< ciso
brief />
Tag Banner

All news with #agentic ai tag

849 articles · page 3 of 43

Kitesurf update: agentic browser advances

🛰️ Since its August debut, Kitesurf — a browser built to serve AI agents and running on Cloudflare Workers — has gained WebMCP support, broader web standards compatibility, and major efficiency improvements. Developers can test WebMCP-enabled pages in the Kitesurf playground and use Kitesurf through Browser Run with CDP, Playwright, Puppeteer, or MCP. The team also added a terminal renderer and expanded Web Platform Tests coverage while keeping resource use near launch benchmarks.
read more →

Securing AI Agents with NVIDIA OpenShell

🔒 This article examines how NVIDIA Open Agent Safety Platform and Check Point's semantic monitoring address gaps in autonomous agent control. It explains that prompts and model safeguards can be circumvented, so OpenShell enforces an infrastructure-level boundary while NVIDIA Sentry provides out-of-band hardware-isolated enforcement. Check Point integrates semantic monitoring to judge whether successive actions still match the agent's task and enforces controls through OpenShell's middleware.
read more →

Cloudflare founders outline 2026 vision for the Internet

🌐 Cloudflare marks its 16th anniversary with a founders' letter describing major shifts in the Internet driven by AI. The company highlights a resurgence in web growth since 2025, fueled by new creators using low-code tools and Cloudflare's developer platform. It warns that agent-driven automated traffic, now rising rapidly, could disadvantage small businesses and new entrants unless the ecosystem adapts. Cloudflare says it's introducing measures to reduce crawler load and enable creators to be compensated as agents access their content.
read more →

Zero Trust for AI Agents Begins with Visibility

🔍 Organizations racing to deploy AI agents face critical visibility gaps that undermine governance. Research shows many AI workflows touch sensitive data without oversight, and Shadow AI complicates discovery. The SANS cheat sheet emphasizes inventory before enforcement: you cannot govern what you cannot see. Practical steps include treating agent spend and API keys as discovery signals, correlating network, endpoint, browser, and SaaS telemetry, and giving each agent a distinct identity for logging and authorization.
read more →

Anthropic AI misuse report highlights evolving threats

📝 Anthropic published a detailed report cataloging observed misuses of its Claude models, later summarized into 117 findings by Daniel Meissler. The findings show AI agents increasingly automating reconnaissance, exploitation, and data theft while humans retained target selection and oversight. The report also documents influence operations, surveillance and repression use cases, and dual-use risks in biological and military contexts.
read more →

Agent Harnesses, Shifting Left, and Autonomous Coding

🧭 This recap summarizes a conversation with Ryan Lopopolo on building autonomous coding agents using an agent harness around an LLM. It explains how harness engineering, shifting interventions left, and providing discoverable tools and documentation enable agents to operate autonomously and produce reviewable artifacts like pull requests. The piece also covers practical harness patterns, tooling choices, and advice to avoid bespoke scaffolding.
read more →

Google Named a Leader in 2026 Container Management

🚀 Google Cloud was named a Leader in the 2026 Gartner® Magic Quadrant™ for Container Management, ranking highest for Ability to Execute. The accompanying Gartner Critical Capabilities report placed Google Cloud first across all evaluated use cases, including AI training and inference. Google highlights recent GKE and Cloud Run innovations—like predictive latency boosts, rapid startup times, serverless GPU scale-to-zero, and Agent Substrate/Sandbox—to support enterprise and AI workloads at scale. The post invites users to try the open-source Agent projects and explore Cloud Run and GKE enhancements.
read more →

Microsoft Foundry enhances agent model choice and tooling

🛠️ Microsoft announces updates to Foundry, offering expanded model options, native voice agents, long-running resilience, and continuous optimization tools to help teams build and operate production agents faster. The platform now supports recent frontier models like GPT-6 family and Claude Opus 5.5, voice agents in public preview with expressive multi-lingual capabilities, and developer tooling such as the Foundry Toolkit for VS Code. Enterprise governance features integrate with Microsoft Entra and include network egress controls, audit capabilities, and upcoming AI Gateway integration for centralized policy management.
read more →

GKE agentic migration for safer cloud modernizations

🔧 Google Cloud released the open-source GKE agentic migration plugin to simplify migrations from AWS EKS to Google Kubernetes Engine. The tool combines LLM-driven translations with deterministic server-side validation and GitOps PR workflows to avoid direct changes to live clusters. It persists long-running migration state for multi-persona handoffs and produces runbooks for stateful transport, enabling human-in-the-loop approvals and safer, auditable migrations.
read more →

September 2026 Microsoft Security updates and features

🔒 This post summarizes September 2026 security updates across Microsoft Security, highlighting new controls for local AI agents, expanded Zero Trust for agentic traffic, and SOC improvements. It covers AI-powered detonation summaries for emails, Purview and Entra integration for data protection, Purview auto-labeling and eDiscovery enhancements, data lifecycle management for SharePoint, and new GCC High capabilities for Intune and PKI.
read more →

