Archive for July 16, 2026

AWS CloudFront outage leaves websites unreachable for users

Posted in Commentary with tags , on July 16, 2026 by itnerd

It has been reported that Amazon Web Services (AWS) is experiencing another outage after a CloudFront issue began throwing 5xx errors, knocking a string of websites and online services offline across multiple regions.

Full story here: https://www.theregister.com/off-prem/2026/07/16/aws-cloudfront-outage-serves-errors-instead-of-websites/5272421 

Commenting on this story is Mayur Upadhyaya, CEO of APIContext:

“The AWS CloudFront incident isn’t noteworthy because a critical cloud provider experienced an outage. Every infrastructure provider will have operational incidents. The more concerning trend is that we’re increasingly consolidating around a small number of providers because they’re the most convenient and economically attractive choice.That consolidation changes the nature of operational risk. A fault that might once have affected a handful of organizations can now impact thousands simultaneously because so many businesses depend on the same infrastructure.We’re seeing the same pattern across cloud platforms, identity providers, AI foundation models and DNS. As digital infrastructure centralizes, the blast radius of individual failures grows.This isn’t an argument against consolidation. The operational and economic benefits are enormous. But it does change the resilience conversation. Organisations need to understand not only whether a supplier is reliable, but how much of their business depends on that supplier, what the failure modes look like, and how critical workflows behave when those dependencies degrade. The question isn’t whether outages will happen. It’s whether your most important transactions continue to work when they do.”

Resillance has to be the number one game when it comes to keeping websites up. Because if you don’t service your customer, someone else will.

Why Microsoft’s record Patch Tuesday is just the beginning

Posted in Commentary with tags on July 16, 2026 by itnerd

Microsoft’s record Patch Tuesday isn’t just a milestone – experts say it won’t hold the record for long. This explains why AI is accelerating both software development and vulnerability discovery, why security teams are facing a growing prioritization challenge rather than simply a patching problem, and why organizations will need to rethink traditional approaches to patch management as vulnerability volumes continue to climb.

John Strand, Owner, Black Hills Information Security (https://www.linkedin.com/in/john-strand-a1b4b62)

“I think we’re just in the beginning stages of the crush of vulnerabilities that’s going to come from vendors across the industry. The Copilot vulnerability with a 9.6 CVSS score is one that many organizations could easily overlook, but the bigger issue is that this pace isn’t slowing down. Microsoft has one of the most mature and automated patching ecosystems in the world, and even then organizations struggle to keep up. Most vendors aren’t anywhere near that level of maturity, which means security teams are going to be increasingly overwhelmed trying to patch AI-related vulnerabilities across dozens of different products.”

Seemant Sehgal, Founder & CEO, BreachLock (https://www.linkedin.com/in/s-sehgal)

“Six hundred vulnerabilities in a single patch cycle is not a backlog problem, it is a prioritization crisis waiting to happen.

“The CVE count is noise unless you map it against what you are actually running, what is reachable from outside your perimeter, and whether there is confirmed exploitation in the wild, because the actively exploited zero-days in Active Directory and SharePoint deserve your engineers this week, not your ticketing system next quarter. Patch management that treats a record-breaking advisory like a queue to be worked through sequentially will lose, and it will lose to adversaries who read the same bulletin and go straight to the vulnerabilities that matter.”

Jacob Krell, Sr. Director, Secure AI Solutions & Cybersecurity, Suzu Labs (https://www.linkedin.com/in/jacob-krell)

“622 is the biggest Patch Tuesday on record. It won’t hold the record long, because AI is inflating both sides of the vulnerability equation, generating more code that introduces more bugs while scanning existing codebases faster and turning up what humans missed. Microsoft told customers to expect rising volumes from its AI scanning tools, and the trajectory already proves it, June broke the all-time record at 206, July tripled it. Adobe moved to twice-monthly security releases for the same reason.

“That volume changes how patching has to work. The manual process of reading every advisory, scoring by CVSS, and testing in a lab was built for monthly batches of 60, and at 622 it breaks before lunch. What still works is triaging by active exploitation, so the two zero-days in Active Directory Federation Services and SharePoint (CVE-2026-56155, CVE-2026-56164) go first because attackers are already using them to escalate privileges. Anything on CISA’s Known Exploited Vulnerabilities list goes next, then filter by your own attack surface, whether the service is internet-facing, whether the vulnerability chains with existing exposure, and whether it touches identity infrastructure.

