Stay Ahead, Stay ONMINE

Identity as the new perimeter: National Oilwell Varco’s approach to stopping the 79% of attacks that are malware-free

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More National Oilwell Varco (NOV) is undergoing a sweeping cybersecurity transformation under CIO Alex Philips, embracing a Zero Trust architecture, strengthening identity defenses and infusing AI into security operations. While the journey is not complete, the results, […]

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More


National Oilwell Varco (NOV) is undergoing a sweeping cybersecurity transformation under CIO Alex Philips, embracing a Zero Trust architecture, strengthening identity defenses and infusing AI into security operations. While the journey is not complete, the results, by all accounts, are dramatic – a 35-fold drop in security events, the elimination of malware-related PC reimaging and millions saved by scrapping legacy “appliance hell” hardware.

VentureBeat recently sat down (virtually) for this in-depth interview where Philips details how NOV achieved these outcomes with Zscaler’s Zero Trust platform, aggressive identity protections and a generative AI “co-worker” for its security team.

He also shares how he keeps NOV’s board engaged on cyber risk amid a global threat landscape where 79% of attacks to gain initial access are malware-free, and adversaries can move from breach to break out in as little as 51 seconds.

Below are excerpts of Philips’ recent interview with VentureBeat:

VentureBeat: Alex, NOV went “all in” on Zero Trust a number of years ago – what were the standout gains?

Alex Philips: When we started, we were a traditional castle-and-moat model that wasn’t keeping up. We didn’t know what Zero Trust was, we just knew that we needed identity and conditional access at the core of everything. Our journey began by adopting an identity-driven architecture on Zscaler’s Zero Trust Exchange and it changed everything. Our visibility and protection coverage dramatically increased while simultaneously experiencing a 35x reduction in the number of security incidents. Before, our team was chasing thousands of malware incidents; now, it’s a tiny fraction of that. We also went from reimaging about 100 malware-infected machines each month to virtually zero now. That’s saved a considerable amount of time and money. And since the solution is cloud-based, Appliance hell is gone, as I like to say.

The zero trust approach now gives 27,500 NOV users and third parties policy-based access to thousands of internal applications, all without exposing those apps directly to the internet.

We were then able to take an interim step and re-architect our network to take advantage of internet-based connectivity vs. legacy expensive MPLS. “On average, we increased speed by 10–20x, reduced latency to critical SaaS apps, and slashed cost by over 4x… Annualized savings [from network changes] have already achieved over $6.5M,” Philips has noted of the project.

VB: How did shifting to zero trust actually reduce the security noise by such an enormous factor?

Philips: A big reason is that our internet traffic now goes through a Security Service Edge (SSE) with full SSL inspection, sandboxing, and data loss prevention. Zscaler peers directly with Microsoft, so Office 365 traffic got faster and safer – users stopped trying to bypass controls because performance improved. After being denied SSL inspection with on-prem equipment, we finally got legal approval to decrypt SSL traffic since the cloud proxy does not give NOV access to spy on the data itself. That means malware hiding in encrypted streams started getting caught before hitting endpoints. In short, we shrunk the attack surface and let good traffic flow freely. Fewer threats in meant fewer alerts overall.

John McLeod, NOV’s CISO, concurred that the “old network perimeter model doesn’t work in a hybrid world” and that an identity-centric cloud security stack was needed. By routing all enterprise traffic through cloud security layers (and even isolating risky web sessions via tools like Zscaler’s Zero Trust Browser), NOV dramatically cut down intrusion attempts. This comprehensive inspection capability is what enabled NOV to spot and stop threats that previously slipped through, slashing incident volumes by 35x.

VB: Were there any unforeseen benefits to adopting Zero Trust you didn’t initially expect?

Alex Philips: Yes, our users actually preferred the cloud-based Zero Trust experience over legacy VPN clients, so adoption was simple and gave us unprecedented agility for mobility, acquisitions, and even what we like to call “Black Swan Events”. For example, when COVID-19 hit, NOV was already prepared! I told my leadership team if all 27,500 of our users needed to work remotely, our IT systems could handle it. My leadership was stunned and our company kept moving forward without missing a beat.

VB: Identity-based attacks are on the rise – you’ve mentioned staggering stats about credential theft. How is NOV fortifying identity and access management?

