top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


North Korean Hackers Turn Ethereum Into Malware Infrastructure in New npm Campaign
DPRK-linked threat actors are abusing Ethereum transactions as a stealthy command-and-control mechanism in a new software supply chain campaign targeting npm developers, according to research from Sonatype. Sonatype Research Labs said it discovered six npm packages carrying the same malicious loader, including three legitimate packages that appear to have been compromised and three packages created with the malware already embedded. The affected legitimate packages include @k
Aug 10


OpenAI Pauses Astra Work as AI Cybersecurity Fears Escalate
OpenAI has paused some internal work involving an unreleased AI model called Astra after preliminary testing raised the possibility that the system could autonomously carry out sophisticated cyberattacks. The disclosure adds to growing concern over the cybersecurity capabilities of frontier AI models following a series of incidents involving systems developed by OpenAI, Anthropic and Meta. OpenAI said Astra may have reached what the company classifies as a “Critical” cybersec
Aug 10


Future-Proofing Beyond the Next Threat: Why Adaptability Is Becoming the New Cyber Strategy
This guest article was contributed by Mike Collett, Executive Director, Business Development (DOJ), ITC Federal Today’s cyber threats develop faster than enterprise technology refresh cycles. New vulnerabilities can emerge overnight, and the longer it takes technology environments to adapt, the higher the operational risk. Technology investments that once remained effective for years can become operational liabilities if they are not designed to transform. And that’s a criti
Aug 10


SailPoint Unifies Human, Machine, and AI Agent Identity Security
SailPoint is expanding its identity security platform to address a problem rapidly moving beyond traditional employee access: the growing population of AI agents, service accounts, software bots, and other non-human identities operating inside enterprise environments. The company introduced a unified SailPoint Identity Security solution that combines its newly available Agentic Fabric with Human Fabric, an evolution of the SailPoint Identity Security Cloud. The platform is de
Aug 4


BeyondTrust Research Finds Identity and Privilege Exposure Behind 75% of Cyberattacks
An analysis of more than 400 offensive security projects shows attackers are increasingly exploiting connections between human users, machine identities, cloud services, and AI agents. Identity security failures are emerging as the connective tissue behind modern cyberattacks, according to new research from BeyondTrust. The company’s Phantom Labs Research Index found that identity or privilege exposure played a role in 75% of more than 400 offensive security investigations co
Aug 4


CISOs Are Briefing Boards Regularly, but Cyber Risk Is Still Getting Lost in Translation
Corporate boards are hearing from cybersecurity leaders on a predictable schedule, yet many may still lack a clear picture of the threats facing their businesses. New research from Pulse Security AI found that only 12.5 percent of chief information security officers are “very confident” their board understands the true state of the cybersecurity program after a presentation. The findings point to a deeper governance problem that cannot be solved by polishing slides or removin
Aug 4
bottom of page