Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

How Businesses Can Adopt AI Tools Without Compromising Security

Someone in marketing starts using an AI writing tool. A finance team member feeds spreadsheets into an AI summariser because it saves an hour every Friday. A manager wires up a chatbot to handle basic customer questions. None of it goes anywhere near IT first, and most businesses only find out after the fact, if they find out at all.

On-Premise vs. Cloud IGA: How Do You Choose the Right Deployment for Your Organization?

Choosing the right deployment model for your Identity Governance and Administration (IGA) system is a high-stakes decision that affects many aspects of your organization. It determines how you manage access across your entire enterprise. It also dictates your audit readiness and integration capabilities. Now you might assume that the cloud is the only modern option. However, many organizations are changing their infrastructure strategies.

The risk of using abandoned packages in the age of LLMs

This post is an unfortunate affirmation of our prior research into abandoned open-source packages, where we found that 11% of the most-downloaded packages have been abandoned and not actively maintained, becoming invisible vulnerabilities to your scanner. Today we share a zip-slip vulnerability we found in extract-zip (CVE-2026-19693), an npm package with over 20 million weekly downloads.

American Cyber Mercenaries - The 443 Podcast - Episode 383

This week on the podcast, we discuss a new White House memorandum that creates a program to authorize American private companies to begin conducting offensive cyber operations. Before that, we discuss a vulnerability write up for a Citrix Netscaler flaw before covering yet another prompt injection vulnerability in a popular AI tool.

Episode 21 - Building AI Harnesses to Unify Detection and Response

Corelight Senior Security Engineer Jordan Hair joins Richard Bejtlich to break down how defense teams can leverage agentic AI harnesses to transform traditional security operations. By wrapping deterministic code around large language models, Hare created automated agents for alert triage, threat hunting, and detection engineering that shrink routine investigations from 45 minutes down to seconds.

Whos watching your AI A security leader panel on runtime visibility and accountability

AI is making decisions across your environment — calling APIs, accessing data, and taking action. Most organizations know it's happening, but far fewer can see it, let alone stop it. In this panel discussion, security leaders will share what they've learned deploying and governing AI workloads at scale on AWS, and what it takes to close the gap between deployment and accountability.

How to stop sensitive data leaking into ChatGPT, Copilot and other GenAI tools

AI productivity tools are creating a prompt-level data leakage problem: 77% of employees paste data into generative AI tools, and 82% of that activity comes from unmanaged accounts, according to the LayerX Enterprise AI and SaaS Data Security Report 2025. Every paste into ChatGPT, Copilot or another GenAI tool is a potential exposure of sensitive data that traditional file-focused controls were never built to see.

Evaluating AI systems at Corelight

AI system evaluation is the process of continuously assessing AI system capabilities, limitations, and performance through quantitative and qualitative measures. Across the system lifecycle, evals provide continuous assurance: Validating system behavior before deployment and detecting drift, bias, and reliability issues in production.