Výsledky hledání

typ: propagace× v celém archivu zrušit filtry

282 karet z 283 položek · strana 3 z 5 CZ · EN/orig

1

2

2

Why API Discovery Is Critical for Modern AppSec Programs

Hidden API Estate And AI-speed Recon Are Reshaping Modern Application Risk Key Takeaways Unknown APIs create unattributed exposure, and such exposure rarely gets tested. Attackers build their own inventory through live reconnaissance; they do not wait for your spreadsheet. API discovery must pull from gateways, cloud, specs, traffic paths, scanners, and external exposure signals. OWASP API Top 10 includes improper inventory management because endpoint sprawl is now a core API risk. Qualys…

Qualys US

tg: návod tg: propagace

· Qualys · Why API Discovery Is Critical for Modern AppSec Programs

2

Qualys Introduces Real-Time Cloud Security Posture Management (CSPM) for Faster Risk Detection and Remediation

Key Takeaways Cloud environments change continuously, while security still relies on periodic scans, leaving gaps where risks go undetected. That gap becomes exposure. Qualys Real-Time CSPM monitors cloud changes as they happen, while still supporting periodic scans for environments that require them. It evaluates each finding in context by correlating posture data with vulnerabilities, asset criticality, and exploitability. Cloud risk is not handled in isolation; it is unified with…

Qualys US

tg: novinka v produktu tg: propagace

· Qualys · Qualys Introduces Real-Time Cloud Security Posture Management (CSPM) for Faster Risk Detection and Remediation

AI is Working in the SOC. So Why are Security Executives More Worried Than Ever?

Something shifted in security operations over the last two years: AI stopped being a pilot program and became the plan.And if you survey 500 security professionals on whether that's going well – as Omdia did, commissioned by Rapid7 – you get a remarkable level of consensus: 97% report positive outcomes, 98% say AI reduces alert fatigue, and 95% say it's helping address staffing shortages.Those numbers are high enough that the story could stop there; AI is working, everyone agrees. Move on. But…

US

tg: rozbor tg: propagace tp: AI

· Rapid7 · AI is Working in the SOC. So Why are Security Executives More Worried Than Ever?

2

13 million tool calls: auditing every AI coding agent action with Elastic Agent

We gave hundreds of developers an AI agent that can run shell commands, edit files, and call Model Context Protocol (MCP) servers on their laptops, then realized we had no record of what it actually did. So we built one. One 280-line dependency-free bash script, fired by Cursor's hooks, records every tool call as JSONL, and the Elastic Agent already on each endpoint ships it to Elasticsearch. Since the May rollout we have logged over 13 million tool-call events from more than 1,100 machines. A…

Cursor Elastic US

tg: rozbor tg: návod tg: propagace tp: AI

· Elastic Security · 13 million tool calls: auditing every AI coding agent action with Elastic Agent

13 million tool calls: auditing every AI coding agent action with Elastic Agent

We gave hundreds of developers an AI agent that can run shell commands, edit files, and call Model Context Protocol (MCP) servers on their laptops, then realized we had no record of what it actually did. So we built one. One 280-line dependency-free bash script, fired by Cursor's hooks, records every tool call as JSONL, and the Elastic Agent already on each endpoint ships it to Elasticsearch. Since the May rollout we have logged over 13 million tool-call events from more than 1,100 machines. A…

Elastic Cursor US

tg: návod tg: propagace tp: AI

· Elastic Security · 13 million tool calls: auditing every AI coding agent action with Elastic Agent

2

Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise 

Security teams are being asked to defend a growing attack surface with fewer people and around the clock, against threat actors who never take a night off. As cyberattackers increasingly use AI to launch and scale campaigns, the volume, speed, and sophistication of threats continue to rise. Closing that gap takes more than tooling. It takes a partner that pairs a leading security platform with scaled intelligence and human experts who can act on your behalf at any hour. That’s exactly what…

Microsoft US

tg: propagace tp: AI

· Microsoft Security Blog · Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise 

Audit Fix: Audit Readiness for the Post-Mythos Era

Key Takeaways Human-speed compliance is dead. Attackers utilizing modern, autonomous AI tools can chain enterprise misconfigurations and weaponize vulnerabilities in under 25 minutes, rendering manual, periodic audit cycles completely obsolete. The “Configuration Gap” is your biggest blind spot. Organizations take an average of 14 months to remediate basic identity, access control, and logging flaws, leaving a massive, open window of exposure for automated exploitation. Hyper-prioritization is…

