Blog

Research, guidance, and perspectives on AI security.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

ChatGPT Security Guide: Enterprise Risks, Incidents, and Practitioner Guidance

AI Risks

Jun 29th, 2026

What security teams actually need to know about ChatGPT: data handling, documented incidents, CISO guidance, and API risks.

The Agentic AI Attack Surface: Where Risk Lives Beyond the Prompt

AI Risks

May 5th, 2026

Technical analysis of agentic AI security boundaries covering content ingestion, context translation, tool execution, and behavioral constraints in AI runtimes.

From Trivy to LiteLLM: Expanding the LLM Supply Chain Threat Model

AI Risks

Mar 25th, 2026

The Trivy breach and LiteLLM compromise show how LLM supply chain risk now extends from malicious packages to CI, middleware, prompts, and data.

The Key Layer in AI Security: Browser and Endpoint Sensors

AI Resources

Feb 19th, 2026

SASE, proxies, and EDR/MDM are foundational, but AI needs more. Learn why browser and endpoint sensors enable real-time AI governance.

What OpenClaw's (Clawdbot) Virality Reveals About the Risks of Agentic AI

Agentic AI

Jan 27th, 2026

OpenClaw’s rapid adoption highlights a broader shift to agentic AI. This analysis examines what always-on AI agents change about risk, control, and deployment.

Why AI Browsers Create a New, Unavoidable Security Risk

Agentic AI

Jan 22nd, 2026

AI browsers introduce structural security risks driven by prompt injection and autonomous actions. Learn why enterprises can't fully secure AI browsers, for now

When Your Plugin Starts Picking Your Dependencies: Marketplace Skills and Dependency Hijack in Claude Code

AI Risks

Jan 5th, 2026

Claude Code marketplace skills can rewrite how dependencies are installed. Demo shows silent httpx hijack and OWASP agentic failures.

When Your Repo Starts Talking: AGENTS.MD and Agent Goal Hijack in VS Code Chat

AI Risks

Dec 17th, 2025

VS Code auto-includes AGENTS.MD in every request. Learn how this hidden instruction layer can hijack agent goals and trigger data exfiltration.

When AI Trusts the Wrong Data: New Research From Prompt Security

AI Risks

Nov 24th, 2025

Prompt Security reveals how AI systems can be silently manipulated by the very data they rely on, exposing a risk in modern AI pipelines.