Security intelligence
Blogs
Security blogs
Read practitioner, researcher, and vendor security blogs covering defensive engineering, vulnerability response, malware, privacy, and enterprise security.
How to secure edge AI in customer-owned environments
Microsoft Security Blog · 2d ago ↗sources
PPCC 2026: Bringing AI and your business processes together
Shift Browser is signed adware that fingerprints your endpoint before it drops payloadHeimdal Security Blog · Blogs
↗
News alert: Airlock Digital IRAP assessment bolsters trust for sensitive Australian deploymentsThe Last Watchdog · Blogs
↗
Microsoft Build 2026: Building agentic apps with Microsoft Fabric and Microsoft DatabasesSecurity | Microsoft Azure Blog | Microsoft Azure · Blogs
↗
Complete index
Source grid
Every loaded article, grouped by its original feed. Search scans source names and headlines.
Density
Sort
How to secure edge AI in customer-owned environments
As AI moves into customer-owned environments, organizations need new ways to verify the systems, software, and AI assets they trust before releasing sensitive data, credentials, a…
ASCII smuggling crosses over from AI prompt injection to phishing evasion
Invisible Unicode characters popularized for hiding instructions from AI models are now being used to obfuscate words before email filters parse them.
Impersonating IT support: how threat actors turn a remote session into enterprise-wide access
Microsoft Threat Intelligence observed a human-operated intrusion campaign that abuses Microsoft Teams external collaboration to impersonate IT support, gain remote access, and de…
Counterfeit installers to system compromise: Tracking a deceptive software download campaign
An active campaign is impersonating legitimate software vendors to deliver malware through look-alike download pages and regenerated installer archives. Microsoft Defender Experts…
Cybersecurity IR Workshop: The workshop you shouldn’t miss
Cyber resilience starts before a crisis. Gain practical insights from DART to strengthen readiness and response.
TerminalFix campaign deploys a reverse tunnel through multistage intrusion
Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections and hunting guidance.
What’s new in Microsoft Security: August 2026
This month’s updates provide new capabilities to help organizations gain insights into agent activity, expand security coverage across supported environments, and enhance security…
When AI infrastructure becomes the target: Securing gateways and control points
Microsoft Threat Intelligence examines attacks on exposed AI workloads, including LiteLLM gateway exploitation, credential harvesting, persistence, and cryptomining activity.
The patch window is collapsing: Why security needs a new control plane
Learn why Microsoft is investing in new and innovative capabilities able to give organizations time to safely validate and deploy patches.
Microsoft named a Leader in the Frost Radar™: Cloud Workload Protection Platforms, 2026
Microsoft is named a visionary leader in the 2026 Frost Radar for CWPP, recognized for unified runtime security with Microsoft Defender for Cloud.
PPCC 2026: Bringing AI and your business processes together
Learn how Microsoft 365 Copilot, AI agents, and Power Platform can transform business processes at PPCC 2026.
The next measure of AI momentum is work transformed
New data from Microsoft 365 Copilot telemetry signals, along with examples from our customers around the world, demonstrate AI transformation in action.
Copilot in Excel: Built for the era of Frontier Finance
- Discover how Copilot in Excel transforms finance workflows with skills, data connectors, and capabilities for traceability.
Copilot Cowork is now generally available
Copilot Cowork is now generally available worldwide, bringing secure, AI-powered automation for complex enterprise tasks in Microsoft 365.
Introducing Microsoft Scout: Your always-on personal agent
Microsoft introduces a new, always-on personal agent, Microsoft Scout, integrated across the Microsoft 365 apps you use every day.
Announcing the new Work IQ APIs
Build enterprise agents with Work IQ APIs for Microsoft 365—bringing business context, tools, and secure, scalable intelligence into every workflow.
Introducing Microsoft 365 Business with Copilot: The new standard for small business
Meet Microsoft 365 Business with Copilot—the AI-powered solution transforming how small businesses work, collaborate, and compete.
Introducing a new design for Microsoft 365 Copilot
Copilot’s redesigned experience delivers faster performance, adaptive tools, and clearer AI-powered workflows to help you easily move from intention to outcome.
New and improved: Computer-using agents, a new workflows experience, and real-time voice experiences
Explore what's new in Copilot Studio, May 2026: computer-using agents are now available, plus redesigned workflows and Work IQ extensibility.
New and improved: Agent governance, intelligent workflows, and connected app experiences
See what's new in Copilot Studio, April 2026: updates to workflows, more control over agent operations, and an expanded agent usage estimator.
