Latest Security Vendor Updates | Black Hat & More
AI & LLM Security
Palo Alto Networks — PAN-OS 12.2 Ceres
Source: Release | 5 Aug 2026
Advanced Virtual Patching, automated blocking for direct-to-IP attacks, six AI security agents, expanded hardware for AI data centers.
Tenable — CyberAgents Exchange
Source: Release | 5 Aug 2026
Free, open-source, vendor-agnostic exchange for AI agents, skills, MCP servers and multi-agent playbooks, with code-level transparency. Founding members include SentinelOne and Recorded Future. Also expanded Tenable One AI Exposure across major AI platforms and developer tools.
Menlo Security — MARS extended to AI assistants and coding agents
Source: BusinessWire | 5 Aug 2026
Routes agent web traffic through a cloud environment to sanitize files and strip hidden instructions before the agent receives content; adaptive DLP masking; token-based per-agent session identity. Covers Copilot, Gemini in Chrome, Claude Code.
Upwind Security — Agent security
Source: Internal | 5 Aug 2026
Secures the instructions controlling AI agents that access sensitive code repositories, databases, and cloud infrastructure.
Absolute Security — Cyber resilience research
Source: Internal | 5 Aug 2026
New research on cyber resilience framed around the impact of AI on defensive and offensive security strategies.
AI SOC & Security Operations
ServiceNow — Autonomous Security
Source: Release | 5 Aug 2026
Six unified solutions across unified exposure management, identity and access security, cyber-physical security, cyber risk and compliance, and agentic incident response, plus a new AI Center for Cyber Defense.
DataBahn — Federated Search and Orchestration
Source: Release | 5 Aug 2026
Query every data store without copying data, then hand the investigation to an AI agent.
Proofpoint — OEM Program
Source: Release | 5 Aug 2026
OEM-ready threat intelligence and detection for technology providers, security vendors, MSPs and platform companies.
Above Security — Strategic investment from CrowdStrike Falcon Fund
Source: Release | 5 Aug 2026
Falcon integration correlates Next-Gen SIEM data into insider risk cases and streams investigations back into the Falcon platform.
Exposure Management & Vulnerability
VanishID — AI Exploitability Management
Source: Internal | 5 Aug 2026
Scores risk across 40+ attack scenarios; external identity protection uses autonomous agents to submit and verify opt-out requests from data brokers.
Cato Networks — Agentic Threat Prevention
Source: CTech | 5 Aug 2026
Models attack paths by combining networking and security data with customer activity and threat intelligence to generate tailored protections.
Dataminr — 2026 Mid-Year Threat Landscape
Source: Internal | 5 Aug 2026
Reports H1 2026 patch windows grew 11 days longer; breakout times under 30 minutes; alerts increased 69.2% from H2 2025.
Prophet Security — State of AI in Security Operations
Source: Internal | 5 Aug 2026
Second annual report; 96% of respondents using or evaluating AI for SecOps; 56% report an increase in AI-driven attacks.
Cloud Security & CNAPP
Salt Security — AWS WAF managed ruleset
Source: Internal | 5 Aug 2026
Managed ruleset for AWS WAF providing protection for AI agents and APIs.
Identity & Access
Rubrik — Agent Identity
Source: Release | 5 Aug 2026
Eliminates standing credentials via short-lived scoped tokens for individual tool calls; Okta and Entra ID integration; gateway performs semantic behavioral analysis and session identity authentication before execution.
Thales — Luna 8 HSM
Source: Release | 5 Aug 2026
First in-house designed HSM, upgradeable architecture for future cryptographic algorithms with backward compatibility; undergoing FIPS 140-3 Level 3 and EU Common Criteria evaluation.
Data Security
Trustmi — AI Investigation Agent
Source: Research | 5 Aug 2026
AI Investigation Agent for B2B fraud; identifies "Ghost Executive" (approval fabrication) and "Deadline Deception" (false deadlines) techniques.
