Every organization tells stories about itself. Those narratives can create genuine resilience capabilities – but they can also conceal blind spots, reinforce fragility, and restrict adaptation.
Asia
Travel safety apps cannot protect employees they cannot locate. Matt Atkinson examines the hidden connectivity dependency in travel risk management and the potential for mobile-network data to provide a resilient fallback.
Zero Networks has announced Least Agency Enforcement, a new capability that applies the OWASP principle of ‘least agency’ to help organizations safely deploy AI agents.
According to IBM’s 2026 Cost of a Data Breach Report, one in four malicious breaches was AI-enabled during the 12-month period covered by the report.
Security teams remain overly committed to keeping humans in the loop and it isn’t a sustainable approach says Ashley Leonard.
The Cloud Security Alliance has worked with the SANS Institute, RSAC, FIRST, [un]prompted, and Knostic to quickly develop a post incident review for the recent Hugging Face AI attack incident.
In a disaster scenario getting backups or secondary cloud environments online and functional in time to meet recovery point and recovery time objectives can be hard enough, but sometimes only represents half the challenge.
Although written from an insurance perspective, this recently published academic paper’s treatment of cloud concentration, correlated failure, and scenario calibration is highly transferable to operational resilience.
ASIS Foundation has published a new report exploring security culture, its development, and its role in developing resilience.
The quantum threat is global and a long-term resilience programme is needed in response. However, post-quantum cryptography migration timelines are fragmented, increasing the complexity of preparatory actions.









