Blog The Age of Frontier AI Demands a Stronger Security Foundation

Stephen Hearty
Head of Symantec Product Marketing EMEA

July 10, 2026

5 Min

How Carbon Black App Control uses a default-deny approach to reduce risk, ensuring only trusted apps and approved changes can run on critical systems.

The speed of cyberattacks is changing. Both attack and threat velocity are rising in the age of AI. Frontier AI models are helping attackers move from identifying a vulnerability to exploiting it much more quickly. For security leaders, that means less time to assess, prioritize, patch, and respond. The question then becomes how your critical systems remain protected when that window gets smaller.

Why prevention matters more than ever

No organization is immune to attacks. Protecting critical assets needs to be a key part of the security strategy for all organizations regardless of size or industry. Rather than relying solely on detecting attacks after they've started, organizations should also focus on preventing unauthorized software from running in the first place.

To best protect your organization, it’s time to reach beyond old-school antivirus (AV) solutions. If you’re relying on AV alone, what happens when “known bad” isn’t the problem, but the unknown?

By enforcing a default-deny approach (often known as a positive security model), Carbon Black App Control allows only trusted applications and approved changes to run. That means even if an attacker exploits a vulnerability, they still have to get past App Control before they can execute malware, establish persistence, or make unauthorized changes. Rather than trying to identify every new threat, App Control simply enforces what your systems are allowed to run.

Where it makes the biggest difference

App Control shrinks an attacker's room to manoeuvre by denying untrusted execution and unauthorized change on the systems that matter most.

Its biggest impact is in environments where systems are designed to perform a specific function and rarely change—such as retail, healthcare, manufacturing, financial services, and critical infrastructure. In these environments, stability and availability are essential, and unauthorized software or unexpected changes can quickly disrupt business operations. Positive security models are essential for sensitive, mission-critical systems that cannot easily accommodate response actions like quarantine.

This includes:

  • Fixed-function and operational technology (OT) systems such as point-of-sale (POS) terminals, ATMs, manufacturing equipment, medical devices, kiosks, and other business-critical systems where patching is slow, risky, or simply not an option.
  • Domain controllers and identity infrastructure, where a single compromise can become enterprise-wide.
  • Internet-facing servers that are natural targets for AI-assisted vulnerability research.
  • Backup and deployment systems, which attackers often target to establish persistence or disrupt recovery.

How Carbon Black App Control helps reduce the impact of Frontier AI-related attacks

Frontier AI may help attackers move faster, but they still need to run software, execute scripts, and make changes to your systems to achieve their objectives.

This is where App Control steps in. By allowing only trusted applications and approved changes to run, it helps stop attacks from progressing, the compromise is contained before it can spread. The business continues as usual with no loss of productivity, data or reputation.

Dial up preventive controls

While AV is an invaluable part of the puzzle, on its own it isn’t able to keep up and provide the secure, continuous protection needed in today’s environments. It’s possible (and easier than you think) to fully protect your assets. When you take a positive security stance, you write the rules on what is allowed rather than what isn’t. That way, you’re minimizing the surface area that can be attacked and protecting your environment.

Deny the unknown. Protect the trusted. Stay operational.

Talk to an expert about strengthening your defenses against AI related attacks.