Du wirst angemeldet...

Bitte warte, während wir deine Anmeldung überprüfen

Artikel · Dienstag, 11. August 2026

Cybersecurity · Industry brief

Top three stories shaping Cybersecurity today, written for someone who already works in the industry: regulation, M&A, new entrants, notable filings, and any precedent worth pulling. Cite the trade publication (e.g. trade press, government source, court docket) directly so I can follow up.

Von Marius BongartsTech35 Ausgaben
← Zur aktuellen Ausgabe
Ausgaben
12 / 35
Über Nacht von KI aus öffentlichen Quellen erstellt, täglich aktualisiert.
Cybersecurity · Industry brief
Dienstag, 11. August 2026
Cybersecurity · Industry brief

NYDFS enforcement, AI security M&A sprint, Corma's stealth exit

1 Min. Lesezeit

NYDFS 23 NYCRR 500 enforcement

New York is holding money transmitters accountable for patch management failures.

On August 5, NYDFS settled a $250,000 enforcement action against a licensed money transmitter for violations of the state's cybersecurity regulation 23 NYCRR Part 500, stemming from a September 2022 ransomware attack that encrypted over half the company's servers [Quelle: JD Supra]. The investigation found the company's annual risk assessment omitted cybersecurity-specific threats entirely and its patch management policies covered only a limited set of third-party applications, leaving known vulnerabilities exposed. The penalty reflects cooperation and remediation but signals regulators will now parse the granularity of written policies.

Watch whether other states adopt NYDFS's patch-specificity standard.

AI security M&A accelerates

Cybersecurity buyers are consolidating around AI, identity, and behavioral fraud.

During H1 2026, the industry recorded over 215 M&A deals worth more than $100 billion, with strategic momentum flowing toward AI security, machine identity, behavioral fraud detection, and automated remediation [Quelle: PYMNTS]. Visa's $2.4 billion BioCatch acquisition (announced August 3), Akamai's $205 million LayerX deal, and Cisco's WideField closure (July 31) reflect a shift toward platform consolidation that correlates behavioral, identity, and network signals to catch sophisticated attacks. This follows yesterday's reporting on MSP consolidation, now extending into specialist layers.

The playbook is clear: integrate fraud and identity data or lose deal velocity.

Corma emerges with $60M from Sequoia

A Tel Aviv startup is racing to weaponize AI for defense, not offense.

Corma, founded in 2025, exited stealth with a $60 million seed led by Sequoia Capital, joined by Khosla Ventures and Coatue, after deploying its first defensive AI model six weeks ago to Fortune 100 and 500 organizations across healthcare, financial services, and critical infrastructure [Quelle: Fortune]. The company claims its model reduced threat response times by 94% for adopting organizations, directly addressing the challenge of AI-enabled attacks now moving at superhuman speed. This sits squarely in the venture surge we tracked four days ago—infrastructure bets, not experiments.

The question now: can response-time gains hold against attackers running their own AI loops?

Quellen
NYDFS settles with money transmitter for $250K over alleged ...
NYDFS settles with money transmitter for $250K over alleged ...
11 hours ago ... NYDFS settles with money transmitter for $250K over alleged cybersecurity regulation violations ... On August 5, NYDFS announced a $250,000 cybersecurity ...
jdsupra.com
KI-Zusammenfassung

On August 5, NYDFS settled a $250,000 cybersecurity enforcement action against a licensed money transmitter for violations of New York's cybersecurity regulation 23 NYCRR Part 500. The investigation, triggered by a September 2022 ransomware attack that encrypted over half the company's servers, found the company failed to conduct adequate risk assessments, design a sufficient cybersecurity program, and maintain written policies addressing systems and network security including patch management. NYDFS determined the company's annual risk assessment omitted cybersecurity-specific threats and its patching policies covered only a limited number of third-party applications, exposing it to known vulnerabilities. The penalty reflected the company's cooperation, size, limited revenue, and remediation of deficiencies.

Quelle öffnen
Cybersecurity M&A Spree Maps the Next Attack Surface - PYMNTS
Cybersecurity M&A Spree Maps the Next Attack Surface - PYMNTS
4 hours ago ... Companies are on a cybersecurity buying spree, but the billions of dollars in deal volume may be less revealing than what firms are buying.
pymnts.com
KI-Zusammenfassung

During the first half of 2026, the cybersecurity industry recorded over 215 mergers and acquisitions collectively worth over $100 billion, with buyers increasingly targeting AI security, machine identity, industrial infrastructure, browser protection, behavioral fraud detection and automated remediation. Notable deals include Visa's $2.4 billion acquisition of BioCatch (announced August 3), Akamai's $205 million acquisition of browser-security company LayerX (completed July), CrowdStrike's $420 million deal for Seraphic, Databricks acquiring Panther Labs for its security lakehouse, Rubrik buying identity-orchestration provider Strata, and Cisco's WideField deal (closed July 31). The M&A activity reflects a strategic shift toward platform consolidation that correlates behavioral, identity, network and application data signals to detect sophisticated attacks, as enterprises increasingly create new digital worker identities through AI agent deployment that require securing. According to PYMNTS Intelligence research, 68% of financial institutions increased fraud-detection budgets year over year, with 46% of institutions reporting increasingly sophisticated fraud schemes.

Quelle öffnen
Exclusive: Corma raises $60 million from Sequoia for AI trained to ...
Exclusive: Corma raises $60 million from Sequoia for AI trained to ...
13 hours ago ... ... funding to build AI models for defensive cybersecurity, led by Sequoia Capital, along with Khosla Ventures and Coatue. The announcement did not include ...
fortune.com
KI-Zusammenfassung

Corma, a Tel Aviv and San Francisco-based cybersecurity startup, raised $60 million in seed funding led by Sequoia Capital, with participation from Khosla Ventures and Coatue. Founded in 2025, the company builds AI models specialized for defensive cybersecurity rather than offensive capabilities, and has deployed its first model to Fortune 100 and 500 organizations across healthcare, financial services, energy, critical infrastructure, and retail sectors. According to the company, its model has reduced threat response times by 94% for adopting organizations and addresses the growing challenge of AI-enabled cyberattacks occurring at superhuman speed.

Quelle öffnen
Über Nacht zusammengestellt von MorningMail.aiZugestellt um 02:40