September 2, 2026

News for today:

  • [CrowdStrike] Agentic SOC vNext. CrowdStrike released its embodiment of what the next generation of the Agentic SOC will look like / include. CrowdStrike delivers a single sensor, single console, single platform architecture generating nearly four trillion events daily across endpoint, identity, SaaS, cloud, and network. CrowdStrike’s elite analysts reinforce agents with expert decisions from every MDR and IR engagement, making agents smarter with every breach stopped. On this foundation, Charlotte AI dispatches domain agents in parallel, all operating on a new shared context layer, a persistent memory across every agent, investigation, and tenant. What one agent learns, they all know, eliminating handoffs and letting agents work the same investigation together across domains. Agents investigate the way elite analysts work, weighing evidence and converging on a single trusted hypothesis with visible reasoning and justification to back it up. Analysts no longer stitch isolated findings together. Agents do – at machine speed. CrowdStrike
  • [CrowdStrike] Supply chain attack protection. CrowdStrike extended its Falcon agent on the endpoint to detect and stop malicious open-source packages from running. CrowdStrike Real-Time Supply Chain Attack Protection stops malicious packages the moment they reach the endpoint, intercepting at the command line, before any embedded script runs. Because CrowdStrike already enforces at that checkpoint through the same sensor, adversary intelligence, and response orchestration securing the endpoint, protection carries forward into whatever the package tries to do next: execution, credential access, lateral movement. No new agent, and no coverage gaps. CrowdStrike
  • [Saviynt] 12-city roadshow on AI identity security. Saviynt’s hitting the road during September to November with a focus on AI identity security – with visits to London, Frankfurt, Haarlem, Stockholm, Chicago, and more. Throughout the 12-city series, Saviynt will convene security executives, identity practitioners, customers, partners, and industry experts to examine how organizations can secure every human, non-human, and AI identity and make identity a strategic advantage in the age of AI. Saviynt
  • [Reco] Browser Guard. Reco launched Browser Guard, for inspecting prompts, implicated data, and action requests within a browser; it’s part of Reco’s wider AI Runtime Security platform. Browser Guard evaluates the user behind the action, the sensitivity of the data, the AI tool or agent receiving it, whether the account is corporate or personal, and whether the behavior fits how the business expects AI to be used. That’s the difference between a tool that flags every prompt containing the word “confidential” and one that knows which of those prompts actually matter. Reco
  • [SonicWall] Report card on cybersecurity – Education edition. New research from SonicWall on the education sector says (1) the sector has the highest attack intensity of all tracked verticals; (2) long-running vulnerabilities haven’t been addressed; and (3) VoIP exploitation is a significant attack type. Every year, attacks look more sophisticated. AI has made them faster and more difficult to spot. But the fundamental methods have not changed, and in education, the doors are uniquely difficult to close. University campuses and school districts run networks that are, by function, open: student devices, faculty research systems, public-facing portals, third-party learning platforms, and administrative databases sharing the same infrastructure. Bring your own device (BYOD) isn’t an opt-in security policy for higher education; it’s the fundamental baseline of their network architecture. SonicWall
  • [Fasoo AI] Persistent data security – financial services. Fasoo AI introduced a new data security solution so financial services organizations can control what happens to sensitive documents across their lifecycle, including after they’re shared externally. Fasoo AI’s Wrapsody eCo applies persistent, file-level security to external collaboration, allowing financial institutions to maintain control over sensitive documents throughout their lifecycle. Organizations can assign granular permissions to individual collaborators, control actions such as viewing, editing, downloading, and printing, and modify or revoke external access when business requirements change. Wrapsody eCo also maintains detailed collaboration histories and document activity logs, giving security and compliance teams greater visibility into how information is being used. Centralized version management helps ensure collaborators work with the latest documents rather than creating uncontrolled copies across email threads and disconnected repositories. Fasoo AI

Discover more from Osterman Research

Subscribe now to keep reading and get access to the full archive.

Continue reading