Philips: Attackers know it’s often easier to log in with stolen credentials than to drop malware. In fact, 79% of attacks to gain initial access in 2024 were malware-free, relying on stolen credentials, AI-driven phishing, and deepfake scams, according to recent threat reports. One in three cloud intrusions last year involved valid credentials. We’ve tightened identity policies to make those tactics harder.

For example, we integrated our Zscaler platform with Okta for identity and conditional access checks. Our conditional access policies verify devices have our SentinelOne antivirus agent running before granting access, adding an extra posture check. We’ve also drastically limited who can perform password or MFA resets. No single admin should be able to bypass authentication controls alone. This separation of duties prevents an insider or compromised account from simply turning off our protections.

VB: You mentioned finding a gap even after disabling a user’s account. Can you explain?

Philips: We discovered that if you detect and disable a compromised user’s account, the attacker’s session tokens might still be active. It isn’t enough to reset passwords; you have to revoke session tokens to truly kick out an intruder. We’re partnering with a startup to create near real-time token invalidation solutions for our most commonly used resources. Essentially, we want to make a stolen token useless within seconds. A Zero Trust architecture helps because everything is re-authenticated through a proxy or identity provider, giving us a single choke point to cancel tokens globally. That way, even if an attacker grabs a VPN cookie or cloud session, they can’t move laterally because we’ll kill that token fast.

VB: How else are you securing identities at NOV?

Philips: We enforce multi-factor authentication (MFA) almost everywhere and monitor for abnormal access patterns. Okta, Zscaler, and SentinelOne together form an identity-driven security perimeter where each login and device posture is continuously verified. Even if someone steals a user password, they still face device checks, MFA challenges, conditional access rules, and the risk of instant session revocation if anything seems off. Resetting a password isn’t enough anymore — we must revoke session tokens instantly to stop lateral movement. That philosophy underpins NOV’s identity threat defense strategy.

VB: You’ve also been an early adopter of AI in cybersecurity. How is NOV leveraging AI and generative models in the SOC?

Philips: We have a relatively small security team for our global footprint, so we must work smarter. One approach is bringing AI “co-workers” into our security operations center (SOC). We partnered with SentinelOne and started using their AI security analyst tool—an AI that can write and run queries across our logs at machine speed. It’s been a game changer, allowing analysts to ask questions in plain English and get answers in seconds. Instead of manually crafting SQL queries, the AI suggests the next query or even auto-generates a report, which has dropped our mean time to respond.

We’ve seen success stories where threat hunts are performed up to 80% faster using AI assistants. Microsoft’s own data shows that adding generative AI can reduce incident mean time to resolution by 30%. Beyond vendor tools, we’re also experimenting with internal AI bots for operational analytics, using OpenAI foundational AI models to help non-technical staff quickly query data. Of course, we have data protection guardrails in place so these AI solutions don’t leak sensitive information.

VB: Cybersecurity is no longer just an IT issue. How do you engage NOV’s board and executives on cyber risk?

Philips: I made it a priority to bring our board of directors along on our cyber journey. They don’t need the deep technical minutiae, but they do need to understand our risk posture. With generative AI exploding, for example, I briefed them on both the advantages and risks early on. That education helps when I propose controls to prevent data leaks—there’s already alignment on why it’s necessary.

The board views cybersecurity as a core business risk now. They’re briefed on it at every meeting, not just once a year. We’ve even run tabletop exercises with them to show how an attack would play out, turning abstract threats into tangible decision points. That leads to stronger top-down support.

I make it a point to constantly reinforce the reality of cyber risk. Even with millions invested in our cybersecurity program, the risk is never fully eliminated. It is not if we will have an incident, but when.

VB: Any final advice, based on NOV’s journey, for other CIOs and CISOs out there?

Philips: First, recognize that security transformation and digital transformation go hand in hand. We couldn’t have moved to the cloud or enabled remote work so effectively without Zero Trust, and the business cost savings helped fund security improvements. It truly was a “win, win, win.”

Second, focus on the separation of duties in identity and access. No one person should be able to undermine your security controls—myself included. Small process changes like requiring two people to change MFA for an exec or highly privileged IT staff, can thwart malicious insiders, mistakes, and attackers.

Lastly, embrace AI carefully but proactively. AI is already a reality on the attacker side. A well-implemented AI assistant can multiply your team’s defense, but you must manage the risks of data leakage or inaccurate models. Make sure to merge AI output with your team’s skill to create an AI-infused “brAIn”.

We know the threats keep evolving, but with zero trust, strong identity security and now AI on our side, it helps give us a fighting chance.

