CISA Publishes Security Guidance for Using AI in OT

Global cybersecurity agencies released new guidance on safely deploying AI in operational technology systems, citing the high risks involved. OT is essential for critical infrastructure, and integrating AI can introduce risks such as model drift, safety bypasses, and process instability. Agencies urge thorough education on AI risks, a careful assessment of when to use AI, strong data controls, and transparent governance. Recommendations also emphasize the importance of monitoring and fail-safe processes, including human oversight. Experts note that while AI may enhance efficiency, its use in OT should be limited and highly disciplined, especially with high-risk models like large language models.

https://www.darkreading.com/cybersecurity-operations/cisa-publishes-security-guidance-ai-ot

Threat Landscape Grows Increasingly Dangerous for Manufacturers

Manufacturers remain the top target for cybercriminals in 2025, primarily due to security gaps, lack of expertise, and slow adoption of protective measures. Over half paid ransoms and faced high recovery costs, with ransomware attacks causing notable shutdowns and billions in losses. This year, exploited software vulnerabilities became the leading cause of breaches. The rise of AI and automation is boosting manufacturing efficiency but also increasing cybersecurity risks and creating new attack surfaces. Experts warn that the threat landscape will continue to worsen, especially as IT and OT environments merge and geopolitical issues persist.

https://www.darkreading.com/cyberattacks-data-breaches/threat-landscape-increasingly-dangerous-manufacturers

Dangerous Invitations: Russian Threat Actor Spoofs European Security Events in Targeted Phishing Attacks

Summary: Russian threat actors are targeting organizations via phishing attacks that impersonate legitimate European security events, using Microsoft 365 OAuth and Device Code workflows to steal credentials. Techniques include rapport-building conversations, fake professional websites, and communication through messaging apps. Notable campaigns include the Belgrade Security Conference and Brussels Indo-Pacific Dialogue, with attackers expanding their target lists through responses. Indicators and investigative assistance are offered for potential victims.

https://www.volexity.com/blog/2025/12/04/dangerous-invitations-russian-threat-actor-spoofs-european-security-events-in-targeted-phishing-attacks/

An Interview With Atlassian CEO Mike Cannon-Brookes About Atlassian and AI

Stratechery Interview: Atlassian CEO Mike Cannon-Brookes

Ben Thompson interviews Mike Cannon-Brookes, CEO of Atlassian, discussing the company's origins, growth, and innovation in software. Founded in 2002 with Jira as its first product, Atlassian emphasized cloud service and AI integration. Cannon-Brookes notes that their low-cost model and open-source approach facilitated rapid growth. The interview covers the company's journey, market strategies, and the influence of the dot-com era, highlighting their success in self-serve distribution and long-term customer relationships.

https://stratechery.com/2025/an-interview-with-atlassian-ceo-mike-cannon-brookes-about-atlassian-and-ai/

5 Threats That Reshaped Web Security This Year [2025]

5 Major Web Security Threats in 2025: Security professionals face significant challenges from AI-driven attacks, code vulnerabilities, and evolving injection techniques. Key threats include:

  1. Vibe Coding: Natural language coding created exploitable flaws in AI-generated code, leading to data losses and security breaches.
  2. JavaScript Injection: A coordinated campaign compromised 150,000 sites, highlighting the risks of client-side code.
  3. Magecart/E-skimming 2.0: Attacks profit by manipulating supply chains to steal payment information without detection.
  4. AI Supply Chain Attacks: A rise in malicious packages using AI techniques, complicating traditional threat detection methods.
  5. Web Privacy Validation: Many websites disregard user privacy settings, leading to hefty fines and compliance issues.

Conclusion: Organizations must adopt continuous monitoring and validation practices to combat these evolving threats effectively.

https://thehackernews.com/2025/12/5-threats-that-reshaped-web-security.html

5 Cybersecurity Predictions for 2026

TLDR: 2026 cybersecurity predictions include: 1) Shadow AI posing significant risks; 2) Convergence of compliance and security due to new regulations; 3) Prioritization of disinformation defense against advanced social engineering threats; 4) Quantum computing and AI enhancing security measures; 5) Increased use of biometrics for access control.

https://www.securitymagazine.com/articles/102030-5-cybersecurity-predictions-for-2026

Top CISO Takeaways For 2026: Lessons Learned From 2025

CISOs in 2025 learned that fast, AI-powered attacks and persistent supply chain breaches outpaced traditional defense methods. The human factor remained the top vulnerability, while dark web intelligence and regulatory enforcement moved to the forefront. Burnout among CISOs was widespread, further stressing the need for leadership support and resources. Proactive third-party risk management, continuous compliance, and strategic business alignment are now essential. Embedding automation, predictive intelligence, and board-level engagement characterizes the industry’s shift for 2026.

https://cyble.com/knowledge-hub/ciso-takeaways-for-2026/

Amazon’s New AI Can Code for Days Without Human Help. What Does That Mean for Software Engineers?

Amazon announced “frontier agents,” advanced AI systems capable of autonomously coding for hours or days, at its re:Invent conference. These agents—Kiro for software development, AWS Security Agent for security, and AWS DevOps Agent for IT operations—aim to automate the entire software development lifecycle with persistent memory, independent decision-making, and collaborative capabilities across tasks. Unlike existing tools, frontier agents learn from ongoing projects and can manage multi-repo changes simultaneously. While concerns about job impacts arise, Amazon emphasizes these tools enhance rather than replace human engineers, encouraging new practices and faster project completions. The company believes these agents can be applied beyond coding to various fields.

https://venturebeat.com/ai/amazons-new-ai-can-code-for-days-without-human-help-what-does-that-mean-for

How to Secure Cybersecurity Budget Approval With Continuous Security Validation

BreachLock offers cybersecurity solutions like Continuous Security Validation, Penetration Testing as a Service, and Adversarial Exposure Validation to help organizations identify and address vulnerabilities. These tools demonstrate cybersecurity ROI, helping security teams secure budget approvals by providing insights on risk reduction and aligning security strategies with business goals. Best practices include creating business cases, performing cost-benefit analyses, and referencing recognized cybersecurity frameworks to justify investments.

https://www.breachlock.com/resources/blog/how-to-secure-cybersecurity-budget-approval-with-continuous-security-validation/

Four Cybersecurity Strategies for CISOs to Prioritize Now

Microsoft Security: Prioritize Cyber Hygiene
Focus on four key cyber strategies: 1) Maintain essential cyber hygiene (inventory, segmentation, IP blocking, logging, VPN usage, identity hardening, timely patching, endpoint security, web/email traffic proxies). 2) Adopt modern security products/protocols, moving away from outdated technologies (MFA, secure DNS, SMTP, EWS, BGP best practices, DMARC). 3) Identify malicious actors through fingerprinting to distinguish legitimate users. 4) Emphasize collaboration and learning for continuous improvement against cyber threats.

https://www.microsoft.com/en-us/security/blog/2025/12/04/cybersecurity-strategies-to-prioritize-now/

Scroll to Top