Strategy
-
Frontier AI tipping the scales toward cyber adversaries
Researchers at Palo Alto Networks’ Unit 42 warn that threat actors are already using AI to accelerate cyberattacks beyond the abilities of modern defenses.
By David Jones • Aug. 28, 2026 -
CISA identifies security hurdles that led to very different results in two red-team engagements
The agency said its recent simulated cyberattacks offered several key lessons for many organizations.
By Eric Geller • Aug. 28, 2026 -
Explore the Trendline➔
Getty Images
TrendlineManaging and securing identity sprawl
Cyber threat actors know the simplest way to hack into an enterprise and remain under the radar is with stolen, legitimate user credentials -- and AI is making managing and securing digital identities more challenging than ever.
By Cybersecurity Dive staff -
Treasury to help financial firms transition to quantum-resistant encryption
The government is concerned that hackers could someday decrypt financial information and other secrets using code-breaking quantum computers.
By Eric Geller • Aug. 26, 2026 -
UK power facility disabled for days after suspected state-linked cyberattack
The disruption took place amid a wave of attacks targeting vulnerable industrial devices in the water and energy sectors.
By David Jones • Aug. 24, 2026 -
House Democrats ask GAO to study CISA workforce cuts
Five lawmakers serving on the Homeland Security Committee said Congress didn’t know enough about the Trump administration’s changes to the cybersecurity agency.
By Eric Geller • Aug. 24, 2026 -
Defense contractors still struggling with basic CMMC requirements
A “confidence disconnect” is plaguing the industry, a consulting firm said.
By Eric Geller • Aug. 21, 2026 -
What we know so far about the hacking campaign against US water systems
Support is growing for stricter oversight and increased financial resources for utilities in the wake of a cyberattack spree, suspected to be the work of Iran-linked threat groups.
By David Jones • Aug. 20, 2026 -
Deep Dive
AI-powered vulnerability clearinghouse faces deep skepticism, major challenges
The U.S. government’s promises about the Gold Eagle coordination program are overblown, experts said, but the initiative could help organizations prioritize patching and mitigation.
By Eric Geller • Aug. 18, 2026 -
Cisco security revenue jumps 14% as agentic AI sharpens cyberattacks
With companies confronting more sophisticated threats, AI agents are driving demand for cybersecurity tools, CEO Chuck Robbins said.
By Alexei Alexis • Aug. 14, 2026 -
Researchers find AI-powered hacking tools for sale in underground forums
A report shows how criminal actors are lowering the barriers to entry with sophisticated services, without ethical constraints.
By David Jones • Updated Aug. 14, 2026 -
US government will let private companies hack criminal gangs
The new program, meant to aggressively disrupt costly cybercrime schemes, carries numerous legal and security risks.
By Eric Geller • Updated Aug. 13, 2026 -
Hackers abuse AI models to find new entry paths
Network defenders are racing to secure their IT systems before criminal and state-actors circumvent existing guardrails.
By David Jones • Aug. 12, 2026 -
Deep Dive
CVE Program eyes automation and globalization to weather AI ‘vulnpocalypse’
The vulnerability coordination project has had a rocky few years, but a key leader says it will “flourish and improve.”
By Eric Geller • Aug. 11, 2026 -
Civil-society initiative will pay cybersecurity vendors to protect rural water systems
DEF CON Franklin is seeking philanthropic grants, but its founder said the federal government ultimately needs to step in.
By Eric Geller • Aug. 10, 2026 -
Secure development can help turn the tables as AI alters cyber landscape
A top Microsoft executive says a shift toward memory safety and other preventative measures can limit the ability to exploit flawed software.
By David Jones • Aug. 10, 2026 -
AI firms know policymakers won’t ‘let you make a Terminator factory,’ DHS official says
The Trump administration believes leading AI companies have learned important lessons from recent incidents and regulation isn’t necessary to preserve those lessons.
By Eric Geller • Aug. 7, 2026 -
Western government leaders call for a focus on infrastructure resilience, not AI hype
U.S. and allied officials said companies should start preparing now for a cyberattack that changes how they provide essential services.
By Eric Geller • Aug. 5, 2026 -
CISA is prioritizing work with critical infrastructure as it begins to recover from cuts
The agency has been focused on helping secure systems at drinking and wastewater utilities in recent weeks.
By David Jones • Aug. 5, 2026 -
White House walks tightrope on securing AI without stifling tech innovation
National Cyber Director Sean Cairncross said the administration wants to work collaboratively with the private sector.
By David Jones • Aug. 5, 2026 -
Tech industry alliance proposes AI agent safety reporting program
The information-sharing exchange is designed to widely share lessons learned from agentic AI security incidents.
By Eric Geller • Aug. 4, 2026 -
AI widely used to exploit critical flaws, disrupt supply chains
A report confirms the growing use of AI across a broad spectrum of threat groups.
By David Jones • Aug. 4, 2026 -
OT security coalition urges Congress, CISA to enact reforms amid water sector hacks
Iran-nexus hackers are suspected in a broad campaign targeting drinking and wastewater sites in at least seven U.S. states.
By David Jones • Aug. 3, 2026 -
China-based hacker employs DeepSeek in autonomous threat campaign
Researchers said the hacker also attempted to test Western AI tools, but ultimately was forced to revert to manual operations to succeed.
By David Jones • Aug. 3, 2026 -
Deep Dive
How volunteer cyber experts are helping protect rural water systems
A first-in-the-nation program is yielding promising results as it charts a path for supporting the U.S.’s most vulnerable infrastructure.
By Eric Geller • Aug. 3, 2026 -
Shadow AI, leadership resistance make AI governance tough for worried CISOs
Fewer than half of CISOs think their bosses see AI security as a business enabler, according to an Okta survey.
By Eric Geller • July 30, 2026