Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

New in ggshield 1.51: Codex Hooks, MCP Discovery, and SLSA Provenance

ggshield 1.51 is here with better support for AI-powered development and browser-less environments. This release adds Codex hook support, MCP server detection across Claude and Cursor, and `ggshield auth login --method oob` for SSH sessions and headless servers. It also strengthens trust in the ggshield supply chain with GitHub Artifact Attestations for release binaries, improves plugin management through your authenticated GitGuardian instance, adds a `vscode` alias for Copilot hook installation, and shows workspace ID in `ggshield api-status`.

Charlotte AI AgentWorks: Build Your Security Workforce Demo

Today’s adversaries move at the speed of AI, so defenders need to reason, decide, and act faster across every stage of security operations. Meet Charlotte AI AgentWorks, a no-code agent builder that enables teams to create mission-ready AI agents directly inside the CrowdStrike Falcon platform.

Falcon Shield: Securing GitHub Enterprise

Learn how CrowdStrike Falcon Shield helps organizations harden their GitHub Enterprise environments against state-sponsored adversaries like FAMOUS CHOLLIMA. A DPRK-nexus threat actor actively targeting developer environments in 2026. This demo showcases how Falcon Shield continuously monitors GitHub Enterprise for misconfigurations, exposed CI/CD secrets, over-permissioned tokens, and other security risks that adversaries exploit to launch supply chain attacks.

Lightboard Lab: Why Defenders Fight Blind

Modern adversaries do not break in loudly anymore. They log in, blend in, and move faster than most security teams can respond. In CrowdStrike’s 2026 Global Threat Report, the fastest observed breakout time was just 27 seconds, while 82% of detections were malware-free. Traditional defenses were not built for attacks that look like normal activity. This lightboard session breaks down why defenders are struggling to keep up, how modern adversaries operate across identities and cloud environments, and why the gap between intelligence and action continues to grow.

ITSP: Corelight launches Agentic AI that makes SOC triage 10x faster

Modern SOCs face a difficult reality: attackers are moving faster while analysts are being asked to investigate more alerts than ever. Learn how agentic triage helps security teams move from alert overload to evidence-backed investigations. Rather than relying on opaque AI outputs, the approach uses expert-written playbooks and exposes the underlying queries and evidence so analysts can verify conclusions against raw network data.

Persona is one of the first verification vendors to accept California's mobile driver's license

During identity verification, organizations typically have to decide between increasing security controls and improving user conversion. Tighter checks mean more abandonment, and smoother flows mean more risk. Most verification flow design is an exercise in finding the right tradeoff. Mobile driver's licenses (mDLs) are different. Because an mDL is cryptographically signed by the issuing DMV and presented directly from a user's device, it's both faster to verify and harder to fake.

How Persona supports age verification and privacy online

Addressing these potentially competing priorities is difficult with today’s technology, and it's an active area of work for government agencies and private organizations alike. But we think there’s a potential path forward if regulations and organizations limit what you have to share, who you have to share data with, and how your data can be used.

The Trust Layer Autonomous Networking Was Missing Is Here

It has been a week since we announced Forward Predict at our Innovation Day broadcast, and I'm still taking it in. Since the inception of networking, the industry has been working without a safety net, making changes in the production network without knowing their impact beforehand. The result has been outages and security breaches. This wasn’t a lack of diligence, it was because there was no way to know, with certainty, what a change would do to the production network before it was pushed.

The Collapse of Symmetry: Why Periodic Pentesting is Strategic Suicide Against Algorithmic Warfare

The cybersecurity industry is sleepwalking. We are still captivated by the romanticized image of the hacker: a human in a hoodie manually typing code to breach a network. Wake up to the reality of 2026. The modern adversary is no longer human. It is algorithmic.