3rd Party Risk Management
,
Artificial Intelligence & Machine Learning
,
Cybercrime
Also: Healthcare Cyber Risks Collide, Varonis Deal Signals AI Security Shift
In this week’s panel, four ISMG editors unpacked the Notepad++ supply-chain compromise, the growing web of cyber risks facing healthcare, and what Varonis’s acquisition of AllTrue.ai tells us about where artificial intelligence security is headed.
See Also: Proof of Concept: Bot or Buyer? Identity Crisis in Retail
The panelists – Anna Delaney, executive director, productions; Mathew Schwartz, executive editor, DataBreachToday and Europe; Marianne Kolbasuk McGee, executive editor, HealthcareInfoSecurity; and Michael Novinson, executive editor, ISMG Business – discussed:
- A highly targeted nation-state supply chain attack in which attackers compromised the Notepad++ update infrastructure to quietly backdoor a widely trusted developer tool, underscoring how even small, overlooked software can pose systemic risk;
- how recent reports show that healthcare organizations face a broad mix of cyber risks including phishing, identity failures, weak web applications and insider threats that can cascade into operational disruption and patient safety issues;
- How Varonis’s acquisition of AllTrue.ai reflects a wider industry shift toward AI security and governance as organizations look for visibility, guardrails and risk control around increasingly autonomous AI systems.
The ISMG Editors’ Panel runs weekly. Don’t miss our previous installments, including the Jan. 23 edition on how deepfakes are breaking digital trust and the Jan. 30 edition on how real time vishing is breaking MFA.