“Counting CVEs tells you volume, not risk, and the tools most organizations rely on to tell the difference are failing. Microsoft’s own exploitability index rated this month’s SharePoint zero-day as “exploitation less likely” the same month it landed on CISA’s KEV list as actively exploited. AI models can already produce working proof-of-concept exploits for vulnerabilities that traditional frameworks score as low-priority, which means the scoring systems were calibrated for a human-speed world that no longer exists. Organizations need to match machine-speed discovery with machine-speed defense, because the patch count will keep climbing whether they’re ready or not.”

Patching is one avenue towards addressing this. But organizations need to take a more holistic approach in terms of addressing vulnerabilities in their environment. And the sooner the better.

Recast Responds to Customer Needs for Rapid Patching with New Product Bundle

Posted in Commentary with tags on July 16, 2026 by itnerd

Recast today announced a new bundled offering that brings together Right Click Tools, Right Click Tools Patching, and Warranty Insights. The bundle was developed in response to the need for a more practical way to accelerate patching, close update gaps, and gain clearer visibility into Microsoft Intune, Configuration Manager, and hybrid environments. As AI accelerates vulnerability research and discovery, IT organizations face increasing pressure to keep applications secure. They need capabilities that help them move from awareness to action without adding more disconnected workflows.

AI is changing how security vulnerabilities are detected

With the rise of AI, both security professionals and threat actors can identify vulnerabilities faster than ever. In fact, Recast’s proprietary database tracked a 341% increase in Common Vulnerabilities and Exposures (CVEs) in the first half of 2026, from 477 in Q1 to 2,102 in Q2. That shift is compressing the time organizations have to assess exposure, prioritize fixes, and deploy updates across their environments. In response to this change, the Cybersecurity & Infrastructure Security Agency (CISA) issued a Binding Operational Directive (BOD 26-04) in June that requires federal agencies to prioritize patching efforts based on risk.

For IT teams already managing large application portfolios in Configuration Manager, Intune, or both, patching has become a complex, ongoing task rather than a weekly or monthly requirement. Not only must these teams be able to keep third-party and custom applications patched, but they also need to determine that their efforts truly are reducing risk.

The new Recast bundle connects endpoint actions, third-party patching, and hardware lifecycle visibility in a single offering designed to help teams work faster and with more control.

  • Right Click Tools helps administrators identify and remediate endpoint issues quickly from familiar workflows within Configuration Manager, Intune, or both.
  • Right Click Tools Patching reduces manual update work with a catalog of nearly 6,500 applications and custom patching capabilities that support policy-driven patch management. Reporting and validation help teams understand coverage, track patch status, and confirm successful deployments.
  • Warranty Insights helps administrators identify devices approaching warranty expiration, plan refresh activities, and reduce hardware lifecycle risk.

Together, these capabilities enable organizations to shift from reactive endpoint management to more consistent endpoint control.

“Customers are telling us that patching has become a very different challenge than it was just a few years ago,” said Will Teevan, CEO, Recast. “They need to respond faster, prove impact, and keep applications and devices secure without adding more manual work. We created this bundle to bring the capabilities customers consistently ask for into one practical offering built around the workflows they already use.”

TWO WEEKS LEFT to nominate your local footy hub for the LG Match Day Hero tech upgrade

Posted in Commentary with tags on July 16, 2026 by itnerd

With the tournament down to the finals, community spaces continue to flow with fan excitement.  

With only two weeks left in LG Canada’s Match Day Heroes contest (closing July 26), there’s still time for Canadians to create a truly local legacy by nominating their community footy hubs for a chance to win a $10,000 LG tech upgrade. The contest is spotlighting the spaces that have brought footy fans together — from pubs and restaurants to local clubs and backyards — and gives Canadians the opportunity to bring the legacy of the tournament closer to home. 

Rooted in LG’s Life’s Good brand promise, Match Day Heroes celebrates the connection and sense of belonging that sport can inspire. By shining a spotlight on  — four small businesses through a video series featuring Nganda African Street FoodLiberty Village MarketEste es Colombia, and Amigos da Dundas, LG is recognizing the people and spaces that create meaningful shared experiences during match day. 

Through the Match Day Heroes campaign, LG is inviting fans across the country to nominate their favourite local footy hub for a chance to win the ultimate LG tech upgrade — valued at up to $10,000. 

Two weeks left. It’s a small window to say thank you to the places that made this tournament feel like yours

Please find full contest details on LG Canada’s Sponsorship page at LG.ca.

Hisense Creates More Inclusive FIFA World Cup 2026 Experiences for Fans Across All 16 Host Cities

Posted in Commentary with tags on July 16, 2026 by itnerd

Hisense is partnering with FIFA and KultureCity to help deliver a more inclusive matchday experience for fans with sensory sensitivities across all 16 FIFA World Cup 2026TM host cities.