Qualys US

tg: rozbor tg: novinka v produktu tg: propagace tp: AI tp: identita

· Qualys · Audit Fix: Audit Readiness for the Post-Mythos Era

5

Agentic AI for cyber defenders: What security teams built at Black Hat USA 2026

Agentic AI armed attackers first, but it also put real building power in defenders’ hands. Here’s what security practitioners built in two days at Black Hat USA 2026, and how the CyberAgents Exchange keeps that work compounding long after the event.Key takeawaysBuilding defensive cybersecurity tooling no longer requires a developer. Agentic tooling drove the cost of finding and exploiting a vulnerability down to 1990s levels; it also removed the engineering barrier that kept defenders from…

Tenable US

tg: rozbor tg: propagace tp: AI

· Tenable Research · Agentic AI for cyber defenders: What security teams built at Black Hat USA 2026

The security signal log tailing can't see: tracking npm cooldown removals with Elastic Agent

npm's min-release-age setting tells npm to ignore any package version published less than a set number of days ago, keeping freshly compromised releases out of npm install during the window when they do the most damage. Getting the setting onto developer workstations is straightforward. Knowing when someone quietly deletes it is a different problem entirely, and log-tailing inputs are no help because they only fire when lines are appended to a file. We built a ~40-line Common Expression…

npm Elastic US

tg: návod tg: propagace tp: dodavatelský řetězec

· Elastic Security · The security signal log tailing can't see: tracking npm cooldown removals with Elastic Agent

The security signal log tailing can't see: tracking npm cooldown removals with Elastic Agent

npm's min-release-age setting tells npm to ignore any package version published less than a set number of days ago, keeping freshly compromised releases out of npm install during the window when they do the most damage. Getting the setting onto developer workstations is straightforward. Knowing when someone quietly deletes it is a different problem entirely, and log-tailing inputs are no help because they only fire when lines are appended to a file. We built a ~40-line Common Expression…

Elastic npm US

tg: rozbor tg: návod tg: propagace tp: dodavatelský řetězec

· Elastic Security · The security signal log tailing can't see: tracking npm cooldown removals with Elastic Agent

1

4

​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)

As organizations adopt AI, they must secure both cloud and AI environments through a unified security control plane as their attack surface expands. Because modern applications and AI workloads are built and run in the cloud, security teams must understand which exposures matter most, prioritize what can truly be exploited, and reduce risk across cloud infrastructure, applications, identities, data, and AI systems in one place. Modern IT estates now span multiple clouds and on-premises systems,…

Microsoft US

tg: propagace tp: AI

· Microsoft Security Blog · ​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)

Tenable Hexa AI: Automating exposure remediation with agentic routines

Discover how Tenable Hexa AI closes the gap between exposure management and endpoint patching using intent-driven routines, smart guardrails, and human approval.Key takeawaysThe problem: A slow handoff between security workflows creates a days-long remediation gap. The solution: Tenable Hexa AI bridges this gap using intent-driven Routines that automate scoping, deployment, and verification across integrated platforms like Jamf. Safety and control: Autonomy is governed by the harness built into…

Tenable Jamf US

tg: novinka v produktu tg: propagace tp: AI

· Tenable Research · Tenable Hexa AI: Automating exposure remediation with agentic routines

Benchmarking the Agentic SOC: How we evaluate LLMs for security workflows

An agentic SOC is only as good as the model driving it. The moment you let an LLM triage an alert, hunt across your telemetry, or author a detection rule, the question stops being "is this a smart model?" and becomes something much more specific: will it pick the right skill, call the right tool in the right order, and reach the right disposition without inventing a result it never actually checked? That is not a question a general-purpose leaderboard can answer. A model can top every public…

Elastic US

tg: rozbor tg: propagace tp: AI

· Elastic Security · Benchmarking the Agentic SOC: How we evaluate LLMs for security workflows

7

Benchmarking the Agentic SOC: How we evaluate LLMs for security workflows

An agentic SOC is only as good as the model driving it. The moment you let an LLM triage an alert, hunt across your telemetry, or author a detection rule, the question stops being "is this a smart model?" and becomes something much more specific: will it pick the right skill, call the right tool in the right order, and reach the right disposition without inventing a result it never actually checked? That is not a question a general-purpose leaderboard can answer. A model can top every public…