Shift Browser is signed adware that fingerprints your endpoint before it drops payload
Heimdal SOC flagged Shift Browser adware across 50+ client environments. See how the signed installer fingerprints endpoints before dropping its payload, plus IOCs and MITRE mappi…
6 ThreatLocker alternatives that should make your shortlist
6 handpicked ThreatLocker alternatives. Some are direct ThreatLocker competitors, others let you manage clients’ environments differently.
50+ insider threat statistics for 2026
In 2026, insider threats are probably a bigger risk than you think. In fact, they could cost your organization $19.5 million a year. But it’s not really a problem with hackers, sp…
The Planting Seeds philosophy. Selling into schools takes years, not quarters
It’s tempting for MSPs to write off event sponsorship in education as a waste of money. You sponsor an event, hand out flyers, follow up with an email, and hear nothing back. Rick…
What the DfE’s cyber security update means for multi-academy trusts
Before dawn on 10 July 2024, one ransomware attack took down ten schools inside the same multi-academy trust at once. Every control that eventually stopped it was something the De…
9 Proofpoint alternatives. Pros & cons of the leading options
Compare 9 top Proofpoint alternatives to find the email security tool that best fits your needs, budget, and usability.
The risk awareness radar. A superpower every MSP needs to train
Most of the cyber incidents landing on our desks these days start with someone believing a lie. It’s not a brilliant piece of code that causes most breaches. A convincing email, a…
Heimdal data reveals MediaArena adware completes persistence before antivirus quarantine finishes
New data from Heimdal's telemetry measures the gap between execution of the MediaArena adware and the completion of quarantine. The same pattern has been confirmed across more tha…
How Heimdal grew from a bold idea into a global cybersecurity platform
Heimdal did not start as a traditional cybersecurity company. It started with two Danish cybersecurity researchers, a piece of innovative technology and a challenge. Could they cr…
MediaArena malvertising: why a quarantine isn’t the end of the incident
If Microsoft Defender quarantines BrowserModifier:Win32/MediaArena on one of your endpoints, the alert reads like a win. Our SOC data says treat it as a live persistence incident…
Tools Change. Teach People How to Keep Up
“Make everyone one percent better and it compounds across the team.” That’s the line Joe Head wrote about his own job and when I read it back to him, he didn’t hesitate. “That is…
4 Best Managed EDR Solutions & Service Suppliers (and how to choose)
There are several cybersecurity companies that offer managed EDR services in 2026. Here’s what actually separates them, and who each one suits. Most successful cyber attacks begin…
Top 4 Best SOC Platforms 2026 – Provider Comparison
Without the right tools, no security operations centre (SOC) can do its job properly. A SOC platform brings together a range of security technologies that let your analysts rapidl…
Top 6 Best Managed Detection and Response Providers 2026
There are several major managed detection and response (MDR) companies to choose from. We’ve compared the main offerings of the best MDR providers to help you decide which is righ…
Cyber-Aware Customers Are Raising the Bar for MSPs and Other Vendors
Your client is no longer just buying your security advice. They’re auditing whether you live by it. That was a clear message from my exclusive interview with Heather MacDonald Alf…
News alert: Airlock Digital IRAP assessment bolsters trust for sensitive Australian deployments
ADELAIDE, Australia, August 19th, 2026, CyberNewswire — Airlock Digital, a global provider of application control and allowlisting solutions, today announced that it has complet…
News alert: OpenMatter Network spotlights AI verification at Belgrade Blockchain Week
Melbourne, Fla., August 17, 2026, CyberNewswire — Continuing its effort to build global awareness of the need to move computing from assumption-based trust to cryptographic proo…
MY TAKE: Black Hat 2026 Part 3 — Agentic AI can do the work, but somebody has to prove it
Security work used to leave a trail without anyone trying. A developer who wanted an open source library went and got it, and the license came along. An analyst who closed a case…
MY TAKE: Black Hat 2026 Part 2 — Security shifts to deciding in advance what an AI agent may reach
Humans get identity. That is what MFA and single sign-on are for, and we all understand the bargain: prove you are who you say, then go do your work. Machines get predictability.…
MY TAKE: Black Hat 2026 Wrap-up Part 1 — AI is forcing security and operations to merge in the SOC
Companies have kept security in one silo and operations in another for as long as both have existed. Related:Part 2 — deciding what AI can reach Agentic AI is collapsing the div…
News Alert: Pulse Security AI’s research reveals C-suite, board confidence gap on cyber exposures
LAS VEGAS, Aug. 5, 2026, CyberNewswire ﻗ Boards of directors believe they understand their company's security posture and what it means for the business. The security leaders pr…
