DevSecOps

Cyera Acquires Oasis Security: Betting on Agentic AI Security

Cyera Acquires Oasis Security as a Bet on Agentic AI Security

Cyera has completed its acquisition of Oasis Security, rebranding the combined offering as Cyera Identity and positioning it as trust infrastructure for the agentic enterprise. The move bets that identity and data security must converge at the point where AI agents operate. ECI Research examines whether the thesis holds and what it means for regulated enterprise buyers.

Cyera Acquires Oasis Security as a Bet on Agentic AI Security Read More »

RapidFort + CrowdStrike: Closing the Container Vulnerability Gap

RapidFort + CrowdStrike: Closing the Container Vulnerability Gap

RapidFort’s new integration with CrowdStrike Falcon Cloud Security targets the gap between vulnerability detection and remediation in Kubernetes environments. By ingesting SBOM and CVE data from Falcon and automating container image hardening, the two vendors aim to close a loop that has historically required significant manual intervention. The integration has particular relevance for federal and defense organizations operating in air-gapped environments.

RapidFort + CrowdStrike: Closing the Container Vulnerability Gap Read More »

Gemini 3.7 Flash: Price Cut and Performance Gains Reshape AI Agent Economics

Gemini 3.7 Flash: Price Cut and Performance Gains Reshape AI Agent Economics

Google has launched Gemini 3.7 Flash, cutting per-token pricing by 50% while posting significant improvements in software engineering, web development, and agentic workflow benchmarks. The release, arriving just three weeks after Gemini 3.6 Flash, signals an accelerating competitive cadence at the AI inference layer. ECI Research data shows enterprise AI-assisted coding is scaling fast, making first-pass code accuracy and integration friction the metrics that matter most.

Gemini 3.7 Flash: Price Cut and Performance Gains Reshape AI Agent Economics Read More »

PDQ Expands Endpoint Vulnerability Management to macOS and Six Ticketing Platforms

PDQ Expands Endpoint Vulnerability Management to macOS and Six Ticketing Platforms

PDQ has extended its vulnerability management workflow to macOS devices and added ticketing integrations with Zendesk, ServiceNow, and Halo. Three new APIs allow teams to push endpoint, vulnerability, and deployment data into external systems programmatically. The release positions PDQ as a unified endpoint management and security data platform for mixed Windows and macOS environments.

PDQ Expands Endpoint Vulnerability Management to macOS and Six Ticketing Platforms Read More »

AI Content Governance: Why the Output Layer Is the Real Risk

Why the Output Layer Is the Real Risk in AI Content Governance

Enterprise AI governance has advanced on access logging and provenance tracking, but most programs still lack enforcement at the content output layer. Markup AI calls this “compliance theater.” ECI Research data shows nearly two-thirds of practitioners already see elevated risk from AI-assisted development, making the case for output-layer controls more urgent.

Why the Output Layer Is the Real Risk in AI Content Governance Read More »

IREN Acquires Mirantis: Completing the AI Cloud Stack

IREN Acquires Mirantis: Completing the AI Cloud Stack

IREN has completed its acquisition of Mirantis, adding the k0rdent AI orchestration platform to its owned data centers and compute infrastructure. The deal represents a deliberate vertical integration play targeting enterprise AI Cloud buyers. ECI Research data shows AI-enabled development tools are the top investment priority for enterprises in 2026, validating the market IREN is now positioned to serve.

IREN Acquires Mirantis: Completing the AI Cloud Stack Read More »

Digital Media Provenance: Why C2PA Matters Beyond AI Fakes

Why C2PA Matters Beyond AI Fakes

A Utah judge’s rejection of unverified surveillance footage exposed a structural gap in digital media provenance that predates AI by decades. DigiCert is advancing C2PA, an open standard that cryptographically signs every edit in a media file’s history. ECI Research analysis explains why this matters for ITDMs and developers building media pipelines.

Why C2PA Matters Beyond AI Fakes Read More »

Cequence Brings Agentic AI Governance Across MCP, API, and LLM

Cequence Brings Agentic AI Governance Across MCP, API, and LLM

Cequence Security has released AI Discovery, API Registry, LLM Registry, and Skill Registry for AI Gateway, alongside upgraded Agent Personas that bind an AI agent’s tools, model, and APIs to a single policy-enforced job description. The approach, which Cequence calls Agentic Zero Trust, is the first to govern MCP, LLM, and API surfaces under a unified agent-bound identity. This research note examines the architectural logic, the competitive stakes, and what it means for enterprise security and development teams.

Cequence Brings Agentic AI Governance Across MCP, API, and LLM Read More »

Crogl's Sovereign AI SOC Agent: Free, On-Prem, No Strings

Crogl’s Sovereign AI SOC Agent

Crogl has released its Enterprise AI SOC Agent as a free download, deployable in minutes within a customer’s own environment including air-gapped networks. The platform automates alert investigation and threat hunting without moving data outside the customer’s perimeter. ECI Research data on constrained engineering capacity and AI-generated security risk helps explain why this architecture is hitting the market at the right moment.

Crogl’s Sovereign AI SOC Agent Read More »

Codenotary Uses Claude AI to Secure immudb Development

Codenotary Uses Claude AI to Secure immudb Development

Codenotary has been accepted into Anthropic’s Claude for OSS program, deploying AI assistance to accelerate development of immudb, its open source immutable database. The company is using Claude to detect subtle bugs, analyze concurrency issues, and generate regression tests, while maintaining mandatory human review of all code changes. The move positions Codenotary to ship faster at a moment when enterprise demand for software supply chain security infrastructure is near peak.

Codenotary Uses Claude AI to Secure immudb Development Read More »