AI Governance
AI audit readiness: a practical checklist for CISOs
AI is already in your estate. The only question is whether you discover it in an AI audit or an incident report.
AI Governance
AI is already in your estate. The only question is whether you discover it in an AI audit or an incident report.
sovereign ai
This article breaks down five reasons governance teams are pivoting to self hosted models over ChatGPT style APIs, and two alternatives most overlook: SaaS with BYOK AI backends, and regional providers that satisfy residency requirements.
Article
Swiss banks understood the risks of foreign infrastructure. AI now shows why data sovereignty must cover inference, not just storage.
EU AI Act
A practical guide to where ISO 42001 helps, where the EU AI Act bites, and how to use both without building two separate programs.
Article
Malicious LiteLLM releases reached PyPI for about 40 minutes. Here is what the incident reveals about dependency security and detection time.
Article
GLM-5.3’s CyberGym result points to faster vulnerability discovery, but we still need human oversight
Article
Two new Apache Struts CVEs show how a bank‑built AI harness for Claude Opus 4.8 can find real, unauthenticated DoS flaws in the legacy Java frameworks powering global banking.
Article
A Cursor coding agent wiped a production database and its backups through a valid API call. Traditional DLP could not catch it.
EU AI Act
The EU Cyber Resilience Act mandates 24-hour reporting for actively exploited vulnerabilities from September 2026
AI Security
From OpenAI's Daybreak to Anthropic's Glasswing: AI Has Accelerated the Wrong Half of Security
Article
How a 60MB .map File Exposed Half a Million Lines of TypeScript — and What Happened Next
Article
In the rush to "go AI," most small and medium-sized enterprises (SMEs) share a common misconception: “We aren’t tech developers, so we don’t need an AI strategy".