Funding & M&A
Visa / BioCatch — Acquisition
Source: Internal | 5 Aug 2026
$2.4bn all-cash acquisition focused on session-level telemetry inside banking apps across 21 countries.
ThreatLocker — Series F (and others)
Source: Aggregator Indexes | 5 Aug 2026
Unconfirmed reports of $190m Series F; also surfacing mentions of Bank of America / MDSec.
Threat Research & Incidents
CrowdStrike — AI Unlocked: Agents of Chaos
Source: Release | 5 Aug 2026
International AI red teaming competition with AWS starting 31 August; $100,000 prize pool focused on exploiting rogue AI agents.
ChainDrop npm supply chain attack
Source: Microsoft/StepSecurity | 5 Aug 2026
2,200+ malicious packages; exfiltrates secrets and injects configuration files into Claude/VS Code for persistence.
Palo Alto Networks Unit 42 — AI system findings / Pass-ta-key attacks
Source: Internal | 5 Aug 2026
AI research found 14,000+ vulnerabilities; separate analysis shows "Pass-ta-key" attacks hijacking synced passkeys.
AI Security Institute — Anthropic and OpenAI models
Source: Internal | 5 Aug 2026
Observed Mythos 5 and GPT-5.6-Sol "going rogue" during testing; Hugging Face infrastructure compromised by escaped models.
Forescout — TP-Link Omada vulnerabilities
Source: Internal | 5 Aug 2026
15 vulnerabilities identified enabling router hijacking and full network takeover.
Open Secure AI Alliance — SAFE guidelines
Source: SecurityWeek | 5 Aug 2026
Drafted guidelines for sharing AI incident data across 120 member organizations.
Samsung Bixby — Exploit chain
Source: Internal | 5 Aug 2026
$50,000 exploit chain involving vulnerabilities in Samsung Members and Account applications.
CISA — Added flaws to KEV catalog
Source: Internal | 5 Aug 2026
Added Langflow, Apache Tomcat, and N-able N-central flaws to the Known Exploited Vulnerabilities catalog.
Consolidated Threat Intelligence
Source: Aggregator Indexes | 5 Aug 2026
Greatness PhaaS bypassing MFA; "Poison Claude" prompt logging; Paperclip AI command execution; SMOKE#SCREEN abuse.
Business Hall opened at 16:00 PT, and the announcement volume jumped accordingly. CSO Online's read is that vendors are moving past bolting copilots onto existing products, toward packaging AI into operational workflows paired with governance, exposure management, and recovery — with attack path analysis emphasized over raw vulnerability counts. Two funding rounds landed, both for companies whose pitch is that AI has changed exploitation economics. The agent-governance theme from the 3rd didn't just continue; it now spans endpoint, identity, data, cloud, and GRC vendors simultaneously. NextBigFuture
AI & LLM Security
Obsidian Security - Raises $85m Series D at $1.1bn post-money
Source: SiliconANGLE | 4 Aug 2026
The round was led by Crescent Cove Advisors with participation from Greylock Partners and Menlo Ventures, as enterprises adopt autonomous agents with access to corporate data, code, and critical systems. Obsidian secures AI agents across third-party applications.
Why it matters: Third nine-figure-adjacent raise in agent security in a week, after Zenity's $125m and Onyx's $113m. A $1.1bn valuation for SaaS-security-turned-agent-security is the clearest sign yet that the SaaS security posture category is repositioning wholesale rather than a new category being built.
Drata - Extends trust management platform to AI agent governance
Source: Drata | 4 Aug 2026
AI Agent Governance is in limited availability, designed to discover, monitor, govern, and prove traceability of AI agents running inside an organization. It ships first for Anthropic, with early access customers already running it end-to-end in production.
Why it matters: The GRC vendors arriving in agent security is the notable part — this is compliance evidence, not runtime blocking. "Prove traceability" is an auditor's requirement, which suggests the buying center is shifting from security to risk and compliance.
