Securing AI-Driven Supply Chains Before the Next Breach

Securing AI-Driven Supply Chains Before the Next Breach

Supply chains remain one of the most exposed attack surfaces in cybersecurity. Even as organizations invest in internal defenses, they depend on vendors, partners, and service providers with direct access to sensitive data and core systems. This dependence introduces risk at every connection point. When trust is assumed rather than verified, security gaps multiply.

 

AI adoption is exacerbating this risk. Vendors now use AI to develop products, write code, assess security and automate operations. This leads to unvetted applications, insufficiently reviewed code and security reports that may be more superficial than substantive. Automation can introduce vulnerabilities that even the vendor does not fully grasp. These unknowns escalate the risk that supply chains pose to organizational security.

 

We cut through compliance checklists and legal jargon to expose the real threats lurking in supply chains. He identifies the missteps that open the door to breaches and offers practical strategies for communicating risk to vendors, partners and customers. Learn how to assess whether your supply chain is truly secure, spot superficial AI-driven security claims and strengthen defenses by collaborating with suppliers rather than relying solely on audits.

 

Takeaways:

- Pinpoint how systems, data, and access are managed and protected throughout your supply chain.

- Identify the risks introduced by poorly reviewed AI-assisted development.

- Shift from audits to collaboration: communicate risk clearly and validate essential security practices with your suppliers.

Alex Holden | 07, 22 2026 | 60 min
Перегляньте вебінари
Before You Buy the Breach: Cybersecurity Lessons for M&A

Before You Buy the Breach: Cybersecurity Lessons for M&A

Breaches are difficult enough to identify, contain, and remediate. In the world of mergers and acquisitions, they can become even more complicated. This webinar explores the cybersecurity risks that may come bundled with a new acquisition, merger, or business transaction, including inherited breaches, unknown compromises, weak controls, exposed data, and vulnerable infrastructure.

 

We will examine who may carry responsibility when a security incident predates or overlaps a transaction, whether cyber insurance is likely to respond, and how integrating with a less trusted environment can affect your existing security posture. Attendees will learn how M&A activity can introduce hidden cyber risk, what questions security teams should ask before and after a deal, and how to reduce the chance of expensive buyer’s remorse.

Alex Holden | 07, 17 2026 | 59 min
Learning from Mistakes: Hard Lessons in Building Cyber Defenses

Learning from Mistakes: Hard Lessons in Building Cyber Defenses

Most security architectures are built around vendor guidance, compliance frameworks and assumed best practices. But real attackers don’t follow these models. Adversaries are adapting faster than most defensive programs, exploiting predictable gaps and repeated design mistakes. The stakes are high, and organizations need to rethink their approach to stay ahead.

 

This session focuses on building cyber defenses grounded in real-world attack patterns rather than theoretical frameworks. Drawing from direct observations of threat actor behavior, we’ll explore where defensive architectures fail, why these failures persist and how they are leveraged in modern intrusions. Attendees will gain practical guidance to align defenses with how attacks actually happen, addressing challenges like AI-driven threats, criminal ecosystems and the impact of human error.

 

Key Takeaways:

- Identify and eliminate repeatable failure points in security architectures.

- Design defenses based on real-world attack paths, not theoretical frameworks.

- Adapt continuously to evolving threats, including AI-driven attacks.

- Mitigate the impact of human error on otherwise well-designed systems.

Alex Holden | 06, 09 2026 | 60 min
AI: Insider, Threat Actor, and Accomplice

AI: Insider, Threat Actor, and Accomplice

Organizations and individuals are feeding sensitive corporate data, source code, internal documents, credentials, and security decisions into AI systems without fully understanding the consequences. At the same time, many organizations are blindly relying on AI-generated code, AI security advice, vibe-coded applications, and automated decisions without realizing how often these systems hallucinate, fail, leak information, or confidently make terrible choices.

 

At the same time, threat actors are having a field day. Criminal groups are using AI to scale phishing, fraud, impersonation, romance scams, malware development, reconnaissance, and even penetration testing operations faster than most defenders can react. Some of the examples we will walk through show AI acting less like a tool and more like an accomplice that helps bad actors refine ideas, automate abuse, and remove skill barriers that used to slow criminals down.

 

As usual, this is not a theoretical AI hype talk. We will look at practical real-world examples, attacker workflows, operational failures, and the uncomfortable reality that many organizations are already giving AI enough trust and access to become part of their attack surface.

