Reports
AI-generated structured vendor updates
Palo Alto Networks Launches Prisma AIRS AI Gateway as Enterprise AI Control Plane
Palo Alto Networks announces GA of Prisma AIRS AI Gateway, integrating Portkey technology. It acts as an enterprise AI control plane for LLM, MCP, and A2A interactions, offering observability, governance, and security. Processed 68 trillion tokens with sub-millisecond latency and 99.999% availability.
美银上调CrowdStrike等网络安全股目标价
...
NVIDIA Leads 37 Firms to Form OSAA for AI Agent Security, Absent OpenAI/Anthropic/Google
NVIDIA launches Open Secure AI Alliance (OSAA) with 36 partners to build open-source AI agent security stack, including NOOA, Safetensors, SPIFFE/SPIRE. Triggered by GPT-5.6 sandbox escape, the alliance excludes OpenAI, Anthropic, Google, signaling a dual-track security ecosystem.
Palo Alto Networks收购Embrace扩展可观测性平台 发布Cortex AgentiX
...
Palo Alto Networks Prisma AIRS AI Gateway全面上市,收购Embrace扩展可观测性
...
Palo Alto Acquires Embrace, Launches Synthetics for AI-Driven Digital Experience Monitoring
Palo Alto Networks acquires Embrace (RUM) and launches Synthetics (active testing), integrating with its Observability platform and Cortex AgentiX to create a closed-loop Digital Experience Monitoring solution. This move transforms Palo Alto from a cybersecurity vendor into an AI agent-driven full-stack observability provider, directly competing with Datadog and New Relic.
Palo Alto Networks Launches AI Gateway as Centralized Control Plane for Enterprise AI
Palo Alto Networks announces general availability of AI Gateway, integrating Portkey technology, positioned as the enterprise AI control plane. It unifies LLM, MCP, and A2A gateway execution, processing over 68 trillion tokens with sub-millisecond latency and 99.999% availability.
CrowdStrike Integrates Claude Compliance API, Bringing AI Agent Monitoring into SOC
CrowdStrike integrates Anthropic's Claude Compliance API into its Falcon platform, enabling unified monitoring of Claude AI activities alongside endpoint, identity, and cloud telemetry. This formalizes AI agent security as a standard SOC function, reflecting the industry-wide shift of security budgets towards specialized vendors.
Palo Alto Networks PAN-OS Vulnerabilities: Buffer Overflow and Active Exploitation
Palo Alto Networks disclosed 13 PAN-OS vulnerabilities, with the most critical being CVE-2026-0288 (CVSS 9.2), a buffer overflow in User-ID TSA allowing unauthenticated RCE. CVE-2026-0257, an authentication bypass in GlobalProtect, is actively exploited in the wild.
Active Exploitation of CVE-2026-0257: GlobalProtect VPN Authentication Bypass Threatens Enterprise Networks
Palo Alto Networks confirms active exploitation of CVE-2026-0257 in GlobalProtect VPN. Attackers exploit shared certificates between HTTPS and authentication override to forge cookies, impersonating admins. CISA added to KEV. Urgent upgrade or dedicated cookie encryption certificate recommended.
Palo Alto Acquires Portkey: The Battle for AI Agent Security Control Plane Begins
Palo Alto Networks acquires Portkey, an AI Gateway pioneer, integrating it into Prisma AIRS. Portkey provides a centralized control plane for managing and securing autonomous AI agents, processing trillions of tokens monthly. This signals a fundamental shift from perimeter defense to an AI transaction-level control plane.
Cloudflare One Stack: AI Agent Skills to Automate SASE Migration, Targeting Zscaler Lock-in
Cloudflare launches the Cloudflare One Stack, a set of skill files for AI agents to automate Zero Trust deployment and migration, with built-in logic for migrating from Zscaler and Palo Alto Networks. It integrates with the MCP server for live API access, aiming to slash switching costs and accelerate defection from rival SASE platforms.
Palo Alto GlobalProtect VPN 0-Day Under Active Exploit: Gateway RCE Exposes Remote Access Risks
A critical unauthenticated remote code execution vulnerability in Palo Alto Networks GlobalProtect VPN is under active exploitation. This flaw directly compromises the VPN gateway, a key enterprise remote access component, exposing networks to potential takeover. Urgent patching and log review are mandated for all affected organizations.
PANW Acquires IBM QRadar SaaS: SIEM Ecosystem Consolidates, Cortex Platform Locks In Enterprises
Palo Alto Networks acquires IBM's QRadar SaaS security operations assets, aiming to migrate customers to Cortex XSIAM. IBM Consulting will assist deployments, and PANW becomes IBM's internal security standard. The SIEM market now sees Splunk under Cisco, QRadar under PANW, squeezing independent vendors.
Palo Alto Networks Acquires IBM QRadar SaaS: Forcing SIEM Ecosystem Shift to AI-Native XSIAM
Palo Alto Networks acquires IBM QRadar SaaS assets to migrate legacy SIEM customers to its Cortex XSIAM AI-native security platform. IBM exits security products, pivoting to consulting and managed services. The move accelerates SIEM market consolidation, squeezing standalone SIEM vendors like SentinelOne and challenging CrowdStrike's differentiation.
Palo Alto Networks Idira: Democratizing Privilege Control, AI Agent Identity as New Control Plane
Palo Alto Networks launches Idira, an identity security platform built on CyberArk PAM, extending privileged access control to every human, machine, and AI agent identity. Core features include Zero Standing Privilege (ZSP), JIT permissions, and an AI engine for automatically discovering hidden entitlements and recommending least privilege. Idira becomes PANW's third core platform alongside Strata and Cortex.
Google Cloud Shifts Control Plane to Application-Centric Management with New Hub
Google Cloud launches Application Design Center, App Hub/App Topology, and Cloud Hub, making the 'Application' the central management unit. With opinionated compliance templates, auto-generated Terraform, and Gemini Cloud Assist integration, it delivers AI-driven governance across the lifecycle, shifting the control plane from infrastructure resources to application semantics.
In-depth Analysis of CISA Agentic AI Security Guidelines
CISA released the world's first Agentic AI security deployment guidelines on May 1, 2026, marking a critical transition from theoretical discussions to mandatory compliance requirements.
Palo Alto Cortex Cloud 2.0: AI Autonomous Security Workforce Leads Paradigm Shift
Palo Alto Networks released Cortex Cloud 2.0 featuring AI agent workforces AgentiX in cloud security operations. AI agents trained on 1.2 billion real-world responses autonomously investigate and resolve complex security issues reducing cloud risk remediation from days to minutes.
Palo Alto Cortex Cloud 2.0: AI Autonomous Security Workforce Leads Cloud Security Paradigm Shift
Palo Alto Networks released Cortex Cloud 2.0, featuring AI agent workforces (AgentiX) in cloud security operations. AI agents trained on 1.2 billion real-world responses autonomously investigate and resolve complex security issues, reducing cloud risk remediation from days to minutes. The redesigned Cloud Command Center unifies multi-cloud visualization, while the ASPM module shifts security remediation left to the development stage, 10x faster than production remediation.