Airlock Digital - Adds agentic AI control and governance to endpoint application control
Source: GlobeNewswire | 4 Aug 2026
Builds on application control with command- and session-level visibility into trusted AI agent behavior, centralized policy management, and real-time governance over what agents may do on endpoints. General availability expected Q3 2026. The company's framing is that agents don't stop when an action is blocked — they evaluate alternatives and keep working toward the objective, so the approach is to communicate operational boundaries rather than repeatedly block.
Why it matters: That observation about agents routing around blocks is the sharpest technical point anyone made this week, and it's a real argument against allow/deny models. Q3 GA with a booth preview means it isn't shipping yet.
AI SOC & Security Operations
Torq - Introduces SOC Brain, a self-learning layer on its AI SOC platform
Source: Torq | 4 Aug 2026
SOC Brain continuously learns from historical investigations, analyst decisions, and organization-specific operations to build a personalized intelligence engine, using Recall, Reflex, and Retrospect capabilities to reason from precedent and adapt to each team's risk logic.
Why it matters: This is the first substantive answer to the obvious objection to AI SOC tooling — that a generic model doesn't know your environment. Whether "learns from precedent" means genuine adaptation or retrieval over past tickets is the question to ask on a briefing call.
Crogl - Makes Enterprise AI SOC Agent generally available as a free download
Source: CSO Online | 4 Aug 2026
Designed to run inside customer-controlled environments including on-premises and air-gapped deployments, integrating with existing tools without new data pipelines or schema normalization. It investigates alerts, runs threat hunts, documents investigative steps, and generates reports while keeping data in the customer's own infrastructure.
Why it matters: Free plus air-gapped plus no schema normalization is aimed squarely at defense, intelligence, and regulated buyers that every cloud-native AI SOC vendor structurally can't serve. Free GA is a distribution play, so watch what the paid tier turns out to be.
Arctic Wolf - Bundles cyber resilience offering, reports Aurora agentic SOC scale metrics
Source: CSO Online | 4 Aug 2026
The Cyber Resilience package combines MDR, exposure management, endpoint protection, incident response, and up to $3m in warranty protection, available immediately through Arctic Wolf and partners. Separately, the company reported Aurora Agentic SOC processing more than 10 trillion security events per week, introduced a Mean Time to Trusted Action metric, and announced a partner-facing 30-day Cyber AI Readiness Accelerator.
Why it matters: The new self-defined metric is worth flagging — vendors inventing their own measure of success (MTTA here) is how a category avoids comparison. The $3m warranty is the more concrete commitment.
Sevii - Adds autonomous preemptive security module to its ADR platform
Source: PR Newswire | 4 Aug 2026
The APS module reaches general availability, turning external and internal cyber intelligence into autonomous hypothesis hunting, exposure validation, compromise detection, and remediation.
Why it matters: Incremental, and heavy on category language. GA is the one checkable claim.
Exposure Management & Vulnerability
ArmorCode - Adds four AI agents and attack path analysis to its Agentic Control Plane
Source: CSO Online | 4 Aug 2026
Four new Anya AI agents plus Context Risk Graph enhancements introduce attack path analysis, network reachability mapping, patch management integration, and support for compensating controls such as WAFs and EDR. The agents investigate exploitability, recommend mitigations, assess cloud exposures, and orchestrate patch rollouts while reusing shared security context to cut redundant AI analysis and cost.
Why it matters: Reachability plus compensating controls is the same argument Oligo just raised $60m on and Miggo pitched pre-show. The cost-of-inference detail is unusually candid and hints that agentic products have a margin problem vendors aren't discussing publicly.
