five Cyber Command personnel died by suicide.
AI reshapes exposure management around real-world risk, says Brinqa exec
AI-driven attacks are shifting exposure management toward exploitability and faster risk reduction.
How teams can patch faster when a bug gets added to CISA's KEV
KEV remediation rates are low – here’s what we need to do so teams can patch a KEV item before a ransomware attack hits.
AI agents can modify themselves, raising security concerns
AI security lab Irregular has revealed that AI agents can engage in "agentic self-modification," where they alter their own deployed models.
Settra ransomware group uses MeshAgent RMM in recent attacks
The nascent threat actor has claimed 93 victims since June 2026.
From autonomous agent to trusted worker: Building identity and accountability for AI agents
Here's how to govern and manage AI agents without hampering their productivity.
AI hates CAPTCHAs - PSW #944
Cisco patches 10.0 ISE bug exploited in the wild
Actively exploited Cisco ISE flaw could give attackers a path to expand network access.
Global Cyber Resilience Report: Cyber Recovery Plans Weren't Designed for this Moment - Rob Sadowski - BH26 #3
What the FBI’s new offensive cyber strategy means to the private sector
An offensive strategy can put private companies at risk -- that's why businesses will need closer relationships with the FBI.
Flaws in The Events Calendar WordPress plugin enable unauthenticated RCE
Both flaws can be exploited by leaving an anonymous comment on an event page.
Identity at machine speed: Okta pushes governance beyond human users
Okta is adding new features to its identity platform to better govern AI agents.