Crestvale Newsroom

Anthropic adds mandatory 30-day traffic retention

5 min · Ayer
Portada del episodio Anthropic adds mandatory 30-day traffic retention

Descripción

Frontier AI access is starting to look like a gated system, and the price is visibility. Anthropic's latest model release makes thirty day data retention a requirement, signaling a broader shift in how advanced AI will be governed and consumed. For security and IT leaders, this is not just a policy change. It directly affects how AI can be used in sensitive workflows, what data is exposed to vendors, and how much control teams retain. At the same time, Apple is pushing automated password rotation, and CISA is redefining how vulnerability prioritization should work, both pointing toward more automation and more selective control. We also cover DTEX's push into intent level monitoring, along with key updates from Check Point, Google, Dataminr, Elastic, and JPMorgan. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

Comentarios

0

Sé la primera persona en comentar

¡Regístrate ahora y únete a la comunidad de Crestvale Newsroom!

Empezar

2 meses por 1 €

Después 4,99 € / mes · Cancela cuando quieras.

  • Podcasts exclusivos
  • 20 horas de audiolibros / mes
  • Podcast gratuitos

Todos los episodios

140 episodios

Portada del episodio ServiceNow bug exposed customer instance data online

ServiceNow bug exposed customer instance data online

A ServiceNow vulnerability exposed how quickly SaaS platforms can become part of your attack surface, while new federal guidance is shrinking vulnerability response windows to just three days. This episode breaks down what the ServiceNow incident means in practice, why CISA's seventy two hour remediation expectation is a major shift, and how AI agents are quietly expanding identity risk inside most organizations. The common thread is speed and visibility. Teams are being forced to make faster decisions with less margin for error, while managing identities and data they often cannot fully see. We also cover Cyera's major funding round and what it signals about data security becoming the control layer for AI, along with key updates from Microsoft, Fortinet, and others. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

11 de jun de 20266 min
Portada del episodio Anthropic adds mandatory 30-day traffic retention

Anthropic adds mandatory 30-day traffic retention

Frontier AI access is starting to look like a gated system, and the price is visibility. Anthropic's latest model release makes thirty day data retention a requirement, signaling a broader shift in how advanced AI will be governed and consumed. For security and IT leaders, this is not just a policy change. It directly affects how AI can be used in sensitive workflows, what data is exposed to vendors, and how much control teams retain. At the same time, Apple is pushing automated password rotation, and CISA is redefining how vulnerability prioritization should work, both pointing toward more automation and more selective control. We also cover DTEX's push into intent level monitoring, along with key updates from Check Point, Google, Dataminr, Elastic, and JPMorgan. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

Ayer5 min
Portada del episodio Check Point VPN flaw bypasses passwords in IKEv1

Check Point VPN flaw bypasses passwords in IKEv1

Today's episode focuses on two failures that point to the same root issue: identity controls breaking under outdated assumptions. A Check Point VPN flaw shows how legacy configurations like IKEv1 can silently become open doors, while Meta's AI-powered recovery flow demonstrates how automation can bypass core verification entirely. For security and IT leaders, the takeaway is direct. Identity is no longer confined to login systems. Any workflow that can modify access or user attributes is now part of your attack surface. That includes AI agents, support tooling, and recovery processes. At the same time, configuration debt is proving just as dangerous as unpatched software. We also cover new data on AI governance gaps, a major healthcare-related breach, MFA bypass tactics, and a critical Linux privilege escalation flaw. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

9 de jun de 20265 min
Portada del episodio Miasma worm hit 73 Microsoft GitHub repos

Miasma worm hit 73 Microsoft GitHub repos

A new supply chain attack shows that simply opening a code repository can now execute malware inside common developer tools. At the same time, AI search is beginning to surface fraudulent websites, and outages in upstream models are breaking features inside everyday SaaS platforms. For firm leaders, this is a shift in where risk lives. It is no longer just at the network edge. It sits inside tools your teams use every day, from coding environments to research workflows to automation platforms. That means controls, verification, and redundancy need to move closer to how work actually happens. We also cover AI native job roles, tokenized IPO access, and the rise of prediction markets as decision tools. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

8 de jun de 20265 min
Portada del episodio OpenAI adds Lockdown Mode for ChatGPT

OpenAI adds Lockdown Mode for ChatGPT

AI tools are forcing a new tradeoff between capability and control. OpenAI's Lockdown Mode makes that explicit by limiting what ChatGPT can access during sensitive work, rather than trying to eliminate risk entirely. For professional service firms, this shifts AI from a productivity tool into a governance decision. Leaders now need clear policies for when full capability is acceptable and when restricted environments are required. At the same time, runtime AI governance, stricter cybersecurity laws, and the move away from VPNs toward Zero Trust are raising the bar on what "secure" actually means in client work. We also cover new signals from Wallarm, Canada's Bill C-8, and a growing push toward Zero Trust access in law firms. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

7 de jun de 20266 min