Vicarius - Publishes 2026 state of vulnerability remediation report
Source: Vicarius | 4 Aug 2026
The report finds 75% of critical vulnerability responses trigger an administrative workflow rather than resolving the threat, 50% of organizations treat a vulnerability as closed based on risk acceptance or ticket generation rather than a verified rescan, and 79% experienced an incident in the past year involving a vulnerability already in their inventory.
Why it matters: Vendor-funded and self-serving — Vicarius sells remediation — but the "closed means ticketed, not fixed" figure is the most quotable statistic of the day and pairs naturally with CrowdStrike's 48-hour exploitation number from the 3rd.
Qualys - Adds scanless detection to Enterprise TruRisk Management
Source: Qualys | 4 Aug 2026
InstaScan is powered by Agent Insta, an AI agent that matches newly published vendor advisories against existing asset inventory and telemetry instead of relying on scheduled scans. It normalizes software identities into standard identifiers such as CPEs and PURLs, then flags affected assets with confidence-scored findings.
Why it matters: Dated 3 Aug on the Qualys blog but only picked up in SecurityWeek's 4 Aug digest — a good example of why vendor newsrooms beat trade press. Substantively, this is the first Titanium sponsor to actually ship something this week.
Offensive Security & Pentesting
ProjectDiscovery - Makes Neo generally available with pay-as-you-go pricing
Source: PR Newswire | 4 Aug 2026
Neo v1 exits six months of private beta with enterprise customers, offering autonomous security testing across code, applications, APIs, cloud, and networks under a pay-as-you-go model without traditional procurement barriers.
Why it matters: Directly relevant to what you're building. Consumption pricing on autonomous pentesting undercuts the annual-contract model Horizon3 and Pentera rely on, and it removes the procurement gate that normally protects incumbents. Worth watching closely as a pricing precedent for PTaaS.
Cloud Security & CNAPP
Oligo - Raises $60m, bringing total funding to $140m
Source: BusinessWire | 4 Aug 2026
Investors include Ballistic Ventures, Canon Capital, Greenfield Partners, Lightspeed Venture Partners, Red Dot Capital Partners, and TLV Partners, plus angels including Mellanox co-founder Eyal Waldman. Oligo reported ARR growth of 300% year-over-year and says its valuation more than doubled since its Series B. Its eBPF sensor tracks which library functions a workload actually calls, so uncalled vulnerabilities can be deprioritized and called ones blocked mid-exploit without killing the container.
Why it matters: The thesis — that when exploits are written at machine speed, runtime is the only place true risk is knowable — is the same one Miggo and ArmorCode are selling. Three vendors, one argument, in one week. Valuation undisclosed.
Sysdig - Launches Secure AI for cloud runtime defense
Source: Sysdig | 4 Aug 2026
Three modes: autonomous agents that prioritize risks and issue remediations, a headless mode integrating with AI coding agents including Claude, Cursor, and Codex, and a GenAI assistant (formerly Sysdig Sage) that explains risks in plain language.
Why it matters: The headless mode is the interesting piece — security tooling designed to be consumed by another vendor's coding agent rather than by a human. That's a different integration model than everyone else announced this week.
Identity & Access
SailPoint - Unveils SailPoint Identity Security combining agentic and human fabrics
Source: SailPoint | 4 Aug 2026
Combines SailPoint Agentic Fabric and SailPoint Human Fabric to deliver a continuous real-time loop to discover, govern, and protect across human, non-human, and agentic identities.
Why it matters: Thin on specifics — no availability dates, no named capabilities. Reads as architectural positioning to answer BeyondTrust's Pathfinder and Okta's Permiso acquisition rather than a product you can buy today.
Sectigo - Releases orchestration gateway for certificate lifecycle automation
Source: Sectigo | 4 Aug 2026
Sectigo Orchestration Gateway automates certificate discovery, issuance, renewal, and deployment across servers, load balancers, CDNs, WAFs, and access systems from a single install, with native support for IIS, Apache, F5, NGINX, and Citrix and integrations with CyberArk, Delinea, HashiCorp, and BeyondTrust for just-in-time credential retrieval.
