IT News You Can Use - Full Weekly Issue - Vol 341 Issue 2
Please share this newsletter with your IT friends and colleagues!
Frontier AI Raises the Cybersecurity Bar: Why Prediction Must Become Prevention
Enterprise AI Doesn't Fail at the Model or the Data - It Fails at the Layer Nobody Names
The AI Kill Switch Assumes You Know What You Are Trying to Shut Down
Per-Developer Environments Were the Goal. Agents Moved the Goalposts.
Enterprise AI Projects Fail Because Governance Is Ceded to a Vendor, Says CTO Advisor
Cybersecurity Professionals Who Ignore AI Are Arming Their Enemies
How AI Helps Defenders Keep Up and Where It Still Falls Short
Researchers Find AI-Powered Hacking Tools for Sale in Underground Forums
The Economics of Agent Optimization: From Pilots to Measurable Returns
Microsoft Wants You to Rethink Your Approach to Cyber Defense
Rubrik's First Month in Project Glasswing: High Fidelity and Humans in the Loop
When the Incident Hits: How Autonomous Business Recovery Executes Your M365 Plan
The Hidden Threat in Your Software Development Lifecycle: Why Self-Hosted Runners Need Zero Trust
Project Glasswing and the Coming Inversion of Vulnerability Management
Zero Trust Connectivity for Private AI Apps/Models: Who Can Actually Reach Them?
Ask a Lawyer: Law, AI, and Cyber Defense in 2026 (Aug. 26th)
FreeBSD Security in Production: Vulnerability Response and Operational Best Practices (Sept. 2nd)
The Priorities Defining CIO Success for 2027: Breaking Insights From the CIO Survey (Aug. 25th)
How SoFi Cut Recovery to Minutes Across Five AWS Regions and Made Backup Pay for Itself (Sept. 10th)
Frontier AI Raises the Cybersecurity Bar: Why Prediction Must Become Prevention
Frontier AI demands that cybersecurity shift from detection to predictive prevention against AI-assisted attacks. more →
Enterprise AI Doesn't Fail at the Model or the Data - It Fails at the Layer Nobody Names
Enterprise AI projects fail not at data or models but at the reasoning and governance layer. more →
The AI Kill Switch Assumes You Know What You Are Trying to Shut Down
An AI kill switch is easier to mandate than to execute, since real containment demands deep infrastructure visibility. more →
Per-Developer Environments Were the Goal. Agents Moved the Goalposts.
When one developer runs five agent sessions, the tenancy unit has to become the change, not the person. more →
Enterprise AI Projects Fail Because Governance Is Ceded to a Vendor, Says CTO Advisor
Keith Townsend argues AI projects fail at the reasoning plane, where vendors hold decision authority. more →
AI's Role in Project Management? A Question of Judgment
Gartner expects 80% of project management tasks to be automated by 2030, but judgment stays human. more →
How CIOs Build Teams That Scale w/ Brian Laird
CIO Brian Laird discusses team building, AI strategy, and demonstrating business value in IT leadership. more →
Why IT Leaders Should Not Lead With No w/ Bret Henning
IT leaders should engage employees with questions and alternatives rather than rejecting unapproved tools outright. more →
Why 6 GHz Wi-Fi Will Make or Break the Modern Enterprise
Up to 1,200 MHz of clean 6 GHz spectrum roughly triples capacity over the legacy 2.4 and 5 GHz bands. more →
Cybersecurity Professionals Who Ignore AI Are Arming Their Enemies
Security teams running manual processes cannot match AI-equipped attackers, making AI fluency a core skill. more →
How AI Helps Defenders Keep Up and Where It Still Falls Short
AI's real value to defenders is deciding what deserves human attention first, not doing more work. more →
What Happened at Black Hat
A first-time attendee's account of Black Hat 2026 vendor events, the NOC tour, and community moments. more →
Researchers Find AI-Powered Hacking Tools for Sale in Underground Forums
Trellix found AI attack services on dark web forums that hand novices APT-grade attack plans. more →
Outdated Cybercrime Laws Put Security Researchers at Risk
Only 15 of 154 countries with cybercrime statutes offer any legal protection for good-faith research. more →
Walmart Takes a 'Trusted Agent' Approach to Purple Teaming
Walmart colocates red and blue teams and embeds blue observers in red campaigns to kill win-lose dynamics. more →
Capability Is Closing the Open-Closed Gap; Security Is Not
F5 Labs' August CASI evaluation adds 16 models, with Anthropic's Claude Fable topping security and capability. more →
The Economics of Agent Optimization: From Pilots to Measurable Returns
Microsoft argues AI cost management is what moves organisations from agent pilots to measurable returns. more →
Microsoft Wants You to Rethink Your Approach to Cyber Defense
Microsoft says an exploit now costs $3.61 and 21 minutes to build, and MSRC volume is up ninefold. more →
Rubrik's Lessons From One Month With Mythos Preview
AI found vulnerability chains humans missed, then buried the security team in findings it could not triage. more →
Rubrik's First Month in Project Glasswing: High Fidelity and Humans in the Loop
Rubrik's CTO reports on its first month using Anthropic's Mythos Preview for internal threat discovery. more →
When the Incident Hits: How Autonomous Business Recovery Executes Your M365 Plan
Rubrik's Autonomous Business Recovery targets a minimum viable Microsoft 365 business state in under three hours. more →
WS-Trust Autologon Endpoint: Password Spray Without Smart Lockout Blocking
Varonis details a legacy Entra ID WS-Trust endpoint that lets attackers password spray past Smart Lockout. more →
The Hidden Threat in Your Software Development Lifecycle: Why Self-Hosted Runners Need Zero Trust
Zscaler argues self-hosted GitHub Actions runners create a privileged outbound risk that firewalls do not address. more →
Introducing Zscaler Zero Trust Gateway for Google Cloud
Zscaler launches a Zero Trust Gateway integrating with Google Cloud's Network Security Integration. more →
Project Glasswing and the Coming Inversion of Vulnerability Management
Zscaler argues Project Glasswing signals a shift where vulnerability discovery becomes abundant and remediation the constraint. more →
Zero Trust Connectivity for Private AI Apps/Models: Who Can Actually Reach Them?
