
Security
Protecting AI systems and the data behind them. Model manipulation, prompt injection, access control, and how organizations respond when AI-specific threats get through.


Most security teams don't know how many AI agents they're running. Falcon Guardian found 18,000 at one company that had approved only 300.

MCP's new spec turns a planted prompt into a stolen credential
The Model Context Protocol's (MCP)'s largest revision since its initial launch shipped on July 28. By the end of the first day, all four Tier 1 SDKs were already speaking the new version, and Cloudflare's Agents SDK had support in place from day zero, with customers such as Sentry and Linear picking it up right away, meaning the surface this article describes is already live in production. A new 12-month deprecation policy keeps the changes in place through at least mid-2027. Most of the coverage has focused on what improvements have been made: A stateless core that scales on ordinary HTTP, OAuth-native authorization, and server-rendered UIs via MCP Apps.

China-linked hackers backdoored executives' laptops via USB, exploiting a fix companies had but weren't using
Subscribe to get latest news!
Deep insights for enterprise AI, data, and security leaders

Google’s Gemini 3.8 Flash is built for agents, while its Cyber twin hunts vulnerabilities

Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke

Closing an Azure OpenAI assistant's retrieval gap didn't take a new identity platform. It took one filter and a narrower assistant.

Partner Content
Identity and permissions aren’t enough to govern AI agent behavior

AI agents need their own identity before they need a gateway
Enterprise AI has entered a new era. Organizations are rapidly moving beyond assistants that answer questions to autonomous agents capable of reasoning, invoking tools, accessing enterprise applications, coordinating with other agents, and completing multi-step business workflows with minimal human intervention.

AI agents that pass authentication can still drift, expose data, or get memory-poisoned
There is a clear repeating trend in agent deployments: The gateway is the first control teams reach for, but it is the one they are least ready to run. This is because gateways sit on top of identity and attribution layers that are mostly not there.

Partner Content
The three layers of agentic AI security: A defense-in-depth architecture for autonomous agents
Presented by Nutanix