BLACK HAT ROUNDTABLE: Security pros dissect fallout from Hugging Face’s double guardrail failure
LAS VEGAS – It's come to this. A cyberattack carried out by a machine. Worse, a machine that picked its own victim. Whether that counts as agency is where the experts below part…
News alert: Airlock extends endpoint control to govern AI agents and define operating boundaries
Atlanta, GAŌĆöAugust 4, 2026ŌĆöAirlock Digital, a leader in preventative endpoint security, today announced Agentic AI Control & Governance at Black Hat USA 2026. The new capabili…
News alert: Mallory links threat intelligence to governed response as exploit timelines shrink
Las Vegas, United States, August 4th, 2026, CyberNewswire – Mallory, the AI-native Threat and Exposure Management platform, today introduced a unified context and intelligence l…
News alert: Community voting shapes 2026 Cybersecurity Excellence Awards
LAS VEGAS, Aug. 4, 2026, CyberNewswire – The Cybersecurity Excellence Awards today announced the winners of the 2026 Community Choice Award, selected through 79,455 votes cast d…
BLACK HAT Q&A: The AI agent that clears the human door and slips past the machine gate
LAS VEGAS – Companies are deploying AI agents into everyday work at a pace no security program was built for. Related: AI layoffs pays for AI infrastructure As Black Hat USA 202…
BLACK HAT Q&A: SBOM claims what went in, binary shows what shipped, the risk lies between
LAS VEGAS – Almost every company can now produce a list of what’s inside its software. Almost none can prove the list is right. Related: SBOM’s role in cybersecurity Constru…
News alert: Pulse Security launches with $8 million for AI platform to modernize CISO operations
SAN FRANCISCO, July 15, 2026, CyberNewswire – Backed by Foundation Capital and Zetta Venture Partners with $8M in seed funding, Pulse Security delivers the program intelligence…
News alert: Insignary’s on-demand SBOM verification boosts software supply chain security
TORONTO, July 15, 2026, CyberNewswire ŌĆō According to Insignary Inc., a leader in software supply chain security and binary software composition analysis (SCA), most organization…
News alert: Tego AI finds Anthropic’s integration of Claude and Slack can trigger unauthorized actions
TEL AVIV, Israel, July 14, 2026, CyberNewswire – Tego AI, a cybersecurity company, published new research identifying a potentially critical security weakness in Claude Tag, Ant…
News alert: OpenMatter joins HOL initiative to shape trust standards for autonomous AI
MELBOURNE, Fla., July 8, 2026, CyberNewswire – OpenMatter Network today announced that it has joined the founding group of organizations participating in the Hashgraph Online (H…
News alert: Insignary tackles SBOM accuracy gap as AI tools intensify software supply-chain risk
TORONTO, July 6, 2026, CyberNewswire тАУ Insignary, Inc., whose patented binary fingerprint technology has been cited in four Gartner research reports, today announced its recogni…
News alert: Link11 launches faster DDoS mitigation to counter AI-driven, adaptive network attacks
FRANKFURT, July 1, 2026, CyberNewswire – Link11, a leading European provider of cloud-based cybersecurity solutions, today announced the launch of its completely rebuilt Layer 3…
News alert: Reflectiz partners with Taboola to host webinar on AI-driven marketing security risks
BOSTON, June 30, 2026, CyberNewswire – Reflectiz, the web exposure management platform, today announced a live webinar with Taboola, "Securing Third-Party Marketing in the AI Er…
News alert: OpenMatter launches platform to verify AI activity across enterprise systems
MELBOURNE, Fla., June 30, 2026, CyberNewswire – OpenMatter Network today announced the launch of its cryptographically verifiable platform for secure collaboration and AI govern…
Microsoft Build 2026: Building agentic apps with Microsoft Fabric and Microsoft Databases
Microsoft Build 2026 highlights advancements in app development with Microsoft Fabric and Microsoft Databases, emphasizing a unified data and AI platform.
Azure IaaS: Defense in depth built on secure-by-design principles
Explore how Azure IaaS uses defense in depth and secure-by-design principles to deliver layered, scalable cloud security across compute, network, and data.
Enforcing trust and transparency: Open-sourcing the Azure Integrated HSM
Learn how Microsoft Azure Integrated HSM delivers hardware‑enforced key protection in the cloud, combining FIPS Level 3 assurances with transparency and open‑source collaboration.
Azure IaaS: Keep critical applications running with built-in resiliency at scale
Learn how Azure IaaS helps organizations start from a resilient platform foundation with availability, continuity, and recovery capabilities.
Azure IaaS: Explore new resources for building a stronger, more efficient infrastructure
Learn how Azure IaaS helps you modernize infrastructure, improve performance and resilience, optimize costs, and prepare for AI workloads. Read more.
Azure reliability, resiliency, and recoverability: Build continuity by design
Learn how Azure reliability, resiliency, and recovery capabilities work together to improve cloud continuity. Read more.
No matching sources found.