This WeekHome →Calendar →Back Issues/Search →Archive →RSS →Subscribe →

Volume 338, Issue 1 · 2026-05-04 – 2026-05-10 · Popular →

Wednesday’s Briefing · May 13

Security Boulevard, Saturday, May 9th, 2026

Are Magic Links Secure: A Technical Deep Dive Into Email Based Authentication

Magic links can be excellent passwordless authentication or catastrophic depending on implementation - their security hinges on token entropy, single-use enforcement, expiry, and a threat model that addresses the token, email channel, user device, and mailbox together, making them an upgrade over passwords but a downgrade from passkeys for sensitive applications. more →

Are Magic Links Secure: A Technical Deep Dive Into Email Based Authentication

Security Boulevard, Friday, May 8th, 2026

Beyond Automation: A Dedicated DMARC Expert Support for Enterprise Teams

DMARC tools alone aren't enough - modern platforms can analyze authentication data and highlight issues, but enterprises still need dedicated DMARC experts to interpret findings, fix underlying problems, and safely move toward enforcement, with the right combination of platform and expert support enabling enforcement in roughly 55 days. more →

Beyond Automation: A Dedicated DMARC Expert Support for Enterprise Teams

Security Boulevard, Monday, May 4th, 2026

Fake Party Invites and the Rise of Social Phishing Attacks

Attackers are now impersonating invitation services to trick people into clicking malicious links and sharing sensitive information. These phishing attempts look like legitimate event invites, making them especially effective. In this episode, we discuss how these scams work and what steps you can take to stay protected. more →

Fake Party Invites and the Rise of Social Phishing Attacks

Security Boulevard, Monday, May 4th, 2026

AI Security vs AI Governance Explained

AI security and AI governance are often discussed as separate strategies, but that separation is exactly what creates risk - because governance defines rules without enforcing them, security enforces controls without identity context, and both fail without visibility into the OAuth connections and non-human identities where AI risk actually lives. more →

AI Security vs AI Governance Explained

Security Boulevard, Saturday, May 9th, 2026

Best AI Governance Tools for Enterprises (2026)

AI governance has become one of the most crowded and misunderstood categories in security - most tools discover AI risk, few actually control it, and this Grip Security piece argues true enterprise governance requires discovery, risk assessment, and continuous identity-based enforcement together, not just visibility. more →

Best AI Governance Tools for Enterprises (2026)

Security Boulevard, Monday, May 4th, 2026

Securing the AI Stack: A Blueprint for Post-Quantum AI Infrastructure Security

Traditional perimeter defense is dead in the era of autonomous AI agents - securing the AI stack now requires a complete mental reset built around MCP-aware deep context inspection, hybrid post-quantum cryptography, and policy-based controls that lock down agent intent rather than the whole infrastructure. more →

Securing the AI Stack: A Blueprint for Post-Quantum AI Infrastructure Security

Security Boulevard, Monday, May 4th, 2026

The AI Vulnerability Storm Is Here. Is Your Security Program Breach Ready?

AI has collapsed mean time-to-exploit from 2.3 years in 2018 to under 20 hours in 2026 - and with defenders still operating at human speed, breach readiness through Zero Trust microsegmentation that shrinks blast radius (not faster patching) is now the only viable security posture. more →

The AI Vulnerability Storm Is Here. Is Your Security Program Breach Ready?

Upcoming Event · Thu, Oct 22 · 1:00pm

Continuous Modernization: Why Modernization Never Really Finishes

Join the discussion with AWS and trace the arc and look at what changes when modernization stops being a project with a finish line and becomes something that runs continuously across your estate. Technical debt, security gaps, and agent-readiness get measured on an ongoing basis. Validated change land as pull requests, not recommendations. more →

📅 Add to calendar (.ics) Google Calendar

Continuous Modernization: Why Modernization Never Really Finishes (Oct. 22nd)

Upcoming Event · Mon, Oct 5 · 12:00pm

The State of Data and AI Governance

The State of Data and AI Governance webinar will examine the organizational, cultural, and technical foundations required to govern data while enabling AI effectively. This includes the frameworks, roles, processes, and technologies needed to ensure trust, compliance, and responsible use at scale. more →

📅 Add to calendar (.ics) Google Calendar

The State of Data and AI Governance (Oct. 5th)

Upcoming Event · Thu, Oct 1 · 1:00pm

Agentic Runtime Security on AWS: Identity, Least Privilege, and Audit for AI Agents with IBM Verify Identity Access and HashiCorp Vault

This hands-on workshop deploys a working reference implementation of five control objectives for agentic systems - verifiable agent identity, no standing privileges, actions tied to user intent, enforcement at the point of use, and audit evidence correlated across all three trust planes (user, workload, data) - using IBM Verify Identity Access and HashiCorp Vault on Amazon EKS. more →

📅 Add to calendar (.ics) Google Calendar

Agentic Runtime Security on AWS: Identity, Least Privilege, and Audit for AI Agents with IBM Verify Identity Access and HashiCorp Vault (Oct. 1st)