NIST AI
The National Institute of Standards and Technology (NIST) AI program develops standards, guidelines, and best practices for trustworthy and responsible AI. NIST created the AI Risk Management Framewor…
The National Institute of Standards and Technology (NIST) AI program develops standards, guidelines, and best practices for trustworthy and responsible AI. NIST created the AI Risk Management Framewor…
ProofLayer released ProofLayer Rules, an open-source runtime security layer for MCP servers and LangGraph agents that blocks prompt injection, jailbreaks, and tool abuse in real-time with sub-100ms la…
Security teams are mapping NIST's AI Risk Management Framework to ISO/IEC 42001 to create a unified governance playbook for autonomous AI agents in production environments. According to Check Point's …
Security leaders can apply NIST and ISO frameworks to govern AI agents that operate autonomously in production environments, as these agents now read sensitive documents, invoke internal APIs, and tri…
Eighty-eight percent of organizations now use AI in at least one business function, while 13% have experienced breaches of AI models or applications, according to McKinsey and IBM reports cited by ITS…
IBM argues that the lack of AI governance is not just a compliance risk but a major efficiency problem, as ungoverned systems lack cost controls, audit trails, and policy enforcement. The company prop…
A new open-source cyber-defense system called Aegis has been deployed in production, using NIST-standardized post-quantum cryptography to protect network services against both current and quantum-era …
The disclose.io Upcoming Dates page is now live, providing a community-maintained calendar tracking policy deadlines, regulations, conferences, and legislation affecting vulnerability disclosure and s…
The industry is transforming Non-Human Identity (NHI) to reduce attack surfaces by replacing vulnerable credentials like passwords and API keys with public-private key pairs and rapid rotation. Emergi…
OpenAI has released a policy document calling for mandatory pre-deployment safety evaluations of powerful AI models, a stricter stance than the Trump Administration's voluntary framework outlined in a…
Let's Encrypt announced plans to adopt Merkle Tree Certificates (MTCs) as a post-quantum authentication method for the Web PKI, aiming to protect against future quantum computer threats without slowin…
Chinese AI startup DeepSeek permanently slashed prices on its flagship V4 Pro model by 75%, undercutting Western rivals like Anthropic's Claude Sonnet and OpenAI's GPT 5.5-Med by up to 17x on outputs.…
A comprehensive evaluation of 14 open-source safety guard models on a benchmark of 79,331 samples found that Qwen Guard, a 4-billion-parameter model, achieved the highest recall at 83.97%, while large…
Snyk released an experimental CLI experience for its Remediation Agent, designed to fix software composition analysis (SCA) issues at scale by combining frontier AI models with Snyk's security intelli…
Organizations deploying AI agents face critical governance failures when they fail to establish separate identities, delegation models, and permission boundaries for those agents. Without a dedicated …
Geordie AI's $30 million Series A funding signals that enterprise adoption of agentic AI is outpacing security controls, creating a new crisis for platform engineers in 2026. Autonomous AI agents that…
Microsoft's Work Trend Index and NIST's AI RMF argue that AI should augment rather than replace knowledge management, with trustworthy systems requiring explicit roles and oversight. Practical workflo…
Post-quantum cryptography (PQC) is transitioning from research to practical implementation in embedded and IoT systems, affecting secure boot, TLS, OTA updates, and firmware signing. NIST has finalize…
The article explains that JSON Web Tokens (JWTs) signed with current algorithms like RS256 and ES256 are vulnerable to future quantum computer attacks, with nation-state actors already employing "harv…
The article describes five algorithms for computing factorials, including a recursive "product tree" method and the "PrimeSwing" algorithm, which relies on the prime factorization of swinging factoria…