Shape
Shape
Stay Ahead

Explore More Insights

Stay ahead with more perspectives on cutting-edge power, infrastructure, energy,  bitcoin and AI solutions. Explore these articles to uncover strategies and insights shaping the future of industries.

Shape

Cisco initiative targets device security

Cisco is announcing a security initiative that will push customers to update or replace aging infrastructure components, such as routers, switches and firewalls, as well as discourage them from using any insecure features. Called Resilient Infrastructure, the plan calls for Cisco to strengthen network security by increasing default protections, removing

Read More »

NetOps teams struggle with AI readiness

Some 87% of respondents indicated that internet and cloud environments are creating network blind spots in many areas. Half of organizations reported a lack of adequate insight into public clouds, 44% of respondents indicated transit and peering networks created blind spots, and 43% said remote work environments lack visibility. Other

Read More »

CEO Denies Alleged TotalEnergies Link to Mozambique Crimes

TotalEnergies SE Chief Executive Officer Patrick Pouyanne rejected accusations the French energy firm has responsibilities in alleged killing of civilians four years ago at its liquefied natural gas project site in Mozambique. The company “is accused of having directly financed and materially supported” a group of armed forces, who “allegedly detained, tortured and killed dozens of civilians” at the LNG project in the north of the country, the European Center for Constitutional and Human Rights said in a statement Tuesday. It filed a criminal complaint over the allegations with the French National Anti-Terrorism Prosecutor this week. “We will defend ourselves and we will explain that all this has nothing to do with TotalEnergies,” Pouyanne said Wednesday on LCI television station. “We’ve done inquiries. We never managed to find evidence” of the allegations.  The complaint comes as Total is on the verge of restarting construction of the project for the first time since the site was shut in 2021 due to an Islamist insurgency. Other global corporations operating in conflict areas have had cases brought against them including Holcim Ltd.’s Lafarge, on trial in France over operations in Syria, and a US ruling against BNP Paribas related to Sudan. The ECCHR complaint, citing an account by Politico, accuses Total of “complicity in war crimes” through a financial link to a Mozambican army unit that allegedly held civilians in shipping containers where dozens of them were tortured and killed at the project between July and September 2021. The company had evacuated the site earlier that year after an attack by insurgents and declared a force majeure. In 2023, Jean-Christophe Rufin, a former French ambassador hired by Total to review the security and humanitarian situation around the project, warned that the developers should stop paying bonuses to Mozambique’s security forces protecting the site.  Total asked government authorities to

Read More »

Powering the grid: embracing EPC for extra-high-voltage growth

Across the country, the demand for power is soaring. Hyperscale facilities, rising industrial load, extreme weather impacts and the loss of firm power capacity are pushing the grid harder than ever. Integration of renewable and distributed generation sources — often far from load centers — has been constrained as infrastructure build-out has lagged soaring demand. The response from the energy sector has been a boom in capital investment, significant new construction and rebuilds of aging infrastructure, aiming to dramatically increase capacity on the grid. The complexity and sheer scale of these projects pose serious risks. A streamlined approach to project delivery, utilizing the engineer-procure-construct (EPC) model, will be key to delivering at the rate the market demands. Accelerating the front end of projects, from concept to mobilization, offers opportunities to optimize through integrated delivery and collaborative contracting. Three important takeaways: Extra-high-voltage (EHV) projects, such as 765-kV transmission lines, are an important part of the sector’s response to modern challenges. Given limited practical experience with such projects, partnerships can better leverage that pool of experience. The portfolio-based approach required to scale extra-high-voltage infrastructure needs EPC delivery for maximum efficiency. The importance of collaboration and coordination is magnified for region-spanning efforts. Bridging Experience Gaps Solving capacity challenges means significant capital investment is essential, particularly in EHV transmission infrastructure. However, most of the limited 765-kV infrastructure in the U.S. was built decades ago. The number of people in today’s workforce who have hands-on experience with design, construction or commissioning at that scale is small and shrinking. The supply of experienced workers — especially field personnel, skilled linemen and engineering leadership — for high-voltage projects is a major constraint in an already-tight labor market. The risk created by that lack of bench strength requires trust among all stakeholders for the projects. Intentional knowledge transfer

Read More »