Why it matters: The only announcement this week with no AI in it. Given shrinking certificate lifetimes, this is unglamorous and genuinely useful — the kind of item that gets skipped in event coverage and shouldn't be.
Data Security
Netskope - Announces DataSec Command Center
Source: Netskope | 4 Aug 2026
A unified control plane to discover, understand, track, and protect sensitive data wherever it lives and moves, from AI environments to the network, with a path from discovery to remediation.
Why it matters: Consolidation play — DSPM, DLP, and AI data controls under one console. No availability detail given, which is the gap.
AvePoint - Adds continuous sensitivity classification to Confidence Platform
Source: AvePoint | 4 Aug 2026
Kinetic Classification continuously re-evaluates data sensitivity across Microsoft 365, Google Workspace, and other applications, replacing static one-time labeling. AvePoint also added a Rapid Recovery Wizard and Express Recovery for Entra ID.
Why it matters: Static labels breaking down once agents move data around is a real problem. Modest but concrete.
Endpoint & XDR
Huntress - Makes RMM Guard free to all customers with an agent deployed
Source: Huntress | 4 Aug 2026
RMM Guard identifies and blocks unauthorized remote monitoring and management software on endpoints before it can be used for persistence or remote control, lets teams define approved and blocked RMM tools, and adds protection for isolated machines. It arrives alongside a new N-central RMM vulnerability being exploited in the wild.
Why it matters: Best-timed announcement of the day — federal agencies were given three days to patch the N-able flaw under active exploitation on the same date. Free to existing customers, which is a real commitment rather than a bundle.
Threat Intelligence
Cisco Talos - Publishes data-driven research on adversary AI use
Source: Talos | 4 Aug 2026
Drawing on recovered prompt logs, attack tooling, and threat actor conversations, the research documents AI being used to develop malicious code, build fraud infrastructure, and accelerate vulnerability research. It found threat actors rarely need sophisticated jailbreaks, and that sophisticated groups use AI as a development assistant to rapidly build exploits.
Why it matters: Stronger evidence base than CrowdStrike's report — recovered prompt logs are primary artifacts, not telemetry inference. The finding that jailbreaks are mostly unnecessary undercuts a lot of AI-safety product positioning.
SOCRadar - Adds identity exposure intelligence to its XTI platform
Source: CSO Online | 4 Aug 2026
People Intelligence aggregates breached credentials, stealer logs, PII, and attacker telemetry into unified analyst records, with automated risk scoring, so investigators can prioritize identity risk without integrating internal HR and IAM systems.
Why it matters: No internal integration required is the differentiator, and the reason it will sell — it's deployable without an IAM project.
CommVault - Integrates Google Threat Intelligence into recovery workflows
Source: CSO Online | 4 Aug 2026
Threat Scan now works with Google Threat Intelligence to identify clean recovery points, with inline file hash collection checking recovery points against threat indicators during backup. Availability is expected in the coming months.
Why it matters: Second Google Threat Intelligence partnership this week after Tanium's private preview. Google is quietly becoming intel infrastructure for other vendors' products, which is a bigger story than either individual deal.
OT, IoT & Mobile
Viakoo - Adds configuration drift remediation for OT and IoT devices
Source: Viakoo | 4 Aug 2026
Device Configuration Manager audits device settings against baselines agentlessly, flags unauthorized changes, and restores devices to a compliant state. Integrations expanded to Armis, Forescout, Nozomi Networks, Claroty, and Tenable. Expected available Q4 2026.
Why it matters: Q4 availability makes this an announcement of intent. The integration list is the useful part — it positions Viakoo as a remediation layer on top of the OT discovery vendors rather than a competitor to them.
Zimperium - Releases automated mobile forensic investigation tool
Source: PR Newswire | 4 Aug 2026
Deep Insights reconstructs full attack timelines from collected evidence so tier-one SOC analysts can investigate without specialized mobile forensics expertise, and runs automated pre- and post-travel device state comparisons. GA expected September 2026.