For millions of football fans, the energy of a FIFA World Cup 2026TM match comes from the roar of the crowd and the thrill of the stadium. However, for fans with sensory sensitivities, including some individuals with autism and other sensory processing needs, these sights and sounds can become overwhelming, making it difficult to fully enjoy the experience.

To help remove these barriers, Hisense-branded mobile sensory vehicles are stationed outside stadium entrances across all host cities alongside dedicated sensory rooms in stadium commercial exhibition areas throughout the tournament. These calm and welcoming spaces give fans a place to pause, reset and manage sensory stimulation, with premium Hisense displays providing calming ambient visuals that help create a more relaxing environment.

By combining technology, accessibility support and community engagement, Hisense is helping create a FIFA World Cup 2026TM experience where more fans can feel included and connected. The initiative reflects Hisense’s long-term ESG commitment to using innovation to create more accessible and meaningful experiences for communities worldwide — bringing its vision of “Innovating a Brighter Life” to life through moments that bring people together.

See how Hisense is helping every fan feel part of the game here:

Advanced Fileless Malware Campaign Targets Large Enterprises with Five Layers of Obfuscation

Posted in Commentary with tags on July 16, 2026 by itnerd

Fortra Intelligence and Research Experts (FIRE) have uncovered a highly sophisticated fileless malware campaign that uses five layers of obfuscation to evade email, endpoint, and memory-based defenses. The campaign is targeting large enterprises, with techniques that significantly increase attacker dwell time, complicates investigations.

Victims are at risk of credential theft, data exfiltration, and ransomware deployment, which could lead to operational disruption, regulatory exposure, reputational damage and more. Unlike typical fileless threats, this attack also leaves virtually no disk artifacts, with the loader fragmenting its payload across hundreds of environment variables, useing uncommon CJK character encoding, and reconstructing a .NET payload entirely in memory.

The full analysis can be found here: https://www.fortra.com/blog/5-layers-obfuscation-sophisticated-fileless-malware-campaign

Comparitech Government Ransomware Attack Study Is Out

Posted in Commentary with tags on July 16, 2026 by itnerd

Comparitech researchers have published a new study looking at ransomware attacks targeting the government sector in H1 2026. 

According to the findings, Comparitech researchers logged an average of one ransomware attack on a government entity every day. Attacks jumped by over 13 percent when compared to H2 2025, increasing from 165 to 187 attacks. 

Rebecca Moody, Head of Data Research at Comparitech, provided the following comment: 

“Predicting what’s going to happen within the ransomware threat landscape for the rest of the year is always difficult. However, based on our H1 2026 data and the increased momentum of The Gentlemen, ransomware attacks within the government sector remain a dominant, if not growing, threat. From weeks-long disruptions due to system encryption to extensive data breaches, governments are the ideal target for hackers.

The ongoing attack on Latvia’s state forestry company (LVM) should also serve as a reminder that government agencies have to ensure they’re meeting the basic cybersecurity best practices. In LVM’s case, hackers were able to exploit a vulnerability in a system that hadn’t been updated in two years. Keeping systems up to date, patching vulnerabilities as soon as they’re flagged, carrying out regular backups, and making sure employees are regularly trained and are on high alert at all times are crucial to mitigating the risks of attacks.”

You can read the details here: https://www.comparitech.com/news/government-ransomware-roundup-h1-2026-stats-on-attacks-ransoms-and-data-breaches/

AI Appreciation Day — Don’t Forget What Makes it Work

Posted in Commentary on July 16, 2026 by itnerd

Every July 16 is Artificial Intelligence Appreciation Day. However, I think we can agree that we are a ways off from ubiquitous “appreciation.” There is still quite a bit of fear, uncertainty, and doubt surrounding it. Yet, love it… hate it… or simply playing your cards close to the vest and waiting to see how this all plays out, it would be tough to disagree that AI is transforming industries at an incredible pace. 

And while there is no shortage of fun and fascinating stories around how AI is being used to transform virtually every industry, as well as our personal lives, it is important that we keep our eye on the ball and never stop thinking about what it takes to make AI reliable, safe, and truly ready for the real world.

Don Boxley, CEO and Co-Founder of DH2i:

“I really like the idea of AI Appreciation Day. Not because AI needs a birthday, but because it provides a moment to take a step back and appreciate the holistic picture of all the components that go into making these applications work and bring value to our everyday lives.

