Quantum Readiness Day on 24 September is a useful reminder that the security work we do today is not only about preventing breaches tomorrow. It is about protecting data and digital trust for years to come.
Normal view
Why Your Security Program Needs a Quantum Upgrade Now
-
KnowBe4 Security
- Bypassing the Gatekeepers: How a Global Phishing Campaign Turns Google's Infrastructure into a Trust Proxy
Attackers Abuse Enterprise Collaboration Tools to Avoid Detection
Threat actorsβ abuse of enterprise collaboration tools increased fourfold over the past twelve months, according to researchers at Palo Alto Networksβ Unit 42.
Protecting Every Conversation: Introducing KnowBe4 Defend for Google Workspace
The Rise of the 'Non-Human Insider': When AI Agents Become the Threat
Anatomy of an Agent Tesla BEC Attack: From Inbox to In-Memory Infostealer
Microsoft Observed 7.6 Billion Phishing Emails in Q2 2026
Researchers at Microsoft warn that phishing emails are still the top initial access vector, with more than 2 billion phishing threats detected each month during the second quarter of 2026.
Cybersecurity Challenges Facing the EMEA Travel and Tourism Industry
-
KnowBe4 Security
- Unmasking the Invisible: How to Identify AI Tools, Hidden Devices, and Other Unknown Assets on Your Network
Shadow AI: The New Frontier of Shadow IT
As a CISO advisor, I am observing a familiar pattern gaining a new, critical dimension. What we historically identified as "Shadow IT", the use of unapproved SaaS and tools, is rapidly evolving into "Shadow AI."
Employees are increasingly leveraging AI bots for drafting, analysis, code generation and strategic decision-making. While the intention is often to drive efficiency, the lack of governance creates a dangerous risk surface: sensitive data leakage, compliance violationsΒ and the potential for operational decisions based on unverified, AI-generated content.
The Talent Pipeline Nobody Talks About: What Young People Told Us About Cybercrime
Why Securing AI Agents Is More Critical Than Ever
Why You Canβt Arrest Your Way Out of Youth Cybercrime
The Blind Spot: How βBulletproofβ Phishing Redirectors Slip Past SEGs
By Shikhar Dalela and Jeewan Singh Jalal
The operators named the kit themselves.
Buried inside compromised legitimate websites, the hidden staging directory is sometimes literally called β/.bulletproofβ, and the PHP session cookie the kit sets on every visitor is named βbp_redir_sess.β The βbpβ stands for bulletproof, which is an unusual degree of candor from a threat actor whose entire design philosophy is concealment.
Agent Risk Manager Moves into Early Access
When we first introduced Agent Risk Manager, the response was clear: many security teams are actively looking for a way to secure the AI agents already running in their environment and how they can confidently adopt AI across their organization.
Shadow IT in the Interconnected Web: A CISO Advisorβs View
On World Wide Web Day (August 1), itβs worth celebrating what the web has made possible. It enabled remote work to function at scale, SaaS platforms to deliver capabilities in days instead of months and instantaneous collaboration through shared docs, chats, whiteboardsΒ and task tools that update in real time.
Everyone's a Builder Now. That Changes Security Training.
Future-Proofing Organizations in the Face of AI
Future-proofing organizations in the face of AI requires a unified defense strategy that secures both the human workforce and autonomous AI agents. One of the key requirements is shifting security cultures from reactive compliance to proactive, measurable behavioral change.