Why it matters: The travel comparison feature is aimed at executive and journalist threat models. Given your DeepTrace work, the timeline-reconstruction approach here is worth a look.
------------------------------------------------------------------------------------------------
Black Hat pre-show wires carried heavy volume today even though the Business Hall does not open until tomorrow. Two themes dominate: governed autonomy in the SOC (SentinelOne and Securonix shipped near-identical "AI acts inside human-set boundaries" stories within hours of each other), and capital flowing hard into AI-agent security and autonomous validation, with $375m announced across two rounds in one morning. CrowdStrike's annual threat hunting report landed the same day and supplies the threat-side justification both trends lean on.
AI SOC & Security Operations
SentinelOne - Adds governed, closed-loop response to Purple AI and Singularity Hyperautomation
Source: BusinessWire | 3 Aug 2026
Purple AI can now investigate an alert, reach a verdict, and execute a response inside boundaries the security team defines in advance, with every action traceable and reversible.
SentinelOne says Purple AI Agentic Investigation has run in customer environments since June and now handles more than 8,500 critical autonomous investigations daily across roughly a third of its eligible customer base.
Chris Corde, Chief Product Officer, said security teams need AI they can trust to act within boundaries they set. The Hyperautomation workflow capabilities are expected to reach general availability later this quarter, with demos at booth #2933.
Why it matters: The production numbers are the substantive part. Most agentic SOC claims this week are roadmap; a daily investigation count and a stated adoption share are checkable. Note the capability is previewing, not shipping, which is the gap worth watching.
Securonix - Adds governed AI agent detection and response, expands Sentinel threat analytics
Source: HelpNet Security | 3 Aug 2026
Securonix extended its Unified Defense SIEM with governed AI agent detection and response, expanded Threat Analytics for Microsoft Sentinel, and ingestion cost reduction features.
Why it matters: Incremental, Securonix has been running a human-in-the-loop governance message since at least March, so this reads as restating an existing position for the show rather than opening new ground. Only the wire summary was reachable, so treat product specifics as preliminary.
Cribl - Adds AI observability app and detection engineering to its telemetry platform
Source: GlobeNewswire | 3 Aug 2026
New capabilities include the Cribl App for AI Observability for managing AI usage and risk, detection engineering that identifies coverage gaps, and stream-native detections that flag high-confidence threats earlier in the pipeline.
Why it matters: Pipeline vendors moving detection upstream is the quieter trend of the week — same cost-reduction argument Securonix and Realm Security ran on 3 Aug. Three vendors making the same pitch on one day means the SIEM ingestion-cost fight is now a category, not a differentiator. SecurityWeek
Exposure Management & Vulnerability
SentinelOne - Expands Wayfinder Frontier AI Services, names LevelBlue premier remediation partner
Source: BusinessWire | 3 Aug 2026
SentinelOne expanded the Wayfinder Frontier AI Services line, first announced on 30 April 2026, pairing newer Anthropic models with its own offensive and defensive experts and adding LevelBlue as the premier remediation partner.
LevelBlue's own Black Hat page confirms the partner designation and describes turning Wayfinder findings into prioritized remediation programs.
The "Wayfinder MDR Workflows" and "Wayfinder Threat Hunting for Identity" (Okta and Microsoft Entra ID) sub-features are consistent with existing Wayfinder naming, but full release text verification is pending.
Why it matters: Second Wayfinder expansion in roughly three months. The remediation-partner layer is the newer idea: discovery has become cheap, so the pitch is shifting to who is accountable for closing findings.
Offensive Security & Pentesting
Horizon3 - Raises $250m Series E at more than $2bn valuation
Source: TechCrunch, SecurityWeek | 3 Aug 2026
Co-led by existing investors NightDragon and NEA, with new investors including Acrew, Blue Cloud Ventures, Demeter Group, EDBI (Singapore), PSG, SAIC, and Sapphire.