Generally, when people talk about AI, they almost always jump straight to the models. They want to talk about GPUs, NVIDIA, training, inference – all the ‘sexy’ stuff. That’s fine and good. But AI doesn’t know anything by itself. All that information that makes it so useful needs to come from somewhere. And for many organizations today, that’s databases like SQL Server. The reality is, if the database goes down, AI doesn’t suddenly become intelligent enough to work around it. It just stops being useful. So, this year on AI Appreciation Day, let’s remember that while it is critical to spend time thinking about how to make AI smarter, easier to use, and faster… we need to also remember that none of that matters if the data can’t answer when AI calls.”

Anoop Dawar, Chief Strategy Officer (CSO) of Deepgram:

“We’ve seen Salesforce acquire Fin, SpaceX pay $60 billion for Cursor, and OpenAI stand up a $10 billion deployment company – three very different bets on the same scarce thing: teams that can make AI agents work reliably in the real world, not just in a demo. That capability has quietly become the most valuable asset in software, because these are probabilistic systems that drift and have to be measured and monitored continuously to stay accurate. And it gets hardest in voice – real-time, unforgiving, no second take – which is exactly where the next phase of this race will be won.”

Ganesh Padmanabhan, CEO and co-founder of Autonomize AI

“When people talk about appreciating AI, they often focus on what the technology can do. I think we should appreciate it for something much more important: its ability to give people their time and expertise back. In healthcare, some of our most experienced clinicians spend huge portions of their day navigating administrative processes instead of caring for patients. AI gives us an opportunity to change that. Not by replacing clinical judgment, but by making that expertise available more quickly, more consistently, and at a far greater scale. If AI allows a nurse to spend more time with patients instead of paperwork, or helps someone access treatment days or weeks sooner, that’s something worth celebrating.”

Poonacha Kongetira, Co-founder and CEO, Classie:

“AI Appreciation Day shouldn’t just be about celebrating what AI can do. It should also be a reminder to use it responsibly. Across many organizations, AI is spreading faster than the policies, knowledge, and governance needed to support it. That’s creating a new form of shadow AI where employees rely on disconnected tools, inconsistent information, and prompts that no one can oversee. AI delivers its greatest value when it becomes part of a trusted knowledge ecosystem, not when it operates in isolation.” – 

Binny Gill, Founder and CEO, Kognitos:

“AI Appreciation Day feels a little like throwing a party for fire. Fire cooks your food and heats your home, and it also burns the house down. What fire deserves isn’t applause, it’s respect, and a smoke detector. AI is the same. Every prior general-purpose technology – electricity, the automobile, aviation – got safer because we treated it as dangerous first and useful second. With AI we’ve reversed the order, and that worries me. If we want a day worth celebrating, make it AI Accountability Day. Appreciate the systems that can be audited, that ask before they act, and that keep a human in the loop. Those are the ones that earn it.” – 

Robin Gilthorpe, CEO, Earnix:

“AI Appreciation Day is a good opportunity to move beyond the hype and ask a more important question: what kind of AI do insurers actually need? General-purpose AI can generate impressive answers, but insurance isn’t a general-purpose business. Every pricing decision, underwriting recommendation, and customer interaction needs to reflect regulation, business strategy, portfolio performance, and customer context. That’s why I believe the future belongs to vertical AI, purpose-built for insurance. AI becomes genuinely valuable when it understands the business it’s helping to run, not just the language people use to describe it.” – 

Ravi Achanta, Founder and CEO, RSA America:

“AI Appreciation Day should be more than a celebration of artificial intelligence; it should be about championing better business decisions. Working with independent grocers and smaller retailers, we see that AI represents a chance to achieve the kind of business visibility and insight that has long given larger chains a competitive edge. But that potential can only be realized with the right foundation. When customer, promotion, e-commerce, and loyalty data remain trapped in disconnected systems, AI simply amplifies those silos instead of delivering meaningful intelligence. Retailers that unify their commerce data and connect their operations using AI will improve margins, personalize shopper experiences, and compete with far greater confidence. That’s the AI worth appreciating.” – 

Rohit Gupta, CEO, Auditoria.AI

“The first generation of enterprise AI proved that machines could generate answers. The next generation has to prove they can generate business outcomes. Finance is where that transition is happening first because every recommendation must be explainable, every action must be governed, and every result must stand up to scrutiny. That’s why AI Appreciation Day is no longer about celebrating possibility. It’s about recognizing that AI is becoming operational infrastructure for the modern Office of the CFO.”

