Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Just vibe code it...

Sometimes unlimited tokens and rippin' guitar riffs can't solve every problem. The best builders know what NOT to build. Vibe coding might cut down on time, but that's only a fraction (20%) of the total software lifecycle cost. The other 70–80%? Maintenance, security patches, compliance updates. The slow grind of keeping it alive in production. When it comes to something as complex and critical as keeping your security airtight, depth wins over speed every time.

An HR Leader's Guide to Insider Risk Management

HR teams manage every stage of the employee lifecycle, from hiring and onboarding to performance management and offboarding. Security teams manage data access, behavioral monitoring, and incident response. Insider risk lives at the intersection of both. When HR and security operate independently, the gaps between them are exactly where data loss happens, and the moments of highest exposure are almost always HR events, such as a resignation submitted, a role change processed, a termination decision made.

New in ggshield 1.51: Codex Hooks, MCP Discovery, and SLSA Provenance

ggshield 1.51 is here with better support for AI-powered development and browser-less environments. This release adds Codex hook support, MCP server detection across Claude and Cursor, and `ggshield auth login --method oob` for SSH sessions and headless servers. It also strengthens trust in the ggshield supply chain with GitHub Artifact Attestations for release binaries, improves plugin management through your authenticated GitGuardian instance, adds a `vscode` alias for Copilot hook installation, and shows workspace ID in `ggshield api-status`.

Charlotte AI AgentWorks: Build Your Security Workforce Demo

Today’s adversaries move at the speed of AI, so defenders need to reason, decide, and act faster across every stage of security operations. Meet Charlotte AI AgentWorks, a no-code agent builder that enables teams to create mission-ready AI agents directly inside the CrowdStrike Falcon platform.

Falcon Shield: Securing GitHub Enterprise

Learn how CrowdStrike Falcon Shield helps organizations harden their GitHub Enterprise environments against state-sponsored adversaries like FAMOUS CHOLLIMA. A DPRK-nexus threat actor actively targeting developer environments in 2026. This demo showcases how Falcon Shield continuously monitors GitHub Enterprise for misconfigurations, exposed CI/CD secrets, over-permissioned tokens, and other security risks that adversaries exploit to launch supply chain attacks.

Lightboard Lab: Why Defenders Fight Blind

Modern adversaries do not break in loudly anymore. They log in, blend in, and move faster than most security teams can respond. In CrowdStrike’s 2026 Global Threat Report, the fastest observed breakout time was just 27 seconds, while 82% of detections were malware-free. Traditional defenses were not built for attacks that look like normal activity. This lightboard session breaks down why defenders are struggling to keep up, how modern adversaries operate across identities and cloud environments, and why the gap between intelligence and action continues to grow.

ITSP: Corelight launches Agentic AI that makes SOC triage 10x faster

Modern SOCs face a difficult reality: attackers are moving faster while analysts are being asked to investigate more alerts than ever. Learn how agentic triage helps security teams move from alert overload to evidence-backed investigations. Rather than relying on opaque AI outputs, the approach uses expert-written playbooks and exposes the underlying queries and evidence so analysts can verify conclusions against raw network data.

Persona is one of the first verification vendors to accept California's mobile driver's license

During identity verification, organizations typically have to decide between increasing security controls and improving user conversion. Tighter checks mean more abandonment, and smoother flows mean more risk. Most verification flow design is an exercise in finding the right tradeoff. Mobile driver's licenses (mDLs) are different. Because an mDL is cryptographically signed by the issuing DMV and presented directly from a user's device, it's both faster to verify and harder to fake.