Search
Logo
Follow
Subscribe
Logo
Subscribe

Jun 4, 2026

Cisco launches runtime shields as vulnerability discovery ramps

Live Protect lets security teams deploy targeted protections on live systems without downtime.

Cisco launches runtime shields as vulnerability discovery ramps

Cisco has launched Live Protect, a feature that lets security teams deploy targeted protections against specific vulnerabilities on live networking systems, without taking those systems offline. The tool is currently available on Cisco's Nexus 9000 series switches and is included with the Nexus One product entitlement, with plans to expand to campus switches like the Cisco C9000 Smart Switches later in the year.

The context driving the announcement is the emergence of AI models capable of finding software vulnerabilities at a scale and speed that traditional patch management was not designed to handle.

Anthropic's Claude Mythos Preview, unveiled last month, was reported to have identified thousands of flaws across major web browsers and operating systems during testing. The core operational problem this creates is a timing gap. Vulnerabilities are being discovered faster than they can be patched, and unpatched systems remain exposed during that window.

Enterprise security has historically operated on periodic update cycles, with patches deployed during scheduled maintenance windows. That model assumed a manageable rate of new vulnerability discovery. AI-assisted discovery changes that assumption, compressing the timeline between a flaw being found and it potentially being exploited. The longer a system stays unprotected, the larger the exposure window.

Live Protect is designed to address that gap by allowing teams to toggle on a compensating control while a full patch is in development. The system operates at runtime, meaning it does not require a reboot or maintenance window to deploy a shield. According to Cisco, this is distinct from patching in that it does not resolve the underlying vulnerability but reduces exploitability until a complete fix is available.

Cisco is positioning this capability as an extension of its existing hardware footprint. Running Live Protect on Cisco networking hardware means the protection layer is tied to the vendor relationship. Customers already invested in Cisco infrastructure get a new security layer without a separate procurement decision. That dynamic tends to deepen dependency on an incumbent vendor and raises the cost of switching, even as it delivers near-term operational value.

The broader industry view is that the pace of AI-driven vulnerability discovery is forcing a rethink of how security tooling is layered into infrastructure. Patching cycles measured in months are increasingly misaligned with a threat environment where exposure windows are measured in days or hours.

Whether runtime shielding becomes a standard layer of enterprise security, or remains a stopgap category, depends largely on how consistently AI discovery tools continue to outpace conventional patch pipelines.

Stay in the loop!

  • Subscribe to Uplink for free
  • Follow us on LinkedIn

Keep reading


As vulnerability windows shrink, calls grow to unify IT and security

Jun 7, 2026

As vulnerability windows shrink, calls grow to unify IT and security

NinjaOne's Rahul Hirani argues that closing the gap between vulnerability detection and patch execution requires shared workflows, not just shared data.

Read More
arrow-square-up-right
AWS ditches fat tree routing with new resilient network graph

Jun 7, 2026

AWS ditches fat tree routing with new resilient network graph

AWS says its new Resilient Network Graphs architecture delivers one-third more throughput from 69% fewer routers.

Read More
arrow-square-up-right
As agent use grows, Cisco targets the token budget problem

Jun 7, 2026

As agent use grows, Cisco targets the token budget problem

Cisco is building observability and control tools across every layer of the AI stack to help enterprises manage token consumption.

Read More
arrow-square-up-right
VoidZero acquisition gives Cloudflare control of the JavaScript build stack

Jun 7, 2026

VoidZero acquisition gives Cloudflare control of the JavaScript build stack

The deal gives Cloudflare direct control over tooling used by millions of JavaScript developers.

Read More
arrow-square-up-right
Megaport expands into storage, targeting AI and backup workloads

Jun 7, 2026

Megaport expands into storage, targeting AI and backup workloads

Megaport's storage launch, combined with its Latitude.sh acquisition, is an attempt to compete with hyperscalers.

Read More
arrow-square-up-right
Infoblox adds AI assistant and MCP server to platform

Jun 5, 2026

Infoblox adds AI assistant and MCP server to platform

Infoblox IQ uses DNS, DHCP, and IP address records to automate triage and investigation.

Read More
arrow-square-up-right
Load more

Strategy

As vulnerability windows shrink, calls grow to unify IT and security

NinjaOne's Rahul Hirani argues that closing the gap between vulnerability detection and patch execution requires shared workflows, not just shared data.

Data Center

AWS ditches fat tree routing with new resilient network graph

AWS says its new Resilient Network Graphs architecture delivers one-third more throughput from 69% fewer routers.

AI

As agent use grows, Cisco targets the token budget problem

Cisco is building observability and control tools across every layer of the AI stack to help enterprises manage token consumption.

M&A

VoidZero acquisition gives Cloudflare control of the JavaScript build stack

The deal gives Cloudflare direct control over tooling used by millions of JavaScript developers.

Storage

Megaport expands into storage, targeting AI and backup workloads

Megaport's storage launch, combined with its Latitude.sh acquisition, is an attempt to compete with hyperscalers.

