Jim Cramer expressed bullishness on Palo Alto Networks after the company delivered strong fiscal fourth-quarter 2026 results, though the stock fell 9.3% on September 2 despite the beat. Palo Alto reported revenue of $3.41 billion, up 34% year over year and above the $3.35 billion estimate, with adjusted earnings of $1.02 per share versus $0.98 expected. Next-Generation Security ARR rose 63% to $9.10 billion, but management's fiscal 2027 guidance implies a slowdown to 22-23% growth for NGS ARR, which is a key concern. The company also faces execution risk from integrating acquisitions like CyberArk and Chronosphere. Hedge fund holdings edged up to 89 funds in the second quarter from 87, and short interest was about 2.8% of float.
Zenity Labs Discloses AgentCorruption Flaws in AWS Bedrock AgentCore
Zenity Labs today disclosed AgentCorruption, a chain of security flaws in Amazon Bedrock AgentCore that let researchers take over all AgentCore agents within the same AWS account and region using a single prompt to one public-facing agent. The attack began when a prompt instructed an agent equipped with a commonly used outbound-request tool to reach the AWS Instance Metadata Service, retrieving credentials tied to a default AWS Identity and Access Management role whose permissions extended to every AgentCore agent in that account and region. From there, researchers accessed internal agents they were not authorized to use, read private conversations and long-term memories across agents, users and sessions, downloaded agent container images and source code, and retrieved API keys, OAuth tokens and other credentials stored in AWS Secrets Manager and environment variables. They also implanted malicious memories that directed agents to transmit future conversations to an attacker-controlled destination, establishing persistent hijacking of agent behavior. Zenity Labs responsibly disclosed the findings to AWS on Dec. 25, 2025, after which AWS made IMDSv2 the default for AgentCore deployments and reduced the default execution role's permissions, removing the ability for agents to invoke other agents, read private conversations or access secrets stored in AWS Secrets Manager. The findings were presented at SecTor 2026 in Toronto.
Cybersecurity & Digital Trust › AI Security & Agent Guardrails ▼Technology
Cybersecurity & Digital Trust › Cloud & Workload Security ▼Technology
Cybersecurity & Digital Trust › Identity & Access Management ▼Technology
Cybersecurity & Digital Trust › Privileged Access Management (PAM) Technology
Zenity · Technology · Positive Zenity Labs disclosed the AgentCorruption vulnerability chain and presented the findings at SecTor 2026, showcasing its security research.
AMZN · Technology · Neutral Security flaws in AWS Bedrock AgentCore were disclosed, but AWS remediated them by defaulting to IMDSv2 and cutting the execution role's permissions, so the net impact is mixed.
CyberFOX Acquires Optimize365 to Add Microsoft 365 Security
CyberFOX has acquired Optimize365, adding continuous Microsoft 365 tenant monitoring and hardening to its existing portfolio of privileged access management, password management, AI-powered DNS filtering, and Zero Trust Network Access. The acquisition extends CyberFOX's coverage from endpoints, privileged access, credentials, and web traffic into the Microsoft 365 environment, letting IT teams continuously identify configuration drift, prioritize high-risk changes, and automate remediation. Optimize365 will continue to operate under its own brand within the CyberFOX portfolio in the near term, with no disruption to service, support, or contracts for existing partners and customers, and CyberFOX plans to integrate it into its partner program and product roadmap over the coming quarters. The deal follows CyberFOX's nine-figure growth investment led by Level Equity and Radian Capital in February 2026 and its acquisition of SASE provider Timus Networks in June 2026. CEO David Bellini said the goal is to protect the full access attack surface without adding more complexity, while Chief Revenue Officer Adam Slutskin called the move a natural extension of the company's mission to serve lean IT teams.
Palo Alto Networks Jumps 5.1% After BTIG Raises Price Target to $425
Palo Alto Networks shares jumped 5.1% in the afternoon session after BTIG raised its price target on the cybersecurity provider to $425 from $404 and reiterated a Buy rating following discussions with management. BTIG analyst Gray Powell cited growth potential from Chronosphere, CyberArk, and Prisma AIRS, forecasting pro forma revenue growth above 17%. Separately, NVIDIA launched its Open Agent Safety Platform to govern and secure artificial intelligence agents across compute systems from testing to deployment, and named Palo Alto Networks as one of the industry leaders collaborating on the safety initiative. The shares closed the day at $391.64, up 4.5% from the previous close. Palo Alto Networks is up 118% since the beginning of the year and is trading close to its 52-week high of $396 from August 2026.
Bitget Details $388 Million Security Incident as BTC Withdrawals Resume
Bitget has disclosed further details of the security incident that hit the exchange on Sept. 24, with CEO Gracy Chen saying the attacker exploited a vulnerability in a third-party security product to obtain high-level internal credentials. The incident is tied to a $388 million figure, and BTC withdrawals have resumed. Chen's account identifies the entry point as a flaw in an outside security vendor's product rather than Bitget's own systems, which the attacker used to reach high-level internal credentials.
