Monday 8/17
Ransomware Didn’t Slow Down in Q2 2026. It Just Spread Out. (Check Point)
In Q1, the top 10 groups controlled 71% of victims across just 71 active groups, a tight, top heavy market. By Q2, that eased to 57.6%, and active groups climbed to 93, the highest on record.
https://blog.checkpoint.com/security/ransomware-didnt-slow-down-in-q2-2026-it-just-spread-out/
The AI You Can't See: Why Shadow AI Is a Visibility Problem, Not a Blocking Problem (Island)
Most security teams believe they know which AI tools their people use. The real number is almost always higher, and the gap between the two is exactly where the risk lives.
https://www.island.io/blog/the-ai-you-cant-see-why-shadow-ai-is-a-visibility-problem-not-a-blocking-problem
Tuesday 8/18
CIS Safeguard 13.3: Deploy a Network Intrusion Detection Solution
https://www.gothamtg.com/blog/cis-safeguard-133-deploy-a-network-intrusion-detection-solution
Wednesday 8/19

We're proud to celebrate 25 years of Gotham!
25 years of growth, partnerships, and shared success made possible by the dedication of our incredible team, the trust of our customers, and the support of our technology partners.
Here's to the next chapter of an extraordinary journey.
Thursday 8/20
How to Secure AI Agents and Reduce Human Risk (Proofpoint)
Agentic AI security requires more than access control. It needs controls that understand behavior, intent, data movement and the relationship between people and agents.
https://www.proofpoint.com/us/blog/ai-security/how-secure-ai-agents-and-reduce-human-risk
Citrix Virtual Apps and Desktops 2607 LTSR: Why standing still costs more than upgrading (Citrix)
Citrix Virtual Apps and Desktops (CVAD) 2607 LTSR builds on Citrix’s long-standing leadership with new capabilities that improve operational efficiency, security, user experience, and cost optimization.
https://www.citrix.com/blogs/2026/08/19/citrix-virtual-apps-and-desktops-2607-ltsr/
Friday 8/21
The Approved-App Blind Spot: When Sanctioned AI Becomes Shadow AI (Check Point)
Many shadow AI programs begin with a simple mental model: approved applications belong in the light; unfamiliar or prohibited applications belong in the shadows. Real workflows refuse to stay that tidy.
https://blog.checkpoint.com/ai-security/approved-app-shadow-ai-blind-spot/
Stolen MFA seeds mark a new stage in identity theft (Delinea)
MFA seeds have become inventory to steal, not just a control to bypass an SSL VPN appliance. An OAuth client ID field. A TOTP seed file. These were designed to make attacks harder, but in July, attackers turned all three into targets, going after the systems that authenticate and log identity, rather than the identities themselves.
https://delinea.com/blog/stolen-mfa-seeds-and-identity-theft