Elastic US

tg: rozbor tg: propagace tp: AI

· Elastic Security · Benchmarking the Agentic SOC: How we evaluate LLMs for security workflows

Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps

The calculus of cybersecurity has changed. AI is reshaping how organizations build, deploy, operate, and defend digital systems. AI-powered development tools, agents, and autonomous workflows are accelerating innovation but they are also introducing new attack surfaces, new trust boundaries, and new security challenges. Microsoft has long helped organizations secure their digital estates using Zero Trust principles. That leadership was recently recognized by KuppingerCole analysts, which named…

Microsoft US

tg: novinka v produktu tg: návod tg: propagace tp: AI

· Microsoft Security Blog · Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps

128 Seconds to disruption: Microsoft Defender stops ransomware at QNET 

In this article What is device isolation?Case study: QNETAttack chain overviewMITRE ATT&CK techniques observedReferencesLearn more Microsoft Defender’s attack disruption now includes device isolation, a new response action that extends autonomous protection directly to compromised endpoints. At QNET, an attacker initiated a multi-stage attack using a legitimate Windows tool on a compromised endpoint to retrieve a malicious remote payload–a classic living-off-the-land (LOL) technique that often…

Microsoft obchod US

tg: incident tg: rozbor tg: propagace tp: malware tp: ransomware

· Microsoft Security Blog · 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET 

Agents vs. agents: how we triage HackerOne reports for $2 each, 85% as well as a human

Large language models (LLMs) made it trivially cheap to generate vulnerability reports. In the first half of 2026 alone, our HackerOne bug bounty program received over 1,390 reports, more than the full-year totals for 2024 and 2025 combined. Every one of them still requires human attention, so we decided to put agents against agents. If AI can generate reports at near-zero cost, AI should triage them at near-zero cost, too. The system we built agrees with human security engineers 85% of the…

Elastic US

tg: rozbor tg: propagace tp: AI

· Elastic Security · Agents vs. agents: how we triage HackerOne reports for $2 each, 85% as well as a human

Agents vs. agents: how we triage HackerOne reports for $2 each, 85% as well as a human

Large language models (LLMs) made it trivially cheap to generate vulnerability reports. In the first half of 2026 alone, our HackerOne bug bounty program received over 1,390 reports, more than the full-year totals for 2024 and 2025 combined. Every one of them still requires human attention, so we decided to put agents against agents. If AI can generate reports at near-zero cost, AI should triage them at near-zero cost, too. The system we built agrees with human security engineers 85% of the…

Elastic US

tg: rozbor tg: propagace tp: AI

· Elastic Security · Agents vs. agents: how we triage HackerOne reports for $2 each, 85% as well as a human

8

Zero-Day Remediation Meets Operational Resiliency

Executive Summary In the Frontier AI era, the number of CISA-known exploited vulnerabilities has increased by 6.5x over the past four years, and time-to-exploitation has collapsed to -7 days. Traditional monthly patch cycles cannot keep up. Organizations need a new operating model that detects at AI speed, hyper-prioritizes truly exploitable exposures, and remediates immediately. TruRisk Eliminate delivers operational resiliency through the AI-Powered Patch Reliability Score, patchless…

US

tg: novinka v produktu tg: propagace tp: AI

· Qualys · Zero-Day Remediation Meets Operational Resiliency

[Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents

Have you ever read the Talos IR Quarterly Trends report and wondered, “How did that phishing or ransomware campaign actually play out? When was Talos IR contacted, how did they contain it, and how did they remediate the environment?" You’re in luck. Next Tuesday, August 11, Cisco Talos Incident Responders will be hosting an exclusive, unrecorded 30-minute webinar to review the most high-impact incidents our customers faced in Q2 2026. This isn’t a rehashing of the report itself, but a candid…

Cisco US

tg: propagace tp: phishing tp: ransomware

· Cisco Talos · [Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents

Agent Val Now Validates the Entire Attack Surface: From Network to Host

Powered by TruConfirm — Exploit Validation That Now Runs on the Network and the Host Executive Summary Qualys TruConfirm now validates exploitability across the entire attack surface, not just the network. Cloud Agent-Based TruConfirm brings the same proof-based validation model to the endpoint, closing the gap on local, kernel, browser, and post-authentication CVEs that network scanning alone could never reach. AI-assisted vulnerability research has compressed the time between disclosure and…

