Loading…
Loading…
Tag
21 posts with this tag.
·5 min read
xAI's Grok Build went viral July 14 with 8,700 GitHub stars. Free-tier sends your code to xAI for training. 5 questions to answer before approving it.
·5 min read
Does Grok Build send your repo to xAI? Yes: wire-level tests caught full git repos and unredacted .env secrets uploaded to Google Cloud.
·5 min read
Apple sued OpenAI July 10, 2026 over hardware IP stolen by former employees. Here are 7 gaps in standard offboarding that the lawsuit's allegations reveal.
·5 min read
Sysdig disclosed the first AI-agent ransomware in July 2026. Entry point: Langflow. Here are 8 security checks your AI tool approval process needs now.
·5 min read
24-hour runbook for leaked AI agent tokens: revoke, rotate, audit blast radius, and restore access before costs spiral. 7 copy-paste steps.
·11 min read
ChatGPT Atlas and Perplexity Comet act inside your logged-in sessions, which breaks the old browser security model. Here is a copy-paste governance policy for teams of 5-50, plus the prompt-injection risk you need to brief staff on now.
·11 min read
5 controls to govern AI agents that open PRs while you sleep. Copy this unattended AI coding agent governance policy with merge gates and a kill switch.
·13 min read
5 TypeScript modules for AI agent observability: trace context, token and cost metering, structured event logging, tool-call tracing, and OpenTelemetry export. Express and Next.js compatible, with the governance reasons each one matters.
·12 min read
Which AI red-teaming security testing requirements apply in 2026? NIST AI 600-1 explained, plus how small teams run a testing program.
·10 min read
A self-spreading worm compromised 57 npm packages in under 2 hours using binding.gyp instead of postinstall scripts, bypassing security scanners. What it means for teams that run npm install, and the 5 controls that limit your exposure.
·10 min read
Hackers social-engineered Meta AI into resetting passwords on high-profile Instagram accounts by simply asking. What the attack means for any team deploying an AI chatbot that can take account actions, and the 6 controls that prevent it.
Showing 12 of 21 posts.