Karl Bagci, Director of IT and Information Security, Exclaimer 

“AI Appreciation Day is a good reminder that AI’s greatest value isn’t in replacing people. It’s in removing repetitive work so people can focus on higher-value decisions. But AI is also exposing something many organizations have overlooked for years. Communication governance gaps that once affected a handful of messages can now be replicated at scale in seconds. AI hasn’t created those problems. It’s simply made them impossible to ignore. That’s why organizations need to think about governance before they think about automation.”  

Paul Stokes, Co-Founder and CEO, Prevalent AI

AI deserves appreciation, but not blind admiration. It is has already changed the pace of cyber risk. Attackers can move faster, test more ideas, and find exploits at a scale that security teams were not built for. This does not make AI bad, but it makes AI-enabled visibility and governance essential. Businesses need to understand where AI is being used, which models they depend on, and where those dependencies create exposure.. Companies need to do the hard work of analyzing both their use of AI, and the data that drives it, or they run the risk of becoming its victim.”

Michael Centrella, Head of Public Policy at SecurityScorecard:

“Artificial Intelligence Appreciation Day is a good moment to recognize the progress AI is enabling across the enterprise. In cybersecurity, that progress is changing not only how defenders work, but also how organizations think about risk across their broader digital ecosystem.

Agentic AI is quickly becoming an extension of the vendor landscape. That creates new questions about what these tools can access, what actions they can take, and how organizations govern non-deterministic systems. But it also creates real opportunity. AI agents can help security teams take on time-consuming, repetitive work and close knowledge gaps so people can focus on higher-skill, higher-complexity problems.

That balance is especially important in a post-Mythos world. AI is compressing the time it takes to discover vulnerabilities and the time it takes to compromise systems. Defenders will need to apply AI just as thoughtfully, using it to connect signals across vendors, partners, software providers, and digital supply chains before small exposures become larger incidents.

National AI Day is a reminder that responsible AI is not only about innovation. It is about using powerful technology to build a more secure, transparent, and resilient digital ecosystem.”

John Bruggeman, vCISO at CBTS:

“AI Appreciation Day is a timely opportunity to recognize the meaningful progress organizations are making with AI and it’s what this day is for, just like National Ice Cream day! Across industries, teams are using AI for many amazing things, in cybersecurity AI is being used to improve network traffic (traffic analysis), pinpoint the big security incidents from the flurry of issues (accelerate security triage), identify the real threats in the log files (support better decision-making), and create stronger experiences for employees and customers.

The next phase is making this kind of AI value dependable. AI assistance is most effective when it is supported by clear governance, valid and reliable data, strong identity controls, and visibility into how tools are being used across the business. That foundation allows leaders to take appropriate risks and avoid disasters, while moving as quickly as the market demands. 


For many organizations, the challenge is that AI adoption is advancing faster than the operating model around it. Smart organizations are enabling employees to test tools, build better, more efficient workflows, and create practical use cases in real time, in a safe and secure manner. That momentum can be a positive sign, but only if the organization has visibility into what is happening and can guide it responsibly. Without approved, practical pathways for AI use, this kind of employee experimentation can quickly move into the shadows in ways that expose an organization to significant risk.


For executives, the measure of AI maturity should not be how many pilots are underway. It should be whether the organization understands where AI is interacting with corporate data, business and customer workflows, user and administrative identities, and real-time decision making. Companies that can answer those questions and act on them will be best positioned to move from experimentation to sustained business value.”

Joseph Perry, Cybersecurity Researcher and Advanced Services Lead at Arcova:

“AI Appreciation Day is an unusual thing; a day dedicated to a commercial technology. We don’t treat any other technology in this way, because no other technology has done quite so much to capture the human imagination and incite our dreams of the future. What’s important on this day is not just recognizing the value and potential of this technology but, more importantly, the ways in which it can be of real benefit. And the ways it can’t.
 
The real test of AI maturity is not how many tools a company has deployed or how often employees use them. It is whether leaders can clearly explain what problem the technology solves, what it costs at scale, what data it can access and where human judgment is still required. Deploying AI is not proof that transformation has taken place. No matter what the hype might claim, no technology, not even the most sophisticated, is inherently transformational. Transformation is the result of technological potential applied the solution of human problems.
 
That is why implementation should not begin with a mandate to use more AI. It should begin with a specific process that is slow, repetitive or difficult to scale, followed by a clear assessment of where and whether AI can improve the outcome. From there, organizations need to determine how the technology will fit into existing workflows, who is accountable for the result and what happens when the system gets something wrong. Without that foundation, AI can create more complexity than capacity.
 