Dynagas Q3 Revenue Down YoY

Dynagas LNG Partners LP on Thursday reported $38.89 million in revenue for the third quarter, down from $39.07 million for the same three-month period last year. The decrease brought down net profit adjusted for nonrecurring items from $14.48 million for Q3 2024 to $14.23 million, or $0.36 per share, for Q3 2025, the Athens-based owner and operator of liquefied natural gas (LNG) carriers said in its quarterly report. The revenue fall was driven by “the decrease of the daily hire rate of the Arctic Aurora in the three-month period ending September 30, 2025, and the decrease in revenue earning days of the Yenisei River due to unscheduled repairs”, Dynagas said. “The above decrease in voyage revenues was partially offset by the non-cash effect of the amortization of deferred revenues and the value of the EU ETS emissions allowances due to the Partnership by the charterers of its vessels”. Dynagas logged average daily hire gross of commissions of nearly $70,000 per day per vessel in Q3 2025, down from around $72,800 per day per vessel for Q3 2024. Its fleet, consisting of six carriers with a combined capacity of approximately 914,000 cubic meters (32.28 million cubic feet), had utilization rates of 99.1 percent and 100 percent in Q3 2025 and Q3 2024 respectively. “Our fleet-wide time charter equivalent of $67,094 per day comfortably exceeded our cash breakeven for the quarter of approximately $47,500, allowing us to continue generating stable free cash flow”, said chief executive Tony Lauritzen. While revenue dropped, net income grew from $15.05 million for Q3 2024 to $18.66 million for Q3 2025. This was “mainly attributable to the increase of other income from insurance claims for damages incurred in prior years, the decrease in net interest and finance costs… [and] the decrease in general and administrative expenses”, Dynagas said.

Read More »

Russian Oil Giant Recommends Lowest Interim Dividends Since 2020

Russian oil giant Rosneft PJSC plans to pay the lowest interim dividends since the pandemic in 2020 as slumping crude prices, a stronger ruble and looming US sanctions bite. The board of directors of Russia’s largest state-controlled oil producer recommended to pay 11.56 rubles, $0.14, per share in interim dividends, according to a regulatory filing on Thursday.  The recommendation comes just a day before unprecedented US sanctions are due to hit Rosneft and fellow Russian oil giant Lukoil PJSC. President Donald Trump’s administration last month stepped up restrictions on Russia’s oil industry, which together with gas accounts for about a quarter of the nation’s coffers.  Rosneft’s earnings were already undermined by lower global oil prices amid fears of global surplus and much stronger ruble, with the appreciation of the nation’s currency meaning fewer rubles for each sold barrel. As a result, Rosneft’s net income shrank by 68% in the first half of the year from the same period in 2024.  Rosneft, responsible for over a third of the nation’s oil output, has been paying dividends to the state since 1999, and to other shareholders since 2006 when it began trading publicly. The producer started to pay interim dividends in 2017, distributing half of its profit to shareholders. It scrapped the payouts for the first half of 2020 after posting a loss for the period. Lukoil’s board of directors will discuss recommendations on interim dividends on Friday. The oil producer initially planned to discuss nine-month payouts on Oct. 23, but postponed after US announced sanctions against the company on Oct. 22. Some Lukoil units on Friday received extensions to sanctions waivers that the Trump administration imposed. WHAT DO YOU THINK? Generated by readers, the comments included herein do not reflect the views and opinions of Rigzone. All comments are subject to editorial review. Off-topic, inappropriate

Read More »

Oil Slips as Peace Talks Advance

Oil fell after Ukrainian President Volodymyr Zelenskiy said he agreed to work on a peace plan drafted by the US and Russia aimed at ending the war in Ukraine. West Texas Intermediate fell 0.5% to settle above $59 a barrel on Thursday, paring some losses from intraday lows following Zelenskiy’s comments. A peace deal, if followed by the elimination of sanctions on Russian oil over its invasion of Ukraine, could unleash supply from the world’s third-largest producer. Oil markets are already staring down expectations for a surplus as OPEC+ and other producers ramp up output, with the commodity heading for a yearly loss amid concerns of a glut. The flurry of renewed activity to end the war comes just hours before US sanctions targeting Russia’s two largest oil companies, Rosneft PJSC and Lukoil PJSC, are due to come into effect. Russia has consistently found a way to sell its sanctioned oil through so-called “shadow” channels. But Moscow’s oil revenue is expected to stagnate amid falling global crude prices, posing a risk to its budget and broader economy. Still, any accord remains far from certain. The US has signaled to Zelenskiy that he should accept the deal drawn up in consultation with Moscow, according to a person familiar. But the plan outlines known Russian demands for concessions that Kyiv has repeatedly said are unacceptable and that have so far hindered any breakthrough in efforts to reach a ceasefire. “Notably, Ukraine is reiterating its openness to discuss ending the war, what’s uncertain is Russia’s real interest in ending the war,” said Rachel Ziemba, an adjunct senior fellow at the Center for a New American Security. “It remains to be seen if Russia is interested in ending the war or just in buying time to reduce more extensive sanctions.” Earlier in the day,