AlloyDB Introduces PostgreSQL for Agentic Workloads

🚀 AlloyDB now offers PostgreSQL for agents (preview), enabling sandboxed, serverless PostgreSQL instances that provide up-to-the-second read-only access to production data while isolating agent workloads. These instances spin up in seconds, leverage Colossus-backed unified storage for sub-millisecond I/O and massive scan throughput, and scale down to zero to control costs. The engine remains fully PostgreSQL-compatible with vector, full-text, and spatial search plus strong Google Cloud security integrations.
read more →

AlloyDB Agentic Database Architecture Explained

🧭 This post outlines AlloyDB’s new agentic database architecture designed for autonomous agent workloads, arguing that traditional and emerging architectures trade off scale, latency, or isolation. It defines three tenets—Isolation, Latency, and Scale—and explains how AlloyDB, built on Google’s Colossus storage and microVM-based ephemeral compute, satisfies all three simultaneously. The article contrasts existing paradigms and presents test results showing shared-storage approaches fail under agentic load.
read more →

Controlling AI Agents Before They Become Privileged Insiders

🔒 AI agents are evolving into autonomous enterprise workers that do more than generate content: they read email, access SaaS, call APIs, modify records and execute workflows. This shift introduces insider-like risk because agents can act with high autonomy and broad access. Leaders must move beyond traditional IAM to enforce action-level and runtime controls, assign human owners, and apply lifecycle governance to ensure agents are discovered, monitored, and constrained.
read more →

Reimagining the SOC for the agentic era

🔐 Microsoft announces an Integrated Security Operations Center (ISOC) in Microsoft Defender to unify SIEM and threat protection into a single platform. ISOC provides combined signals, context, and actuators so humans and agents can operate as one system, enabling faster detection, investigation, and automated response. The preview is available now.
read more →

XRanges for AI: A practical agent evaluation platform

🛡️ XRanges for AI provides a reproducible workspace for evaluating autonomous security agents by deploying realistic, multi-service target applications with built-in instrumentation. The platform records agent activity via OpenTelemetry, scores runs on four independent signals—coverage, boundaries, exploited, and integrity—and surfaces blind spots and violations in real time. It supports high-concurrency deployments, API-driven automation, and retesting without redeploying, enabling meaningful comparisons across models, prompts, and repetitions.
read more →

Secure intelligent experiences across every endpoint

🔒 Google outlines its Intelligent Endpoints strategy to boost productivity while protecting corporate data across browsers, operating systems, and hardware. The company highlights agentic AI in Chrome and an enterprise Skills library to automate multi-step tasks and deliver vetted workflows. Chrome Enterprise Premium extends browser-based security and DLP to legacy apps and mobile devices, while new GenAI reporting improves visibility and corrective controls for IT teams.
read more →

Okta's bid to control AI agents through identity

🔐 Okta is positioning identity as the primary control plane for securing AI agents, unveiling Okta for AI Agents and enhancements like Agent SSO, agent-to-agent rules, and runtime policy and logging. The company argues identity can help manage agentic risk, but experts caution that authentication is only the first step and agents introduce scale and delegation challenges. Market competition is intense as hyperscalers, IAM vendors, and security firms vie to be the control plane.
read more →

AWS releases Marketplace AI metering agent skill

🤖 AWS announced general availability of the AWS Marketplace metering agent skill, an AI-guided assistant that helps sellers build, deploy, and validate usage-based SaaS metering integrations from within their AI coding assistant. The skill collects product details, recommends APIs, generates integration code and a tailored CloudFormation stack, and runs end-to-end tests against AWS Marketplace. It supports validation, guardrails, a serverless metering pipeline, Concurrent Agreements, and debugging tools, and is available via the AWS MCP Server to MCP-compatible AI coding assistants with no plugin installation required.
read more →

AI agents reshape identity and access risks

🔒 AI agents change how we evaluate access by turning permissions into exploration paths that can discover credentials and combine identities across systems. Autonomous agents persistently test many actions, often using hard-coded credentials and exploiting trust boundaries, as seen in notable incidents like Hugging Face in July 2026. Security teams must map full access chains, assign ownership, and enforce continuous identity governance to constrain an agent's effective blast radius.
read more →

CLOSEDQUORUM: First Autonomous AI C2 Implant

🔍 Cisco Talos describes CLOSEDQUORUM, a Windows implant that delegates tactical command-and-control decisions to a closed panel of commercial LLMs. The binary queries up to four providers (DeepSeek, Qwen, Mistral, Gemini), aggregates JSON-formatted verdicts by plurality voting, and maps chosen decisions to capabilities like credential theft, process injection, and persistence. Development builds show operator-specific API credentials; the public build contains dummy keys, and defenders are advised to prioritize behavioral detections over simple domain blocking.
read more →