2026
18 篇文章Fairwind 計劃:Google 如何用 AI 幫政府與企業主動修補漏洞
Google 推出 Fairwind 計劃,讓政府與關鍵基礎設施夥伴搶先使用 Gemini 3.8 Flash Cyber 與 CodeMender,自主尋找並修復漏洞。本文解析此計劃的設計、限制與對產品建構者的啟示。
閱讀文章 ↗零資料保留不讓步:OpenAI 只看訊號,不看內容
OpenAI 推出 Private Safety Processing:客戶內容與金鑰留在客戶端,OpenAI 只收回活動類型訊號,在零資料保留承諾下仍能跨對話偵測試探、協調與代理偏離等風險,白皮書預計 9 月發布。
閱讀文章 ↗看不見的 Agent 流量:Cloudflare 如何偵測 Shadow MCP 並收回治理權
MCP 流量沒有保證的 hostname、也不需要 /mcp 路徑,企業網路裡的 agent 直連可能早已繞過所有核准流程。本文整理 Cloudflare 用 protocol signals 讓 MCP 流量現形的方法,以及先 visibility 再 enforcement 的治理順序。
閱讀文章 ↗MCP 企業託管授權定案:零接觸 OAuth 讓 AI 代理連上企業工具
Model Context Protocol 於 2026 年 6 月 18 日將企業託管授權(EMA)納入穩定規格:員工登入 SSO 即自動接通獲准的 MCP 伺服器。Okta 為首家 IdP,Claude、Claude Code、VS Code 與七家伺服器已支援。本文解析 ID-JAG 機制與安全辯論。
閱讀文章 ↗Vercel 企業版:讓內部 AI Agent 與應用安全上線的四道預設防線
Vercel 推出 Enterprise Apps and Agents:Passport 把每個內部應用預設擋在身分供應商後面、Connect 以短效憑證取代長駐金鑰、Managed Users 統一管理生命週期,加上 AWS BYOC。本文拆解四大元件的治理邏輯與現況(Beta/Private Beta)。
閱讀文章 ↗Cyera 傳以 120 億美元估值募資:80 倍 ARR 的資安豪賭
2026 年 6 月 2 日,Calcalist 與 TechCrunch 報導資安新創 Cyera 以 120 億美元估值募集至少 3 億美元。ARR 突破 1.5 億美元、隱含 80 倍倍數,本文拆解這場五個月內二度調升估值的爭議交易與併購策略。
閱讀文章 ↗OpenAI 如何安全部署 Codex:從沙箱到代理原生日誌
OpenAI 公開了內部部署 Codex 的安全控制框架,包括沙箱、審批策略、網路限制與代理原生遙測,為企業導入 coding agent 提供參考。
閱讀文章 ↗批評 Anthropic 設閘之後,OpenAI 也限制 GPT-5.5-Cyber 存取
OpenAI 宣布 GPT-5.5-Cyber 僅透過 Trusted Access for Cyber 計畫提供給關鍵資安防禦者,此分層機制已涵蓋數千名驗證防禦者。九天前 Altman 才批評 Anthropic 限制 Mythos 是「恐控行銷」,如今兩家實驗室走向同一結論。
閱讀文章 ↗Vercel 資安事件:一個第三方 AI 工具如何外洩客戶資料
2026 年 4 月 19 日 Vercel 披露資安事件:員工自用的 Context.ai 遭 Lumma 竊取木馬入侵,攻擊者透過 OAuth 權杖奪走其 Google Workspace 帳號,讀取未標記敏感的環境變數,客戶憑證遭論壇兜售。
閱讀文章 ↗Gartner:2028 年 25% 企業 GenAI 應用每年至少 5 次資安事件
Gartner 4 月 9 日預測:2028 年 25% 企業生成式 AI 應用每年至少 5 次小型資安事件(2025 年為 9%),2029 年 15% 每年至少一次重大事件。主因是 MCP 與 agentic AI 擴散,安全審查趕不上部署速度。
閱讀文章 ↗Anthropic 啟動 Project Glasswing:用 Mythos Preview 獵零日漏洞
2026 年 4 月 7 日,Anthropic 聯合 AWS、Apple、Microsoft 等 12 家機構啟動 Project Glasswing,讓未公開的 Mythos Preview 模型在夥伴環境內尋找零日漏洞,CyberGym 達 83.1%,並提供 1 億美元使用額度。