Read More »

Exxon Lifts Force Majeure on Mozambique LNG Project

Exxon Mobil Corp. lifted a force majeure on its Rovuma liquefied natural gas project in Mozambique as security concerns subside, a key step toward sanctioning the development and committing construction funds.  The force majeure was put in place after Islamic State-affiliated militants carried out an attack near its operations in northeastern Mozambique in 2021. Ending the force majeure will allow work to resume and is a crucial step toward Exxon making a final investment decision on the project, which is expected next year. TotalEnergies SE, which is building a separate $20 billion LNG plant nearby, ended its own suspension last month.  “We have lifted force majeure for the Rovuma LNG project,” an Exxon spokesman said. “We are working with our partners and the government of Mozambique to ensure the safety of our people and facilities, as we look to develop a world-class LNG project that can help drive economic growth.” The Exxon and TotalEnergies projects are expected to be online by the early 2030s — assuming no further delays — and will enable Mozambique to ship gas around the world for decades. They also promise to transform the country’s economy, one of the world’s poorest, into an energy-export powerhouse.  Mozambican President Daniel Chapo is keen to realize those promises and has worked in recent months with Rwandan troops to help secure the Cabo Delgado region. He called the area “relatively stable” in July and urged companies to resume work even if threats remain.  “If we’re waiting for Cabo Delgado to be a heaven, we won’t lift force majeure,” he said at the time.  Exxon used the delay to refine Rovuma’s design, envisioning it will produce as much as 18 million tons of gas annually, up from the original 15.2 million tons. Partners include China National Petroleum Corp. (CNPC), Abu Dhabi National Oil Co., Seoul’s

Read More »

Nvidia is flying high: Is there anything left to say?

Supply chain risks, he said, “are numerous in nature; however, it is clear that Nvidia is customer Number One with all of their suppliers, which drives an inordinate allocation of resources to ensure that production flows. Any disruption would likely be materials-based as opposed to a process or labor issue from their vendor base.” He added, “geopolitical events would be the most likely origin of any type of medium to long term disruption, think China-Taiwan, expansion of the Russia-Ukraine conflict, or escalation in the US-China trade war.” For lower impact events, he said, “[Nvidia] does a nice job of setting conservative shipment goals and targets for Wall Street, which they almost invariably beat quarter after quarter. This provides some cushion for them to absorb a labor, process, or geopolitical hiccup and still meet their stated goals. Shipment volumes may not exceed targets, but shipments would continue to flow; the spice must flow after all.” In a worst-case scenario where shipments are materially impacted, there is little recourse for enterprises that are not large-scale cloud consumers with clout with the limited providers in the space, Bickley added. Enterprises joining a ‘very long queue’ According to Sanchit Vir Gogia, the chief analyst at Greyhound Research, the Nvidia earnings call “confirms that the bottleneck in enterprise AI is no longer imagination or budget. It is capacity. Nvidia reported $57 billion in quarterly revenue, with more than $51 billion from data center customers alone, yet still described itself as supply-constrained at record levels.” Blackwell and Blackwell Ultra, he said, have become the default currency of AI infrastructure, yet even at a build rate of roughly 1,000 GPU racks per week, the company cannot meet demand.