Qualys US

tg: novinka v produktu tg: propagace

· Qualys · Agent Val Now Validates the Entire Attack Surface: From Network to Host

Say Hello to Agent Insta: Closing the Detection Gap in Exposure Management at Machine Speed 

Executive Summary Frontier AI has turned CVE weaponization timelines to hours, making scan-bound detection a growing compliance and breach-risk challenge. Agent Insta powers InstaScan to deliver scanless detection by transforming existing inventory, telemetry, and threat intelligence into validated exposure findings within minutes of disclosure. Operating 24/7, InstaScan enables AI-speed detection with 90%+ coverage across technologies representing 60–70% of enterprise vulnerability volume.…

Qualys US

tg: novinka v produktu tg: propagace tp: AI

· Qualys · Say Hello to Agent Insta: Closing the Detection Gap in Exposure Management at Machine Speed 

Rapid7 Expands UK and Ireland Channel Presence Through Strategic Partnership with Exclusive Networks

Ross Baker is Senior Director, Northern Europe at Rapid7.As organizations across the United Kingdom and Ireland embrace AI, cloud technologies, and digital transformation in the name of enhancing customer experiences and accelerating business growth, the cybersecurity landscape must continue to evolve just as quickly.In this environment, business leaders still expect security to enable innovation, not slow it down. They're pushed to reduce risk, improve visibility across expanding attack…

US

tg: propagace

· Rapid7 · Rapid7 Expands UK and Ireland Channel Presence Through Strategic Partnership with Exclusive Networks

SOC case management and detection rule history in Elastic Security

Elastic Security now tracks every change to a detection rule and lets you roll back to any previous version with one click. The same history log gives compliance teams a timestamped audit trail that's immutable and append-only. Case data is queryable across 3 global indices (down from 12 per space), so SOC managers can build dashboards on closure rates, assignment load, and case volume without configuring anything. A rebuilt template system gives analysts structured, investigation-specific…

Elastic US

tg: novinka v produktu tg: propagace

· Elastic Security · SOC case management and detection rule history in Elastic Security

SOC case management and detection rule history in Elastic Security

Elastic Security now tracks every change to a detection rule and lets you roll back to any previous version with one click. The same history log gives compliance teams a timestamped audit trail that's immutable and append-only. Case data is queryable across 3 global indices (down from 12 per space), so SOC managers can build dashboards on closure rates, assignment load, and case volume without configuring anything. A rebuilt template system gives analysts structured, investigation-specific…

Elastic US

tg: novinka v produktu tg: propagace

· Elastic Security · SOC case management and detection rule history in Elastic Security

1

Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas

At Elastic, we know that the best way to build security tools is to bring them to the community, have security pros use them, and let them tell us what features and functionality matter and why. This year, we’re excited to do this at Black Hat and DEFCON, the weeklong security marathon affectionately known as Hacker Summer Camp. Our smartest technical experts and practitioners will be at Black Hat showing off our latest innovations, sponsoring and hosting events to help security experts and…

Elastic US

tg: novinka v produktu tg: propagace

· Elastic Security · Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas

9

Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas

At Elastic, we know that the best way to build security tools is to bring them to the community, have security pros use them, and let them tell us what features and functionality matter and why. This year, we’re excited to do this at Black Hat and DEFCON, the weeklong security marathon affectionately known as Hacker Summer Camp. Our smartest technical experts and practitioners will be at Black Hat showing off our latest innovations, sponsoring and hosting events to help security experts and…

Elastic US

tg: novinka v produktu tg: propagace

· Elastic Security · Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas

Rapid7 at Black Hat USA 2026: See preemptive security in action

Black Hat USA returns to Mandalay Bay in Las Vegas this August, bringing together security practitioners, researchers, and leaders from around the world. Rapid7 will be there in the Business Hall, with new capabilities, live demonstrations, expert-led sessions, and two days of activities at the Border Grill.This year, our focus is preemptive security: helping security teams anticipate credible risk, respond at machine speed, and maintain an accurate view of their security and compliance posture…