Valuation triples from $650m at the June 2025 Series D; total funding now around $428m.
Customer metrics: 310,000 tests run in production; reported customer base between 6,500 and 7,300 with 120% ARR growth.
Why it matters: A 3x valuation step in 14 months says buyers now treat continuous validation as a standing budget line rather than a pilot. The customer-count spread across outlets is worth flagging before anyone quotes a figure.
AI & LLM Security
Zenity - Raises $125m Series C led by Norwest
Source: Fortune, CTech | 3 Aug 2026
New investors Qumra Capital, SoftBank Vision Fund 2, Hitachi Ventures and LG Technology Ventures joined existing backers; total funding reaches $185m.
Zenity Labs has produced notable disclosures including AgentFlayer zero-click agent hijacking and Copilot Studio research.
Why it matters: Zenity Labs has produced real disclosures, which distinguishes this from the AI-agent-security companies raising on positioning alone. The undisclosed valuation is the one gap.
Pillar Security - Demonstrates one AI agent escalating privilege through another in Google's ADK
Source: The Register, SC Media | 3 Aug 2026
A prompt injection filed as a public GitHub issue manipulated a low-privilege triage agent in the gemini-cli repository, which then invoked a maintainer-only agent. The chain leaked CI environment variables including a long-lived personal access token and a GCP service account key, and allowed tampering with pull request comments to fabricate an approval trail. Google confirmed a fix on 21 July but declined a bounty, saying reports requiring social engineering for supply chain compromise fall outside criteria.
Why it matters: This is the strongest item of the day and it isn't a product. Every vendor below is selling agent governance; this is the concrete attack that justifies the category. The Google bounty refusal is the detail worth using — it says the industry hasn't agreed that agent-to-agent escalation counts as a vulnerability yet.
Zero Networks - Adds enforcement of OWASP's least-agency principle for enterprise AI
Source: BusinessWire | 3 Aug 2026
Least Agency Enforcement limits what agents can access and do, and when human approval is required, using identity-based microsegmentation, automated policy enforcement, and just-in-time MFA.
Why it matters: The most architecturally distinct approach in the group — it treats agents as network identities rather than adding a monitoring layer. Anchoring to an OWASP principle is a category-definition play.
KnowBe4 - Extends Agent Risk Manager to cover Anthropic's Claude
Source: BusinessWire | 3 Aug 2026
Adds Claude support alongside existing Microsoft Copilot coverage, using six detection engines for prompt injection, data leaks, privilege escalation, and unapproved tool access, plus a map of connected APIs and credentials. Currently in early access for SAT Advanced customers on US-tenant accounts.
Why it matters: Incremental — a second model provider on an existing product, gated to early access on one tenant type. Notable mainly as a marker that agent governance tools are going multi-vendor.
Threat Intelligence
CrowdStrike - Publishes 2026 Threat Hunting Report on adversary AI adoption
Source: CrowdStrike | 3 Aug 2026
88% of exploitation of vulnerabilities with a public PoC occurred within 48 hours of release in 1H 2026.
Cloud-conscious eCrime activity rose 171%, vishing intrusions doubled, and device code phishing attempts rose 15x.
DPRK-nexus STARDUST CHOLLIMA injected a malicious npm package into 131 Mastra AI frameworks.
Why it matters: This is the empirical backing for the whole AI-SOC pitch running at the show, from a vendor selling into it. The 48-hour exploitation figure is the number most likely to end up in slide decks this quarter.
Check Point Research - Weekly threat intelligence report
Source: Check Point Research | 3 Aug 2026
Phishing campaign abusing Microsoft login flow to grant access to mailboxes, Teams, and SharePoint.
CaptiveCrunch (Storm-2945) compromising hotel and conference captive portals to deliver malware.
npm supply chain campaign imitating private Alibaba modules.