AI

Infoblox adds AI assistant and MCP server to platform

Infoblox IQ uses DNS, DHCP, and IP address records to automate triage and investigation.

AI

T-Mobile uses AI to adapt network capacity during live events

Dynamic CX monitors publicly available event data to pre-position network resources before large crowds arrive.

AI

Google and IBM expand AI agent partnership

Google Cloud and IBM are building a shared portfolio of vertical AI agents, targeting banking, telecom, retail, and other sectors

Business

Networking and AI demand drive HPE to earnings beat

A record $10.7 billion quarter and surging networking orders give HPE the numbers needed to defend the Juniper acquisition.

Jun 4, 2026

Cisco launches runtime shields as vulnerability discovery ramps

Live Protect lets security teams deploy targeted protections on live systems without downtime.

Cisco launches runtime shields as vulnerability discovery ramps

Cisco has launched Live Protect, a feature that lets security teams deploy targeted protections against specific vulnerabilities on live networking systems, without taking those systems offline. The tool is currently available on Cisco's Nexus 9000 series switches and is included with the Nexus One product entitlement, with plans to expand to campus switches like the Cisco C9000 Smart Switches later in the year.

The context driving the announcement is the emergence of AI models capable of finding software vulnerabilities at a scale and speed that traditional patch management was not designed to handle.

Anthropic's Claude Mythos Preview, unveiled last month, was reported to have identified thousands of flaws across major web browsers and operating systems during testing. The core operational problem this creates is a timing gap. Vulnerabilities are being discovered faster than they can be patched, and unpatched systems remain exposed during that window.

Enterprise security has historically operated on periodic update cycles, with patches deployed during scheduled maintenance windows. That model assumed a manageable rate of new vulnerability discovery. AI-assisted discovery changes that assumption, compressing the timeline between a flaw being found and it potentially being exploited. The longer a system stays unprotected, the larger the exposure window.

Live Protect is designed to address that gap by allowing teams to toggle on a compensating control while a full patch is in development. The system operates at runtime, meaning it does not require a reboot or maintenance window to deploy a shield. According to Cisco, this is distinct from patching in that it does not resolve the underlying vulnerability but reduces exploitability until a complete fix is available.

Cisco is positioning this capability as an extension of its existing hardware footprint. Running Live Protect on Cisco networking hardware means the protection layer is tied to the vendor relationship. Customers already invested in Cisco infrastructure get a new security layer without a separate procurement decision. That dynamic tends to deepen dependency on an incumbent vendor and raises the cost of switching, even as it delivers near-term operational value.

The broader industry view is that the pace of AI-driven vulnerability discovery is forcing a rethink of how security tooling is layered into infrastructure. Patching cycles measured in months are increasingly misaligned with a threat environment where exposure windows are measured in days or hours.

Whether runtime shielding becomes a standard layer of enterprise security, or remains a stopgap category, depends largely on how consistently AI discovery tools continue to outpace conventional patch pipelines.

Stay in the loop!

  • Subscribe to Uplink for free
  • Follow us on LinkedIn

Keep reading


Data Center

AWS ditches fat tree routing with new resilient network graph

AWS says its new Resilient Network Graphs architecture delivers one-third more throughput from 69% fewer routers.

AI

As agent use grows, Cisco targets the token budget problem

Cisco is building observability and control tools across every layer of the AI stack to help enterprises manage token consumption.

M&A

VoidZero acquisition gives Cloudflare control of the JavaScript build stack

The deal gives Cloudflare direct control over tooling used by millions of JavaScript developers.

Storage

Megaport expands into storage, targeting AI and backup workloads

Megaport's storage launch, combined with its Latitude.sh acquisition, is an attempt to compete with hyperscalers.

AI

Infoblox adds AI assistant and MCP server to platform

Infoblox IQ uses DNS, DHCP, and IP address records to automate triage and investigation.

AI

T-Mobile uses AI to adapt network capacity during live events

Dynamic CX monitors publicly available event data to pre-position network resources before large crowds arrive.

AI

Google and IBM expand AI agent partnership

Google Cloud and IBM are building a shared portfolio of vertical AI agents, targeting banking, telecom, retail, and other sectors

Business

Networking and AI demand drive HPE to earnings beat

A record $10.7 billion quarter and surging networking orders give HPE the numbers needed to defend the Juniper acquisition.

DevOps

Microsoft brings Linux command line utilities to Windows 11

Coreutils reflects Microsoft's sustained effort to position Windows as a first-class platform for software development

AI

Intel bets on power efficiency with new data center chips

Intel's first major data center releases under new CEO Lip-Bu Tan signal a deliberate shift away from competing on raw performance.

Emerging

Forward Networks launches Predict to verify changes before deployment

Forward Predict runs proposed configuration changes against a mathematically modeled replica of the production network.

Not all loops are bad. Uplink keeps you in the ones that matter.

Uplink is free, weekly newsletter covering the business of enterprise networking.

Explore





© 2026 Uplink.
Report abusePrivacy policyTerms of use
beehiivPowered by beehiiv