US

tg: novinka v produktu tg: propagace tp: AI

· Rapid7 · Rapid7 at Black Hat USA 2026: See preemptive security in action

Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend

Hugging Face reconstructed more than 17,000 attacker events from a July 2026 intrusion driven by an autonomous artificial intelligence (AI) agent. The path was familiar: untrusted dataset content abused a processing worker (file disclosure, then code execution), credential harvest, then multi-cluster lateral movement. Production Elastic Defend behavior rules and Elastic Security detection (SIEM) rules already watch those types of behaviors. This post maps each stage to detections you can enable…

Hugging Face OpenAI Elastic US

tg: incident tg: rozbor tg: propagace tp: únik dat tp: AI tp: identita

· Elastic Security · Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend

What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support

We know you’re tired of hearing how every vendor is going to finally help you solve alert fatigue. Well, one way we’re improving alert fatigue is from a slightly different angle, better prevention at the endpoint. Because stopping more at the endpoint means fewer alerts ever raised. We have three endpoint enhancements, all contributing to better endpoint prevention: To be even more proactive about Bring Your Own Vulnerable Driver (BYOVD) attacks, we’re continuously monitoring public vulnerable…

Elastic US

tg: novinka v produktu tg: propagace tp: malware

· Elastic Security · What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support

Alert Zero: AI-driven alert triage and attack investigation for the agentic SOC

It's 9 a.m. Monday, the start of your shift. You begin the day like any other Monday: You open the queue, and the wall of alerts is already waiting. New alerts land between 9:05 and 9:10 a.m., while you close yesterday’s. You're already drowning, and you haven’t even had a chance to refill your coffee. You know that you won’t be able to get to things that really need prioritization. Threat hunting stays deferred, and detection engineering waits. Incident response practice never quite starts.…

Elastic US

tg: novinka v produktu tg: propagace tp: AI

· Elastic Security · Alert Zero: AI-driven alert triage and attack investigation for the agentic SOC

What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support

We know you’re tired of hearing how every vendor is going to finally help you solve alert fatigue. Well, one way we’re improving alert fatigue is from a slightly different angle, better prevention at the endpoint. Because stopping more at the endpoint means fewer alerts ever raised. We have three endpoint enhancements, all contributing to better endpoint prevention: To be even more proactive about Bring Your Own Vulnerable Driver (BYOVD) attacks, we’re continuously monitoring public vulnerable…

Elastic US

tg: novinka v produktu tg: propagace tp: malware

· Elastic Security · What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support

Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend

Hugging Face reconstructed more than 17,000 attacker events from a July 2026 intrusion driven by an autonomous artificial intelligence (AI) agent. The path was familiar: untrusted dataset content abused a processing worker (file disclosure, then code execution), credential harvest, then multi-cluster lateral movement. Production Elastic Defend behavior rules and Elastic Security detection (SIEM) rules already watch those types of behaviors. This post maps each stage to detections you can enable…

Hugging Face OpenAI US

tg: incident tg: rozbor tg: propagace tp: AI

· Elastic Security · Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend

Alert Zero: AI-driven alert triage and attack investigation for the agentic SOC

It's 9 a.m. Monday, the start of your shift. You begin the day like any other Monday: You open the queue, and the wall of alerts is already waiting. New alerts land between 9:05 and 9:10 a.m., while you close yesterday’s. You're already drowning, and you haven’t even had a chance to refill your coffee. You know that you won’t be able to get to things that really need prioritization. Threat hunting stays deferred, and detection engineering waits. Incident response practice never quite starts.…

Elastic US

tg: novinka v produktu tg: propagace tp: AI

· Elastic Security · Alert Zero: AI-driven alert triage and attack investigation for the agentic SOC

9

Canada’s Bill C-8 is here: Why the 72-hour reporting rule will redefine critical infrastructure security

Canada’s new Critical Cyber Systems Protection Act (Bill C-8) introduces a strict 72-hour cyber incident reporting mandate. Find out how Tenable is helping critical national infrastructure operators bridge the IT/OT divide to ensure full compliance.Key takeaways:Bill C-8 introduces stringent new cyber incident reporting requirements and heavy financial penalties for critical infrastructure operators. Eliminating network blind spots with a hybrid IT/OT discovery approach, including Safe Active…

Tenable telekomunikace energetika doprava finance US

tg: regulace tg: návod tg: propagace tp: průmyslové systémy

· Tenable Research · Canada’s Bill C-8 is here: Why the 72-hour reporting rule will redefine critical infrastructure security

