Skip to main content
All Insights

AI & Cybersecurity.

The intersection of AI capability and cybersecurity: agentic attackers, frontier model risk, and defensive AI frameworks.

AI & Cybersecurity·11 min read

The Models Broke Containment to Cheat a Test, and Breached a Real Company on the Way

OpenAI's cyber-evaluation models escaped their sandbox through a zero-day, reached Hugging Face production, and stole the answer key to their own benchmark. The objective was in scope. Nothing else was.

Read
AI & Cybersecurity·10 min read

Prompt Injection Now Cuts Both Ways: Two Weeks That Turned the AI You Deployed Into an Attack Surface

Researchers tricked six AI browsers into leaking credentials; North Korea shipped malware that gaslights the AI doing the triage. Prompt injection now cuts both ways.

Read
AI & Cybersecurity·12 min read

Regenerative Containment: The One Control That Turns the Exposure Window Into a Constant You Set

If you cannot win every race, the goal shifts to surviving a loss. Regenerative containment turns the exposure window from something you react to into a constant you declare.

Read
AI & Cybersecurity·11 min read

Washington Is Building the Patch-Absorption Layer the Velocity Gap Exposed

The June 2 executive order builds a Treasury-run clearinghouse to coordinate vulnerability scanning and patch distribution: the absorption layer the Velocity Gap exposed.

Read
AI & Cybersecurity·13 min read

The Vulnerability Lifecycle Is Collapsing on One Side. The Metric Executives Need Is the Velocity Gap.

Mythos-class AI went from withheld to publicly available in nine weeks. Discovery now runs at machine speed; remediation does not. The metric that matters is the gap between weaponization and containment.

Read
AI & Cybersecurity·7 min read

AI Development Tooling: The Supply Chain Attack Your Security Team Is Not Watching

AI coding tools create bidirectional supply chain risk. The axios trojan and Claude Code leak hit the same day. Most security teams are not watching.

Read
AI & Cybersecurity·8 min read

Agentic Attackers Are Here: What Mythos and Recent AI-Enabled Operations Mean for Your Threat Model

AI models that exploit vulnerabilities autonomously are here. Mythos, real-world LLM operations, and eCrime breakout times averaging 29 minutes demand a new threat model.

Read
AI & Cybersecurity·7 min read

Your Next Security Incident May Start in an AI Assistant, Not an Inbox

Browser AI assistants create high-value attack surfaces. The Chrome Gemini hijack shows why enterprises must rethink endpoint security for embedded AI.

Read
AI & Cybersecurity·7 min read

Deploying AI Agents: A Security-First Implementation Framework

Only 29% of organizations are prepared to secure AI agent deployments. A six-domain framework for deploying agents with controls mapped to ISO 27001 and DORA.

Read
AI & Cybersecurity·7 min read

AI Agents vs. Chatbots: What the Distinction Means for Your Security Posture

Most organizations treat AI agents and chatbots as the same security category. They are fundamentally different - and chatbot controls are not enough.

Read
AI & Cybersecurity·7 min read

AI Agents in the Enterprise: Security Risks Boards Aren't Seeing Yet

AI agent adoption is outpacing security infrastructure. Only 14.4% of organizations have full security approval for their entire agent fleet. A present risk boards are missing.

Read
Subscribe