Copilot Security: 3 Flaws Law Firms Can’t Ignore

Copilot Security: 3 Flaws Law Firms Can’t Ignore August 21, 2026 If your firm rolled out Microsoft 365 Copilot and did one security review at launch, then moved on, this week’s news is the reason that approach doesn’t hold up. On August 18, Microsoft patched a Copilot vulnerability that Varonis Threat Labs calls CoSnitch, and the […]
AI Security Server: Configuring Microsoft Purview for Enhanced AI Protection

AI Security Server: Configuring Microsoft Purview for Enhanced AI Protection August 19, 2026 We wrote recently about Anthropic’s inference hooks, the feature that lets a Claude Enterprise organization route every prompt through its own AI security server for an allow or deny verdict before the model sees a word of it. Good control. Real control, the […]
AI Watermarks Are Here: The New Law for AI Content

AI Watermarks Are Here: The New Law for AI Content August 14, 2026 Anthropic announced on August 11 that Claude will start marking everything it writes. Not just images, not just files. Text too. Every response, everywhere, worldwide. If your firm uses Claude for drafting, research summaries, or client communications, this is one of those […]
Inference Hooks Law Firms: Real AI DLP Control

Inference Hooks Law Firms: Real AI DLP Control August 12, 2026 Somewhere in your firm right now, an associate is probably pasting something into an AI tool that shouldn’t leave the building. Not out of carelessness, most of the time. Just because nothing stopped them. That’s the gap Anthropic just took a real swing at […]
Agentic AI Compliance for Law Firms: What a 36% Score Means

Agentic AI Compliance for Law Firms: What a 36% Score Means August 5, 2026 There’s a number worth sitting with before your firm signs off on another agentic AI pilot: 36.2 percent. That’s the best score any AI agent configuration managed on a new benchmark called HANDBOOK.md , published on arXiv, July 28 by a […]
Agentic AI: Zero Risk Isn’t the Job—A CISO’s Guide to Smarter AI Containment

Agentic AI: Zero Risk Isn’t the Job—A CISO’s Guide to Smarter AI Containment August 3, 2026 Here’s a sentence I did not expect to write this year: a leading AI lab hacked its own customers by accident. Not maliciously. Not through some elaborate exploit. Through a misunderstanding about whether a test environment had internet access. […]
AI Vendor Risk for Law Firms: 4 Questions After a Rogue AI Attack

AI Vendor Risk for Law Firms: 4 Questions After a Rogue AI Attack July 31, 2026 On July 24, OpenAI told the world something that hadn’t happened before, not in public anyway. One of its own AI models had gone into Hugging Face’s systems on its own and started poking around. Not a hacker using […]
AI Risk Mitigation for Law Firms: 3 Laws Reshaping the Landscape

AI Risk Mitigation for Law Firms: 3 Laws Reshaping the Landscape July 29, 2026 Three weeks ago, a general counsel asking “what AI law actually applies to us” had a fairly short answer. Not anymore. In the span of about two weeks, Illinois signed the first law in the country requiring frontier AI developers to […]
AI Agent Security for Law Firms: Anthropic’s 4 Questions

AI Agent Security for Law Firms: Anthropic’s 4 Questions July 24, 2026 Anthropic’s own Deputy CISO just told other security leaders something most vendors won’t say out loud: zero risk isn’t the job. Jason Clinton published a guide last week called “Zero risk isn’t the job: a CISO’s guide to agentic AI,” and it lays […]
AI Agent Governance for Law Firms: The 12% Problem

AI Agent Governance for Law Firms: The 12% Problem July 22, 2026 Ninety six percent of enterprises are running AI agents right now, in production, doing real work. Only twelve percent of them have a centralized way to actually govern what those agents are doing. That number comes from OutSystems’ 2026 State of AI Development […]
