Weekly Security Sprint EP 173. Information Sharing, Strategies, and AI

September 15, 2026

Please enjoy our latest podcast, the weekly Security Sprint, on Spotify, Apple, as well as other locations accessible via the Spotify for Podcasters link or wherever you listen to your favorite podcasts.

In today’s Weekly Security Sprint, Andy and Dave talked about the FBI, WaterISAC, CISA, winter weather, and hurricane season 2026.

Opening:

Main Topics:

FBI cyber chief worries private sector not sharing enough cyber threat information — CyberScoop — 09 Sep 2026. FBI Cyber Division Assistant Director Brett Leatherman said private-sector organizations are still not sharing enough cyber information with the Bureau, in part because some companies incorrectly believe information provided during an incident will be passed to regulators for regulatory purposes. Leatherman argued that organizations compromised by nation-state actors can materially benefit from FBI investigative and intelligence capabilities and said the Bureau is increasingly weighing the immediate value of sharing threat intelligence with victims against preserving information for later operations. The FBI is also conducting outreach to outside counsel and companies to address concerns that may discourage early engagement during significant compromises. 

FBI Cyber Strategy — FBI — 09 Sep 2026. The FBI released its first agency-wide unclassified cyber strategy, organizing its approach around disrupting and imposing costs on adversaries, supporting victims, increasing impact through partnerships and strengthening internal cyber capabilities. The strategy describes state-backed pre-positioning against U.S. critical infrastructure, ransomware and increasingly professionalized cybercrime ecosystems as overlapping threats, while emphasizing joint operations capable of targeting adversary personnel, infrastructure, money and tools rather than relying primarily on arrests. Particularly notable is the FBI commitment to urgent automated threat-intelligence sharing with critical infrastructure and trusted private-sector partners, with a goal of reducing notification timelines from days to hours and ultimately from hours to minutes. The strategy reflects an increasingly operational model of collective defense in which victim reporting, private-sector telemetry, government intelligence and coordinated disruption are intended to turn individual incidents into opportunities to identify and dismantle broader campaigns.

China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies — CISA — 08 Sep 2026. CISA, NSA and the FBI warn that China-based AI companies are conducting industrial-scale campaigns to systematically extract proprietary capabilities from U.S. frontier AI models, describing malicious knowledge distillation as a core component rather than merely a supplement to their AI development strategies. The agencies assess that DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun and Z.AI have extracted billions of tokens through millions of requests involving U.S. models since at least late 2024, using techniques including fraudulent accounts, API proxies known as transfer stations, third-party aggregators, geographic restriction evasion, automated request routing and attempts to extract chain-of-thought reasoning. Likely with Chinese government awareness, the activity is assessed to reduce development costs and timelines while threatening U.S. technological leadership through systematic extraction of proprietary functionality and capabilities. The agencies call for comprehensive behavioral detection, targeted defensive responses and, critically, cross-organization intelligence sharing among AI companies, cloud providers, API aggregators and government partners to expose campaigns deliberately distributed across providers and platforms to evade detectionPDF.

Insider Threat Mitigation Guide — CISA — 09 Sep 2026. During National Insider Threat Awareness Month, CISA is again highlighting its Insider Threat Mitigation Guide and related resources for organizations building or improving insider-risk programs. The guidance promotes a holistic approach combining physical security, personnel awareness and information-centric protections, with emphasis on detecting, identifying, assessing and managing potential insider threats. CISA is also offering workshops, tools and a September webinar focused on moving organizations from general awareness toward practical mitigation in an evolving threat environment. Insider-risk programs are strongest when treated as an organizational resilience capability rather than solely a security investigation function, integrating people, behavior, cybersecurity, physical security and leadership before concerning activity becomes an incident.

Quick Hits:

Read more about Gate 15’s full podcast menu at our Podcast page. You can subscribe and enjoy all the Gate 15 Podcasts on Spotify for PodcastersAppleSpotify, as well as other locations accessible from the Spotify for Podcasters link. Week-to-week, you can hear and learn more about our all-hazards threats, risks, mitigation and other issues impacting homeland security risk management from our team as well as our regular and special guests. The full podcast menu includes:

  • The Security Sprint is our weekly rundown of the week’s notable all-hazards security news, risks and threats and some of the key focus areas for organizations to consider behind the headlines. Gate 15 team members discuss physical security, cybersecurity, natural hazards, health threats and other issues across our environment.
  • Nerd Out! Security Panel Discussion, moderated by Dave Pounder, focuses on physical security topics including terrorism, extremism, hostile events, and other pertinent topics.
  • The Gate 15 Interview, is a monthly interview between Gate 15’s founder and Managing Director, Andy Jabbour and guests from throughout the homeland security risk management community addressing a wide range of all-hazards topics and issues.
  • The Cybersecurity Evangelist, with Jennifer Lyn Walker, is a cybersecurity-focused discussion with Jen and invited guests. This is presently a Gate 15 special podcast and occasionally is updated on our Gate 15 podcast channel.
  • Venue Security, The IAVM Podcast Series was a 2024 limited series podcast as Gate 15’s founder and Managing Director, Andy Jabbour hosted a series of short interviews with venue safety and security experts from the International Association of Venue Managers’ (IAVM) Venue Safety and Security Committee (VSSC) and other special guests from the IAVM community.
  • The Risk Roundtable, was a monthly discussion among our team and occasional guests exploring the all-hazards threats and risks impacting the United States and internationally. This was suspended in September 2023.

We hope you’ll subscribe, listen and share your ideas and other feedback! Reach out to us on BlueskyLinkedIn, via email at Gate15@gate15.global.

Previous Podcasts