
AI changes cyber spending — but where’s the line-item for tokens?
Organizations’ cyber dollars are shifting, not growing. But AI compute costs can spiral — and that is why context matters in your agentic SOC.

Organizations’ cyber dollars are shifting, not growing. But AI compute costs can spiral — and that is why context matters in your agentic SOC.

Controlling coding agent overpermissioning is key to security. But recent frontier AI incidents show that problems don’t stop there.

The software industry is entering the AI era burdened by legacy flaws and weaknesses, making Secure by Design essential.

The post-mortem reaches sobering conclusions, and demands a plan of action for the AI industry — plus your SecOps strategy.

The TeamPCP actors, alleged to be behind one of the most active supply chain threats, were arrested — but this is not the end of Shai-Hulud.

UAT-10147 leveraged agentic AI to go beyond scripting to deliver a backdoor. The method highlights the need for agentic SOCs.

The annual cybersecurity conference focused on frontier AI agents — and what they mean for cyber. Here are three key takeaways.

Researchers built a worm that reasons about hosts it infects, and the open-weight models powering it sit outside AI-provider safety controls.

While prompt injection and data disclosure remain concerns, excessive agency climbed the list — not surprising with recent security incidents.

The post-mortems of two compromises by rogue AI agents show that security teams need to focus on guardrails, not the AI model.

Research into an Active Directory takeover with a single AI prompt highlights why organizations need to focus on agentic SOCs.

Traditional SBOMs, signing, and provenance all have blind spots, making them no longer capable of assuring software security.

Delaying software upgrades creates a buffer against poisoned packages, but transitive dependencies continue to be a problem.

Industry heavyweights bring new focus to vulnerabilities in the age of AI. Here’s how it might help improve security.

Threat Advisor could help teams with AI-specific risks. But a broader AppSec strategy rethink is needed in the AI era.
Get your 14-day free trial of Spectra Assure for Software Supply Chain Security
Get Free TrialMore about Spectra Assure Free Trial