AI Security AI incident response: a practical playbook for LLMs
AI incidents need evidence beyond classic breaches. Prepare response playbooks for prompt injection, data leaks, poisoning and agent tool abuse.
Daily news, analysis and practical guides explaining what happened, who is affected and what to do next. We also turn this knowledge into practical training for organisations.
AI Security AI incidents need evidence beyond classic breaches. Prepare response playbooks for prompt injection, data leaks, poisoning and agent tool abuse.
Cybersecurity History Kevin Mitnick was the world's most wanted hacker - and his weapons weren't exploits, but phones and psychology. A story of social engineering, an FBI chase and a second life.
Supply Chain Security Signing without key management (Sigstore) and verifiable build provenance (SLSA) are the new supply chain defense. We translate Fulcio, Rekor, cosign and SLSA levels.
Vulnerabilities and CVEs 2026 confirms a worrying trend: vulnerabilities are exploited faster than vendors ship patches. What it means for defence and how to keep up.
Threats and Incidents Improvising during an incident costs the most. We show NIST's six phases of response, ready-made playbooks, and what to prepare before the phone rings.
Penetration Testing and AppSec A regular domain account is enough to download a Kerberos ticket and crack the password of an offline service account. We explain TGS-REP, RC4 vs AES and effective defense.
AI Security An AI model registry connects owners, data, risk and deployments. Learn which fields, gates, evidence and lifecycle metrics governance needs.
Penetration Testing and AppSec DNS rebinding bypasses the same-origin policy and allows a website in the browser to reach the router, IoT or LAN admin panel. Mechanism and effective defense.
Cybersecurity History In May 2000, an email with the subject line "ILOVEYOU" infected millions of computers in a few hours and caused billions of dollars in damage. The story of a worm that exploited human curiosity.
AI Security Shadow AI can expose data and create uncontrolled workflows. Discover tools, assess use-case risk and give employees secure, practical alternatives.
AI Security LLM evaluation should measure quality, safety, cost and drift on real tasks. Build representative test suites and evidence-based production gates.
Governance and Compliance The amended KSC act implements NIS2 and applies from 3 April 2026. We explain who it covers, the deadlines and what you need to do.
Cloud, Infrastructure and DevSecOps BGP does not have built-in authentication, so routes can be hijacked and traffic redirected. We explain hijacking, route leaks and RPKI, ROA and ROV validation.
Cybersecurity History In 2014, hackers wiped Sony Pictures, leaked internal emails and threatened theaters — all because of a comedy about North Korea. The story of an attack that combined politics and censorship.
AI Security AI agents create a new class of non-human identity. Secure tokens, delegation, tools, audit and lifecycle without long-lived API credentials.
Once a month, a concise summary of the vulnerabilities and threats that matter. No spam, unsubscribe anytime.