Alex Holden | 05, 20 2026 | 59 min
War in Iran: Cyber Playbook in Wartime

War in Iran: Cyber Playbook in Wartime

As the war in Iran escalates, cyber activity follows patterns that are often visible if you know where to look. Based on our research and direct observations, Iranian threat actors have effectively been operating in a war-like state for years. They are not changing how they operate as much as they are adjusting how they use existing access and capabilities with fewer limitations.

 

This session will examine known Iranian APT groups, how their historical tradecraft translates into wartime behavior, and what changes when cyber moves from espionage to active conflict. The focus will remain on observed patterns and practical defensive considerations that organizations can apply immediately.

Alex Holden | 03, 24 2026 | 59 min
Mastering Threat Hunting: Aligning with Adversary Tactics in 2026

Mastering Threat Hunting: Aligning with Adversary Tactics in 2026

Cybercriminal tactics are evolving faster than ever. Adversaries are using increasingly sophisticated techniques to outpace traditional defenses. For threat hunters, it's becoming harder than ever to understand their mindset and methodologies. Without this insight, even the most advanced tools and strategies can fall short, leaving organizations vulnerable to emerging threats.

This session explores the gaps in current threat-hunting practices and reveals how aligning with real-world adversary tactics can transform your Cyber Threat Intelligence (CTI) program. By learning from the techniques attackers use today, businesses can proactively adapt their defenses and stay ahead in the escalating battle against cybercrime.

Join us to uncover actionable strategies that will elevate your threat-hunting capabilities and fortify your organization against evolving threats.

Alex Holden | 03, 10 2026 | 60 min
Leverage Cyber Threat Intelligence for Proactive Risk Mitigation

Leverage Cyber Threat Intelligence for Proactive Risk Mitigation

Breaches have become a daily reality. Dark web activities and emerging threat vectors outpace traditional defenses, creating blind spots that adversaries readily exploit. Without early warning systems, businesses remain vulnerable to sophisticated attacks that could have been prevented.

 

Effective Cyber Threat Intelligence (CTI) transforms raw intelligence into actionable insights that enable proactive defense strategies. This session demonstrates how to operationalize intelligence, map adversary tactics to business risks, and implement early warning systems that prevent breaches before they occur. Learn to distinguish signal from noise and convert threat intelligence into measurable risk reduction metrics that resonate with executive leadership.

Alex Holden | 01, 14 2026 | 59 min
Cyber Threat Intel 2026 - What’s Next?

Cyber Threat Intel 2026 - What’s Next?

As the cyber threat landscape is changing, we examine new trends, new threats, and new defenses. We look at how the dynamics of threat actors are changing, what the next big things in AI are for cyber criminals and defenders, and how political and social volatility is changing cyber attack patterns.

Alex Holden | 01, 07 2026 | 60 min
Cyber Threat Intelligence & You

Cyber Threat Intelligence & You

In our next installment on Cyber Threat Intelligence, we will explore how any cyber security professional can understand and contribute to CTI, and how it can strengthen your defenses. Through practical examples, you will gain essential skills to deal with cybercrime, navigate the Dark Web, and derive actionable intelligence that makes a real difference.

Alex Holden | 12, 04 2025 | 59 min
The Cyber Talent Shift: Rise of the Human+AI Workforce

The Cyber Talent Shift: Rise of the Human+AI Workforce

As AI rapidly reshapes tools, tasks, and entire workflows in cybersecurity, many professionals are asking: “Will I advance, adapt or be automated?” This talk explores the evolving cyber security job market in 2026, highlighting which roles are transforming, which are emerging, and how to stay indispensable. Whether you’re a hands-on analyst, a strategist, or a technical expert, we’ll explore how to future-proof your career and turn AI from a competition into an ally.

Alex Holden | 10, 30 2025 | 45 min
I vs AI – AI Threat Landscape 2026

I vs AI – AI Threat Landscape 2026

AI is a friend, but it can be a terrible foe when not properly used. In cybersecurity, we also see AI as an enabler of cyber-criminal activities and security errors. In this talk, we will focus on what you need to know to defend your enterprise against AI-enabled cyberattacks. We will also discuss how to protect yourself and your company against errors caused by the improper use of AI.

 

Learning objectives:

- Understand emerging AI-enabled cybercriminal trends

- Recognize and avoid mistakes that stem from blindly trusting AI

- Apply AI effectively to reduce and manage your organization’s threat landscape

Alex Holden | 10, 22 2025 | 56 min
1 2 3

Logo
Рішення Threat Intelligence Services Credential Integrity Service Domain Integrity Service Послуги з оцінки інформаційної безпеки Реагування на інциденти та їх розслідування
Наші офіси
Авторське право © 2026 Hold Security