惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
Docker
博客园 - 三生石上(FineUI控件)
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
博客园_首页
Microsoft Azure Blog
Microsoft Azure Blog
GbyAI
GbyAI
腾讯CDC
酷 壳 – CoolShell
酷 壳 – CoolShell
M
MIT News - Artificial intelligence
Stack Overflow Blog
Stack Overflow Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
Jina AI
Jina AI
爱范儿
爱范儿
博客园 - 【当耐特】
雷峰网
雷峰网
S
SegmentFault 最新的问题
美团技术团队
Blog — PlanetScale
Blog — PlanetScale
The GitHub Blog
The GitHub Blog
有赞技术团队
有赞技术团队
G
Google Developers Blog
大猫的无限游戏
大猫的无限游戏
Google DeepMind News
Google DeepMind News
J
Java Code Geeks

The Last Watchdog

News Alert: SpyCloud survey finds machine identity risks outpace defenses, exposing gaps in oversight | The Last Watchdog News Alert: Reflectiz launches AI website testing, uses site context to find and verify flaws | The Last Watchdog News Alert: Link11 reports fewer but stronger DDoS attacks in Europe for the first half of 2026 | The Last Watchdog GUEST ESSAY: AI coding assistants are putting open source in your code without declaring it | The Last Watchdog News alert: OpenMatter adds secure routing for OpenAI, Anthropic and Google models | The Last Watchdog LW ROUNDTABLE: OpenAI’s test agents self-organized into a rogue swarm no one anticipated | The Last Watchdog News alert: Bright Security launches AI PT, AI-powered penetration testing that cuts weeks to hours | The Last Watchdog MY TAKE: ChatGPT’s five-hour outage coincided with a model retirement its incident record omits | The Last Watchdog NEWS ALERT: Lunar Cyber tracks stolen API keys, ties them to infected employer devices | The Last Watchdog NEWS ALERT: SRA makes SOC AI license-free — customers pay only for the Azure compute they use | The Last Watchdog BLACK HAT FIRESIDE CHAT: How linking SOC alerts cuts noise, reveals attacks taking shape | The Last Watchdog News alert: Airlock Digital IRAP assessment bolsters trust for sensitive Australian deployments | The Last Watchdog News alert: OpenMatter Network spotlights AI verification at Belgrade Blockchain Week | The Last Watchdog MY TAKE: Black Hat 2026 Part 2 — Security shifts to deciding in advance what an AI agent may reach | The Last Watchdog MY TAKE: Black Hat 2026 Wrap-up Part 1 — AI is forcing security and operations to merge in the SOC | The Last Watchdog News Alert: Pulse Security AI’s research reveals C-suite, board confidence gap on cyber exposures | The Last Watchdog BLACK HAT ROUNDTABLE: Security pros dissect fallout from Hugging Face’s double guardrail failure | The Last Watchdog News alert: Airlock extends endpoint control to govern AI agents and define operating boundaries | The Last Watchdog News alert: Mallory links threat intelligence to governed response as exploit timelines shrink | The Last Watchdog News alert: Community voting shapes 2026 Cybersecurity Excellence Awards | The Last Watchdog BLACK HAT Q&A: The AI agent that clears the human door and slips past the machine gate | The Last Watchdog News alert: Pulse Security launches with $8 million for AI platform to modernize CISO operations | The Last Watchdog News alert: Insignary’s on-demand SBOM verification boosts software supply chain security | The Last Watchdog News alert: Tego AI finds Anthropic’s integration of Claude and Slack can trigger unauthorized actions | The Last Watchdog News alert: OpenMatter joins HOL initiative to shape trust standards for autonomous AI | The Last Watchdog News alert: Insignary tackles SBOM accuracy gap as AI tools intensify software supply-chain risk | The Last Watchdog News alert: Link11 launches faster DDoS mitigation to counter AI-driven, adaptive network attacks | The Last Watchdog News alert: Reflectiz partners with Taboola to host webinar on AI-driven marketing security risks | The Last Watchdog News alert: OpenMatter launches platform to verify AI activity across enterprise systems | The Last Watchdog News alert: SpyCloud report finds phishing surge exposing employee data at Fortune 100 companies | The Last Watchdog
MY TAKE: Black Hat 2026 Part 3 — Agentic AI can do the wo...
bacohido · 2026-08-12 · via The Last Watchdog

By Byron V. Acohido

Security work used to leave a trail without anyone trying. A developer who wanted an open source library went and got it, and the license came along. An analyst who closed a case wrote down why. The record was a byproduct of a person doing the work.

