Get a Demo
    Browse by topic
    Subscribe to our news

    AI

    MCP Security: What Enterprise Security Teams Need to Know

    MCP security is the practice of governing Model Context Protocol servers at the deployment boundary: understanding how MCP expands an AI agent's attack surface, protecting against manipulation by untrusted servers, controlling which tools an agent ...
    Read

    Zero Trust

    Verify Explicitly, But Who Is the Agent?

    The Identity Gap at the Heart of Agentic AI Security Zero Trust has a founding principle that most practitioners can recite from memory: never trust, always verify. Words that seem obvious until you ask the question that agentic AI forces into the ...
    Read

    Cybersecurity

    When the Attack Path Reaches Your AI Agents: Why Closing Exposures Is Not Enough

    An AI agent that reads from a cloud storage bucket, executes tasks through serverless functions, and authenticates through existing IAM roles inherits every security exposure those systems carried before the agent existed. The agent did not ...
    Read

    AI

    Rogue AI Agents: Why Policy Controls Are Not Enough

    The core issue for protecting against rogue AI agents is not what an AI agent knows. It is what the agent can reach.
    Read

    Zero Trust

    Zero Trust Architecture for Agentic AI in 2026

    Zero trust architecture for agentic AI means treating every AI agent as an untrusted principal that must authenticate, operate within a defined boundary, and produce an auditable record of every action it takes. Unlike human users or traditional ...
    Read

    AI

    AI Agent Isolation: Why Patching OpenClaw Doesn't Solve the Architecture Problem

    On May 15, 2026, Cyera's research team disclosed a chain of four critical vulnerabilities in OpenClaw, one of the fastest-growing open-source platforms for autonomous AI agents. The exposure left an estimated 245,000 publicly accessible server ...
    Read

    Zero Trust

    Closing the Shadow AI Gap: Why Traditional Zero Trust Is Not Enough

    In a previous discussion post on the "AI Agent Security Enforcement Gap," we explored how policy drift and the divergence between intended controls and actual enforcement create strategic liabilities. While we established that an application-centric ...
    Read

    News

    When a Vendor Gets Breached, Your Team Inherits the Incident

    TL;DR: On April 24, 2026, Medtronic confirmed that hackers accessed data in its corporate IT systems. Medical devices and hospital customer networks were unaffected, the company said. But hospital security teams still spent the following days ...
    Read

    Zero Trust

    Reducing Policy Drift

    Why Zero Trust at the Application Layer Is the Future of Production Security
    Read

    Zero Trust

    How to Cloak Critical Infrastructure: Protecting Internet-Exposed PLCs Without Redesigning Industrial Networks

    TL;DR: On April 7, 2026, CISA joint advisory AA26-097A confirmed active exploitation of CVE-2021-22681 in Rockwell Automation Logix controllers by the Iranian IRGC-linked group CyberAv3ngers, with operational disruption and financial loss reported ...
    Read

    Stay Connected

    Sign up for our newsletter and to be notified of product, solution, and company news.