Zscaler warns that VPN access to self-hosted AI models grants reachability to entire network segments. more →
Abyssos: Technical Analysis of a New Modular RAT
Zscaler ThreatLabz analyses Abyssos, a modular C++ RAT using LLVM-based obfuscation and a custom TCP protocol. more →
CaptiveCrunch: Midnight Blizzard Weaponizes Hotel Wi-Fi Captive Portals to Steal Microsoft 365 Credentials
Zscaler covers a Midnight Blizzard sub-cluster hijacking hotel captive portals for Microsoft 365 credential theft. more →
Agentic Runtime Security on AWS: Identity, Least Privilege, and Audit for AI Agents with IBM Verify Identity Access and HashiCorp Vault (Oct. 1st)
This hands-on workshop deploys a working reference implementation of five control objectives for agentic systems - verifiable agent identity, no standing privileges, actions tied to user intent, enforcement at the point of use, and audit evidence correlated across all three trust planes (user, workload, data) - using IBM Verify Identity Access and HashiCorp Vault on Amazon EKS. more →
A New Approach to Performance-Based Storage TCO (Aug. 26th)
Join us as we introduce a new performance-based approach to storage TCO. Learn how factors such as workload completion time, CPU utilization, energy consumption, and effective capacity influence the true cost of storage. The session will include a demonstration of SNIA's new TCO tool and show how it can help organizations make more informed storage decisions. more →
Ask a Lawyer: Law, AI, and Cyber Defense in 2026 (Aug. 26th)
In an age defined by rapid technological advancements, legal landscapes are continually evolving to address new challenges in the cybersecurity realm. Understanding the intersection of law, cybersecurity, and privacy has never been more critical. In this thought-provoking panel, legal experts will shed light on the emerging legal trends and issues that individuals, businesses, and organizations will face in the near future. more →
FreeBSD Security in Production: Vulnerability Response and Operational Best Practices (Sept. 2nd)
Join Klara’s Allan Jude and FreeBSD Security Officer Gordon Tetlow for a technical discussion on securing production FreeBSD systems. The session covers the security mechanisms available in FreeBSD, best practices for applying them, and will cover how the FreeBSD Security Team investigates vulnerabilities, publishes advisories, and delivers patches for supported releases. more →
Mainframe Data Recovery in Uncertain Times (Sept. 2nd)
Join experts from BMC and AWS for a one-hour webinar on how to address this risk directly - enabling automated, immutable disaster recovery for mainframe environments on AWS, with the speed, reliability, and security modern DR demands. Because continuity isn't defined by uptime - it's defined by recoverability and usability. more →
The Priorities Defining CIO Success for 2027: Breaking Insights From the CIO Survey (Aug. 25th)
Gartner will share key findings from the survey, including trends in technology spending, AI adoption and sourcing strategies. The discussion will help CIOs benchmark against their peers and prioritize business, technology and leadership outcomes amid continued volatility and change. more →
How SoFi Cut Recovery to Minutes Across Five AWS Regions and Made Backup Pay for Itself (Sept. 10th)
Join us for this live session featuring Shannon Bradley, Manager of DevOps Engineering at SoFi, who will cover the resilience patterns that keep it working across regions. more →
Consistency Is a Sales Skill — and Your Newsletter Proves It
How to Use LinkedIn Newsletters to Stay Top-Of-Mind (Aug. 18th)
Rapid Identity Recovery: Lessons from Frontline Incident Response (Aug. 18th)
Since 1999, Data Connectors has been facilitating relationships between senior executives who are looking for solutions and the vendors who provide them. Our community encompasses more than 650,000 professionals.
We produce this daily curation of industry news and events as a value to our community for free.
Upgrade to a Paid substack subscription to receive additional valuable posts. You will be supporting the community and will allow us to produce this service and to develop additional services.

Comments
Nothing yet. Say the first thing.
Sign in to join the conversation.