Leaders also need to look beyond the tools they choose to deploy. Employees may already be using public models, vendors may add AI features with little notice and threat actors are using the same technology to increase the speed and volume of their activity. An organization’s AI posture is shaped not only by its own decisions, but also by how AI enters the business through people, partners and adversaries.”

Chance Caldwell, Senior Director of PDC Threat Services at Cofense:

“AI Appreciation Day is a useful moment to celebrate the progress AI has enabled, but for cybersecurity leaders, it should also prompt a more practical question: how do we defend against a technology that is now accelerating both innovation and risk?

In email security, AI has become a force multiplier for defenders and attackers alike. Security teams can use AI to analyze patterns, automate workflows, and scale detection. At the same time, threat actors are using AI to create more polished, personalized, and convincing phishing campaigns. The old tells, such as awkward grammar, generic messaging, or obvious errors, are becoming less reliable as AI helps attackers make malicious emails look routine, relevant, and business-like. AI is also enabling attackers to generate and launch these campaigns at greater speed and scale, increasing the overall volume of threats organizations must now contend with.

This creates a real challenge for defenders. AI-based security tools are powerful, but attackers are constantly testing new tactics that may not match known patterns. From brand impersonation and credential phishing to QR codes and trusted-service abuse, these campaigns are designed to evade traditional gateways and reach users directly.

The organizations best positioned for this next phase will be those that combine AI-driven defense with human intelligence. Employees who are trained to recognize and report suspicious activity are not the weak link; they are a critical signal source. National AI Day should remind security leaders that the future of cyber defense is not AI replacing people, but AI strengthened by people.”

Pete Luban, Field CISO at AttackIQ:

“AI is giving security teams faster ways to analyze risk, but faster analysis does not always lead to better decisions. Most organizations already have more findings than they can realistically address. The harder question is which exposures deserve attention first and whether current defenses can actually stop them.

By connecting threat intelligence with asset context and security control performance, AI can help narrow that field. It can surface the weaknesses most likely to create a real attack path and give teams a clearer basis for what to test next. That brings more focus to each stage of a CTEM program.

The recommendations still need proof. Teams should be able to validate whether an exposure is exploitable, take corrective action, and confirm that remediation worked. AI can accelerate the process, but evidence is what turns speed into measurable risk reduction.”

Ross Filipek, CISO at Corsica Technologies:

“AI adoption is moving quickly across the midmarket, often without a formal strategy behind it. Employees are already using public tools for customer support, content creation, analysis, and everyday problem solving. That creates immediate questions about sensitive data, access, and accountability.

Most midmarket businesses do not have dedicated teams for AI governance, cybersecurity, and compliance. They need practical support that connects those responsibilities. Managed service providers can help evaluate tools, establish clear usage policies, and monitor how AI is being used across the organization.

The goal should not be to block experimentation or chase every new platform. Businesses need a safe path to adoption. That starts with visibility, sensible controls, and a clear understanding of where company data is going.”

Isaac Evans, founder and CEO at Semgrep:

“Models like Mythos and GPT-5.6 are raising expectations for what AI can do in application security. They can reason through complex code paths, assess whether a weakness is exploitable, and surface issues that older approaches may miss.

The bigger lesson is that model capability alone is not enough. Even a strong model can overlook important parts of a repository without the right context, code selection, and analysis around it. If these models are the new intelligence layer, the harness for the model is the corporate organization. Just as an individual researcher depends on a team, AI-powered vulnerability researchers will need a supporting system that directs their work and checks their conclusions.

Security teams should focus on building workflows that give these models the right code, validate their findings, and explain why an issue matters. The exact structure is still unproven, but early results suggest these systems could become valuable members of the application security team rather than standalone replacements for it.”

Joshua Roback, Principal Security Solution Architect at Swimlane:

“AI is changing cybersecurity on both sides of the equation. Attackers are using it to move faster and scale their operations, while defenders are still burdened by fragmented tools, overwhelming alert volumes, and repetitive manual work. The real promise of AI in security isn’t simply producing more information. It’s turning that information into action.

Swimlane’s approach combines expert AI agents with automation to help security teams investigate threats, coordinate decisions, and execute response steps with human oversight and clear guardrails. Within Swimlane’s own SOC, this approach cut mean time to resolution by 51%, reducing it from 18 minutes to under nine minutes. This gives analysts more time to apply judgment where it matters most, while routine work happens at machine speed. As threats become more autonomous, cybersecurity needs AI that can move beyond recommendations and help defenders respond with confidence.”

