Posts

Filigran XTM One: Automating continuous threat exposure management

- Automates continuous threat exposure management (CTEM) workflows  - Enables full model flexibility and on-premises deployment - Reduces analyst workload and time-to-value Filigran, the open-source threat management company, has released XTM One, an AI-native agentic layer that automates CTEM workflows across the Filigran XTM Platform.  XTM One  introduces a dedicated AI orchestration layer that connects  OpenCTI  and  OpenAEV  into a single, continuous workflow.  Filigran explained that traditionally, security teams would have to move manually between tools, ingesting threat intelligence in one system, building attack scenarios in another, and tracking remediation in separate dashboards.  XTM One automates those handoffs by coordinating AI agents across the lifecycle, creating a continuous path from raw threat intelligence to validated defensive action while preserving full visibility and control.  The XTM Platform already includes ...

Why “strong” passwords still fail (and what to do instead)

Image
By Tomer Bar, Semperis, Associate VP of Security Research We’ve been using passwords to prove who we are since the very first multiuser computers. Decades later, they’re still with us—and still causing trouble. Passwords have a terrible reputation, but that’s not really the password’s fault. It’s ours. Most of the risk comes from human limitations and predictable behaviour, not from the mathematics behind “guessing every possible combination”. Concept artwork generated by Google Gemini on the topic of rainbow tables. This image might be factually inaccurate. Let’s look at why “strong” passwords can be weaker than you think, what advanced attackers do and how to choose passwords that are hard to crack. The comforting myth is that a 10-character password using upper and lowercase letters, numbers, special characters must be secure simply because its theoretical number of combinations is enormous. The total search space is in the order of tens of quintillions of combinations (around ...

NVIDIA brings secure agent workspaces and confidential computing to AI factories

As enterprise AI use cases move from chatbots to persistent, autonomous agents capable of reasoning, writing their own software tools, and executing complex cross-system workflows, demands on token generation fundamentally rewrite the enterprise model for security, compliance, infrastructure and cost.  To scale safely, organisations need AI factories  that are built for secure, trusted and efficient AI production. NVIDIA is supporting this trend with new reference architectures for  Secure Agent Workspaces ,  Confidential VMs and Confidential Containers .  Legacy IT security controls — static credentials, network allowlists and standard role-based access — were not designed for autonomous agents, NVIDIA said. Securing an AI factory requires a paradigm shift to runtime-enforced, policy-driven guardrails. Enterprises need secure agent workspaces — persistent, single-user environments accessed via enterprise single sign-on. Secure agent workspaces are governed by...

A trillion-parameter AI supercomputer on every enterprise desk

- NVIDIA has positioned the DGX Station for Windows as the world’s most powerful deskside AI supercomputer - DGX Station brings frontier AI agents to Windows - DGX Station will support NVIDIA OpenShell on Windows, built on new Windows security and containment primitives    NVIDIA has announced NVIDIA DGX Station for Windows, billing it "the world’s most powerful deskside AI supercomputer designed to build, run and connect always-on AI agents to Windows applications and workflows". The system is capable of running frontier AI models of up to 1 trillion parameters locally. Historically, heavy-duty enterprise AI workloads — training, fine-tuning, large-scale inference and multi-agent development — have required powerful AI systems in the data centre that run on Linux, while the vast majority of Fortune 500 companies use Windows for everyday productivity, creative, design and engineering applications, NVIDIA observed. Building on the NVIDIA DGX Station system design, DGX Station ...

Ping Identity redefines identity control for agentic enterprises

- AI-first headless interfaces and skills make enterprise identity programmable - AI agent governance delivered across the full lifecycle - Privileged access for AI agents without exposing secrets Ping Identity, which securing digital identities for the world’s largest enterprises, has announced new capabilities that extend the Ping Identity Platform for the agentic enterprise. The company's vision is one where AI agents, builders, and automation increasingly participate in how access is configured, governed, and used across organisations. According to Ping, AI agents are changing both sides of the identity equation. They are new actors that need to be discovered, governed, and managed across their lifecycle, and they are also new operators that can help builders administer and secure identity environments through machine-native interfaces.  At the same time, desktop agents and AI assistants are beginning to interact with enterprise applications and resources on behalf of us...

How enterprise data centre customers can power the AI era without powering up emissions

Image
By Phil Scanlon, Senior VP, Global Solution Engineering, Solace Source: Solace. Scanlon. Data centres are often described as the unseen backbone of our digital economy – and increasingly, of the AI revolution. Across the Asia Pacific (APAC), rapid expansion is cementing the region’s position as the next major data centre hub, with an estimated US$800 billion in investment expected by 2030. Yet this momentum presents a paradox. While data centres are catalysts for unprecedented economic opportunity, they are simultaneously exerting mounting strain on energy systems already in the throes of transition. Electricity demand from data centres is projected to quintuple by the mid-2030s, with the sector projected to account for 2.3% of the region’s electricity consumption by 2030 – the second-highest regional share globally. To date, much of the sustainability dialogue has focused on the responsibilities of data centre operators – from improving hardware efficiency and cooling in...

Thales to build drone traffic management platform for Singapore

Image
- The Civil Aviation Authority of Singapore (CAAS) has awarded Thales, as the leading partner in a consortium with Deeeplabs, a contract to deliver a portal for the approval and tracking of all unmanned aircraft (UA) operations in Singapore.  - The solution will combine Thales’ aviation expertise with strong local digital and cloud capabilities to support the development of Singapore’s national drone ecosystem.    CAAS has awarded Thales, as the leading partner in a consortium with Singapore-based Deeeplabs, a contract to deliver an unmanned aircraft systems (UAS) traffic management (UTM) system based on the TopSky - AstraUTM platform. Deeeplabs will support deployment and operational services.  Source: Thales. From left: Keith Huang, Deputy Director (Unmanned Sys Tech, Engineering & Planning), CAAS; Tan Chun Wei, Director (Unmanned Systems Technology, Engineering & Planning), CAAS; Emily Tan, CEO and Country Director, Thales in Singapore; and...