Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.




Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.

CSAI FoundationChaptersEventsBlog
AI is changing fast. Behavioral security helps you keep up. Join Darktrace’s September 22 broadcast to see how →

CSA Research Publications

Whitepapers, Reports and Other Resources

Home
Publications

Browse Publications

Zero Trust Program Management Guidance

Zero Trust Program Management Guidance

Release Date: 09/08/2026

As organizations adopt Zero Trust (ZT) security strategies, it is critical they have the appropriate guidance and resources to steer their efforts and make i...

Request to download
Zero Trust Microsegmentation Guidance

Zero Trust Microsegmentation Guidance

Release Date: 09/08/2026

Microsegmentation is a foundational Zero Trust strategy that strengthens security by enforcing explicit, fine-grained communication controls between systems,...

Request to download
DLP in the AI Era

DLP in the AI Era

This report examines the operational reality of Data Loss Prevention (DLP) programs across enterprise security organizations, drawing on survey responses fro...

Request to download
Cryptographic Context Injection: When Encryption Defeats AI Guardrails

Cryptographic Context Injection: When Encryption Defeats AI Guardrails

Release Date: 08/22/2026

Key Takeaways A new attack technique called cryptographic context injection encrypts malicious instructions with a strong cipher — AES-256-GCM with PBKDF2-de...

Request to download
Post-Quantum Cryptography Key Management

Post-Quantum Cryptography Key Management

Quantum computing is evolving at a pace that will redefine the boundaries of problem solving. However, these advancements also threaten the foundations of...

Request to download
The State of Hybrid and Multi-Cloud Security Policy Management

The State of Hybrid and Multi-Cloud Security Policy Management

Release Date: 08/17/2026

Hybrid and multi-cloud have become the operating reality for most enterprise applications. Yet the security policies that govern application connectivity ...

Request to download
Top Threats to Cloud Computing Survey Report 2026

Top Threats to Cloud Computing Survey Report 2026

The 2026 survey results indicate a significant shift in cloud security priorities. Identity, artificial intelligence, third-party dependencies, and APIs now ...

Request to download
AISI: Open-Weight Models Close Cyber Capability Gap

AISI: Open-Weight Models Close Cyber Capability Gap

Release Date: 08/09/2026

Key Takeaways The UK AI Security Institute (AISI) has found that the leading open-weight AI models now trail frontier closed models on offensive cyber tasks ...

Request to download
Four AI Escapes: A Systemic Governance Risk Reading

Four AI Escapes: A Systemic Governance Risk Reading

Release Date: 08/09/2026

What Sandbox and Containment Failures at OpenAI and Anthropic Reveal About Evaluation Governance. Key Takeaways Between July 21 and July 30, 2026, OpenAI and...

Request to download
EU AI Act Article 50: Transparency Obligations Take Effect

EU AI Act Article 50: Transparency Obligations Take Effect

Release Date: 07/28/2026

Learn what the EU AI Act's Article 50 transparency requirements mean for AI providers and deployers. This publication explains the new disclosure obligations...

Request to download
AI Security Through the CISO Lens

AI Security Through the CISO Lens

Release Date: 07/28/2026

Gain insights from CSA's AI Storm Summit series on how CISOs are preparing for AI-driven cyber risks. Explore evolving strategies for AI governance, vulnerab...

Request to download
Hugging Face Incident Initial Post-Mortem

Hugging Face Incident Initial Post-Mortem

Release Date: 07/27/2026

Examine CSA’s analysis of the first publicly documented autonomous AI attack. Learn how the incident unfolded, why traditional defenses fell short, and the p...

Request to download
Every Frontier Model Cheated: What AISI's Findings Mean for Trust

Every Frontier Model Cheated: What AISI's Findings Mean for Trust

Release Date: 07/26/2026

Key Takeaways The UK AI Security Institute (AISI) reported on July 21, 2026 that every one of the five frontier models it evaluated for cybersecurity capabil...

Request to download
Defining Non-Human Identity

Defining Non-Human Identity

Release Date: 07/22/2026

A growing population of non-human identities (NHIs) are powering cloud platforms, SaaS applications, automation, and AI-based systems. Traditional Identit...

Request to download
Leveraging the Health Data from IoT Wearables

Leveraging the Health Data from IoT Wearables

Release Date: 07/20/2026

Healthcare organizations are increasingly looking to IoT wearables to support continuous health monitoring, remote patient monitoring, personalized treatm...

Request to download
Hugging Face's Autonomous AI Agent Breach

Hugging Face's Autonomous AI Agent Breach

Release Date: 07/19/2026

Security Implications and Guidance for Agentic-Attacker Incidents. Key Takeaways Hugging Face disclosed on July 16, 2026 that an intrusion into its productio...

Request to download
Agent Data Injection: A New Attack Class Beyond Prompt Injection

Agent Data Injection: A New Attack Class Beyond Prompt Injection

Release Date: 07/16/2026

How Corrupted Metadata Bypasses Existing Agent Defenses. Agent Data Injection: A New Attack Class Beyond Prompt Injection Key Takeaways Researchers from Seou...

Request to download
Gold Eagle: The White House's AI Vulnerability Clearinghouse

Gold Eagle: The White House's AI Vulnerability Clearinghouse

Release Date: 07/15/2026

What the New Federal Coordination Model Means for Critical Infrastructure Operators. Key Takeaways The White House announced Gold Eagle on July 15, 2026, a f...

Request to download
Multi-Cloud KMS Recommendations

Multi-Cloud KMS Recommendations

Release Date: 07/15/2026

Cryptographic key and secrets management is essential for safeguarding sensitive data in cloud environments. While key management in single-provider imple...

Request to download