Piyush Sharma, co-founder and CEO at Tuskira:

“Security teams do not have a shortage of information. They have vulnerability data, threat intelligence, alerts, and asset context spread across disconnected systems. The harder problem is turning those signals into one clear decision.

Agentic AI can help connect that picture. It can examine a new threat, determine whether the organization is exposed, trace a likely attack path, and assess whether existing controls would stop it. That context can then move directly into investigation and response.

This gives threat intelligence a more active role in security operations. Instead of remaining a feed that analysts must interpret on their own, it can help shape what the team does next. The value is not another AI-generated summary. It is a system that explains why a threat matters in a specific environment.

When AI connects exposure, intelligence, and response, security teams can act earlier and spend less time sorting through signals that do not require attention.”

Justin Beals, CEO & Founder, Strike Graph:

“AI appreciation shouldn’t mean blind trust. It should mean respect for what these systems actually are.

I don’t buy the AGI hype and I don’t buy the doomsday version either. AI is a cultural artifact. It reflects the judgment of the people who build it and the governance we put around it. That’s worth appreciating, and it’s worth taking seriously.

Here’s what I appreciate most. AI can finally do the low-skill, repetitive work that used to eat weeks of a security team’s time, evidence gathering, control mapping, questionnaire responses. That’s real. I’ve lived it.

But appreciation without governance is how you end up with agents holding the same access as the humans they’re working for, minus the accountability. The organizations getting real value out of AI right now are the ones treating it like a system that needs oversight, not a tool you turn loose and forget. Human judgment doesn’t go away with agentic AI. It just moves to a different place in the process.”

Dave Hayes, Vice President of Product at FusionAuth:

“An AI agent is not a new user to authenticate. It has no authority of its own; it acts for a human, and that human is where the authority comes from. So the question isn’t whether the agent is legitimate, but whether it can do only what its human owner is already allowed to do. Policy can’t enforce that. People follow the rules partly because breaking them gets you fired, and an agent has no job to lose. Give it a goal and it treats your policy as an obstacle to work around. We surveyed 300 security and technology leaders: 84% of those most confident in their AI security had a confirmed AI-identity breach last year, most with governance they’d have called comprehensive. Architecture fixes this, not wording. AI is probabilistic, so your identity layer has to be deterministic.”

Ex-Ultrahuman Exec raises $5.5M for Aina, a new hardware interface for the age of AI beyond touchscreens and keyboards 

Posted in Commentary with tags on July 16, 2026 by itnerd

AI is changing the way people do everything, a single prompt can now generate an entire movie. Yet the everyday experience hasn’t caught up. AI notetakers automate our entire notetaking process, but joining a meeting still takes four clicks through unnecessary windows. Booking a cab still means unlocking your phone, finding the app, typing a destination, and confirming, just to get a ride.

The problem is the dated hardware layer. Software and AI have evolved rapidly, but the interfaces humans use to interact with them haven’t kept pace. For input on computers, we still rely on keyboards last updated in the 1980s. For simpler everyday tasks, we still pull out our phones, unlock the screen, open an app, browse, and finally complete the task, all on touchscreens designed for the way we operated in 2007. This gap between software capability and hardware interfaces is why people are always excited to learn about how AI can change their lives, but end up feeling overwhelmed and fail to adopt new tools fast enough.

An upgrade is needed in the way people interact with their daily apps and services. Aina has raised $5.5M to build a general-purpose interface designed for the age of AI and agents. Today, Aina is opening the waitlist for a Pilot of the interface being built in stealth.

The seed funding round was led by Redstart Labs (Infoedge, India) and 360 ONE Asset, with participation from MIXI Global Investments, Antler, Blume Founders Fund and angels including Kunal Shah (WhatsApp/Cred), Tikhon Bernstam (Scribd), Harshil and Shashank (Razorpay), Vaibhav Domkundwar (Better Capital) among others. The funding will be used to bring Aina’s flagship interface, which the team has been building in stealth, to market and to scale the team across its San Francisco and Bangalore offices.

Aina is founded by Apoorv Shankar, former VP of Hardware at Ultrahuman, the sleep tracking ring company. Incorporated in May 2025, the company has been operating as a Human-Computer Interaction lab under the name “Project Mirage”.

The company showcased three experimental AI interfaces at CES 2026, each an iteration in its broader research into HCI across different domains, targeting common applications people use daily: online meetings, booking cabs, ordering food.

From those experiments, the company announced Dune in April, a context-aware keypad for Mac that automatically adapts its three keys to whichever application is in the foreground. The team has since shipped hundreds of Dune keypads to early adopters, working closely with power users to learn from their feedback and daily workflows, validate the company’s thesis, and understand real-world AI adoption. While each experimental interface targeted specific applications people interact with daily, primarily for work, the company has been building something larger in stealth: a general-purpose interface designed for the age of AI that redefines the way we do everything, from everyday tasks on our phones to our computers.

