
CyberWire Daily Your private call isn’t so private.
Mar 25, 2026
Dale Hoak, CISO at RegScale, speaks about AI security and compliance automation. Intern Kevin (Kevin McGee/Magee), Microsoft’s Global Director of Cybersecurity Startups, files lively reports from the RSAC floor. They discuss AI risk, supply-chain compromises, critical router and platform vulnerabilities, phishing scams, and browser extensions harvesting AI chats.
AI Snips
Chapters
Transcript
Episode notes
Protect AI Workflows Identity And Supply Chains
- Vendors should prioritize protections across AI workflows, identity, and supply chains rather than single-point solutions.
- RSAC announcements highlighted AI visibility tools, identity posture management, and software repository malware defenses as practical defenses.
Statecraft Joins Technical Defense For Emerging Threats
- Diplomacy must pair with technical defenses as adversaries weaponize AI, cyber, and space systems.
- The U.S. State Department launched a Bureau of Emerging Threats covering cybersecurity, critical infrastructure, disruptive tech, and space security.
Supply Chain Targeting AI Libraries Exposes Secrets
- Attackers are targeting AI development pipelines to harvest API keys and environment secrets.
- The TeamPCP supply-chain compromise of LiteLLM on PyPI exposed credentials because LiteLLM brokers connections to multiple LLM providers.