Read More »

Server memory prices could double by 2026 as AI demand strains supply

Limited options for enterprise buyers As supply tightens, most enterprises face limited leverage in selecting suppliers. “Enterprise will have less control over what memory supplier they can choose unless you are a hyperscaler or tier-2 AI datacenter scale enterprise,” Neil Shah, VP for research and partner at Counterpoint Research, told NetworkWorld. “For most enterprises investing in AI infrastructure, they will rely on vendors such as Dell, Lenovo, HPE, Supermicro, and others on their judgment to select the best memory supplier.” Shah advised enterprises with control over their bill of materials to negotiate and lock in supply and costs in advance. “In most cases for long-tail enterprises, smaller buyers without volume leverage, they will have little control as demand outstrips supply, so the prudent thing would be to spread out the rollout over time to average out the cost spikes,” he said. Legacy shortage opens door for Chinese suppliers The current pricing pressure has its roots in production decisions made months ago. According to Counterpoint, the supply crunch originated at the low end of the market as Samsung, SK Hynix, and Micron redirected production toward high-bandwidth memory for AI accelerators, which commands higher margins but consumes three times the wafer capacity of standard DRAM. That shift created an unusual price inversion: DDR4 used in budget devices now trades at approximately $2.10 per gigabit, while server-grade DDR5 sells for around $1.50 per gigabit, according to the firm. This tightness is creating an opportunity for China’s CXMT, noted Shah. “DDR4 is being used in low- to mid-tier smart devices and considering bigger vendors such as Samsung and SK Hynix planned to ramp down DDR4 capacity, CXMT could gain advantage and balance the supply versus demand dynamics moving into the second half of next year,” Shah said.

Read More »

Cobalt 200: Microsoft’s next-gen Arm CPU targets lower TCO for cloud workloads

These architectural improvements underpin Cobalt 200’s claimed increase in performance, which, according to Stephen Sopko, analyst at HyperFRAME Research, will lead to a reduction in total cost of ownership (TCO) compared to its predecessor. As a result, enterprise customers can benefit from consolidating workloads onto fewer machines. “For example, a 1k-instance cluster can see up to 30-40% TCO gains,” Sopko said, adding that this also helps enterprises free up resources to allocate to other workloads or projects. Moor Strategy and Insights principal analyst Matt Kimball noted that the claimed improvements in throughput-per-watt could be beneficial for compute-intensive workloads such as AI inferencing, microservices, and large-scale data processing. Some of Microsoft’s customers are already using Cobalt 100 virtual machines (VMs) for large-scale data processing workloads, and the chips are deployed across 32 Azure data centers, the company said. With Cobalt 200, the company will directly compete with AWS’s Graviton series and Google’s recently announced Axion processors, both of which leverage Arm architecture to deliver better price-performance for cloud workloads. Microsoft and other hyperscalers have been forced to design their own chips for data centers due to the skyrocketing costs for AI and cloud infrastructure, supply constraints around GPUs, and the need for energy-efficient yet customizable architectures to optimize workloads.

Read More »

AWS boosts its long-distance cloud connections with custom DWDM transponder

By controlling the entire hardware stack, AWS can implement comprehensive security measures that would be challenging with third-party solutions, Rehder stated. “This initial long-haul deployment represents just the first implementation of the in-house technology across our extensive long-haul network. We have already extended deployment to Europe, with plans to use the AWS DWDM transponder for all new long-haul connections throughout our global infrastructure,” Rehder wrote. Cloud vendors are some of the largest optical users in the world, though not all develop their own DWDM or other optical systems, according to a variety of papers on the subject. Google develops its own DWDM, for example, but others like Microsoft Azure develop only parts and buy optical gear from third parties. Others such as IBM, Oracle and Alibaba have optical backbones but also utilize third-party equipment. “We are anticipating that the time has come to interconnect all those new AI data centers being built,” wrote Jimmy Yu, vice president at Dell’Oro Group, in a recent optical report. “We are forecasting data center interconnect to grow at twice the rate of the overall market, driven by increased spending from cloud providers. The direct purchases of equipment for DCI will encompass ZR/ZR+ optics for IPoDWDM, optical line systems for transport, and DWDM systems for high-performance, long-distance terrestrial and subsea transmission.”

Read More »

