惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
V
Visual Studio Blog
WordPress大学
WordPress大学
Google DeepMind News
Google DeepMind News
K
Kaspersky official blog
博客园 - 叶小钗
月光博客
月光博客
S
Schneier on Security
T
Threat Research - Cisco Blogs
C
CERT Recently Published Vulnerability Notes
量子位
博客园 - 三生石上(FineUI控件)
宝玉的分享
宝玉的分享
P
Privacy & Cybersecurity Law Blog
Cyberwarzone
Cyberwarzone
S
Securelist
Hugging Face - Blog
Hugging Face - Blog
B
Blog
C
Cyber Attacks, Cyber Crime and Cyber Security
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
V
Vulnerabilities – Threatpost
大猫的无限游戏
大猫的无限游戏
Google DeepMind News
Google DeepMind News
V
V2EX
MongoDB | Blog
MongoDB | Blog
博客园_首页
Recorded Future
Recorded Future
酷 壳 – CoolShell
酷 壳 – CoolShell
F
Fortinet All Blogs
GbyAI
GbyAI
Microsoft Security Blog
Microsoft Security Blog
C
Cybersecurity and Infrastructure Security Agency CISA
T
Troy Hunt's Blog
罗磊的独立博客
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
T
The Blog of Author Tim Ferriss
Application and Cybersecurity Blog
Application and Cybersecurity Blog
P
Proofpoint News Feed
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
T
Tor Project blog
Microsoft Azure Blog
Microsoft Azure Blog
爱范儿
爱范儿
O
OpenAI News
有赞技术团队
有赞技术团队
Blog — PlanetScale
Blog — PlanetScale
N
News | PayPal Newsroom
G
GRAHAM CLULEY
H
Hacker News: Front Page
Hacker News - Newest:
Hacker News - Newest: "LLM"

