Between March 18 and 21, nine OpenClaw CVEs dropped β including a 9.9 critical that let any authenticated user become admin by asking nicely. A timeline, breakdown, and what it means for self-hosters.
43,500 attendees, 700+ speakers, 600+ exhibitors β and one overwhelming theme. RSAC 2026 was the conference where the security industry admitted that AI agents have changed everything. Here's our definitive wrap-up.
Astrix Security unveils a four-method AI agent discovery engine and real-time Agent Control Plane at RSAC 2026 β combining NHI fingerprinting, EDR telemetry, and platform integrations to find and govern every shadow AI agent in the enterprise.
Check Point's AI Defense Plane is a unified security control plane that governs AI agents, applications, and employee AI usage β with runtime enforcement in under 50 milliseconds, powered by Lakera and Cyata acquisitions.
Exein unveils Photon β a preemptive runtime security solution that operates inside the kernel to block attacks before execution. Designed for autonomous AI agents, IoT, and critical infrastructure where downtime isn't an option.
Protos AI deploys coordinated AI agents that execute structured CTI investigations from planning to reporting β freemium, model-agnostic, and designed to compound organizational intelligence over time.
Seceon launches ADMP at RSAC 2026 β continuous discovery, behavioral baselining, and real-time protection for autonomous AI agents, LLM APIs, RPA bots, and machine identities. Plus SeraAI 2.0 resolves 70% of SOC incidents without human intervention.
Snyk unveils Agent Security and Evo AI-SPM GA at RSAC 2026 β a full-lifecycle enforcement architecture that secures AI coding agents like Claude Code, Cursor, and Devin across environment, artifact, and behavior, with Agent Scan, Studio, and Agent Guard.
SOCRadar debuts a modular marketplace for deploying specialized autonomous security agents β plus identity intelligence that bridges internal IAM with external credential exposure across the dark web and SaaS platforms.
Google's newly acquired Wiz launches the AI Application Protection Platform β evolving CNAPP into agentic-native security with red, blue, and green AI agents defending AI systems in real time.
Arctic Wolf's Aurora Agentic SOC deploys hundreds of specialized AI agents to handle security operations, powered by a 'Swarm of Experts' framework. It's agent-led, human-supervised β and available at no extra cost to existing customers.
CrowdStrike expands Falcon AIDR to desktop AI apps, launches shadow AI discovery for endpoints, cloud, and SaaS platforms, and adds Microsoft Defender support to Next-Gen SIEM. CEO George Kurtz calls 2026 the 'breakout year for the agentic SOC.'
Geordie AI, a security and governance platform built specifically for AI agents, was named 'Most Innovative Startup' at RSAC 2026's Innovation Sandbox contest. The win signals that agent governance is now the hottest problem in cybersecurity.
Google's biggest RSAC 2026 push: agentic automation in Security Operations with Triage and Investigation agents, Wiz acquisition complete with AI-APP and red/blue/green agents, dark web intelligence agents with 98% accuracy, and M-Trends 2026 revealing 22-second adversary handoffs.
Rubrik's Semantic AI Governance Engine translates natural language policies into machine logic for real-time control of autonomous AI agents β replacing manual oversight with intent-driven governance powered by a proprietary small language model.
SentinelOne goes GA on four products at RSAC 2026: Prompt AI Agent Security for real-time agent governance with MCP monitoring, Prompt AI Red Teaming for continuous AI application testing, Purple AI Auto Investigation for one-click agentic SOC, and AI data pipelines that cut SIEM noise by 80%.
SentinelOne launches Prompt AI Agent Security for real-time MCP server governance, Prompt AI Red Teaming for AI app hardening, and general availability of Purple AI Auto Investigation β agentic forensic investigations that compress hours into minutes.
Cisco's RSAC 2026 keynote introduces Zero Trust Access for AI agents via MCP proxy, DefenseClaw open-source secure agent framework, AI Defense Explorer Edition for self-service red teaming, and six specialized SOC agents. 85% of enterprises pilot AI agents β only 5% reach production.
At RSAC 2026, Orca launches autonomous Threat Investigation and AppSec Triage agents, plus runtime AI detection that tracks every LLM call, MCP server, and shadow AI deployment across your cloud estate.
OWASP releases AIVSS v0.8 ahead of RSAC 2026 β a quantitative framework for scoring AI agent security risks that CVSS was never designed to measure. Co-published with cyber insurance standard AIUC-1.