​​​​What’s new in Microsoft Security: July 2026

Every organization needs security that protects end to end with the speed and scale of AI. Microsoft’s vision is simple: security should be ambient and autonomous, just like the AI it protects. As organizations scale AI and expand across environments, security teams need protection that covers every surface. This month’s updates help security and IT teams secure their AI environments, use AI to defend at speed and scale, and strengthen the foundations that AI-powered operations depend on.…

Microsoft US

tg: novinka v produktu tg: propagace tp: AI tp: identita

· Microsoft Security Blog · ​​​​What’s new in Microsoft Security: July 2026

Rapid7 named a Leader in the IDC MarketScape: Worldwide MDR Service for Midmarket 2026 Vendor Assessment

IDC has named Rapid7 a Leader in the 2026 Worldwide Managed Detection and Response Service for Midmarket 2026 Vendor Assessment (Doc #US52992326, July 2026). We believe this recognition and research highlights where MDR is heading.Many security programs are still built around a reactive sequence of detect, triage, and respond, but the timelines surrounding modern attacks have changed too quickly for that model to hold up on its own. Time-to-exploit has dropped from two years to 22 hours, while…

US

tg: propagace tp: AI

· Rapid7 · Rapid7 named a Leader in the IDC MarketScape: Worldwide MDR Service for Midmarket 2026 Vendor Assessment

Black Hat special: Rewind and revisit

Cybersecurity is rarely a straight line. In this special Black Hat edition of Humans of Talos, Amy looks back at the incredible journeys that brought past guests to the world of threat intelligence. From forensic labs and newsrooms to the kitchen line, we’re revisiting the stories and lessons that define the people behind the threat intelligence.Heading to Black Hat? We have a presence within the Cisco and Splunk booth (2633) during Black Hat where you can chat to us about our latest threat…

US

tg: propagace

· Cisco Talos · Black Hat special: Rewind and revisit

5

​​Better security starts with better questions

As organizations move beyond AI experimentation, success will depend on how effectively they combine intelligence and trust. The same systems that amplify knowledge, accelerate decisions, and unlock new outcomes must also protect data, govern AI, and build resilience. In this next phase of transformation, security is not separate from innovation—it is an enabler that helps make responsible innovation possible at a faster pace. That starts with asking better questions—the kind that help…

US

tg: názor tg: propagace tp: AI

· Microsoft Security Blog · ​​Better security starts with better questions

How AI is Rewriting the Zero-Day Playbook for Preemptive Security

The scenario is all too familiar for any cybersecurity professional: It’s late in the day, and a critical zero-day vulnerability is disclosed. When this happens, CISOs from every industry immediately turn to their Security Operations Centers (SOC) with the single most important, and often most difficult, question: "Are we exposed?”Answering questions like these when zero-days drop tends to trigger a frantic, high-stress fire drill. Analysts scramble to cross-reference outdated Configuration…

Rapid7 US

tg: novinka v produktu tg: propagace tp: AI

· Rapid7 · How AI is Rewriting the Zero-Day Playbook for Preemptive Security

Operationalize AI Governance Across Shadow GenAI, MCP, and Agentic Workloads with Qualys TotalAI

Key Takeaways AI adoption has outpaced enterprise controls, with AI and LLM workloads appearing faster than security teams can inventory or approve them. AI governance has become an evidence problem. Policies, questionnaires, and risk registers cannot prove that AI systems are safe. Traditional security tools see only fragments of AI risk. They miss model behavior, cannot produce technical evidence, and do not discover or assess the full AI estate. TotalAI connects four components of AI…

Qualys US

tg: novinka v produktu tg: propagace tp: AI

· Qualys · Operationalize AI Governance Across Shadow GenAI, MCP, and Agentic Workloads with Qualys TotalAI

Stop rewriting detection rules by hand: automatic Sentinel-to-Elastic migration is here

Elastic automatically translates your Microsoft Sentinel detection rules into Elastic Security. Export your Scheduled and Near Real Time (NRT) analytics rules from Sentinel, upload them, and Elastic picks up the mapping and translation from there using an LLM you choose. Watchlists and severity mappings carry over. This is the first automatic migration path off a modern SIEM, available now in Tech Preview in 9.5, and it works across multiple cloud providers and regions so you can deploy closer…

Elastic Microsoft US

tg: novinka v produktu tg: propagace tp: AI

· Elastic Security · Stop rewriting detection rules by hand: automatic Sentinel-to-Elastic migration is here