閱讀文章 ↗Google RSAC 2026:用 Gemini 情報與 AI Agent 追上 22 秒的攻擊
Google 在 RSAC 2026 發表 Gemini 驅動的暗網情報與 SecOps AI agent,Wiz 併購同週完成;Mandiant M-Trends 2026 顯示攻擊者 22 秒就能轉手入侵存取,防禦自動化從選配變成生存條件。
閱讀文章 ↗5.1 億美元 AI 伺服器走私中國案:美國起訴 Super Micro 相關三人
2026 年 3 月 19 日,美國司法部起訴與 Super Micro 相關的三人,指控共謀把搭載 AI GPU 的高階伺服器經東南亞轉運至中國,至少 5.1 億美元設備遭轉移,並以數千台假伺服器應付稽核。本文拆解轉運路線、偽裝手法與出口管制執法的訊號。
閱讀文章 ↗xAI Grok 打進五角大廈機密系統:接受「一切合法用途」的門票
Axios 報導 xAI 與五角大廈達成協議,Grok 將進入軍方機密系統,成為 Claude 之外第一個取得該等級存取權的模型。xAI 簽下了 Anthropic 拒絕的「一切合法用途」條款,而後者正面臨被列為供應鏈風險的威脅。
閱讀文章 ↗歐洲議會封鎖議員公務裝置內建 AI:雲端資料與美國司法風險
歐洲議會 IT 部門停用議員與幕僚公務裝置上的內建 AI 功能:無法保證上傳雲端資料的安全,且美國政府可依法調閱美企持有的資料。這個決定暴露歐盟機構對美國 AI 供應商的信任裂痕。
閱讀文章 ↗微軟 Cyber Pulse 報告:八成財星 500 大企業已在跑 AI 代理
微軟首份 Cyber Pulse 報告以第一方遙測揭露:超過八成財星 500 大企業已有活躍 AI 代理,29% 員工用過未經核准的代理。報告提出對代理套用零信任與五項治理能力,把可觀測性推上企業資安議程首位。
閱讀文章 ↗前 Google 工程師因竊取 AI 機密被定罪:美國首宗案件解析
2026 年 1 月 29 日,舊金山聯邦陪審團裁定前 Google 工程師 Linwei Ding 的 7 項經濟間諜與 7 項竊取營業秘密罪名全部成立,涉及 TPU 晶片與超級電腦叢集軟體逾 2,000 頁機密文件。FBI 稱此為美國首宗 AI 相關經濟間諜定罪,本文整理案情與內部威脅啟示。
閱讀文章 ↗CrowdStrike 收購 SGNL:把每個 AI Agent 都當成特權身分來防護
2026 年 1 月 8 日,CrowdStrike 宣布收購 Continuous Identity 新創 SGNL,將即時存取控制延伸到人類、非人類身分與 AI Agent。本文拆解交易結構、技術整合,以及代理式 AI 對身分安全典範的衝擊。
閱讀文章 ↗
2026
18 ARTICLESFairwind Program: Google's Proactive Cyber Defense for Governments and Enterprises
Google launches Fairwind Program, giving trusted governments and enterprises access to Gemini 3.8 Flash Cyber and CodeMender for autonomous vulnerability finding and patching.
READ POST ↗Zero Data Retention Holds: OpenAI Sees Signals, Not Content
Private Safety Processing scans abuse patterns across interactions while ZDR holds; customers keep content and keys, white paper due September 2026.
READ POST ↗Detecting Shadow MCP Traffic: How Cloudflare Brings Agent Tool Calls Under Governance
Learn how Cloudflare identifies MCP traffic on your network, distinguishes shadow MCP from portal bypass, and enforces governed access to AI agent tools.
