New & Notable
News
Red agents vs. blue agents: How to make AI better at defense
The agentic AI playing field was heavily tilted toward offense, so researchers began using red team agents to help teach their blue counterparts.
— Dark ReadingNews
When AppSec scanners become a supply chain attack vector
New research shows how security scanners embedded in the software supply chain can be attacked to serve as a foothold for downstream attacks.
— Dark ReadingNews
Ghost credentials expose cloud systems to hidden identity risks
Dormant nonhuman identities can create security blind spots, says security researcher Aleksandr Krasnov, who plans to release an open source tool next week at Black Hat USA 2026 that sniffs out trust paths.
— Dark ReadingNews
Stronger AI safety requires peeking inside the 'black box'
Researchers propose focusing on identification of certain cognitive elements in LLMs that indicate when AI systems may take an unwanted action.
— Dark ReadingTrending Topics
-
Data Security & Privacy Evaluate
How to prepare for a secure post-quantum future
Quantum computing is expected to arrive within the next decade and break current cryptographic algorithms. SANS' Andy Smith explains how to start securing your company now.
-
Threats & Vulnerabilities News
What CISOs should take from the Hugging Face-OpenAI incident
Security experts say the lesson isn't to abandon sandboxing, but to strengthen the security controls around surrounding systems as AI tests their limits.
-
IAM Manage
Authorization sprawl: Attacking modern access models
Attackers exploit authorization sprawl by using legitimate credentials and SSO tokens to move between systems, bypassing security controls and deploying ransomware undetected.
-
Analytics & Automation Evaluate
Intersection of generative AI, cybersecurity and digital trust
The popularity of generative AI has skyrocketed in recent months. Its benefits, however, are being met with cybersecurity, digital trust and legal challenges.
-
Network Security Evaluate
LLM firewalls emerge as a new AI security layer
The race by organizations to AI-enable their operations and business workflows is exposing them to new risks that AI firewalls aim to address.
-
Operations & Management Manage
Counter third-party risk with continuous vendor monitoring
Assessing a vendor's security posture is not a box that gets checked. The risk of a third-party attack requires the kind of diligence provided by continuous vendor monitoring.
Sponsored Sites
-
Security
One Identity | Integrated Cybersecurity for all Your Identities
Learn how One Identity provides integrated cybersecurity solutions, delivering a truly unified identity platform and streamlining management across on-premises and cloud resources.
-
Articlficial Intelligence
AI-Powered Devices: The Fourth Wave of Enterprise Computing
Enterprise computing enters its fourth wave as client devices transform from passive endpoints to intelligent AI systems. Modern laptops, desktops, and mobile devices now feature built-in NPUs and AI accelerators that bring artificial intelligence directly to where work happens. This shift creates distributed intelligence networks where every device anticipates user needs, optimizes workflows, and collaborates autonomously. Organizations gain enterprise AI at scale, transforming employees into human AI agents with unprecedented access to contextual, personalized computing experiences. The future of work is here—powered by intelligent devices that don't just access AI, but embody it.
-
Security
Leading the Way in Corrections Technology
From creating safer facilities to supporting stronger reentry outcomes, Aventiv, and its family of brands: Securus Technologies, Securus Monitoring and JPay, delivers technology solutions that safely and securely transform corrections environments for everyone.
Topics Covered
Application and platform security
Careers and certifications
Cloud security
Compliance
Data security and privacy
Identity and access management
Network security
Risk management
Security analytics and automation
Security operations and management
Threat detection and response
Threats and vulnerabilities
Find Solutions For Your Project
-
Evaluate
CISO decisions: Weighing costs, benefits of dark web monitoring
Forewarned is forearmed, and dark web monitoring can alert organizations when they're in attacker crosshairs. But for many, the risk and expense make it more trouble than it's worth.
-
LLM firewalls emerge as a new AI security layer
-
How to evaluate NGFW products to strengthen cybersecurity
-
Why organizations need cloud attack surface management
-
-
Problem Solve
Enhance security audits with Nmap and NSE scripts
The Nmap Scripting Engine feature enables security admins to automate scans, detect vulnerabilities and validate network security settings.
-
CISO's guide: How to prevent business email compromise
-
ASU's CISO: AI craze is a strategic opportunity for security
-
How CISOs can balance AI innovation and security risk
-
-
Manage
Counter third-party risk with continuous vendor monitoring
Assessing a vendor's security posture is not a box that gets checked. The risk of a third-party attack requires the kind of diligence provided by continuous vendor monitoring.
-
MLSecOps: Bridging security and AI development processes
-
CISO's guide to demonstrating cyber resilience
-
A leader's guide to integrating EDR, SIEM and SOAR
-
Information Security Basics
-
Get Started
MLSecOps: Bridging security and AI development processes
MLSecOps ensures AI security by automating controls, fostering collaboration and addressing vulnerabilities early in the development lifecycle.
-
Get Started
A leader's guide to integrating EDR, SIEM and SOAR
Understand the architecture, implementation, and maintenance of EDR, SIEM, and SOAR tools to optimize security workflows and ensure resilience.
-
Get Started
Why organizations need cloud attack surface management
Cloud environments constantly change, expanding attack surfaces beyond traditional tools. Cloud ASM delivers continuous visibility to identify exposures, misconfigurations and risk.
Multimedia
-
News
View All -
Threats and vulnerabilities
What CISOs should take from the Hugging Face-OpenAI incident
Security experts say the lesson isn't to abandon sandboxing, but to strengthen the security controls around surrounding systems as AI tests their limits.
-
Red agents vs. blue agents: How to make AI better at defense
The agentic AI playing field was heavily tilted toward offense, so researchers began using red team agents to help teach their blue counterparts.
-
When AppSec scanners become a supply chain attack vector
New research shows how security scanners embedded in the software supply chain can be attacked to serve as a foothold for downstream attacks.






