Security

The 2026 Artifact Management Enforcement Gap | ECI Research

The 2026 Artifact Management Enforcement Gap | ECI Research

Cloudsmith’s second annual Artifact Management Report finds that AI-generated code has become near-universal, but governance hasn’t kept pace. Three in four organizations generate SBOM data without using it for real-time security enforcement. ECI Research examines what the EU Cyber Resilience Act deadline means for teams still relying on manual remediation.

The 2026 Artifact Management Enforcement Gap | ECI Research Read More »

Act Security Launches $60M Platform to Fix Cloud Access Sprawl

Act Security Launches $60M Platform to Fix Cloud Access Sprawl

Act Security has launched an action-centric cloud security platform backed by $60 million from Team8, Bessemer, and Notable Capital. Rather than surfacing vulnerability findings, the platform removes the access paths that make breaches possible. The announcement arrives as AI agents inherit unused cloud permissions and operate at machine speed inside production environments.

Act Security Launches $60M Platform to Fix Cloud Access Sprawl Read More »

Kata Containers 4.0: Open Source AI Agent Sandboxing Grows Up

Kata Containers 4.0: Open Source AI Agent Sandboxing Grows Up

Kata Containers 4.0 promotes its Rust-based runtime to default, replacing Go, and positions the project as the open source standard for isolating AI agents in Kubernetes. The release addresses real production risk as nearly two-thirds of organizations report elevated security exposure from AI tooling. Confidential Containers integration broadens the appeal to regulated industries facing data sovereignty requirements.

Kata Containers 4.0: Open Source AI Agent Sandboxing Grows Up Read More »

Cinchy PeriMind: AI Action Governance for Enterprise Trust

Cinchy PeriMind: AI Action Governance for Enterprise Trust

Cinchy has launched PeriMind, an AI governance suite that gives enterprises real-time visibility and policy enforcement over AI agents in production. The product targets the growing gap between AI adoption speed and operational trust. ECI Research data shows AI governance spending is rising, and software supply chain security is a top enterprise investment priority for 2026.

Cinchy PeriMind: AI Action Governance for Enterprise Trust Read More »

Codenotary Free AI-Powered Linux Security for AlmaLinux

Codenotary Free AI-Powered Linux Security for AlmaLinux

Codenotary has launched a permanently free tier of its AI-powered security platform for AlmaLinux, covering up to 25 machines with full feature access. The offer includes SBOM management, CIS compliance, patch management, and AI agent monitoring. It’s a freemium land-and-expand play targeting lean ops teams with growing AI exposure.

Codenotary Free AI-Powered Linux Security for AlmaLinux Read More »

Healthcare IoT Endpoint Security: The Symphion Program Explained

Healthcare IoT Endpoint Security: The Symphion Program Explained

Printers account for 20% of healthcare network endpoints but remain almost entirely unmanaged from a cybersecurity standpoint. Symphion’s new program targets the governance vacuum that has allowed this risk to accumulate for decades. ECI Research examines what it means for ITDMs and security architects.

Healthcare IoT Endpoint Security: The Symphion Program Explained Read More »

Red Hat Digital Sovereignty & Lightwell: EMEA Analyst Take

Red Hat Digital Sovereignty & Lightwell: EMEA Analyst Take

Red Hat’s EMEA Analyst Update advanced three strategic themes: OpenShift crossing $2B ARR, the GA of Confirmed Sovereign Support for EU customers, and the launch of Project Lightwell, a Red Hat and IBM supply chain security clearinghouse. ECI Research analysis finds the sovereignty and supply chain security plays are structurally durable, backed by regulatory mandates and a €5B engineering commitment to secure 150,000-plus open-source packages.

Red Hat Digital Sovereignty & Lightwell: EMEA Analyst Take Read More »

Recast Bundles Endpoint Patch Management Tools as CVE Surge Hits 341%

Recast Bundles Endpoint Patch Management Tools as CVE Surge Hits 341%

Recast has launched a bundled offering combining endpoint remediation, third-party patching, and hardware lifecycle management in response to a 341% surge in CVEs tracked in the first half of 2026. The announcement reflects a broader shift in enterprise IT: patching is no longer a scheduled task but a continuous operational requirement. ECI Research data shows that most engineering teams spend the vast majority of their time on maintenance rather than innovation, making operational efficiency tools like this bundle a high-priority investment.

Recast Bundles Endpoint Patch Management Tools as CVE Surge Hits 341% Read More »

Isovalent Enterprise Platform 26.05: One Model for K8s, VMs, and LB

Isovalent Enterprise Platform 26.05: One Model for K8s, VMs, and LB

Isovalent’s 26.05 release promotes VM networking to GA, introduces shared load balancing for tenant clusters, and advances Hubble Timescape as a policy authoring environment. The release targets platform teams running mixed infrastructure across clouds and data centers. ECI Research breaks down what matters for ITDMs and platform engineers.

Isovalent Enterprise Platform 26.05: One Model for K8s, VMs, and LB Read More »

AI Agent Memory Governance: The Debt Enterprises Are Ignoring

AI Agent Memory Governance: The Debt Enterprises Are Ignoring

As AI agents move from stateless tools to systems with persistent memory, enterprises are accumulating context and action histories with no governance infrastructure to manage them. The Modern Data Company calls this “memory debt,” and ECI Research argues it’s a more urgent risk than most IT leaders have priced in. Here’s what auditable AI memory would actually require, and who’s most exposed.

AI Agent Memory Governance: The Debt Enterprises Are Ignoring Read More »