Search Security Resources and Information from TechTarget

How to operationalize threat modeling with AI | TechTarget CISO First fully agentic ransomware attack sparks readiness concerns | TechTarget Evaluating secure enterprise browsers vs. security plugins | TechTarget The AI vulnerability storm is here: Is your security program ready? | TechTarget Perimeter to posture: A roadmap to zero trust maturity | TechTarget TLS certificate lifetime changes: What CISOs must do now | TechTarget The agentic AI 8 key aspects of a mobile device security audit program | TechTarget Why mobile security audits are important in the enterprise | TechTarget Beyond the perimeter: The shift to data-centric protection | TechTarget How agentic AI threat intelligence aids NGO cyber defense: Case study | TechTarget How to conduct a mobile app security audit | TechTarget NO FAKES Act advances: What CISOs need to know | TechTarget What CISOs should know about AI runtime security | TechTarget As Q-Day looms, 90% of systems are unprepared for PQC | TechTarget A CISO Most security pros say their culture is Zscaler lays out its vision to secure the AI era at Zenith Live | TechTarget The OpenClaw security risks every CISO needs to know | TechTarget Cloud security metrics and KPIs: A CISO Florida public sector training on SimSpace cyber range: Case study | TechTarget Reporters' Notebook — Focus on Cyber Insurance: How Quantifying Risk Is Reshaping Security It's time to update incident response for the AI era How to build AI security guardrails without blocking innovation The prosecution gap: Why cybercrimes go unpunished AI in cyberdefense: Learning from threat actors' playbooks Top identity and access management risks CISO role changes as cyber-risk appetites in the C-suite grow CISO's guide to data minimization Researchers build autonomous AI worm that can reason and adapt How to secure data at rest, in use and in motion How to find cyber-risk data sources for a FAIR analysis Lost in translation: Cybersecurity board reporting for CISOs How to prepare security controls for future AI regulations EO 14390 raises stakes for enterprise cybersecurity First month of Mythos Preview testing exposes 10K flaws OT attacks shift from recon to physical control, raising stakes For CISOs, dawn of OpenAI Daybreak brings good and bad news Gartner Security & Risk Management Summit 2026: Adapting for AI | TechTarget Inside business email compromise attacks: Real-world examples Verizon 2026 DBIR: 6 key takeaways for CISOs Identity security for AI agents: The proliferation challenge How to build a business impact analysis checklist Taking care of business: The CISO's role in a cyber crisis What CISOs need to know about AI audit logs SOC vs. MDR: What CISOs need to consider Instructure cyberattack reignites ransom payment debate Transform SIEM rules with behavior-based threat detection CISO's guide: How to test an incident response plan How to implement zero trust for AI Data after the breach: Economics of the dark web The breakup: Why CISOs are decoupling data from their SIEMs | TechTarget News brief: Security worries and warnings as AI use expands How to construct an effective security controls evaluation 5 leading enterprise password managers to consider Claude Mythos changes the AI security threat matrix Buyer 6 things to check in your cyber insurance policy fine print How cyber insurance helped with breach recovery -- or not News brief: Critical infrastructure, OT cybersecurity attacks Tape's strategic role in modern data protection Top zero-trust use cases in the enterprise What every CISO should consider before a SIEM migration CISO's guide to centralized vs. federated security models Shadow code: The hidden threat for enterprise IT How to fix cybersecurity's agentic AI identity crisis 5 top SIEM use cases in the enterprise Top 8 e-signature software providers for 2026 How do digital signatures work? News brief: AI woes continue for security leaders Deepfake era demands proof-based security, not just awareness Is SOAR dead or alive? Sort of The push for digital sovereignty: What CISOs need to know Beyond awareness: Human risk management metrics for CISOs At RSAC 2026, AI optimism and anxiety -- and an MIA U.S. government Inside the SOC that secured RSAC 2026 Conference How to roll out an enterprise passkey deployment How to improve the SOC analyst experience -- and why it matters How contact centers detect and prevent fraud News brief: Iranian cyberattacks target U.S. water, energy CISO checklist: Cybersecurity platform or marketing ploy? RSAC 2026 Conference: Key news and industry analysis | TechTarget Next-generation firewall buyer's guide for CISOs Contact center monitoring best practices for CX leaders RSAC 2026: Cyber insurance and the rise of ransomware Agentic AI's role in amplifying and creating insider risks RSAC 2026 recap: AI security and network security trends Identity security at RSAC 2026: The new enterprise dynamics Meaningful metrics demonstrate the value of cyber-resiliency What to know about red team testing and the law News brief: Iran cyberattacks escalate, U.S. targets named 5 top SOC-as-a-service providers and how to evaluate them Cloud security architecture: Enterprise cloud blueprint for CISOs Contact center compliance checklist for modern workforces How AI caught a malicious North Korean insider at Exabeam Watch your words: Tim Brown's advice for CISOs News brief: U.S. absence at RSAC sparks leadership concerns Network security management challenges and best practices 10 enterprise secure remote access best practices
Cybersecurity in the age of AI means bigger, faster threats
2026-04-20 · via Search Security Resources and Information from TechTarget

Phil Sweeney

By

Published: 20 Apr 2026

With attackers able to move at AI speed, defenders can't rely on the techniques and instincts they've come to trust. Even the best of best practices won't meet the threat, said speakers at the recent SecureWorld conference in Boston.

An organization that wants to be resilient in the AI age needs to detect and fend off malicious activity as it occurs.

"That means putting in place stronger identity controls," said Jack Butler, a senior enterprise solutions engineer at Sumo Logic, a SecOps vendor. "That means putting in place the more robust logging program and correlation engines to detect across all of these in real time and reassess signals of trust. It needs to be reassessed dynamically."

Identity protection needs to meet the threat

As for what to do about the substantial challenge of managing identities associated with people, machines and AI agents, panelists at SecureWorld emphasized visibility.

"Know what is in your environment, and know what it is doing," recommended Chandra Pandey, CEO of Seceon, a security vendor. "If you know what is in your environment with machines, humans and all that -- in real time -- and you know what you're doing, you have done 80% of your work."

