Black Hat 2026 made one thing clear: AI is reshaping cybersecurity, but the industry is still working through what secure adoption looks like in practice. In this wrap-up discussion, Jackie McGuire and Mike Shema reflect on the biggest themes from the event, including AI agents, non-human identities, secure-by-design principles, and the challenge o...
AI agents can independently discover and install new tools, but the emerging ecosystem of AI Skills and MCP servers lacks many of the trust and security controls applied to traditional software. Michael Leland will discuss Island research uncovering thousands of malicious repositories, widespread security flaws across MCP servers, and a new attack ...
Appsec often frames usability and security as at odds with each other. Apple's software has famously emphasized the importance of usability while also creating a solid security foundation. Patrick Wardle talks about how he's seen malware shift from Windows to macOS, how Apple's aggressive stance on deprecation benefits security, and the areas of th...
AI agents aren't quite human and aren't traditional machines. So how do you secure workflows that involve humans using AI to access sensitive data, and do it at machine speed and scale? David breaks down the challenges and discusses actual implementations of IAM for AI to explain how to solve them. Segment Resources: https://aembit.io/case-study/a-...
Identity security has entered its chaotic era. Human, non-human, and agentic AI identities no longer just coexist. They form an uncontrolled inheritance chain in which a human creates an agent, the agent spins up service principals, OAuth grants, and role assignments, and that whole chain keeps running long after the human changes roles or leaves. ...
Interview with Karen Heart. Rethinking Security from the OS Up in the Age of AI. Karen Heart discusses a file-system–first approach to security, arguing that most modern attacks—including ransomware and supply chain compromises—succeed because they inherit user permissions and operate inside overly trusted system structures. She explains how limiti...
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.