
News for today:
- [Cribl] New AI Observability app. Cribl introduced a new app for managing AI token usage, spend, model adoption, and risk that leverage the capture of telemetry. Cribl’s new AI Observability app gives organizations a fast, unified view of AI activity across models, applications, departments, and environments. Using existing telemetry already flowing through Cribl or retained elsewhere, teams can compare usage and spend by model, app, department, or workload; see demand peaks; understand token consumption across applications; and identify workloads better served by a smaller, less expensive model. Teams can also detect sensitive data exposure in prompts and traces, analyze usage and cost, and investigate complete sessions over time. Cribl
- [Darktrace] New Behavioral Defense Platform. Darktrace announced a new platform that tracks / analyzes / leverages behavioral signals of people, AI agents, identities, and more for identifying risk and doing something about it when identified. The Darktrace Behavioral Defense Platform is built for a threat environment in which risk can come from a rogue or misconfigured AI agent, an attacker exploiting a new vulnerability, or a bad actor operating through trusted channels. Rather than relying solely on static rules, signatures, or known indicators, the platform learns what is normal for each organization and builds a real-time understanding of behavior across the enterprise. It provides unified visibility, continuous behavioral monitoring, and autonomous response across AI, people, and infrastructure, helping security teams detect activity that does not belong and contain it before it causes harm. Darktrace
- [Zero Networks] Least Agency Enforcement. Zero Networks added a new capability to its AI Security platform for limiting the power to act of AI agents. Using identity-based microsegmentation, policy automation, and just-in-time MFA for privileged access, Zero Networks’ Least Agency Enforcement ensures that AI agents communicate only with explicitly authorized systems, only access approved resources, and require human approval before performing sensitive administrative actions. Unlike governance frameworks that document policy, Zero Networks enforces Least Agency across cloud, on-premises, Kubernetes, IoT/OT, and hybrid environments. Available immediately. Zero Networks
- [Mimecast] Black Hat 2026 announcements. Mimecast’s at Black Hat USA this week with two major announcements: the beta of Mimecast Agent Risk Center (all about AI agents), and Managed Threat Response (a managed service with AI-driven triage plus analyst-confirmed remediation). On the second: Mimecast AI triages every reported email. Mimecast Security Operations Center analysts then action confirmed threats — blocking senders or domains, removing campaigns tenant-wide, and updating detection logic based on confirmed outcomes. Customers see the outcome, not the work: no new console, no model to tune, no analyst headcount to fund. Detection logic improves continuously as confirmed threats are identified across Mimecast’s 42,000-customer base. Mimecast
- [Cato Networks] Agentic Threat Prevention. Cato Networks launched Cato Agentic Threat Prevention, which uses autonomous agents to assess where threats could land and builds protections to stop beachhead attacks proactively. Cato Agentic Threat Prevention turns single data lake shared context into customer-specific protection. It combines Cato platform telemetry from security and networking, customer-specific activity, and threat intelligence to model risk across users, applications, traffic patterns, assets, and exposures. It then predicts how agentic attackers might chain techniques, exploit gaps, and evade controls, then creates protections tailored to each customer’s environment rather than relying on one-size-fits-all detections. Cato Networks
- [Pathlock] Pathlock + KPMG. Pathlock and KPMG (in the USA) announced a new alliance, where KPMG’s services for ERP transformation will leverage Pathlock’s tools to assess identity security and access risk vectors. At the center of the alliance is a platform built for this moment. Pathlock’s AI-native, multi-tenant, SaaS platform unifies identity governance, access risk analysis, elevated access management, application controls, and continuous monitoring into a single solution. By combining fine-grained access governance with real-time transaction-level analytics, Pathlock helps organizations to enforce controls, detect risky behavior, to help ensure compliance and auditability — across applications their business depends on. Pathlock
- [Doppel] New email security solution now GA. Doppel launched a new email security solution to protect against social engineering attacks; leverages AI and a threat graph, along with capabilities for taking down offending infrastructure. Doppel Email Security is built to help security teams fight back. Its agentic, self-healing architecture continuously tunes detection policies, investigates threats, explains decisions in plain language, and closes detection gaps in real-time. By connecting inbox activity with the external infrastructure mapped by the Doppel Threat Graph, Doppel helps organizations identify and disrupt novel attacks that static, inbox-only tools may miss. There’s complementary solutions too – a managed service, and human risk management tools. Doppel

