cybersecurity

The Importance of Behavioral Analytics in AI-Enabled Cyber Attacks

AI-enabled cyber attacks are evolving to use automation and mimic legitimate user behavior, enabling cybercriminals to conduct highly personalized phishing, credential abuse, and adaptive malware attacks that bypass traditional security models. To counter these threats, behavioral analytics must advance into dynamic, context-aware identity-based risk modeling that continuously monitors user activities across the entire security stack, enabling real-time detection of subtle anomalies and privilege misuse in hybrid and multi-cloud environments.

https://thehackernews.com/2026/03/the-importance-of-behavioral-analytics.html

Companies Know AI Is Essential for Cyber Defense but Aren’t yet Seeing Returns

A new EY survey reveals that while nearly all cybersecurity leaders see AI as essential for defense and are deploying it, most have yet to realize significant returns from agentic AI security tools. The survey highlights companies' progress in adopting AI governance frameworks but notes that full integration into corporate culture is limited, stressing the need for robust governance and human oversight to maximize AI’s benefits and manage risks effectively.

https://www.cybersecuritydive.com/news/cybersecurity-ai-agentic-governance-ey-survey/815311/

Cisa Urges Endpoint Management System Hardening After Cyberattack Against US Organization

The Cybersecurity and Infrastructure Security Agency (CISA) issued an alert following a cyberattack on U.S.-based medical technology firm Stryker Corporation targeting their Microsoft environment. CISA urges organizations to harden endpoint management system configurations by implementing Microsoft’s best practices for securing Microsoft Intune, including least privilege administrative roles, phishing-resistant multi-factor authentication, and multi-admin approval policies, to protect against similar malicious activities.

https://www.cisa.gov/news-events/alerts/2026/03/18/cisa-urges-endpoint-management-system-hardening-after-cyberattack-against-us-organization

Shadow AI Has Already Moved Into Your Organization

The article explains that “shadow AI” is already widespread in organizations, as employees use public or unapproved AI tools to speed up work without going through IT or security review. Because these tools can be accessed instantly in a browser, blocking them is often ineffective, resulting in lost visibility into how company data is used. The article concludes that organizations must shift from trying to prohibit AI use to creating governance frameworks, approved tools, and clear policies that enable productivity while maintaining security and compliance. 

https://www.forbes.com/sites/tonybradley/2026/03/19/shadow-ai-has-already-moved-into-your-organization/

Broadcom Delivers the World’s First End-to-End PQC-safe, In-flight Network Encryption Solution

Broadcom Inc. has announced the shipment of the world’s first end-to-end Post-Quantum Cryptography (PQC)-safe, in-flight network encryption solution, integrated into Everpure's FlashArray storage platform via Emulex SecureHBAs. This solution enables automatic, high-performance encryption of all in-flight Fibre Channel data, protecting against future quantum computing threats and complying with CNSA 2.0 and NIS2/DORA standards without impacting system performance or existing storage services.

https://investors.broadcom.com/news-releases/news-release-details/broadcom-delivers-worlds-first-end-end-pqc-safe-flight-network

Stop Building Security Goals Around Controls

Devin Rudnicki, CISO at Fitch Group, emphasizes that security goals should be aligned with business outcomes rather than focused solely on controls, advocating for strategies anchored in corporate objectives, real cyber threats, and industry standards. She highlights three key metrics for security programs—value, risk, and maturity—and stresses the importance of presenting risk in actionable terms for leadership, balancing innovation speed with measured risk, and using automation to free human resources for higher-value work.

https://www.helpnetsecurity.com/2026/03/18/devin-rudnicki-fitch-group-ciso-business-alignment/

CISOs Rethink Their Data Protection Strategies

Chief Information Security Officers (CISOs) are rethinking their data protection strategies in response to the rapid expansion of artificial intelligence (AI) use, which magnifies the risks to sensitive data through increased data sharing and exposure. Organizations are enhancing data classification, access management, and monitoring tools, adopting zero-trust frameworks, and frequently updating policies to keep pace with evolving technologies, regulatory requirements, and emerging AI-enabled cyber threats, underscoring the critical need for continuous adaptation in data security programs.

https://www.csoonline.com/article/4143384/cisos-rethink-their-data-protection-strategies.html

Shadow AI Risk: How SaaS Apps Are Quietly Enabling Massive Breaches

A report from Grip Security reveals that all analyzed companies operate SaaS environments embedded with AI, with a 490% year-over-year increase in public SaaS attacks, 80% involving sensitive data. The article highlights how “shadow AI”—agentic AI within SaaS apps often implemented without IT oversight—enables attackers to use stolen OAuth tokens to cascade breaches across multiple organizations, exemplified by the widespread 2025 Salesloft Drift breach, emphasizing the urgent need for better visibility, continuous governance, and risk-based controls of AI in SaaS to prevent massive cascading cybersecurity incidents.

https://www.securityweek.com/the-shadow-ai-problem-how-saas-apps-are-quietly-enabling-massive-breaches/

Security and Generative AI Are Learning to Get Along

IT professionals are navigating the challenge of integrating generative AI into cybersecurity without compromising safety, as the technology’s reliance on large volumes of raw data can expand threat surfaces. Experts emphasize the need for strong security architecture and domain expertise to ensure AI tools are both effective and secure, a priority underscored by the recent White House cyber strategy calling for AI-enabled cyber defense and innovation stewardship.

https://www.itbrew.com/stories/2026/03/12/security-and-generative-ai-are-learning-to-get-along

SailPoint Launches Shadow AI Remediation to Empower Enterprises With Real-time Visibility and Control Over AI Usage

SailPoint Technologies has launched Shadow AI Remediation, a new solution that provides enterprises with real-time visibility and control over employees' use of unauthorized generative AI tools like ChatGPT and Gemini. This platform-centric tool enables organizations to monitor AI usage, prevent unauthorized data uploads, and enforce compliance by integrating AI governance into SailPoint's unified identity security framework.

https://www.globenewswire.com/news-release/2026/03/17/3257245/0/en/sailpoint-launches-shadow-ai-remediation-to-empower-enterprises-with-real-time-visibility-and-control-over-ai-usage.html

Scroll to Top