Related: Part 2 — Deciding what an AI agent may reach

An AI agent produces no such byproduct. It works out its own steps, moves faster than anyone watching, and finishes without leaving behind the paper trail a person would have.

Companies have caught on to what is missing, and they are no longer satisfied with a tool that reports a result. They want to see what the result rests on. Vendors have heard that, and a group of them arrived at Mandalay Bay in Las Vegas selling the proof rather than the finding. Ten of the companies I looked at closely are working that ground, and they close out my three-part Black Hat USA 2026 wrap-up.

Command Zero — Austin, Texas. Founded 2021. Documents how a verdict was reached

I sat down with CEO Dov Yoran and CTO Dean De Beer at the show.

An alert lands and somebody has to work out whether anything actually happened. Answering means pulling records from wherever they sit, in the SIEM, on the endpoint, in email, in SharePoint, and reasoning across all of it.

Command Zero does that work and keeps a full account of how it went. Every question asked of the data, every tool call made, every log record collected, every hypothesis proven or disproven. The verdict stops being an assertion and becomes something the company can stand behind.

De Beer

De Beer likens it to the citations under a research paper. The sources have to be listed for the conclusion to be worth anything.

Throughline, launched at the show, keeps a case alive after it closes. New alerts get matched against prior cases, and a closed verdict can change as evidence arrives.

SubImage — San Francisco. Founded 2024. Maps a company’s infrastructure and its connections

I met CEO Alex Chantavy after a wrong turn looking for a restroom.

A big company runs thousands of servers, databases, cloud accounts and employee logins, and no one person can say how they connect. SubImage maps that and writes it down. Which login can reach which system, where the sensitive data sits, what path leads to it. Most security vendors sell alerts. Chantavy sells the picture underneath them.

Chantavy built the map for security teams to read. His first customer fed a SubImage map to their own AI agents instead. An alert names one machine. The map tells the agent what that machine reaches, what sits downstream of it, and where an attacker would go next. The agent sees the whole shape of the exposure in seconds, not just the piece that set off the alarm.

“The robots love that kind of structure,� Chantavy said.

Nucleus Security — Sarasota, Fla. Founded 2018. Routes each vulnerability to whoever owns the fix

I’ve spoken several times over the past year and a half with co-founder and chief product officer Scott Kuffer about how vulnerability management is evolving.

Kuffer

Security teams have always had more known flaws than they can fix, and AI models that hunt vulnerabilities have made that list grow faster than ever. Kuffer’s position is that finding was never the constraint. Fixing is.

Nucleus sits above the scanners a company already owns, takes in everything they report, ranks each exposure by what it actually threatens, and routes it to whoever can close it. What comes out is a record of what was found, what mattered, who was assigned and what got done.

“Use automation to maintain context and accelerate action, and keep accountability with people,� Kuffer said.

Ridge Security — Milpitas, Calif. Founded 2020. Live payloads show which flaws cause damage

President and co-founder Lydia Zhang sat down with me on short notice as the show was winding down.

Zhang

Scanners return more findings than any team can act on, each carrying a severity score. Zhang’s argument is that the score is a guess. Ridge tests each finding with a live payload and reports which ones actually cause damage.

“We give you the evidence to prove that,� Zhang said.

At the show the company launched RidgeGen, an agentic platform that chains flaws into complete attack paths and validates each path with reproducible evidence before an analyst ever sees it. Rather than run a fixed script, the agents adapt as they go, the way an intruder would.

Root Evidence — Boise, Idaho. Founded 2025. Uses loss data to decide which flaws matter

CEO and co-founder Jeremiah Grossman argues that security teams have spent years counting the wrong things: CVEs, severity scores and remediation totals.

Grossman

Root Evidence instead uses cyber insurance claims, actuarial analysis, digital forensics, attack-surface intelligence and breach data to identify the small percentage of vulnerabilities tied to real financial loss.

“The cybersecurity industry has become exceptionally good at finding vulnerabilities, but it has not become significantly better at preventing financial loss,� Grossman said.

Its Mythos Warranty pushes the argument further: cyber insurance underwriters evaluated the methodology and agreed to back covered events resulting from CVEs Root Evidence failed to identify and report, with up to $5 million in protection. The point: fewer guesses, more proof.

