The Cloud Security Alliance has worked with the SANS Institute, RSAC, FIRST, [un]prompted, and Knostic to quickly develop a post incident review for the recent Hugging Face AI attack incident.
North America
In a disaster scenario getting backups or secondary cloud environments online and functional in time to meet recovery point and recovery time objectives can be hard enough, but sometimes only represents half the challenge.
Although written from an insurance perspective, this recently published academic paper’s treatment of cloud concentration, correlated failure, and scenario calibration is highly transferable to operational resilience.
ASIS Foundation has published a new report exploring security culture, its development, and its role in developing resilience.
The quantum threat is global and a long-term resilience programme is needed in response. However, post-quantum cryptography migration timelines are fragmented, increasing the complexity of preparatory actions.
In what OpenAI describes as an unprecedented security incident, a combination of its advanced models escaped a highly restricted testing environment and compromised parts of Hugging Face’s production infrastructure.
Sophos has released its seventh annual ‘State of Ransomware 2026’ report, based on a survey of IT and cyber security leaders across 17 countries whose organizations had experienced ransomware during the previous 12 months.
Commvault has announced findings from research that identifies a gap between the rapid pace of AI adoption and the identity management capabilities needed to support it.
Drata has released findings from its report, ‘The State of GRC in the Age of AI’.
Onyxia Cyber has published its third annual CISO research report, ‘Industry Divides: Uncovering the CISO’s Resilience Priorities Across Sectors’.









