News – May 20, 2026

News for today:

  • [KnowBe4] New API-driven email security. KnowBe4 added the KnowBe4 Defend Graph API and localized teachable moments to its Inbound Email Security solution, offering a combination of better technical email security capabilities and coaching for humans. KnowBe4 Defend Graph API is a high-performance deployment method designed for the modern Microsoft 365 ecosystem. By leveraging the Microsoft Graph API, Defend provides post-delivery analysis and automated remediation without altering the mail flow architecture. A version for Google G-Suite is coming later in 2026. KnowBe4
  • [Hack The Box] Influence of AI on cybersecurity skills, careers, and team structures. New research from Hack The Box argues that the adoption of AI into cybersecurity requires a parallel improvement in cybersecurity personnel. Traditional role boundaries are becoming less rigid. Growing overlap between offensive and defensive training points to a more integrated model of cybersecurity capability development, where practitioners build complementary skills across domains rather than operating in silos. This shift supports a more collaborative, purple-team approach that prioritizes adaptability across the full attack-defense lifecycle. The findings suggest that effective teams will increasingly be defined by adaptability, judgment, and cross-functional expertise, challenging CISOs not simply to adopt AI tools, but to ensure their teams have the skills to test, validate, and defend increasingly complex environments. Hack The Box
  • [Stamus Networks] AI-driven investigation capabilities in Clear NDR update. Stamus Networks released version 42.2 of its Clear NDR platform, with additional AI-ready capabilities for security operations. A major enhancement in U42.2 is the expansion of Clear NDR’s MCP toolset, which enables AI agents and automation workflows to interact directly with the platform’s network investigation capabilities. With four new tools and enhanced threat verdict reporting, the expanded toolset now supports direct access to raw network telemetry, behavioral frequency analysis, detection coverage validation, and Clear NDR’s highest-confidence threat verdicts. Stamus Networks
  • [Cato Networks] Cyera DSPM integration. Cato Networks integrated data from the Cyera DSPM platform into its security operations platform, for ingestion of threat details and context. By integrating Cyera DSPM into Cato XOps, enterprises gain a unified view of network, endpoint, cloud, and data security telemetry. This enriched dataset combines Cato’s broad, high-volume telemetry with Cyera’s deep data intelligence and sensitivity insights. This allows security teams to understand not only what happened in the attack chain, but what data was involved and how critical it is to the business. Cato Networks
  • [Sectigo] New brand around simplicity. Sectigo refreshed its brand promise to Simplicity at Scale, to provide better and easier ways of automating certificate management (through SCM – the Sectigo Certificate Manager). Sectigo is modernizing how automation is delivered through SCM, replacing fragmented scripts, siloed tools, and tasks with a coordinated approach. The result is a simpler, more scalable way to manage certificates, reducing complexity today while preparing organizations for what’s next. Sectigo

Discover more from Osterman Research

Subscribe now to keep reading and get access to the full archive.

Continue reading