Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Secure Agent Harness Execution: Preventing Escape

At CrowdStrike, we conduct extensive red-team testing of agentic systems using diverse models, tools, and adversarial evaluation harnesses designed to probe for containment failures. To date, none of our offensive agents have escaped their intended sandbox boundaries.

The AI agent working for you probably has more access than you do

Say a sales rep uses an AI assistant to help manage their pipeline. The rep has role-based access to Salesforce, scoped to their territory and their accounts. The assistant, wired in through an API integration, often doesn't have that same scoping. It authenticates as a service account with broad read and write access across the org, because that was faster to set up than a permission model that matches what the actual user is allowed to see.

Automate your GRC program with the Vanta Agent

Your compliance program never sits still. Controls drift, tests fail, policies go out of date. The Vanta Agent keeps up. It has full context on your program through Vanta's Trust Graph, so it never hits a dead end. It always recommends the next step. The Trust Graph is Vanta's data and intelligence layer, powered by 400+ integrations that map your risks, controls, policies, and vendors. Add continuous monitoring, risk scoring, automated testing, and framework mapping, and the Agent works with the full picture.

Zenity Now Integrates with Microsoft Agent 365

AI agents have moved from pilots into broad enterprise use. They read email, query systems of record, take actions, invoke tools, and coordinate with other agents on behalf of employees. Every line of business wants more of them, and security teams are being asked to enable that expansion without losing visibility or control.

AI Governance vs AI Compliance: What's the Difference?

The main difference between AI governance and AI compliance is that AI governance is the internal framework an organization develops to manage AI responsibly, while AI compliance is how organizations demonstrate to external regulators that they’re adhering to applicable laws and regulations. These two terms get used interchangeably, but they solve different problems. With compliance alone, an organization can satisfy regulators without meaningfully controlling how its AI behaves.

AI's Hidden Identity Risk for MSPs

Organizations are rapidly integrating AI into everyday business operations. Teams are using Microsoft Copilot and Gemini to summarize meetings, developers are accelerating software delivery with coding copilots and customer service teams are deploying AI-powered chatbots to improve response times. While these initiatives are viewed through the lens of productivity and innovation, they are also reshaping organizations’ identity environments in ways that frequently go unnoticed.

July Release Rollup: Bulk Extraction, Enhanced AI Assistant UI, and More

July's release makes AI more useful across the Egnyte platform, with major enhancements to AI Assistant that make it easier to build agents, create documents, have more natural conversations, and securely connect AI tools through Egnyte MCP Server.

Introducing the Cyber AI Readiness Accelerator: Outpace Your Adversary with Exposure Management

AI has overwhelmingly changed how organizations build and grow. It’s also changed how attackers find and exploit exposures and weaknesses. The window between “exposure exists” and “exposure is exploited” is shrinking, and most security teams already feel it.

In AI, No One Can Hear the Sandbox Scream

Aaron Beardslee, Security Researcher, Securonix Threat Labs As many of you have heard, OpenAI was running a cyber-capability evaluation against advanced models, including GPT-5.6 Sol and a more capable pre-release model with reduced cyber refusals. The environment was meant to be constrained and the model still brute forced through it.