top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


FCC Extends Lifeline for Foreign-Made Routers, Prioritizing Cybersecurity Over Hardline Ban
In a move that underscores the tension between national security and operational cybersecurity, the Federal Communications Commission has extended temporary waivers allowing certain foreign-made routers and drones already deployed in the United States to continue receiving critical software and firmware updates through January 1, 2029. The decision reverses an earlier trajectory that would have cut off updates by 2027 for devices placed on the agency’s “Covered List,” a desig
May 11


Backdoored Jenkins Plugin Signals Escalation in TeamPCP Supply Chain Campaign
A fresh compromise of a widely used CI/CD security integration is raising new alarms about the persistence and sophistication of modern software supply chain attacks. SOC Radar researchers are warning that the threat actor known as TeamPCP has once again infiltrated infrastructure tied to Checkmarx, this time targeting its plugin for Jenkins. The incident centers on a backdoored release of the Checkmarx Jenkins plugin, a tool designed to embed application security testing dir
May 11


Cyber Risk Plateaus on the Surface While AI and Supply Chain Gaps Deepen, New UK Survey Finds
A new UK government study reveals a cybersecurity landscape that appears stable at first glance but is quietly becoming more complex and fragile beneath the surface. The latest findings from the UK Gov's Cyber Security Breaches Survey show that while the overall rate of reported cyber incidents has leveled off, structural weaknesses tied to third-party risk and rapid AI adoption are reshaping enterprise exposure. The report, commissioned by the Department for Science, Innovat
May 1


Disrupting the Attack Cycle: How Modern Adversaries Move from Belief to Targeting in a Data-Rich World
This guest article was contributed by Chuck Randolph, Chief Strategy Officer at 360 Privacy Enterprise security models have long assumed that attacks begin when an adversary starts collecting information about a target. That assumption made sense in an era when surveillance, casing, and reconnaissance were visible early indicators of hostile intent. Today, the earliest stages of many attacks occur long before any operational behavior is detectable. They begin when an individu
May 1


Intruder Unveils AI Pentesting Agents as Continuous Security Becomes a Requirement in the AI Era
As artificial intelligence accelerates both cyberattacks and defensive capabilities, security teams are facing a structural shift in how vulnerabilities are discovered and exploited. Intruder is betting that traditional penetration testing is no longer sufficient, launching a new AI-driven approach designed to operate continuously rather than periodically. The company’s newly announced AI Pentesting capability introduces autonomous agents that investigate and validate vulnera
Apr 30


Keeper Security Targets AI Credential Leakage With New Agent Kit for Developer Workflows
As enterprises accelerate adoption of AI coding assistants, a new class of security risk is emerging: sensitive credentials leaking into prompts, chat histories, and external model logs. Keeper Security is moving to close that gap with the launch of its Keeper Agent Kit, a framework designed to secure how AI agents access secrets and infrastructure. Announced April 30, 2026, the new toolkit integrates directly with widely used AI developer platforms including GitHub Copilot,
Apr 30
bottom of page