Latest changes

Downwind of the Labs Guidance global

Opinion piece using hazmat response analogy to discuss AI security incidents (Hugging Face-related) and their potential spillover effects into surrounding communities. No specific regulatory requirem…

Source

Vishing: An Evolving Threat to SLTT Organizations Guidance global

CIS CTI team analysis and recommendations on vishing threats targeting U.S. State, Local, Tribal, and Territorial (SLTT) organizations. The team assesses that vishing will continue to pose a risk to …

Source

Постанова КМУ №1009 від 6 серпня 2026 р.: нові вимоги до безперервності державних інформаційних ресурсів New document ua

КМУ ухвалив постанову №1009 від 6 серпня 2026 року «Деякі питання забезпечення безперервності функціонування державних інформаційних ресурсів», яка змінює логіку підходу до стійкості державних інформ…

Source Effective 2026-08-06 Action required

UK Cyber Resilience: Closing the Execution Gap Guidance global

A blog post discussing UK cyber resilience challenges and how CIS SecureSuite can help organizations move from awareness to execution. The article reports on a UK survey indicating that cyber risk is…

Source

When Tokenmaxxing Leads to Riskmaxxing Guidance global

Article discussing the tension between organizational pressure to maximize AI adoption ("tokenmaxxing") and security risks. Addresses how workforce adoption of AI tools without proper governance crea…

Source

Load more