SearchSecurity
Verified
Online/Digital
Malicious actors are doing more with less, data privacy laws are becoming stricter with harsher penalties for noncompliance, and data breaches are more common and expensive than ever.
So, how can SearchSecurity help?
Part of the TechTarget family of websites that covers a wide range of business technology topics, SearchSecurity is a trusted source for emerging and recurring infosec advice. Our award-winning technical tips, news and feature content is designed for all levels of expertise -- from security novice to chief information security officer (CISO). Source
Actions
Media Outlet details
| Scope | National, Trade/B2B |
|---|---|
| Language | English |
| Country | United States of America |
|
Similarweb UVM |
Request pricing |
|
Comscore UVM |
Request pricing |
Recent Articles
Search ArticlesWhat CISOs should take from the Hugging Face-OpenAI incident
The recent Hugging Face-OpenAI incident is raising questions about how to secure AI as it becomes more autonomous and integrated into business operations. During a controlled security exercise in mid-July, OpenAI models accessed systems they weren't supposed to reach by exploiting a vulnerability in the surrounding infrastructure, eventually reaching the Hugging Face AI development platform. The incident has challenged assumptions that isolation and sandboxing can sufficiently protect AI systems.
Vulnerability management needs an update for the AI era
Organizations must rethink long-held assumptions about patch management and change how they prioritize, remediate and manage cyber-risk, especially in the age of AI. Since 2019, the average time between vulnerability disclosure and confirmed exploitation has collapsed from months and weeks to mere hours. CISOs and their teams have far less time to assess risk, prioritize remediation and protect critical assets.
What to know about deepfake phishing simulation software
Cybersecurity executives are already familiar with the idea of phishing prevention. For years, CISOs have trained staff to be suspicious of and resistant to old-school social engineering attacks, in which attackers use fake emails or texts that seem to come from executives, managers, vendors, partners or customers.
CISO's guide to data obfuscation
Organizations today generate, process and share more sensitive information than at any other point in history. Customer records, financial transactions, healthcare information, intellectual property, employee data, operational telemetry and AI training data sets routinely move across cloud platforms, SaaS applications, development environments, analytics pipelines and third-party ecosystems.
A CISO's guide to security data lakes
The combination of sophisticated attacks and increasingly complex deployments makes achieving cybersecurity and establishing centralized visibility greater challenges than ever. Organizations generate unprecedented volumes of security telemetry across disparate environments. Security teams often struggle with the quantity of information, and fragmented visibility across tools, cloud environments and endpoints leaves dangerous gaps.
CISO's guide to privileged identity management
Organizations are leaning into zero trust, a framework that assumes no entity can access a specific asset until they have been verified, validated and authorized. This approach makes privileged identity management, or PIM, an increasingly important resource. PIM supplants permanent access rights with provisional, sanctioned and audited access. This granular control gives the user or device access to precisely what they need to complete a task -- no more, no less.
OpenAI models escape containment, hack Hugging Face
OpenAI reported this week that its autonomous AI models escaped an isolated testing environment during a training exercise and breached Hugging Face, an AI collaboration platform. Last week, Hugging Face disclosed that it "detected and responded to an intrusion into part of our production infrastructure.
OpenClaw security best practices for CISOs
OpenClaw has become one of the fastest adopted open source tools in recent memory. Originally released in late 2025 under the name Clawdbot, this autonomous AI agent now boasts hundreds of thousands of GitHub stars and a rapidly expanding ecosystem of third-party skills. Why CISOs should care about OpenClaw OpenClaw operates by bridging large language models and local system resources.
Behavioral biometrics: How to detect non-human threat actors
As Anthropic's Mythos model makes clear, AI is a cybersecurity game changer. When released in preview, Mythos proved unexpectedly effective in finding and exploiting bugs in software. Anthropic says the preview release found more than 10,000 critical vulnerabilities across every operating system and application it encountered.
Employees' shadow AI use is poorly monitored, survey finds
Despite cybersecurity professionals' best efforts to protect their organizations' networks and data, employees have long been the weak link in the chain. They click malicious links in emails, reuse weak passwords, share sensitive information and make other mistakes that threat actors exploit. Then came generative AI, which promised productivity gains but created new security risks. Employees' unsanctioned use of AI tools now amplifies those risks at machine speed and scale.