Ai Security
Reddit AMA: AI-Integrated Malware, CAIRN, and CLOSEDQUORUM
Upcoming r/pwnhub AMA on AI-integrated malware research, hunting without detonating binaries, and findings from CAIRN and CLOSEDQUORUM. Scheduled for Oct. 7, 2026, noon–1 p.m. ET.
Your AI Malware Experiments Are Showing
Ryan joins the Beers with Talos podcast to discuss CAIRN, AI-integrated malware research, and what CLOSEDQUORUM reveals about autonomous command and control.
Introducing CAIRN: Frontier Tracking for AI-Integrated Malware
Cisco Talos released CAIRN, an open-source, metadata-first research toolkit for identifying, classifying, and tracking AI-integrated malware through the artifacts its AI components leave behind.
CERT-EU: Defending at Machine Speed
Presentation materials for Defending at Machine Speed, focused on practical use of security context to improve AI-assisted detection and response workflows.
AI attackers on adoption curve with first report of a novel malware strain
Video appearance covering AI-enabled adversary trends and emerging malware behavior.
Defending at Machine Speed: Guiding LLMs with Security Context
Enhance LLM performance for cybersecurity tasks with few-shot learning, RAG, & fine-tuning guide models for accurate PowerShell classification.
Defending at Machine-Speed: Accelerated Threat Hunting with Open Weight LLM Models
Splunker Ryan Fetterman explains how Splunk DSDL 5.2 enhances cybersecurity operations, streamlining PowerShell script classification and reducing analyst workload by 250x.
Model-Assisted Threat Hunting (M-ATH) with the PEAK Framework
Welcome to the third entry in our introduction to the PEAK Threat Hunting Framework! Taking our detective theme to the next level, imagine a tough case where you need to call in a specialized investigator. For these unique cases, we can use algorithmically-driven approaches called Model-Assisted Threat Hunting (M-ATH).
Paws in the Pickle Jar: Risk & Vulnerability in the Model-sharing Ecosystem
As AI / Machine Learning (ML) systems now support millions of daily users, has our understanding of the relevant security risks kept pace with this wild rate of adoption?