Reports
AI-generated structured vendor updates
Cisco to Acquire Astrix Security for $350M
Cisco is in advanced talks to acquire Israeli AI Agent security startup Astrix Security for $250-350M, expanding into non-human identity security. This is Cisco's second AI security acquisition in 2026.
CrowdStrike Q3 FY2026 Record: $265M Net New ARR Sustains Growth Momentum
CrowdStrike $265M net new ARR + 73% YoY growth maintaining strong momentum despite macro pressures validates 'AI-driven attack surface expansion → security demand increase' business logic. But high valuation (P/S ~25) means market has extremely high expectations for sustained growth, any growth slowdown could trigger valuation adjustment.
Cisco RSA 2026: Three-Pillar Security Framework for Agentic Workforce
At RSA Conference 2026, Cisco unveiled a three-pillar security framework for agentic workforce: 1) Zero Trust for AI Agents - Duo IAM integration with MCP policies for verified agent identities; 2) AI Defense Explorer Edition - Dynamic red teaming tool supporting prompt injection and jailbreak simulations; 3) Splunk SOC enhancements - Exposure Analytics, Detection Studio, Agentic SOC Expansion with specialized agents like Detection Builder and Triage Agent. Also launched DefenseClaw security framework and LLM Security Leaderboard.
Palo Alto Networks Acquires Koi: Strengthening AI Endpoint Security
Palo Alto Networks announced the acquisition of endpoint security startup Koi, focusing on protecting Vibe Coding and Agentic AI development environments. After acquisition, will achieve comprehensive AI security coverage at the endpoint level.
Cisco Acquires Astrix Security to Strengthen AI Agent Security
Cisco is acquiring AI Agent security startup Astrix Security for $250-350 million, focusing on non-human identity security.
Palo Alto Completes $400M Koi Acquisition
Palo Alto completed $400M acquisition of Koi, creating Agentic Endpoint Security category. Koi protects AI coding agents like Claude Code.
Cisco Shares Enterprise AI Assistant Patterns, Emphasizing Deterministic Security and Guided Interaction
Based on 18 months of production experience with its Customer Experience AI Assistant, Cisco identifies non-obvious patterns critical for enterprise AI success. Key insights include enforcing RBAC via deterministic code (not LLM prompts), proactively disambiguating enterprise acronyms, minimizing clarification loops, and providing guided follow-up questions grounded in actual system capabilities.
Cisco Announces Intent to Acquire Galileo, Bolstering AI Observability and Trust
Cisco announces its intent to acquire Galileo, a startup specializing in AI observability. This move aims to deeply integrate observability, reliability, and safety for AI systems into Cisco's technology platform, signaling an expansion from general IT observability to a dedicated trust and assurance layer for AI infrastructure.
Cisco Announces Galileo Acquisition to Strengthen AI Agent Observability
Cisco plans to acquire Galileo, a startup specializing in AI observability. The move aims to integrate Galileo's AI quality evaluation, failure detection, and guardrail technology into the Splunk Observability Cloud, providing enterprises with full lifecycle visibility and security for their AI agent systems.
Cisco Strengthens Network Operations Control Plane via Splunk Integration
Cisco updates its Enterprise Networking App suite for Splunk, integrating multi-domain network and security data from Catalyst, Meraki, SD-WAN, etc., into a unified data lake. This aims to provide a consistent operational view and a foundation for automation in AI-driven network operations.
Cisco Demonstrates Unified S/NOC with Agentic AI for Autonomous Security Operations at MWC 2026
At MWC 2026, Cisco operated a unified Security and Network Operations Center (S/NOC), demonstrating seamless integration across its Security Cloud, XDR, and Splunk platforms. The core innovation was the use of a beta Agentic AI to generate "Instant Attack Storyboards" for triage and investigation, with automated workflows bridging incidents to Splunk Enterprise Security for deeper threat hunting.
Cisco Deploys Unified SOC/NOC Platform at MWC, Highlighting Data Layer Convergence and Edge Engineering
At MWC 2026, Cisco leveraged Splunk Cloud as the central platform to integrate telemetry from multiple sources including Secure Access, XDR, Firewall 6160, and Meraki, rapidly building a unified SOC and NOC operational view. This case demonstrates the ability to ensure reliable data ingestion in complex, high-traffic environments through a well-designed edge data pipeline (RSYSLOG + Splunk Heavy Forwarder), enabling fast correlation analysis between network and security events.
Cisco Launches Firepower 6100 with Integrated Detection Engine to Combat Shadow Traffic
Cisco deployed its new Firepower 6100 firewall on the live MWC 2026 network, validating the Shadow Traffic detection feature in its 10.0 software release. This capability integrates Application ID, Encrypted Visibility Engine, and TLS/QUIC decryption to automatically identify and flag covert connections that bypass traditional security controls.
Cisco Demonstrates AI Security Architecture Integration via Unified Platform at MWC 2026
At the MWC 2026 S/NOC, Cisco operated its AI-ready firewall, SSE, AI Defense, Splunk SIEM, and XDR as a unified platform. It demonstrated multi-layered AI security from DNS to application layer, with automated response, and highlighted discovery and risk control for GenAI applications.
Cloudflare Automates Malware Trigger Packet Generation with Symbolic Execution
Cloudflare applies symbolic execution and the Z3 theorem prover to BPF bytecode to automate the generation of malware trigger packets. This technique reduces analysis time from hours to seconds, enhancing threat detection and response capabilities.
Samsung Extends Enterprise Mobility Management to XR Headsets via Android Enterprise
Samsung released a key software update for Galaxy XR, formally integrating Android Enterprise support to extend enterprise-grade device management, security frameworks, and application deployment capabilities to extended reality (XR) devices. This move aims to provide a standardized foundation for controlled, large-scale enterprise XR deployments, backed by a commitment to five years of software and security updates.
Cisco's Annual Report Reveals AI-Era Security Strategy: Expanding from Personal Data to Industrial Data Governance
Cisco's FY25 Purpose Report emphasizes security, privacy, and trust as business imperatives in the AI era. The core shift is the expanded mandate of its Privacy Center of Excellence (PCOE), moving beyond personal data to govern regulated 'industrial data'. The report also details AI-powered threat detection engines like SnortML and DNS Security Service.
Cisco Articulates Splunk Security Data Optimization Architecture Principles
Cisco, through a blog from a Splunk architect's perspective, systematically articulates that the core of security data optimization is detection engineering-driven, not merely cost control. It highlights that improper data tiering and filtering can break Splunk ES detection coverage and risk-based alerting, proposing a framework for classifying and tiering data based on analytic value.
Nokia Demonstrates Quantum-Safe Networks and AI Automation
Nokia showcased quantum-safe networks and AI-enabled automation at OFC, focusing on defending against quantum computing threats and enhancing enterprise network operational efficiency. This signals a shift towards intelligent and encrypted architecture evolution.
Cisco and Intel Launch Unified Edge Platform for Real-Time Media
Cisco introduces Unified Edge powered by Intel Xeon 6 SoC, delivering edge AI processing for sports and media industries. The solution converges networking, security, and compute to enable real-time fan experiences and remote production.