Cybersecurity & Digital Trust › Privileged Access Management (PAM) ▼Technology
Cybersecurity & Digital Trust › Identity & Access Management ▼Technology
Bitget · Regulation · Negative Bitget disclosed a $388 million security incident where an attacker exploited a third-party product flaw to obtain high-level internal credentials.
Palo Alto Networks Targets 4,000 Platformizations to Drive $20 Billion NGS ARR by FY2030
Palo Alto Networks closed its fiscal fourth quarter with roughly 2,500 platformizations, including a record 220 net additions, as the company bets its platformization strategy can carry growth toward a targeted $20 billion in Next-Generation Security ARR by fiscal 2030. NGS ARR jumped 63% to $9.1 billion in the quarter, a figure that also benefited from acquisitions including CyberArk and Chronosphere, while net retention among platformized customers exceeds 120% and more than 65% of NGS ARR now comes from those customers. The company says it is on track to deliver more than 4,000 platformizations, which it expects to drive the majority of that $20 billion FY2030 target. Palo Alto has been adding capabilities and making strategic purchases to bolster the strategy, launching Unit 42 Continuous Frontier AI Defense on September 22, an annual subscription service that uses multiple frontier AI models to identify, validate and remediate exposures, and acquiring Portkey for an AI gateway, Koi to expand Prisma AIRS into agentic endpoint security, and CyberArk for identity security across human, machine and agentic identities. Gartner estimates global information-security spending will rise about 12% this year to $244 billion, supporting the market backdrop, though the company must integrate several acquisitions while expanding into fast-evolving AI-security markets. Hedge fund holdings in Palo Alto rose to 89 in the second quarter from 87, with Ken Fisher's Fisher Asset Management increasing its stake 2,143%, and short interest stands at 2.66% of the float, down from 2.8%.
Cybersecurity & Digital Trust › AI Security & Agent Guardrails ▲Demand
Cybersecurity & Digital Trust › Identity & Access Management Competition
Cybersecurity & Digital Trust › Privileged Access Management (PAM) Competition
Cybersecurity & Digital Trust › Security Operations (SIEM/SOAR/XDR/MDR) Competition
Cybersecurity & Digital Trust › Endpoint & Network Security Competition
PANW · Demand · Positive Platformizations reached ~2,500 with record 220 net adds and NGS ARR up 63% to $9.1B, with >120% net retention among platformized customers, supporting the $20B FY2030 target.
PANW · Technology · Positive Launched Unit 42 Continuous Frontier AI Defense and acquired Portkey, Koi and CyberArk to expand AI and identity security capabilities.
CrowdStrike CEO Kurtz Warns AI Cyber Threat Is Already Here
CrowdStrike CEO George Kurtz is pushing back against calls to slow frontier AI development, arguing the cybersecurity threat investors should worry about is not theoretical or years away. Kurtz said the genie is out of the bottle, pointing to advanced and open-weight models already available, and warned that AI is giving every criminal and lone actor elite execution, potentially letting less-skilled attackers operate with capabilities previously limited to sophisticated cyber groups. His remarks came in response to Anthropic CEO Dario Amodei, who has called for slowing development of advanced AI, with Kurtz arguing that pacing what comes next does not secure what is already here. He proposed treating AI agents as privileged identities with tightly controlled permissions, short-lived credentials and a kill switch, keeping humans involved in high-stakes decisions, and called for closer cooperation between cybersecurity companies and AI developers including Anthropic and OpenAI, offering CrowdStrike's threat intelligence to independent evaluation efforts. The argument arrives as CrowdStrike's business accelerates: fiscal second-quarter revenue rose 26% to $1.47 billion, annual recurring revenue climbed 25% to $5.84 billion, record net new ARR reached $333 million, up 51%, and free cash flow totaled $377 million, while the company raised its fiscal-2027 net-new-ARR growth outlook. CrowdStrike already generates more than $2.29 billion of ARR from customers using Falcon Flex, and investors are watching whether AI-related security concerns translate into measurable platform expansion through net new ARR, Falcon Flex adoption, customer spending on identity and AI security, and free cash flow.
Cybersecurity & Digital Trust › Privileged Access Management (PAM) ▲Technology
Artificial Intelligence › Agentic AI & Autonomous Workflows Technology
Cybersecurity & Digital Trust › Security Operations (SIEM/SOAR/XDR/MDR) ▲Demand
CRWD · Capital · Positive CrowdStrike's fiscal Q2 revenue rose 26% to $1.47B, ARR climbed 25% to $5.84B, record net new ARR hit $333M (up 51%), FCF was $377M, and it raised its fiscal-2027 net-new-ARR growth outlook.
CRWD · Demand · Positive CrowdStrike already generates more than $2.29B of ARR from customers using Falcon Flex, with investors watching AI-security concerns translate into platform expansion and customer spending on identity and AI security.
Anthropic · · Neutral Anthropic CEO Dario Amodei is cited for calling to slow advanced AI development, which Kurtz pushes back against, but no business impact on Anthropic is described.