AI

Spy Vs. Spy: How GenAI Is Powering Defenders and Attackers

Generative AI (GenAI) is transforming cybersecurity for both attackers and defenders. While adversaries use it for coding, phishing, and malware, defenders utilize it to analyze threats, enhance response, and detect vulnerabilities. The rapid evolution of GenAI complicates its quantification in the threat landscape. Adversaries leverage it for anti-analysis tactics, while defenders can use it to sift through vast data. Effective GenAI applications arise in vulnerability hunting and enterprise security, although its success relies on knowledgeable humans to guide its use.

https://blog.talosintelligence.com/spy-vs-spy-how-genai-is-powering-defenders-and-attackers/

Superagency in the Workplace: Empowering People to Unlock AI’s Full Potential

AI's workplace potential is immense, akin to the steam engine's impact during the Industrial Revolution. Companies largely invest in AI but face challenges in achieving maturity, mainly due to hesitant leadership rather than employee readiness. Employees show eagerness for AI, often underestimating its integration into their roles. A McKinsey report indicates AI can boost productivity by $4.4 trillion, emphasizing the need for bold leadership to harness this technology effectively. As AI capabilities evolve, businesses must prioritize practical applications and support for employees, aligning technological adoption with strategic goals to remain competitive.

https://www.mckinsey.com/capabilities/tech-and-ai/our-insights/superagency-in-the-workplace-empowering-people-to-unlock-ais-full-potential-at-work

New Joint Guide Advances Secure Integration of Artificial Intelligence in Operational Technology

CISA & ASD released a guide for secure AI integration in Operational Technology (OT), highlighting risks and principles to ensure safety in critical infrastructure. Key steps include: educate on AI, assess risks, establish governance, and embed security.

https://www.cisa.gov/news-events/news/new-joint-guide-advances-secure-integration-artificial-intelligence-operational-technology

Turning AI From a Cost Into a Catalyst: Rethinking The CIO’s Role In The AI Era

CIOs are largely focused on AI governance and safe use, but struggle to show clear financial returns from AI. The traditional cost-based IT budget model limits the ability to use technology as a strategic driver of business transformation. True value from AI requires rethinking operating models across the whole organization, not just adding AI to old processes. CIOs need to shift from cost managers to value creators, measuring ROI with new approaches and working with business leaders to treat technology as a long-term investment and growth driver.

https://www.forbes.com/sites/peterbendorsamuel/2025/12/03/turning-ai-from-a-cost-into-a-catalyst-rethinking-the-cios-role-in-the-ai-era/

You Can’t Fall Behind in AI if You Never Start

CISO Series discusses AI integration in organizations, highlighting the challenge of securing it and the need for AI expertise due to a scarcity of trained professionals. Host David Spark and CISO Mike Johnson emphasize building internal talent for AI roles rather than hiring externally. Guest John Barrow shares the importance of internal context and trust in cybersecurity roles, advocating for proactive communication and strategic GRC positioning within the boardroom to align security with business goals while managing budget constraints.

https://cisoseries.com/you-cant-fall-behind-in-ai-if-you-never-start/

Key Questions CISOs Must Ask Before Adopting AI-enabled Cyber Solutions

The article outlines crucial steps and questions for CISOs considering AI-powered security tools. Threats involving AI, like deepfakes and data leaks, are growing, making AI-driven defenses necessary. Organizations benefit from faster breach recovery and cost savings with AI, but also face risks from unmanaged shadow AI. Key uses of AI in security include threat detection, automated reporting, and alert management. CISOs should evaluate the organization’s risk tolerance, specific security needs, and regulatory environment, and consider whether to adopt platform-based or point solutions. When assessing vendors, focus on areas such as shadow AI identification, data protection, effectiveness metrics, workforce impact, tool integration, regulatory compliance, trust in AI decisions, scalability, vendor reliability, ongoing support, and total cost.

https://www.csoonline.com/article/4094763/key-questions-cisos-must-ask-before-adopting-ai-enabled-cyber-solutions.html

AI Takes Center Stage as the Major Threat to Cybersecurity in 2026

Experian’s 2026 forecast warns that AI is transforming cyberattacks, making them more advanced and personal, with threats like synthetic identities and AI-powered malware. Data breaches are at record levels, and many consumers—especially millennials—report rising identity theft and phishing. Most people are worried that companies aren’t ready for AI-based attacks. In Australia, CPA’s report highlights that as more businesses adopt AI, cyber risks rise, especially for small firms, with many still lacking solid protections. Both organizations recommend stronger cybersecurity strategies, frequent updates, and more training as reliance on AI grows.

https://finance.yahoo.com/news/ai-takes-center-stage-major-110000818.html

AI Adoption Surges While Governance Lags — Report Warns of Growing Shadow Identity Risk

AI adoption in organizations is widespread but governance is lacking, with only 13% of firms monitoring AI data handling. A report highlights that two-thirds of respondents noticed AI tools over-accessing sensitive data, and many have insufficient real-time controls. Autonomous AI agents are particularly vulnerable, with limited oversight. Just 7% of organizations have a dedicated AI governance team, indicating significant gaps in regulatory readiness. The report advocates for a shift to data-centric oversight of AI to secure sensitive information effectively.

https://www.cybersecurity-insiders.com/ai-adoption-surges-while-governance-lags-report-warns-of-growing-shadow-identity-risk/

2025 State of AI Data Security Report

AI adoption is widespread (83%), but oversight is lacking (only 13% have strong visibility). This creates risks with autonomous agents acting beyond control, as 76% find them hardest to secure. Governance is weak, with only 7% having dedicated AI teams. The report highlights the need for better monitoring and identity management for AI within enterprises.

https://www.cybersecurity-insiders.com/portfolio/2025-state-of-ai-data-security-report-cyera/

The Digital Omnibus: Deregulation Dressed as Innovation

EU's Digital Omnibus loosens data and AI safeguards for workers under the guise of fostering innovation, benefiting mainly US tech giants. It consolidates data laws but lacks serious impact assessments, weakening protections and oversight for workers in AI-dominated workplaces. Changes to GDPR and AI regulations allow employers greater control over personal data, limiting workers' rights to transparency and resistance against automated decisions, while reducing oversight and AI literacy obligations. Overall, the document argues that the Omnibus prioritizes competitiveness over worker protections, shifting risks onto vulnerable users.

https://www.socialeurope.eu/the-digital-omnibus-deregulation-dressed-as-innovation

Scroll to Top