Topic: zero trust security
-
Microsoft extends zero trust across enterprise AI
Microsoft expanded its Zero Trust Assessment tool with a new AI pillar, adding targeted security checks and enhanced reporting that produce prioritized recommendations and executive summaries for securing AI deployments. The Zero Trust Workshop now includes a DevSecOps pillar with 15 control grou...
Read More » -
Zero Trust Security: From Authentication to Trust
The traditional security model based on a secure network perimeter is obsolete, replaced by the Zero Trust framework which operates on "never trust, always verify," assuming breaches are always possible and requiring continuous verification for all access requests. While multi-factor authenticati...
Read More » -
Microsoft Entra boosts passkeys and identity security
Microsoft Entra updates include phishing-resistant MFA for Linux, High Scale Compatibility mode for large-scale B2C migrations, system-preferred authentication, and redesigned My Account portal, with rollout finishing by June 2026. Public preview features add domain-less SAML federation, sensitiv...
Read More » -
BestCrypt Data Shelter adds zero-trust file access controls
Jetico's expanded BestCrypt Data Shelter provides centrally managed, enterprise-level access controls for sensitive files, using a default-deny model aligned with zero-trust principles to restrict which applications, processes, and users can interact with protected data. The solution allows admin...
Read More » -
Siemens Simplifies OT Security with Encrypted Virtual Networks
Siemens has launched SINEC Secure Connect, a zero trust security platform designed specifically for operational technology (OT) environments to establish encrypted virtual networks and secure remote access without traditional VPNs. The platform addresses security gaps in merging IT and OT systems...
Read More » -
Master CISA's Zero Trust with Modern Microsegmentation
CISA now identifies microsegmentation as a foundational element of Zero Trust architecture, shifting it from an advanced tactic to an essential security practice for all organizations. Despite 96% of IT leaders valuing microsegmentation for threat containment and compliance, only about 5% have ad...
Read More » -
Arista brings AI zero trust to VeloCloud SD-WAN
Arista Networks launched AI-driven Edge Threat Management (ETM) for VeloCloud SD-WAN, integrating zero trust security into branch offices as a software upgrade that consolidates multiple appliances into a single secure platform managed via VeloCloud Orchestrator. Key features include advanced fir...
Read More » -
Firewalla Orange: Zero Trust Security Anywhere
The Firewalla Orange is a portable, pocket-sized device that functions as a high-performance Wi-Fi 7 router and multi-gigabit firewall, bringing enterprise-grade network security to mobile environments like hotels and remote workspaces. It provides a comprehensive security suite with features lik...
Read More » -
OpenID Launches Real-Time Security Alerts Standard
The OpenID Foundation has ratified the first universal standards for real-time security alert sharing across digital identity platforms, addressing threats that emerge after login. These standards enable instant communication between security systems, allowing alerts on device compliance, suspici...
Read More » -
Data Breach Costs Hit $5 Million Average
The average cost of a data breach has reached an all-time high of $4.99 million globally, driven largely by lost business revenue from service disruptions and customer churn, with attackers increasingly using threats of reputational harm to extort payments. Healthcare remains the most costly sect...
Read More » -
Ivanti Neurons AI Automates IT to Cut Manual Work, Security Risks
Ivanti is enhancing its Neurons platform to enable autonomous IT operations, shifting from manual, reactive management to intelligent automation to handle growing security threats and workloads. A key innovation is Autonomous Patch Compliance, which automatically ensures endpoints meet regulatory...
Read More » -
OpenAI’s Hacking Incident Caused by Human Error
The OpenAI agent breach on Hugging Face was caused by human error and failure to implement basic security fundamentals like zero trust and defense in depth, not by advanced rogue AI capabilities. Security experts noted that OpenAI, despite its $850 billion valuation, neglected to enable deploymen...
Read More » -
Cisco's DefenseClaw Boosts Agentic AI Safety
Cisco has launched DefenseClaw, a security platform to address the significant security challenges hindering the production deployment of agentic AI, as only about 5% of enterprise projects have moved beyond testing. The tool provides a three-pronged security approach: it scans code, monitors run...
Read More » -
Over 40,000 OpenClaw Instances Found Exposed Online
Over 40,000 publicly exposed OpenClaw AI instances have been discovered, granting attackers the same access to systems and data as the AI agent itself. Exploitation is active, with many instances linked to prior breaches and vulnerabilities, including critical remote code execution flaws that all...
Read More » -
Enterprise AI Data Uploads Double in One Year
A 93% year-over-year increase in employees transferring proprietary data to AI tools was recorded, with Grammarly (38%) and ChatGPT (21%) responsible for over half of all uploads, totaling 18,033 terabytes of data. Over 410 million Data Loss Prevention (DLP) policy violations related to ChatGPT (...
Read More » -
Week in review: Cisco 0-day exploited, Patch Tuesday outlook
OWASP's new Agent Memory Guard project provides a runtime defense against memory poisoning in AI agents, serving as a reference for the OWASP Top 10 for Agentic Applications. A security assessment of 100 production AI agents found only 11% pass the security bar, with most vulnerable to takeover f...
Read More » -
Microsoft Tests Windows 365 Cloud Disaster Recovery PCs
Microsoft introduced Windows 365 Reserve, a cloud-based disaster recovery solution that provides temporary virtual desktops for up to 10 days per user during hardware or cyber incidents, ensuring business continuity. The service, currently in limited public preview, allows seamless ac...
Read More » -
AppliedAI's Opus: Now Every Business Can Use Enterprise-Grade Agentic BPX
AppliedAI has launched Opus, an enterprise-grade platform for Agentic Business Process X (ABPX), integrating the full business process lifecycle with a marketplace and self-evolving, compliant workflows. Opus addresses the high failure rate of generative AI projects by offering adaptable, integra...
Read More » -
Teleport secures AI agents with LLM Proxy and Delegated Identity
Teleport launched two new features in its Agentic Identity Framework public beta: LLM Proxy, which provides secure, identity-aware access management for AI agents, and Delegated Identity, which grants agents temporary, scoped permissions without exposing long-lived credentials. The LLM Proxy acts...
Read More » -
Firmus Announces A "Green AI Factory" In Tasmania
Tasmania's "Green AI Factory" project by Firmus has drawn scrutiny for its contradictory branding and reliance on substantial public funding, raising concerns about its viability compared to past failed infrastructure projects. Claroty's 2025 cybersecurity report reveals that regulation is the pr...
Read More »