Nvidia’s first exascale system is the 4th fastest supercomputer in the world

The world’s fourth exascale supercomputer has arrived, pitting Nvidia’s proprietary chip technologies against the x86 systems that have dominated supercomputing for decades. For the 66th edition of the TOP500, El Capitan holds steady at No. 1 while JUPITER Booster becomes the fourth exascale system on the list. The JUPITER Booster supercomputer, installed in Germany, uses Nvidia CPUs and GPUs and delivers a peak performance of exactly 1 exaflop, according to the November TOP500 list of supercomputers, released on Monday. The exaflop measurement is considered a major milestone in pushing computing performance to the limits. Today’s computers are typically measured in gigaflops and teraflops—and an exaflop translates to 1 billion gigaflops. Nvidia’s GPUs dominate AI servers installed in data centers as computing shifts to AI. As part of this shift, AI servers with Nvidia’s ARM-based Grace CPUs are emerging as a high-performance alternative to x86 chips. JUPITER is the fourth-fastest supercomputer in the world, behind three systems with x86 chips from AMD and Intel, according to TOP500. The top three supercomputers on the TOP500 list are in the U.S. and owned by the U.S. Department of Energy. The top two supercomputers—the 1.8-exaflop El Capitan at Lawrence Livermore National Laboratory and the 1.35-exaflop Frontier at Oak Ridge National Laboratory—use AMD CPUs and GPUs. The third-ranked 1.01-exaflop Aurora at Argonne National Laboratory uses Intel CPUs and GPUs. Intel scrapped its GPU roadmap after the release of Aurora and is now restructuring operations. The JUPITER Booster, which was assembled by France-based Eviden, has Nvidia’s GH200 superchip, which links two Nvidia Hopper GPUs with CPUs based on ARM designs. The CPU and GPU are connected via Nvidia’s proprietary NVLink interconnect, which is based on InfiniBand and provides bandwidth of up to 900 gigabytes per second. JUPITER first entered the Top500 list at 793 petaflops, but

Read More »

Samsung’s 60% memory price hike signals higher data center costs for enterprises

Industry-wide price surge driven by AI Samsung is not alone in raising prices. In October, TrendForce reported that Samsung and SK Hynix raised DRAM and NAND flash prices by up to 30% for Q4. Similarly, SK Hynix said during its October earnings call that its HBM, DRAM, and NAND capacity is “essentially sold out” for 2026, with the company posting record quarterly operating profit exceeding $8 billion, driven by surging AI demand. Industry analysts attributed the price increases to manufacturers redirecting production capacity. HBM production for AI accelerators consumes three times the wafer capacity of standard DRAM, according to a TrendForce report, citing remarks from Micron’s Chief Business Officer. After two years of oversupply, memory inventories have dropped to approximately eight weeks from over 30 weeks in early 2023. “The memory industry is tightening faster than expected as AI server demand for HBM, DDR5, and enterprise SSDs far outpaces supply growth,” said Manish Rawat, semiconductor analyst at TechInsights. “Even with new fab capacity coming online, much of it is dedicated to HBM, leaving conventional DRAM and NAND undersupplied. Memory is shifting from a cyclical commodity to a strategic bottleneck where suppliers can confidently enforce price discipline.” This newfound pricing power was evident in Samsung’s approach to contract negotiations. “Samsung’s delayed pricing announcement signals tough behind-the-scenes negotiations, with Samsung ultimately securing the aggressive hike it wanted,” Rawat said. “The move reflects a clear power shift toward chipmakers: inventories are normalized, supply is tight, and AI demand is unavoidable, leaving buyers with little room to negotiate.” Charlie Dai, VP and principal analyst at Forrester, said the 60% increase “signals confidence in sustained AI infrastructure growth and underscores memory’s strategic role as the bottleneck in accelerated computing.” Servers to cost 10-25% more For enterprises building AI infrastructure, these supply dynamics translate directly into

Read More »

Microsoft will invest $80B in AI data centers in fiscal 2025

And Microsoft isn’t the only one that is ramping up its investments into AI-enabled data centers. Rival cloud service providers are all investing in either upgrading or opening new data centers to capture a larger chunk of business from developers and users of large language models (LLMs).  In a report published in October 2024, Bloomberg Intelligence estimated that demand for generative AI would push Microsoft, AWS, Google, Oracle, Meta, and Apple would between them devote $200 billion to capex in 2025, up from $110 billion in 2023. Microsoft is one of the biggest spenders, followed closely by Google and AWS, Bloomberg Intelligence said. Its estimate of Microsoft’s capital spending on AI, at $62.4 billion for calendar 2025, is lower than Smith’s claim that the company will invest $80 billion in the fiscal year to June 30, 2025. Both figures, though, are way higher than Microsoft’s 2020 capital expenditure of “just” $17.6 billion. The majority of the increased spending is tied to cloud services and the expansion of AI infrastructure needed to provide compute capacity for OpenAI workloads. Separately, last October Amazon CEO Andy Jassy said his company planned total capex spend of $75 billion in 2024 and even more in 2025, with much of it going to AWS, its cloud computing division.

