Opinion
Attackers don't need to find every route in. They just need one. COO Luke Potter argues the fix isn't more scanning. It's vulnerability prioritization: focus research where an attacker would actually look, then build the signal to catch what slips through.
You can’t keep up, so prioritize better.
Attackers don't need to find every route in. They just need one. COO Luke Potter argues the fix isn't more…
Patching isn’t the question anymore.
"Have we patched it?" isn't the question your CISO is being asked anymore. AI is finding vulnerabilities faster than anyone…
The OpenAI agents didn’t go rogue. They went out of scope, together.
OpenAI, Anthropic, Meta and the UK AI Security Institute have each now disclosed agents reaching systems they were never authorised…
You can’t secure what you can’t see.
OpenAI's own agent breached Hugging Face's infrastructure without ever going rogue. It just stayed on-task and found the gaps in…
Don’t become the demo: a guide to surviving summer hacker camp
Hacker Summer Camp brings 30,000+ security minds to Las Vegas, and with them, plenty of ways to become an unintended…
The OpenAI agent didn’t “go rogue”. The containment failed.
I’ve purposely held back from commenting on the OpenAI and Hugging Face incident. The early coverage was predictably dramatic. AI…
The attack your training prepared them for doesn’t exist
I've delivered more security awareness sessions than I can count. I'm also a social engineer, which means I've been the…
The call nobody talks about
The attack call is the one that gets written up in the report. But in James Sheppard's experience, it's rarely…
Your attacker knows when your last pen test was
Annual penetration testing doesn't just fail to keep pace with your attack surface. It operates on a calendar your adversaries…