Reckoning with all that discovery isn't easy, especially with the nearly incalculable numbers of nonhuman identities (NHIs) in use in modern IT environments. Machine identity management and NHI security pose a big and growing challenge for security teams.

"Make sure that you're really asking yourself: What systems do you have -- human and nonhuman identities -- and what they have access to," Butler said. "Make sure that you are assuming zero trust. You're going to get pwned, and, when you do, they're going to take access."

"Start with AI agents," advised Kelsey Brazill, vice president of market strategy at P0 Security, an identity security vendor. "They're new, so there's less baggage there, and it's easier to implement some best practices and standards. And then that sets you up to extend that to all of the NHIs in your system."

SOC analysts have seen AI used against them for a while, but defenders haven't shifted their thinking enough to fully confront AI's weaponization, said Patricia Titus, field CISO at security vendor Abnormal AI.

"Stop constantly looking for indicators of compromise," Titus recommended. "By the time somebody gets hit and your SOC analysts write a rule and plug it into your systems, it could already be too late for your organization. We have to start thinking a little bit differently and start looking at attributing behavior."

With AI's help, threat actors can be deliberate about who they target. This means attackers rely less on classic, spray-and-pray intrusion attempts, Titus said, and can instead use AI to quickly cull through vast amounts of data to craft specific attacks on a particular individual. Those highly targeted tactics tend to be more successful.

Fayyaz Rajpari, senior director of GSI at SaaS security vendor AppOmni, said he has seen many compromises in the past year that had nothing to do with humans and instead involved cloud services, SaaS, NHIs, tokens and AI agents. That type of malicious behavior is hard to defend against, he said. "You have to start figuring out how you can leverage AI against these AI-generated attacks and interconnected systems. It's difficult, but that's just the reality."

Can AI agents be secured?

AI agents are good at evading whatever guardrails cybersecurity teams put in place. "Their job is to finish a workload. If they have to go around to the backdoor and beg another agent to give them access, which we've already seen, they will get granted access," Titus said.

To respond, teams need to design AI models that will mask data and take other protective measures, said Peter Steyaert, a senior manager of systems engineering at Fortinet. "You're going to have to limit exposure. It's going to have to be an accepted risk level through accepted LLMs, which means you're going to have to build a trusted model. Ensure what you're using internally is trusted."

That trust won't develop easily, Steyaert said, and there will need to be a meeting of the minds involving a CISO, CIO, the legal department and others to agree on how much risk an organization is willing to accept.

When it comes to risks posed by AI agents, visibility isn't enough. Configuration management tools need to be capable of spotting a suspicious agent as soon as it appears, he said, and security teams need to be prepared to act.

"It's not just detecting. You have to discover it, monitor in real time, kill it," Pandey said. Aggressive actions might occasionally disrupt an organization's legitimate use of AI agents, Pandey acknowledged, but the resulting productivity hit is insignificant when compared with the damage a threat actor can do by maliciously using an AI agent.

Bart Lenaerts, product marketing manager at Infoblox, a networking and security vendor, said security teams have little appetite for adding new tools and incurring additional costs. Lenaerts touted the usefulness of standards, which could enable users to register an AI agent in ways similar to how a server is registered. That control can change the security equation. "You're going to get the visibility. You're going to be able to make decisions on what you're going to shut down. And you know exactly what data sovereignty you can build into it," he said.

To an extent, defenders are being pushed to take more risks with their defensive AI agents, said Lewis Foggie, a sales engineer at SecureFlag, a security code training company. He pointed to a recently observed breakout time of just 27 seconds as an example of how breach response has fundamentally changed. "Humans can't respond to that in time," Foggie said. "Our agents will need to have some level of autonomy to conduct rapid containment."

Granting that autonomy, of course, means accepting higher levels of risk. "Who knows when that agent is going to go conduct some other operation that could be catastrophic for the business," Foggie added.

Phil Sweeney is an industry editor and writer focused on cybersecurity topics.

Dig Deeper on Threats and vulnerabilities