Read More »

John Deere unveils more autonomous farm machines to address skill labor shortage

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More Self-driving tractors might be the path to self-driving cars. John Deere has revealed a new line of autonomous machines and tech across agriculture, construction and commercial landscaping. The Moline, Illinois-based John Deere has been in business for 187 years, yet it’s been a regular as a non-tech company showing off technology at the big tech trade show in Las Vegas and is back at CES 2025 with more autonomous tractors and other vehicles. This is not something we usually cover, but John Deere has a lot of data that is interesting in the big picture of tech. The message from the company is that there aren’t enough skilled farm laborers to do the work that its customers need. It’s been a challenge for most of the last two decades, said Jahmy Hindman, CTO at John Deere, in a briefing. Much of the tech will come this fall and after that. He noted that the average farmer in the U.S. is over 58 and works 12 to 18 hours a day to grow food for us. And he said the American Farm Bureau Federation estimates there are roughly 2.4 million farm jobs that need to be filled annually; and the agricultural work force continues to shrink. (This is my hint to the anti-immigration crowd). John Deere’s autonomous 9RX Tractor. Farmers can oversee it using an app. While each of these industries experiences their own set of challenges, a commonality across all is skilled labor availability. In construction, about 80% percent of contractors struggle to find skilled labor. And in commercial landscaping, 86% of landscaping business owners can’t find labor to fill open positions, he said. “They have to figure out how to do

Read More »

2025 playbook for enterprise AI success, from agents to evals

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More 2025 is poised to be a pivotal year for enterprise AI. The past year has seen rapid innovation, and this year will see the same. This has made it more critical than ever to revisit your AI strategy to stay competitive and create value for your customers. From scaling AI agents to optimizing costs, here are the five critical areas enterprises should prioritize for their AI strategy this year. 1. Agents: the next generation of automation AI agents are no longer theoretical. In 2025, they’re indispensable tools for enterprises looking to streamline operations and enhance customer interactions. Unlike traditional software, agents powered by large language models (LLMs) can make nuanced decisions, navigate complex multi-step tasks, and integrate seamlessly with tools and APIs. At the start of 2024, agents were not ready for prime time, making frustrating mistakes like hallucinating URLs. They started getting better as frontier large language models themselves improved. “Let me put it this way,” said Sam Witteveen, cofounder of Red Dragon, a company that develops agents for companies, and that recently reviewed the 48 agents it built last year. “Interestingly, the ones that we built at the start of the year, a lot of those worked way better at the end of the year just because the models got better.” Witteveen shared this in the video podcast we filmed to discuss these five big trends in detail. Models are getting better and hallucinating less, and they’re also being trained to do agentic tasks. Another feature that the model providers are researching is a way to use the LLM as a judge, and as models get cheaper (something we’ll cover below), companies can use three or more models to

Read More »

OpenAI’s red teaming innovations define new essentials for security leaders in the AI era

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More OpenAI has taken a more aggressive approach to red teaming than its AI competitors, demonstrating its security teams’ advanced capabilities in two areas: multi-step reinforcement and external red teaming. OpenAI recently released two papers that set a new competitive standard for improving the quality, reliability and safety of AI models in these two techniques and more. The first paper, “OpenAI’s Approach to External Red Teaming for AI Models and Systems,” reports that specialized teams outside the company have proven effective in uncovering vulnerabilities that might otherwise have made it into a released model because in-house testing techniques may have missed them. In the second paper, “Diverse and Effective Red Teaming with Auto-Generated Rewards and Multi-Step Reinforcement Learning,” OpenAI introduces an automated framework that relies on iterative reinforcement learning to generate a broad spectrum of novel, wide-ranging attacks. Going all-in on red teaming pays practical, competitive dividends It’s encouraging to see competitive intensity in red teaming growing among AI companies. When Anthropic released its AI red team guidelines in June of last year, it joined AI providers including Google, Microsoft, Nvidia, OpenAI, and even the U.S.’s National Institute of Standards and Technology (NIST), which all had released red teaming frameworks. Investing heavily in red teaming yields tangible benefits for security leaders in any organization. OpenAI’s paper on external red teaming provides a detailed analysis of how the company strives to create specialized external teams that include cybersecurity and subject matter experts. The goal is to see if knowledgeable external teams can defeat models’ security perimeters and find gaps in their security, biases and controls that prompt-based testing couldn’t find. What makes OpenAI’s recent papers noteworthy is how well they define using human-in-the-middle

Read More »