READ POST ↗MCP's Zero-Touch OAuth: Enterprise-Managed Authorization
MCP's Enterprise-Managed Authorization is now stable: SSO login auto-connects approved servers via ID-JAG tokens. Okta ships first; Claude and VS Code support it.
READ POST ↗Vercel for Enterprise: Four Default Guardrails for Internal AI Apps and Agents
Vercel Enterprise Apps and Agents: Passport guards internal apps behind your IdP by default, Connect swaps static keys for task-scoped tokens, Managed Users governs lifecycle, BYOC runs in your AWS.
READ POST ↗Cyera's $12B Round: 80x ARR and the AI Security Land Grab
Cyera is raising $300M+ at $12B led by Evolution Equity, five months after its $9B Series F. With ARR above $150M, that is an 80x multiple — a bet on AI-era data security spend.
READ POST ↗How OpenAI Deploys Codex Safely: Sandboxes, Rules, and Agent-Native Logs
OpenAI shares its internal framework for deploying Codex safely: sandboxing, approval policies, network controls, and agent-native telemetry for auditing and triage.
READ POST ↗OpenAI Gates GPT-5.5-Cyber After Mocking Mythos Limits
OpenAI is gating GPT-5.5-Cyber behind its Trusted Access program for vetted defenders, nine days after Altman called Anthropic's Mythos limits 'fear-based marketing'.
READ POST ↗Vercel Breach: A Third-Party AI Tool Leaked Customer Data
Vercel disclosed a breach on April 19: attackers hit Context.ai, hijacked an employee's Google Workspace via OAuth, and read non-sensitive environment variables now up for sale.
READ POST ↗Gartner: GenAI Security Incidents to Nearly Triple by 2028
Gartner: by 2028, 25% of enterprise GenAI apps will see 5+ minor security incidents yearly, up from 9% in 2025. The driver is MCP-powered agentic AI outpacing security review.
READ POST ↗Project Glasswing: Anthropic's Mythos Hunts Zero-Days
On April 7, 2026, Anthropic launched Project Glasswing with partners incl. AWS, Apple and Microsoft, using the unreleased Mythos Preview model to hunt zero-day bugs at scale.
READ POST ↗Google RSAC 2026: Agentic Defense Meets a 22-Second Threat
Google used RSAC 2026 to launch Gemini-powered dark web intelligence and SecOps AI agents; Mandiant's M-Trends 2026 found attackers now hand off access in 22 seconds.
READ POST ↗Three Charged in Super Micro-Linked AI Server Smuggling Case
Charges unsealed March 19, 2026: three people tied to Super Micro allegedly diverted at least $510 million in AI servers to China via Southeast Asia, staging thousands of dummy servers to pass audits.
READ POST ↗Grok Enters Pentagon Classified Systems as Anthropic Clashes
xAI signed a deal letting the US military run Grok in classified systems — the first model besides Claude to reach that level. The price: 'all lawful use' terms Anthropic refused.
READ POST ↗EU Parliament Blocks Built-in AI on Lawmakers' Devices
The European Parliament's IT department disabled built-in AI features on lawmakers' work devices, citing data security, training-data leakage, and US legal compulsion risks.
READ POST ↗Microsoft Cyber Pulse: 80% of Fortune 500 Now Run AI Agents
Microsoft's first Cyber Pulse report: 80%+ of Fortune 500 firms run active AI agents, 29% of employees have used unsanctioned ones. The fix: Zero Trust for agents plus five governance capabilities.
READ POST ↗Ex-Google Engineer Convicted in First AI Espionage Case
A San Francisco federal jury convicted ex-Google engineer Linwei Ding on January 29, 2026 — seven counts of economic espionage, seven of trade secret theft, covering TPU chips and cluster software.
READ POST ↗CrowdStrike Buys SGNL to Secure AI Agent Identities
On January 8, 2026, CrowdStrike announced its acquisition of SGNL, whose Continuous Identity runtime extends real-time access control to humans, non-human identities, and AI agents.
READ POST ↗