As intelligence gets commoditized, AI assistants will get better at understanding context and knowing what you need, and agents will execute on your behalf. We will simply receive prompts for every day-to-day task, and all we will have to do is say yes or no. The missing piece today is this context-aware layer paired with an easier way to capture human choice. We are building a general-purpose interface for this future, designed to capture human approval, effortlessly.”

Every generation of computing has produced a new interface. Each one won by asking less of the person using it. Aina believes the next one asks least of all. In a world where AI has context of everything you are doing, the only thing left for humans is to choose. Aina is building the most effortless and natural way to capture that choice, so in the age of AI, we can spend our time on things that actually require human intelligence and effort.

Arelion’s 2026 DDoS report shows Aisuru botnet responsible for nearly one third of DDoS attacks

Posted in Commentary with tags on July 16, 2026 by itnerd

Arelion today announced the findings of its latest DDoS threat landscape report, providing insights on global Distributed-Denial-of-Service (DDoS) trends using traffic data from its #1 ranked Internet backbone, AS1299. The report shows that a single botnet, Aisuru, now drives approximately 33 percent of global DDoS attack traffic on Arelion’s network. Additionally, DDoS attacks have become hypervolumetric, with record-breaking attacks hitting 6.1 terabits per second (Tbps). 

Arelion’s report highlights that AI has greatly lowered the barrier to launching complex DDoS attacks, with automated botnets able to overwhelm critical infrastructure within seconds.The Aisuru botnet emerged as the most disruptive DDoS threat of 2025, harnessing more than 500,000 compromised Internet of Things (IoT) devices and Android-based systems to launch record-breaking attacks. Aisuru reached 31.4 Tbps in December 2025 at its peak, making it one of the largest DDoS attacks ever recorded. 

Aisuru primarily targeted major gaming and cloud providers, with attacks often exceeding 1 Tbps across Arelion’s backbone. By early 2026, KimWolf (Aisuru’s variant) had also infected over 2 million Android TV and streaming devices. Attacks of previous years favored smaller, faster packets designed to evade detection, but Aisuru changed that dynamic, combining brute-force volume with multi-vector complexity.

Arelion’s report shows that the hypervolumetric DDoS attacks of 2025-2026 mark a new era of cyber threats, mostly driven by automated attacks enabled by AI. These attack volumes often exceed 1 Tbps, totaling billions of packets per second. 

Various factors are driving this shift, with IoT proliferation, distributed cloud infrastructure and 5G networks enabling botnets of unprecedented scale to be dispersed across millions of endpoints. The shift of the threat surface from data center servers to home devices has enabled botnets to drive large-scale DDoSattacks from distributed home networks.

Average attack volumes rose significantly, with gigabits per second (Gbps) rising by 22 percent to 6,120 Gbps, million packets per second (Mpps) increasing by 60 percent to 999 Mpps and peak attack traffic in Gbps rising by 290 percent, underscoring the shift to hyperscale-level disruption. 

Meanwhile, average attack duration dropped by 20 percent to 8.9 minutes, indicating a trend toward shorter, more frequent “carpet bombing” campaigns. The result is a broader and heavier distribution across all size categories, placing greater pressure on mitigation strategies designed for lower‑intensity threats.

The report also establishes that nation-state actors remain key players in the threat landscape. In 2025, geopolitically motivated attacks persisted across NATO-aligned European nations, most notably Spain and Bulgaria. 

The Middle East emerged as a DDoS frontline, with state-aligned groups intensifying DDoS campaigns against critical infrastructure. As state actors have restricted internet access internally while clandestinely backing external cyberattacks, weaponized DDoS attacks have directly and indirectly supported military action on the ground. 

Despite hundreds of daily attacks from the Aisuru botnet, Arelion’s high-capacity backbone absorbed the malicious traffic with minimal customer disruption, highlighting the importance of network-based mitigation and capacity at scale. In one example, a major online gaming platform sustained multi-vector attacks peaking at several Tbps. 

Arelion’s always-on, network-level mitigation filtered the malicious traffic and preserved legitimate sessions, helping the platform minimize disruption despite the sheer size of the attack. By stopping malicious traffic within its global backbone before it reaches customer networks, Arelion helps businesses maintain continuity, protect critical applications and strengthen their DDoS defenses as threats continue to evolve.

Read the full report here for more information.