Please enjoy our latest podcast, the weekly Security Sprint, on Spotify, Apple, as well as other locations accessible via the Spotify for Podcasters link or wherever you listen to your favorite podcasts.
In today’s Weekly Security Sprint, Andy and Dave talked about the FBI, WaterISAC, CISA, winter weather, and hurricane season 2026.
Opening:
- 15 from 15: Blocking and Tackling Cybersecurity & Resilience — Gate 15 — 09 Sep 2026. Gate 15 released 15 from 15: Cybersecurity Mitigation & Resilience Fundamentals, emphasizing that rapidly evolving threats, artificial intelligence, ransomware, exploited vulnerabilities and nation-state activity do not eliminate the importance of consistently executing foundational security practices. The framework identifies 15 practical areas to help organizations “get a little better every day.”
- What the FBI Phishing Warning Means for Event Planners — Skift Meetings — 08 Sep 2026. Gate 15 Vice President and Chief Resilience Officer Ben Taylor contributes perspective.
- (TLP:CLEAR) WaterISAC – EPA: National Security Information Sharing Bulletin – Q3 2026 — WaterISAC — 10 Sep 2026
- Cyberattacks on food and agriculture can turn disruptions into safety crises, threatening public health and supply chains — Industrial Cyber — 08 Sep 2026
- 27th Annual TribalNet Conference & Tradeshow
Main Topics:
FBI cyber chief worries private sector not sharing enough cyber threat information — CyberScoop — 09 Sep 2026. FBI Cyber Division Assistant Director Brett Leatherman said private-sector organizations are still not sharing enough cyber information with the Bureau, in part because some companies incorrectly believe information provided during an incident will be passed to regulators for regulatory purposes. Leatherman argued that organizations compromised by nation-state actors can materially benefit from FBI investigative and intelligence capabilities and said the Bureau is increasingly weighing the immediate value of sharing threat intelligence with victims against preserving information for later operations. The FBI is also conducting outreach to outside counsel and companies to address concerns that may discourage early engagement during significant compromises.
FBI Cyber Strategy — FBI — 09 Sep 2026. The FBI released its first agency-wide unclassified cyber strategy, organizing its approach around disrupting and imposing costs on adversaries, supporting victims, increasing impact through partnerships and strengthening internal cyber capabilities. The strategy describes state-backed pre-positioning against U.S. critical infrastructure, ransomware and increasingly professionalized cybercrime ecosystems as overlapping threats, while emphasizing joint operations capable of targeting adversary personnel, infrastructure, money and tools rather than relying primarily on arrests. Particularly notable is the FBI commitment to urgent automated threat-intelligence sharing with critical infrastructure and trusted private-sector partners, with a goal of reducing notification timelines from days to hours and ultimately from hours to minutes. The strategy reflects an increasingly operational model of collective defense in which victim reporting, private-sector telemetry, government intelligence and coordinated disruption are intended to turn individual incidents into opportunities to identify and dismantle broader campaigns.
China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies — CISA — 08 Sep 2026. CISA, NSA and the FBI warn that China-based AI companies are conducting industrial-scale campaigns to systematically extract proprietary capabilities from U.S. frontier AI models, describing malicious knowledge distillation as a core component rather than merely a supplement to their AI development strategies. The agencies assess that DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun and Z.AI have extracted billions of tokens through millions of requests involving U.S. models since at least late 2024, using techniques including fraudulent accounts, API proxies known as transfer stations, third-party aggregators, geographic restriction evasion, automated request routing and attempts to extract chain-of-thought reasoning. Likely with Chinese government awareness, the activity is assessed to reduce development costs and timelines while threatening U.S. technological leadership through systematic extraction of proprietary functionality and capabilities. The agencies call for comprehensive behavioral detection, targeted defensive responses and, critically, cross-organization intelligence sharing among AI companies, cloud providers, API aggregators and government partners to expose campaigns deliberately distributed across providers and platforms to evade detection. PDF.
Insider Threat Mitigation Guide — CISA — 09 Sep 2026. During National Insider Threat Awareness Month, CISA is again highlighting its Insider Threat Mitigation Guide and related resources for organizations building or improving insider-risk programs. The guidance promotes a holistic approach combining physical security, personnel awareness and information-centric protections, with emphasis on detecting, identifying, assessing and managing potential insider threats. CISA is also offering workshops, tools and a September webinar focused on moving organizations from general awareness toward practical mitigation in an evolving threat environment. Insider-risk programs are strongest when treated as an organizational resilience capability rather than solely a security investigation function, integrating people, behavior, cybersecurity, physical security and leadership before concerning activity becomes an incident.
Quick Hits:
- Congratulations! You Just Lived Through the Hottest Month Ever Recorded — WIRED — 10 Sep 2026.
- NSA Highlights Cyber Hygiene Best Practices Effective Against AI-Enhanced Targeting — National Security Agency — 03 Sep 2026
- Gateway security guidance package: Overview — Australian Signals Directorate’s Australian Cyber Security Centre — updated 04 Sep 2026
- The hidden risks of shadow AI — UK National Cyber Security Centre — 07 Sep 2026
- Iran hackers: Dissatisfaction with AT&T services drove decision to target telecom in Texas
- Iran hackers, after denial of Texas AT&T claim: ‘Idiots don’t even know what we tampered with’
- Iran hackers claim Texas AT&T outage, vow to ‘intensify’ attacks before 9/11


Read more about Gate 15’s full podcast menu at our Podcast page. You can subscribe and enjoy all the Gate 15 Podcasts on Spotify for Podcasters, Apple, Spotify, as well as other locations accessible from the Spotify for Podcasters link. Week-to-week, you can hear and learn more about our all-hazards threats, risks, mitigation and other issues impacting homeland security risk management from our team as well as our regular and special guests. The full podcast menu includes:
- The Security Sprint is our weekly rundown of the week’s notable all-hazards security news, risks and threats and some of the key focus areas for organizations to consider behind the headlines. Gate 15 team members discuss physical security, cybersecurity, natural hazards, health threats and other issues across our environment.
- Nerd Out! Security Panel Discussion, moderated by Dave Pounder, focuses on physical security topics including terrorism, extremism, hostile events, and other pertinent topics.
- The Gate 15 Interview, is a monthly interview between Gate 15’s founder and Managing Director, Andy Jabbour and guests from throughout the homeland security risk management community addressing a wide range of all-hazards topics and issues.
- The Cybersecurity Evangelist, with Jennifer Lyn Walker, is a cybersecurity-focused discussion with Jen and invited guests. This is presently a Gate 15 special podcast and occasionally is updated on our Gate 15 podcast channel.
- Venue Security, The IAVM Podcast Series was a 2024 limited series podcast as Gate 15’s founder and Managing Director, Andy Jabbour hosted a series of short interviews with venue safety and security experts from the International Association of Venue Managers’ (IAVM) Venue Safety and Security Committee (VSSC) and other special guests from the IAVM community.
- The Risk Roundtable, was a monthly discussion among our team and occasional guests exploring the all-hazards threats and risks impacting the United States and internationally. This was suspended in September 2023.
We hope you’ll subscribe, listen and share your ideas and other feedback! Reach out to us on Bluesky, LinkedIn, via email at Gate15@gate15.global.