Filigran — Paris. Founded 2022. Open-source threat intelligence, plus attack simulation

Another end-of-show meet-and-greet, this one with co-founder and CTO Julien Richard.

The company traces to a report French President Emmanuel Macron demanded on a state-backed actor targeting France. Samuel Hassine, now Filigran’s CEO, ran threat and risk analysis at ANSSI and could not assemble the answer fast enough. Everything he needed existed, scattered across tools that did not talk to each other. He and Richard built OpenCTI to fix that.

A second product, OpenAEV, takes what OpenCTI knows about an attacker and simulates that attack against a customer’s own network. “It’s like a proof,� Richard said. Either the threat finds a way in or it does not.

XTM One, shipped in June, turns a threat report into a live test in minutes.

Finite State — Columbus, Ohio. Founded 2017. Reads device firmware to confirm what shipped

Another on-the-fly conversation, this one over coffee with Doc McConnell, head of policy and compliance.

McConnell

Finite State works for the manufacturers of internet-connected devices — pacemakers, doorbell cameras, industrial controllers, cars. Each one runs software assembled from parts the manufacturer did not write, and once that code is compiled and loaded onto a device, nobody can see inside it. Finite State scans the finished product, catalogs every component, and reports back before it ships.

The gap between what a manufacturer thinks it built and what actually shipped has widened this year, because AI now writes much of the code. Teams move faster and review less. They no longer have visibility into every line, McConnell said, the way they did when people wrote it by hand.

Which is why an outside reading matters more than it did two years ago.

Companies have to “show their math,� McConnell said.

Insignary — Toronto. Founded 2016. Verifies a company’s software parts list

I published a Q&A with president and CEO Taek Wan Kim the Sunday before the show.

Kim

Nearly every company can now produce a software bill of materials, a list of the components inside its product. Almost none can prove the list is right.

AI widened the gap. A developer who wanted a library used to go and get it, and the license came along, so the record wrote itself. An assistant writes the code directly, and some of what it writes belongs to somebody else. Insignary reads the finished binary and reports what is actually in there.

Kim compares it to financial auditing. A company prepares its own statements, and investors still expect somebody independent to check them.

Jscrambler — Porto, Portugal. Founded 2014, roots to 2009. Accounts for outside code on company web pages

I talked with CEO and co-founder Rui Ribeiro in a Fireside Chat that ran as the show was getting underway.

Ribeiro

Fifteen years ago a company built its own web page and knew every piece of it. Then rich, dynamic pages got cheap and companies started bolting on components they did not build — payments, retargeting, chat. “All of a sudden you have 100 vendors on your website,� Ribeiro said. Each one got handed more access than its job required, and nobody was keeping track.

Now AI composes the page and decides on its own what to pull in. The supplier list grows without anyone approving it. “AI is going to pull whatever it decides into the supply chain,� Ribeiro said.

Jscrambler watches the page as it runs and reports what each component actually reached for. A company gets to decide what leaves its own site. Proprietary business information stops flowing out unnoticed.

Black Hills Information Security — Spearfish, S.D. Founded 2008. Boutique penetration testing, no outside funding

The other nine companies here sell a way to prove something. Founder John Strand sells the assessment itself.

Black Hills breaks into networks for a living, about a thousand assessments a year, and Strand now runs some of that work continuously, with AI hunting alongside his testers.

Strand

When his team finds a security hole, the answer has almost always been the same one: wait for the vendor to issue a patch and install it. That worked because finding a hole and building a working attack against it were separate jobs, and the second one took time. AI agents now do both at once, and a company can face a working attack with no patch coming.

The same tools work for the defense. “AI gives a lot of results,� Strand said, and a skilled human is what turns them into something a company can act on. His testers go through what the AI turns up, throw out what does not matter to that company, and hand the customer a short list of the holes that actually put the business at risk.

Acohido

Pulitzer Prize-winning business journalist Byron V. Acohido is dedicated to fostering public awareness about how to make the Internet as private and secure as it ought to be.

(Editor’s note: I used Claude and ChatGPT to assist with research compilation, source discovery, and early draft structuring. All interviews, analysis, fact-checking, and final writing are my own. I remain responsible for every claim and conclusion.)

August 12th, 2026 | Black Hat | Black Hat Podcasts | My Take | Top Stories