Skip to main content

Netskope, CISA, EU AI Act, and NSS Labs updates - Q3 2026

H2: Overview of Recent Activity

Recent reporting covered hybrid post-quantum cryptography upgrades in Netskope One Next Gen SWG, EU AI Act compliance factors for AI agents, and CISAs TIC 3.0 guidance for distributed SASE enforcement with telemetry.

H2: Key Themes and Developments

Netskope updates focused on security telemetry and data protection for AI use, while other coverage addressed security testing validation methods, data-security tooling fragmentation, and infrastructure modernization planning across networking and cloud.

H3: Technology Releases & Product Enhancements

Netskope said it extended its post-quantum cryptography work into Netskope One Next Gen Secure Web Gateway by adding support for a hybrid X25519MLKEM768 key-exchange approach, “intended to keep sessions protected if one algorithm set is broken.” It described the feature as a tenant-level option controlled by a feature flag for controlled testing.

Netskope also described “prompt-time inspection” for Claude Enterprise, using Claude inference hooks where Claude calls a webhook before a prompt reaches the model, returning an allow/deny verdict based on deployed DLP profiles. Netskope’s One DataSec Command Center was also described as a unified data security control plane that ingests signals and correlates relationships for discovery, risk prioritization, evidence building, and remediation workflow execution.

H3: Partnerships & Ecosystem Engagement

RegScale collaborated with Microsoft to support FedRAMP readiness on Microsoft Azure, describing FedRAMP 20x as “shifting security assurance toward ‘continuous, automated validation.’” It said it mapped FedRAMP 20x principles to continuous controls validation and reporting in real time against FedRAMP’s Key Security Indicators.

Teleport added Linux Desktop support in its Infrastructure Identity Platform, describing Linux desktops as operating as a protected resource type using “cryptographic identity” and “just-in-time access request workflows,” with “live session monitoring, and audit logs.” The update was described as available in August.

H3: Infrastructure, Platform, or Deployment Updates

Cloudera enabled native GPU acceleration for Apache Spark 4.1 in Cloudera Data Engineering using NVIDIA CUDA-X libraries and a cuDF plug-in, and said the change would shorten processing time for Spark workloads without code changes. It said the capability would be available as part of Cloudera Anywhere Cloud announced at EVOLVE Singapore on August 20, 2026.

NSS Labs described Minion as an appliance-delivered Test-as-a-Service platform structured around multiple Minions aligned to security domains, with an SSE/SASE Minion in development with a stated timeframe of Q3 2026. The blog described throughput options and a testing cadence that included one-time, quarterly, monthly, or change-driven execution patterns.

H3: Additional Updates from Other Organizations

CISA published guidance for TIC 3.0 that explicitly named SASE as a compliant path away from centralized gateway models and toward distributed enforcement with required telemetry and specified logging levels, describing central change as moving from “prescribing where security controls must be deployed to prescribing what those controls must accomplish.”

A coverage on Netskope and Cybersecurity Insiders described investigation and evidence impacts from data security tool sprawl, stating that “Fifty-eight percent of organizations run 11 or more separate data security tools.” It also reported that under GDPR’s 72-hour notification window, “27% of organizations take weeks to reconstruct the sensitive data path or never have enough evidence to do so.”

H2: Full Update Index

  1. Netskope Adds PQC key exchange support to Next Gen SWG
    Netskope extends post-quantum cryptography to Netskope One Next Gen SWG with X25519MLKEM768 hybrid key exchange.
  2. Cloudera Spark GPU acceleration, 5G summits, and security advisories - Week of August 17, 2026
    Weekly roundup covering enterprise 5G and AI infrastructure planning, Spark GPU acceleration, data center economics, and security flaw disclosures.
  3. Netskope details two experiments using frontier AI to test its code
    Netskope’s security red team describes sandbox tests using frontier AI models to probe its code, including memory corruption hunting and verification.
  4. Netskope details survey findings on balancing AI speed and security
    Netskope’s survey of 100 financial services IT leaders finds most can’t scale AI adoption without risking security or operational integrity.
  5. Netskope Explains Blockchain Dead Drop Resolvers for C2 Fetches
    Dead drop resolvers use blockchain reads to fetch malware C2 pointers at runtime, with examples on EVM, Solana, and TON.
  6. Cybersecurity Insiders and Netskope outline investigation and evidence impacts of data security tool sprawl
    Cybersecurity Insiders and Netskope report that many organizations run 11+ data security tools with fragmented context, slowing investigations and evidence under GDPR timelines.
  7. Netskope details update and uninstall affiliate redirects in AI Sidebar with DeepSeek AI
    Google removed “AI Sidebar with DeepSeek AI” for scraping AI conversations, then it returned in July 2026 with an update/uninstall affiliate redirect payload.
  8. European Union Artificial Intelligence Act details compliance for AI agents under Article 50
    EU AI Act obligations for AI agents can apply under Article 50 even though “agent” is not in the act, with duties driven by interaction, synthetic content, and model modification status.
  9. Netskope reports Gartner SASE Critical Capabilities top rankings
    Netskope reports it ranked #1 in three Gartner SASE Critical Capabilities use cases and placed as a Magic Quadrant Leader again.
  10. CISA outlines TIC 3.0 approach using SASE and telemetry
    CISA’s TIC 3.0 guidance (June 2026) names SASE as compliant and shifts from mandatory routing to required telemetry to CLAW.
  11. Netskope details DLP validation layer for Claude Enterprise via inference hooks
    Netskope adds DLP validation to Claude Enterprise via inference hooks, inspecting prompts and tool-call data before inference.
  12. Netskope Threat Labs details malicious npm stealer using Bun and Ethereum C2
    Netskope Threat Labs says 28 malicious npm versions were published across four namespaces using one stealer payload and Ethereum-based C2 resolution.
  13. Netskope introduces Netskope One DataSec Command Center to manage sensitive data visibility
    Netskope said it released Netskope One DataSec Command Center, a unified control plane for discovering, tracking and protecting sensitive data across environments.
  14. Netskope outlines FakeCaptcha PDF traffic-distribution routing
    Netskope details a FakeCaptcha PDF scheme that feeds a traffic-distribution system routing to malware, ad landers, or premium-SMS scams.
  15. Netskope One DataSec Command Center details unified data security workflow
    Netskope says its One DataSec Command Center correlates data security signals into a unified workflow for discovery and remediation, including AI governance.
  16. Netskope Threat Labs details SmartLoader delivery using Polygon blockchain C2 resolution in a developer infostealer campaign
    Netskope Threat Labs reported an April 2026 campaign that targets AI developers by using cloned GitHub repositories and delivering an infostealer via SmartLoader with Polygon-based C2 resolution.
  17. NSS Labs Minion details available Minions and Test-as-a-Service delivery
    Minion by NSS Labs is an appliance-delivered Test-as-a-Service platform with Minions for SMB, cloud, and enterprise firewalls, plus planned AI and SSE/SASE domains.
  18. Minion by NSS Labs details recurring use cases for cybersecurity testing
    Minion by NSS Labs is a managed cybersecurity testing platform for recurring, evidence-based security validation under real-world threats.
  19. NSS Labs Minion tests security control efficacy with A/B metrics
    Minion by NSS Labs validates security controls with ground-truthed test cases, reporting block/detect/miss and false-positive rates and A/B deltas.
  20. Minion by NSS Labs details managed cybersecurity validation with real-world threat packs
    Minion by NSS Labs is a managed cybersecurity testing platform using real-world threat libraries and versioned test packs for audit-aligned results.