Blog
-
White House Cyber Ops Order Clears Path for Private Firms to Target Foreign Cybercrime Groups
A new White House order could open the door for US-based “digital privateers” to conduct cyber operations—but only against designated Transnational Criminal Organizations (TCOs), not foreign governments or critical infrastructure.
-
“First of its Kind” Autonomous AI Cyber Attack on Taiwan Signals Big Changes to Threat Landscape
News has recently broken that in early July, hackers suspected to be based in China executed what is thought to be the world’s first successful autonomous AI cyber attack on the government of Taiwan.
-
DEF CON Attendees Allegedly Launch Mid-Flight Deauthentication Attack on Delta Air Lines Wi-Fi
Some miscreants on the way home from Las Vegas to Atlanta opted to perform a deauthorization attack mid-flight and allegedly targeted other passengers for their login credentials. This followed a reported campaign of similar attack attempts on the Wi-Fi network at DEF CON itself.
-
Meta AI Model Exploits Security Vulnerability, Reinforcing Need for Better Testing Practices
Meta has joined what has seemed to become a marketing campaign for AI models, with its announcement that its own Muse Spark independently exploited a security vulnerability in some outside source.
-
AI Agents Turn to Social Engineering and Deception in UK Security Tests
In the course of about one out of a dozen runs of this nature, AI agents took some sort of inappropriate action including social engineering attempts, crafting and trying to upload malicious code, and attempting to collaborate with other AI models
-
More AI Models Are Hacking Outside Companies, But AI Developers Keep Leaving Gates Open
None of the aggressive AI models, including the one that breached Hugging Face, was really operating with a “mind of its own.” They were all rigidly attempting to solve a security puzzle that their human handlers set them to, and simply did not recognize appropriate limits in that pursuit.
-
Leaked Documents Indicate Microsoft Can’t Keep Up With Discovery of Security Vulnerabilities
Between the scope of the most recent “Patch Tuesday” updates and new leaked documents from internal Microsoft meetings, it appears the software giant is falling behind Mythos discovery to the tune of hundreds of security vulnerabilities per month.
-
OpenAI’s Rogue AI Agent Hacked Four More Targets
Perhaps the most concerning element of this incident is that OpenAI had no idea what was happening even as the rogue AI agent hacked its own internal infrastructure to break free to the internet, and did not appear to have a full picture for days (if not weeks) until the victims and the FBI stepped…
-
Autonomous AI Agent Escapes OpenAI Sandbox and Hacks Hugging Face
An undisclosed AI agent that’s still in internal testing at OpenAI reportedly broke containment to hack the company’s internal systems, escape to a node with internet access, and from there find and exploit vulnerabilities in Hugging Face.
-
As “Machine Speed” Discovery Looms, CISA Issues Guidance on Vulnerability Disclosure Programs
Vulnerability disclosure programs remain a blind spot for too many organizations—and frontier AI could soon make vulnerability discovery far easier and more frequent. New CISA and NSA guidance outlines practical steps for building effective coordinated vulnerability disclosure programs.










