Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.




Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.

CSAI FoundationChaptersEventsBlog
Join this August 11 webinar to explore practical strategies for managing cloud complexity and AI-driven workloads →
Part of CxO Trust New research · August 4
A CSAI Foundation initiative

Frontier Ready Cybersecurity

CSA's initiative preparing security for the frontier-model era — where AI finds and fixes software vulnerabilities at machine speed. Home of the AI Vulnerability Storm research and summits.

The milestone

The moment cybersecurity changed

Our AI Vulnerability Storm research documented a step change: frontier models now find and chain real vulnerabilities at a volume and success rate once reserved for elite human researchers. Discovery is no longer the constraint — absorption is.

The scarcity era (ending)

Finding a serious flaw was hard and rare. Pen tests, bug bounties, quarterly scans, and the CVE apparatus all assumed a critical finding was an expensive event worth escalating on arrival.

The absorption era (now)

Point a capable model at a real codebase and it surfaces hundreds of issues, a meaningful fraction genuinely exploitable. The work moves downstream: validate, sequence, fix, and verify at machine speed.

~90:1Findings-to-CVE ratio in an early frontier-model evaluation of Firefox (271 fixes, 3 credited CVEs).
31%Of breaches now begin with vulnerability exploitation — the #1 initial-access vector (2026 Verizon DBIR).
4,500+Findings from scanning just 12% of one enterprise estate in six weeks — 1,400+ critical or high.
Go deeper · get involved

A living hub and a global movement

CSA Research

The Frontier Ready Cybersecurity Resource Center

A curated hub bringing together CSA research, contributions from our members and benefactors, and the best third-party work on the AI transformation of cybersecurity — one place for leaders to stay ahead.

Explore CSA Research →
Chapter activation

Bring the Storm to your community

CSA Chapters worldwide run AI Vulnerability Storm Summits — practitioner convenings under the Chatham House Rule, supported by RSAC. Everything you need is in the starter kit.

  • Ten ready-to-use templates: run of show, facilitator guide, signage
  • Facilitators complete the free "Understanding Mythos" course
  • Anonymized proceedings feed back into the research
Host a Summit →
Initiative leadership

Led by the people defining the field

Gadi Evron
Gadi Evron
CEO, Knostic · CISO-in-Residence for AI, CSA
Rich Mogull
Rich Mogull
Chief Analyst, Cloud Security Alliance

Backed by a coalition of 60+ contributors and 250+ reviewers across the initiative.

Lead the transformation, don't get caught in the storm

Read the research, run a Summit, or bring your organization into the program shaping how security operates in the AI era.