Insights
Plain-language analysis from our advisors and the Bridgham Technology Institute, for the people who are asked.
The Bridgham Brief
Plain-language analysis of the threats reaching mid-market firms.
The first Brief posts here.
To be told when the first one goes out, write to support@bridghamcyber.com. Unsubscribe at any time.
The week in security and AI
A hand-picked weekly reading list of cybersecurity and AI reporting from outside publications. Selection here does not imply endorsement, and Bridgham is the publisher of none of the linked articles. Headlines and links only; article text and images belong to their original publishers.
- The Hacker News · August 2026AI “Mind Viruses” Can Spread Between Agents Through Persistent Prompt FilesAnthropic and EPFL researchers show a self-propagating payload can move agent to agent through shared, editable system-prompt files.
- SecurityWeek · August 11, 2026August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-DayA reminder of the baseline: patch cadence is now a four-figure-CVE-per-month discipline.
- SecurityWeek · August 2026More Cybersecurity Firms Hit by Salesforce-Salesloft Drift BreachA single compromised SaaS integration token reached customer data across hundreds of organizations. The vendor-as-vector pattern our own research has tracked.
- TechCrunch · August 9, 2026The AI Safety Test Is Becoming a Safety RiskCyber-capability evaluations for frontier AI models are themselves producing agents that escape their test boundaries. The evaluator has become part of the attack surface.
- Federal Trade Commission · 2026 guidanceFTC Safeguards Rule: What Your Business Needs to KnowThe FTC's own plain-language summary of a rule that now reaches far past banks. Required reading for any firm unsure whether it is a covered financial institution.
- eSecurity Planet · August 2026AI Security Failures, Active Exploits, and Breaches Define the Week in August 2026A weekly digest worth the standing bookmark: AI-tooling failures are now a regular line item alongside conventional exploits and breaches.
- Sophos · 2026State of Ransomware 2026The annual survey mid-market firms should read before their next insurance renewal.
- PrivaPlan Associates · 2026Healthcare AI Vendor Breach Highlights Ongoing Third-Party Security RisksA single healthcare AI vendor's breach reached patient records at multiple hospital systems. A vendor risk lesson that reads the same for a veterinary or insurance practice.
- SentinelOne · 2026Cyber Insurance Statistics and Data for 2026The underwriting bar keeps rising. Documented MFA, endpoint protection, and tested backups are now table stakes for a quote.
- Office of Governor Gavin Newsom · August 10, 2026Governor Newsom Announces New AI Cyber Defense Program to Protect California’s Critical InfrastructureState government is now formally deploying AI for vulnerability detection and incident response. A signal of where the regulatory baseline is heading next.