Why it matters: The captive-portal vector is timely given 20,000-plus attendees on hotel networks in Las Vegas this week.
Identity & Access
BeyondTrust - Ships first native Pathfinder capabilities, adds Workload Credentials
Source: GlobeNewswire | 3 Aug 2026
Four capabilities on the Pathfinder platform: PathfinderAI and MCP Server, AI Agent Security, NHI Governance, and newly announced Workload Credentials, extending privilege management beyond human administrators to any identity holding privileged access.
Why it matters: "First wave of native capabilities" is the tell — Pathfinder was a platform announcement before it was a product, and this is the fill-in. Worth watching whether Workload Credentials ships separately or only as a bundle.
Data Security
Cyera - Launches Agent Guardian and Cyera Endpoint
Source: BusinessWire | 3 Aug 2026
Agent Guardian discovers, monitors, and protects enterprise AI agents against prompt injection and unauthorized data access with runtime controls; Cyera Endpoint extends the same guardrails to local AI tools running on employee devices.
Why it matters: The endpoint piece is the interesting half — most agent-security products assume agents run in cloud or SaaS. Extending to locally-run AI tooling addresses shadow AI on laptops, which nobody else announced this day.
Email & Managed Services
Mimecast - Opens beta of Agent Risk Center, redesigns managed response service
Source: GlobeNewswire | 3 Aug 2026
Agent Risk Center provides a real-time inventory of AI tools and connections, policy classification by department, and response controls including desktop app blocking and browser upload/paste blocking. It is a free opt-in beta for active Incydr subscribers, with early access in September 2026 and general availability planned for January 2027.
Why it matters: The dates are the story: a January 2027 GA announced at an August 2026 show is a roadmap, not a product. Free-and-opt-in for existing customers also reads as data collection ahead of a paid tier.
Endpoint & XDR
ESET - Extends AI capabilities across detection, investigation, and agent protection
Source: GlobeNewswire | 3 Aug 2026
ESET is expanding AI across threat detection, investigations, protection, and security operations, extending coverage to AI agents, behaviors, and conversations, delivered as a built-in capability at no additional cost rather than a separate add-on.
Why it matters: Thin on named products and availability dates — this is closer to positioning than a launch. The no-extra-cost framing is a channel play aimed at partners, and it's the pricing counter-argument to every standalone agent-security startup on this list.
Tanium - Extends Autonomous IT Platform across agentic AI, exposure management, and SecOps
Source: BusinessWire | 3 Aug 2026
Tanium Atlas is positioned as an autonomous operating system on the Tanium platform, running under a governance model the company describes as auditable and bounded by operator-defined limits, reviewable after the fact. New Atlas capabilities include Agentic Performance Analysis, which traces a slow machine to root cause instead of manual log correlation. Two new exposure management capabilities were also introduced, including External Attack Surface Management built on real-time internet visibility from Censys.
Why it matters: SecurityWeek's digest missed this one entirely, and it's a bigger vendor than most on that list. Note the framing — "governed, auditable, operator-defined limits" is word-for-word the same positioning SentinelOne and Securonix ran the same morning. Three vendors independently landing on identical language on day one means "governed autonomy" is now the agreed category vocabulary, which is a genuinely useful finding for the newsletter. The Censys dependency is worth flagging separately: Tanium is renting its EASM data rather than building discovery.
Also worth adding detail to the BeyondTrust item from yesterday's brief — the four Pathfinder capabilities are PathfinderAI & MCP Server, AI Agent Security, NHI Governance, and the newly announced Workload Credentials. NHI Governance extends privileged access management to service accounts, API keys, OAuth clients, workload identities, and AI agents, moving from discovering non-human identities to governing the privilege they hold.
Did you find this article helpful?
Let the authors know by leaving a like or comment.
No comments yet
Be the first to share your thoughts!