Defense giant Booz Allen Hamilton launches Vellox, a five-product agentic cybersecurity suite built to fight AI-powered attackers at machine speed. Cyberattack breakout times dropped to under 30 minutes in 2025, with the fastest measured in seconds.
CrowdStrike and NVIDIA unveil a Secure-by-Design AI Blueprint that integrates Falcon security directly into NVIDIA's OpenShell agent runtime β embedding protection at the foundation of autonomous systems rather than bolting it on after deployment.
RSAC 2026 Innovation Sandbox finalist Geordie AI, founded by Darktrace's ex-COO and Snyk's ex-CTO, raises $6.5M to build real-time discovery, behavior monitoring, and risk control for autonomous AI agents.
Red Hat AI's 'Bring Your Own Agent' blueprint uses OpenClaw as its reference agent, adding SPIFFE identity, MCP Gateway authorization, Kata Containers isolation, and MLflow tracing β all without touching agent code.
A comprehensive map of every major agent security product launched in the two weeks before RSAC 2026. From identity to runtime to offensive testing, the agent security market went from emerging to established in 14 days.
CASB governed human access to cloud apps. Unbound AI says enterprises now need an Agent Access Security Broker (AASB) to govern what Cursor, Claude Code, Copilot, and Codex can see, touch, and execute β before a destructive command forces the issue.
Xbow's Series C makes it a unicorn. The former GitHub executive's company deploys swarms of AI agents that autonomously pen-test web, mobile, and native applications β reaching #1 on HackerOne and reducing testing from weeks to hours.
1Password partners with Anthropic, OpenAI, GitHub, Cursor, and Vercel to launch Unified Access β a platform that manages credentials for AI agents alongside humans, with least-privilege controls and full audit trails.
Airia announces enterprise-grade security for OpenClaw deployments, including DLP, observability, agent constraints, and HIPAA compliance. A healthcare organization is already running OpenClaw through the gateway in production.
Airia's AI Gateway wraps OpenClaw in enterprise security layers β DLP, observability, agent constraints, and routing controls β enabling regulated industries to deploy OpenClaw agents with centralized governance. A healthcare org already went live.
Alibaba targets $100B in AI and cloud revenue over five years, backed by $53B infrastructure spend. CEO Eddie Wu says tight app-model integration is the critical priority β and Alibaba's structural advantages over OpenAI and Google may prove him right.
At RSAC 2026, Microsoft announces Agent 365 as the enterprise control plane for AI agents, network-level prompt injection blocking, shadow AI discovery, and over 15 new Security Copilot partner agents β the most comprehensive agentic security release from any vendor.
Microsoft's 2026 Secure Access report reveals that nearly every enterprise suffered identity or network access incidents, with 70% linked to AI-related activity. AI agent privilege escalation is now a real-world threat, not a theoretical risk.
Oasis Security's Series B brings total funding to $195M for its Agentic Access Management platform. With machine identities outnumbering humans 82 to 1, the company is building least-privilege governance for AI agents at enterprise scale.
The OWASP GenAI Security Project releases its most comprehensive update yet: agentic red teaming taxonomy, MCP server security guide, GenAI data security risks β plus a live agentic AI Capture the Flag at RSAC 2026.
Salt Security launches the industry's first platform to secure the entire agentic AI stack β mapping how LLMs reason, MCP servers connect, and APIs execute β with the Agentic Security Graph providing real-time visibility into what your AI agents can actually do.
Amazon Bedrock AgentCore Policy β natural language rules enforced via Cedar policy engine β reaches general availability across 13 regions. Combined with memory streaming and RSAC's agent security focus, enterprise agent governance is becoming infrastructure.
America's oldest bank has 134 'digital employees' running on its Eliza platform. They have performance reviews, human managers, and email logins. Headcount is down 5,300 in two years. The CEO says it has nothing to do with AI. The math says otherwise.
Entro Security launches Agentic Governance & Administration (AGA) for shadow AI discovery and MCP enforcement. Apono launches Agent Privilege Guard with Intent-Based Access Controls and zero standing privileges. Together, they map the full agent governance stack β both headed to RSAC 2026.
The FTC's March 2026 AI policy statement establishes the first federal enforcement framework for AI agents, automated decisions, and AI-generated content. Fines up to $53K per violation start in 2027. Here's what it means for builders and enterprises.
HiddenLayer's 2026 AI Threat Landscape Report reveals that agentic AI breaches are already materializing β with supply chain malware as the #1 vector, shadow AI at 76%, and a transparency crisis where 53% of orgs admit hiding incidents.
