Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Wild code: You can't govern what you can't see

AI changed who can build. Employees across the business can now create workflows – apps, agents, and automations, faster than ever before. The result is a growing wave of “wild code”: AI-generated software, automations, and agents that solve real business problems but exist outside traditional governance, operational ownership, and support models. For IT, this creates a new challenge. How do you empower teams to move quickly without creating more risk, complexity, and technical debt? How do you support innovation without opening the door to shadow AI, data leakage, and unmanaged systems?

Digital Risk Protection in the Age of AI

Digital risk has expanded far beyond the traditional security perimeter. Brands now operate across social platforms, advertising ecosystems, messaging applications, collaboration tools, marketplaces, and dozens of other digital channels. Each represents an opportunity to connect with customers. Each also creates opportunities for abuse. A fraudulent advertisement can direct users to a spoofed login page. A fake social media account can support an executive impersonation campaign.

AI Is Shrinking Attack Timelines: Why Containment Can't Wait

How fast do organizations need to respond to cyber threats today? In this short video, Daniel Trivellato, VP of OT, Healthcare and Cyber Risk Solutions at Forescout, explains why containment can no longer be treated as the final step in incident response. As AI accelerates the time between vulnerability discovery and exploitation, security teams have less time than ever to investigate and react.

Why wild code is the next big challenge for CIOs

Tines co-founder and COO Thomas Kinsella recently joined Peter High on the Technovation podcast to talk about the evolution of Tines, the rise of "wild code," and why agents aren’t always the right tools for the job. The conversation covered a lot of ground — from the original problem that inspired Tines, to how teams should think about combining AI agents, deterministic automation, and humans in a single workflow. Here, we’ll share some of the highlights.

PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting

CrowdStrike Counter Adversary Operations identified a financially motivated threat actor who works as a bug bounty hunter and who developed and distributed the JavaScript (JS)-based information stealer PhantomRaven via npm, a platform on which developers can access open-source packages to build applications and software.

Protect Sensitive Data in LibreChat with Protecto | PII Masking Demo

Most DLP tools can mask a PII value on the way into a model. Almost none of them can make that value usable again when the AI needs to call a tool with it, so the masking breaks the workflow instead of protecting it. This is Protecto Privacy Gateway for AI Chat, live in a self-hosted LibreChat deployment. Watch what happens when a masked account number needs to resolve at a tool boundary — and comes back correct.

AI Agents Are Forcing Us to Rethink Identity

Since joining BlueVoyant in May, I’ve spent my first 100 days listening. I've had conversations with nearly 50 customers and partners across industries and geographies, as well as the broader security industry, engaging with leaders at Black Hat last month. What I heard reinforced something I believe strongly: the security challenges organizations face today are changing faster than the traditional enterprise security model was designed to handle.

Never Join AI Telemetry on Byte Counts

A browser sensor reports that somebody pasted 18,000 characters into an AI tool. A network sensor reports a 24 kilobyte upload to the same destination. Joining those two records on size looks reasonable and is the wrong instinct. ‍ The two numbers describe different objects with several transformations between them, and the transformations do not all run in the same direction. The error cannot even be signed, which rules out a tolerance as well as an equality. ‍

AI Autonomy: How to Find the Autonomy Your Agents Already Have

AI agents are only as autonomous as the credentials behind them. This article talks about the Cloud Security Alliance's autonomy framework, why an agent's intended boundaries rarely match its actual access, and how GitGuardian helps close that gap through detection, remediation, and prevention.