cybersecurity

Ransomware’s New Era: Moving at AI Speed

Ransomware attacks are accelerating in speed and sophistication, with threat actors increasingly using artificial intelligence to quickly exploit valid credentials and bypass traditional security tools like endpoint detection and response (EDR). Reports from Halcyon and Arctic Wolf highlight that ransomware tactics have evolved from encrypting data to multi-extortion schemes and direct victim targeting, while AI enables automated, high-fidelity social engineering, making defense more challenging and emphasizing the need for improved access management and transparency in cybersecurity efforts.

https://www.darkreading.com/endpoint-security/ransomware-new-era-moving-ai-speed

Google Unleashes Gemini AI Agents on the Dark Web

Google has launched its Gemini AI agents in public preview to monitor the dark web, analyzing up to 10 million posts daily with 98 percent accuracy to detect relevant security threats for organizations. The tool builds detailed profiles of customers and uses advanced AI models to identify and prioritize genuine risks such as data leaks or initial access brokers, aiming to reduce false positives common in traditional dark web monitoring. Additionally, Google has integrated AI agents into its Security Operations platform to automate threat responses and investigations.

https://www.theregister.com/2026/03/23/google_dark_web_ai/

Ten Things to Ask Your IT Team About NIS2 Compliance

The article discusses the key areas organizations must address to ensure compliance with the EU's NIS2 directive, which mandates robust cybersecurity governance and resilience. It highlights ten critical focus points including risk analysis, incident handling, business continuity, supply chain security, and the importance of continuous evidence gathering and proper IT tools. The article emphasizes that leadership must proactively oversee cybersecurity measures to meet strict regulatory requirements and maintain business continuity in the face of threats.

https://www.kaseya.com/blog/nis2-compliance/

CISO’s Perspectives – The 4 Recommendations to Sleep Without a Worry

Paul Bayle, Group CSO at Atos, discusses key recommendations for CISOs to manage cybersecurity effectively and maintain peace of mind despite evolving threats. Emphasizing the importance of thorough IT system mapping, investing in multiple security technologies, fostering strong governance involving cross-department collaboration, and engaging with expert ecosystems, he highlights the challenges posed by “unknown unknowns” and the need for continuous awareness, training, and management support to mitigate risks across the organization.

https://atos.net/en/lp/cybershield/cisos-perspectives-the-4-recommendations-to-sleep-without-a-worry

How CISOs Can Survive the Era of Geopolitical Cyberattacks

Geopolitical cyberattacks, particularly destructive Iranian wiper campaigns, are increasingly targeting critical infrastructure and organizations to cause operational chaos rather than financial gain. These attacks rely on stolen credentials and legitimate administrative tools to move laterally within networks, making containment and strict internal access controls essential for CISOs to limit damage and ensure organizational resilience.

https://www.bleepingcomputer.com/news/security/how-cisos-can-survive-the-era-of-geopolitical-cyberattacks/

Shadow AI ‘Double Agents’ Are Outpacing Security Visibility – and That’s a Serious Concern for UK Businesses

UK businesses are rapidly adopting AI agents to automate tasks and boost productivity, with 62% already using them and 68% planning enterprise-wide rollouts soon. However, Microsoft’s Cyber Pulse report warns that these AI agents, acting autonomously across networks and systems, are outpacing security visibility and creating significant risks, highlighting the urgent need for robust governance, visibility, and zero trust security measures to manage and control their access safely.

https://www.techradar.com/pro/security/shadow-ai-double-agents-are-outpacing-security-visibility-and-thats-a-serious-concern-for-uk-businesses

The Importance of Behavioral Analytics in AI-Enabled Cyber Attacks

AI-enabled cyber attacks are evolving to use automation and mimic legitimate user behavior, enabling cybercriminals to conduct highly personalized phishing, credential abuse, and adaptive malware attacks that bypass traditional security models. To counter these threats, behavioral analytics must advance into dynamic, context-aware identity-based risk modeling that continuously monitors user activities across the entire security stack, enabling real-time detection of subtle anomalies and privilege misuse in hybrid and multi-cloud environments.

https://thehackernews.com/2026/03/the-importance-of-behavioral-analytics.html

Companies Know AI Is Essential for Cyber Defense but Aren’t yet Seeing Returns

A new EY survey reveals that while nearly all cybersecurity leaders see AI as essential for defense and are deploying it, most have yet to realize significant returns from agentic AI security tools. The survey highlights companies' progress in adopting AI governance frameworks but notes that full integration into corporate culture is limited, stressing the need for robust governance and human oversight to maximize AI’s benefits and manage risks effectively.

https://www.cybersecuritydive.com/news/cybersecurity-ai-agentic-governance-ey-survey/815311/

Cisa Urges Endpoint Management System Hardening After Cyberattack Against US Organization

The Cybersecurity and Infrastructure Security Agency (CISA) issued an alert following a cyberattack on U.S.-based medical technology firm Stryker Corporation targeting their Microsoft environment. CISA urges organizations to harden endpoint management system configurations by implementing Microsoft’s best practices for securing Microsoft Intune, including least privilege administrative roles, phishing-resistant multi-factor authentication, and multi-admin approval policies, to protect against similar malicious activities.

https://www.cisa.gov/news-events/alerts/2026/03/18/cisa-urges-endpoint-management-system-hardening-after-cyberattack-against-us-organization

Shadow AI Has Already Moved Into Your Organization

The article explains that “shadow AI” is already widespread in organizations, as employees use public or unapproved AI tools to speed up work without going through IT or security review. Because these tools can be accessed instantly in a browser, blocking them is often ineffective, resulting in lost visibility into how company data is used. The article concludes that organizations must shift from trying to prohibit AI use to creating governance frameworks, approved tools, and clear policies that enable productivity while maintaining security and compliance. 

https://www.forbes.com/sites/tonybradley/2026/03/19/shadow-ai-has-already-moved-into-your-organization/

Scroll to Top