Microsoft Azure Foundry IQ reaches GA β a managed knowledge service that connects AI agents to enterprise data with permission-aware retrieval, agentic search, and MCP integration. The RAG problem may finally have an enterprise-grade answer.
Paris-based Parallel raises β¬20M Series A from Index Ventures to deploy AI agents that automate hospital admin by operating at the UI layer β reading screens and clicking through legacy software. No API integrations. One-week deployment. Dozens of hospitals already live.
Snowflake launches Project SnowWork in research preview β an autonomous enterprise AI platform that executes multi-step workflows on governed data. Not a chatbot. Not a copilot. A system that plans, analyzes, and delivers finished outputs.
At the Orange Business Summit 2026 in Paris, Europe's largest telco unveiled Live Intelligence Studio for building and deploying AI agents on sovereign infrastructure, plus deepfake detection for enterprise calls.
Gartner says 85% of enterprise AI agent pilots never reach production. The blockers β cost explosion, data silos, compliance friction β reveal why open-source, local-first agents have a structural advantage.
China's 15th Five-Year Plan commits Β₯1 trillion to AI development with 30% earmarked for autonomous agents. Here's what this means for the global AI agent ecosystem and OpenClaw users.
OpenAI is developing its own code hosting platform to compete with Microsoft's GitHub. Here's why this matters for the future of AI-assisted coding and what OpenClaw users should know.
A practical guide to running an internal OpenClaw Hub: one place for notes, tasks, agent status, and links - behind your network, not on the public internet.
If you can't see what your agents are doing, you can't trust them. Here's a practical mission control setup: runs, logs, failures, and artifact tracking.
DBS Bank and Visa completed AI-driven credit card transactions. Santander and Mastercard achieved Europe's first live agent payment. What this means for personal AI agents like OpenClaw.
In OpenAI's new Builders Unscripted podcast, OpenClaw creator Peter Steinberger shares his journey from WhatsApp experiment to viral AI agent β and why he thinks learning to build with AI is like learning guitar.
OpenClaw and AutoGPT are both autonomous AI agents, but they target very different use cases. Here's an honest comparison of maturity, design philosophy, and practical tradeoffs.
OpenClaw and Zapier both automate work, but they approach it from opposite directions. Here's an honest comparison to help you pick the right tool β or use both.
Looking for OpenClaw alternatives? Compare the top AI agent platforms including Lindy.ai, AutoGPT, AgentGPT, and more. Find the right tool for your needs.
Complete guide to running OpenClaw on Raspberry Pi 4/5. Hardware requirements, installation, optimization tips, and what works (and what doesn't) on ARM.
Compare OpenClaw with Siri, Google Assistant, and Alexa. See how a self-hosted AI agent stacks up against Big Tech voice assistants for real productivity.
Practical strategies to slash your OpenClaw API spending β from smart model selection and heartbeat tuning to prompt caching and local models. Real numbers included.
Just set up OpenClaw? These 10 essential skills will transform it from a basic chatbot into a powerful personal assistant. Here's what to install first and how to use each one.
Set up timed automations with OpenClaw cron jobs β morning briefings, inbox checks, reminders, and recurring tasks. Complete scheduling tutorial with examples.
Understand how OpenClaw's memory system works β MEMORY.md, daily notes, memory search, and context management. Configure persistent memory that makes your agent smarter over time.
Turn a Mac Mini into a 24/7 AI assistant server. Complete setup guide covering installation, auto-start, remote access, power management, and optimization tips.
Run OpenClaw in Docker on any VPS, Raspberry Pi, or home server. Includes docker-compose, environment setup, persistent storage, and auto-restart configuration.
Step-by-step guide to connecting OpenClaw to your phone via Telegram, WhatsApp, Signal, Discord, and iMessage β so your AI agent is always in your pocket.
Everything you need to know about OpenClaw's security model β how your data flows, what the agent can access, and how to lock it down for peace of mind.
Real examples of small teams using OpenClaw to consolidate email tools, CRM, task managers, report generators, and monitoring β at a fraction of the cost.
Discover why small businesses are turning to AI assistants for email triage, calendar management, customer inquiries, and more β without enterprise pricing.
Stop drowning in email. Learn how AI agents handle email differently than rules and filters, with practical workflows for triage, drafting, and follow-ups.
Run a fully private AI assistant with zero API costs. This guide shows you how to set up Ollama with OpenClaw for a completely local, privacy-first experience.