When AI Agents Become Attackers: Lessons from the OpenAI and Hugging Face Incident

Posted on by Mike Shinn

In July 2026, an autonomous AI agent escaped an OpenAI security evaluation environment, reached the public Internet, compromised third-party infrastructure, and ultimately penetrated production systems at Hugging Face. This was not a hypothetical demonstration. Hugging Face reconstructed approximately 17,600 attacker actions grouped into roughly 6,280 clusters between July 9 and July 13. According to Hugging […]

CMMC Phase 2 Suspension Isn’t a Reason to Stop Preparing

Posted on by Dean Lombardo

The CMMC Phase 2 suspension gives defense contractors more time to prepare, not a reason to stop preparing. Here are some reminders and recommendations for the meantime. The Cybersecurity Maturity Model Certification (CMMC) program was headed toward an important milestone on November 10, 2026. That was when Phase 2, also referred to as Phase I, […]

How AI Increases the Security Risks of End-of-Life Software, and What You Can Do About It

Posted on by Dean Lombardo

End-of-life software with unpatched vulnerabilities offer low-hanging fruit for AI-assisted cyberattacks. Orchestrating defense in depth around unsupported systems can reduce the attack surface, strengthen detection and response, limit the blast radius, and buy defenders more time. Cybersecurity may be approaching a point where attacks move substantially faster than defenders can deflect and contain. Artificial intelligence […]

AI-Speed Vulnerability Exploitation, and Layered Security Countermeasures

Posted on by Dean Lombardo

Artificial intelligence is changing more than the sophistication of cyber attacks—it is changing the speed of attacks. AI-speed vulnerability exploitation enables attackers to discover weaknesses, generate exploits, perform reconnaissance, and launch attacks in a fraction of the time previously required by human operators. As the defender’s response window shrinks, defense in depth cybersecurity becomes increasingly […]

Water Treatment Plant Security: Balancing OT Availability and Cybersecurity

Posted on by Dean Lombardo

Improve water treatment plant security without disrupting OT operations through noninvasive cybersecurity controls. Water treatment plant security is under pressure again. After July 2026 coordinated cyberattacks disrupted municipal water facilities across at least 12 states and triggered federal warnings, utilities face a difficult question: how can they strengthen cybersecurity without disrupting the OT systems that […]

Atomic OSSEC Adds Application Allowlisting and Blocklisting for Linux and Windows

Posted on by Dean Lombardo

Get application allowlisting and blocklisting for Linux and Windows right from the Atomic OSSEC GUI. Organizations depend on hundreds or even thousands of applications, scripts, and software providers to keep business operations moving. Every new application, update, or executable introduces another opportunity for attackers to abuse trusted software, install malware, or gain unauthorized access. Application […]

Are You Prepared for the Increase in AI-Accelerated Attacks? Roll Out Affordable Defense-in-Depth Security

Posted on by Dean Lombardo

Artificial intelligence is transforming cybersecurity, but not just for defenders. According to the Five Eyes intelligence alliance, the next generation of frontier AI models is dramatically accelerating cyberattacks by compressing the time between vulnerability discovery and exploitation from weeks into days—or even hours. For governments, critical infrastructure operators, and businesses alike, that means the cybersecurity […]

NIST SP 800-171 Rev. 3: The Current Modern CUI Baseline

Posted on by Dean Lombardo

For government contractors and MSPs that store, process, or transmit Controlled Unclassified Information (CUI), NIST SP 800-171 Rev. 3, published on May 14, 2024, provides a modern framework for strengthening security while preparing them for evolving federal cybersecurity requirements, including those that may be reflected in future CMMC and FedRAMP updates. Atomicorp delivers the endpoint […]

Atomicorp Blocked wp2shell Exploit Before It Had a Name

Posted on by Mike Shinn

CWE-first protection wins again. While the industry raced to publish emergency wp2shell detections, Atomicorp’s existing generic SQL injection and RCE protections were already positioned to stop the underlying attack behavior. wp2shell: The attack was new. The weakness was not. The wp2shell chain combines CVE-2026-63030, a WordPress REST batch-route interpretation conflict, with CVE-2026-60137, an SQL injection […]

Why Continuous Compliance Monitoring Matters More Than Ever

Posted on by Dean Lombardo

Continuous compliance monitoring provides the ongoing visibility organizations need as AI-accelerated attacks shorten the time between vulnerability discovery and exploitation. Atomicorp’s Atomic OSSEC EDR delivers continuous compliance monitoring and benchmarking across IT and OT environments through agent-based or agentless deployment on modern, legacy, and unsupported operating systems. Built-in antivirus, endpoint firewall, file integrity monitoring, vulnerability […]