CSAIChaptersEventsBlog
Discover the key legal, regulatory, and executive risks of AI and how to mitigate them. Register for the June 23 webinar →

CSA Research

Best practices, guidance, frameworks and tools to help the industry secure the cloud. Read our research to get your questions around cloud security answered.
Research

CSA Research is created by the industry for the industry and is both vendor-neutral and consensus driven. Our research is created by subject matter experts who volunteer for our working groups. Each working group focuses on a unique topic or aspect of cloud security, from IoT, DevSecOps, Serverless and more, we have working groups for over 20 areas of cloud computing. You can view a list of all active research working groups. To find out more about how our research is created and the process we follow you can view the CSA Research Lifecycle.

Contribute to CSA Research

Peer reviews allow security professionals from around the world to collaborate on CSA research. Provide your feedback on the following documents in progress.

Latest Research

Evaluating PyRIT for Agentic AI Red Teaming

Evaluating PyRIT for Agentic AI Red Teaming

Release Date: 06/15/2026

As organizations adopt autonomous AI systems, traditional AI security testing methods are no longer enough. This research evaluates Microsoft’s Python Risk Identification Toolkit (PyRIT) and its effectiveness for agentic AI red teaming.

Building on the Agentic AI Red Teaming Guide, the report...
The State of Cloud and AI for Financial Services 2026

The State of Cloud and AI for Financial Services 2026

Release Date: 06/08/2026

This survey report examines how financial institutions are rapidly moving beyond cloud adoption and AI experimentation. Commissioned by Anjuna, the report explores the evolving relationship between cloud security, AI governance, and identity management in highly regulated environments. It shows...
Project Glasswing: AI Discovery Outpaces Open Source Patching Capacity

Project Glasswing: AI Discovery Outpaces Open Source Patching Capacity

Release Date: 06/07/2026

1,596 Vulnerabilities Disclosed to Maintainers — Only 97 Fixed. Key Takeaways Project Glasswing, Anthropic's coordinated AI vulnerability research initiative, deployed Claude Mythos Preview alongside twelve major technology partners in April 2026 and identified over 10,000 high- or...