AI Security

AI Security explores the risks, architectures, controls, and governance required to secure artificial intelligence across the enterprise. Coverage includes generative and agentic AI, LLMs, models, data, identities, tools, MCP, authorization, supply chains, attacks, and emerging security architectures—with a focus on what CISOs need to understand, govern, and defend.
23
Aug
The AI Supply Chain Can Execute Before the Application Does

The AI Supply Chain Can Execute Before the Application Does

AI artifacts are no longer passive data. DEF CON 34 shows how models, Skills, repositories and loaders can become execution paths — forcing CISOs to rethink supply-chain security, provenance and runtime authority.
14 min read
19
Aug
MCP Is Becoming Enterprise Infrastructure

MCP Is Becoming Enterprise Infrastructure

MCP is becoming enterprise infrastructure. As AI agents gain access to tools, identities and business systems, CISOs must govern not just integration — but the authority flowing through it.
15 min read
18
Aug
The Agent Is the New Attack Path

The Agent Is the New Attack Path

A safe model does not imply a safe agent. Agentic AI shifts the security problem from jailbreaks to authority: can an attacker make the system perform an authorized action for an unauthorized reason?
17 min read
08
Aug
The Perfect Blueprint: Why Digital Twins Have Become a Goldmine for Attackers

The Perfect Blueprint: Why Digital Twins Have Become a Goldmine for Attackers

Digital twins are transforming how buildings are designed and operated—but they are also creating an unprecedented reconnaissance asset. A compromised digital twin can reveal layouts, security controls and operational dependencies long before an attacker reaches the building.
5 min read
03
Aug
AI Changed the Economics of Cybercrime

AI Changed the Economics of Cybercrime

AI is not simply creating more cyber attacks—it is fundamentally changing their economics. As attackers operate at machine speed, traditional security assumptions break down. CISOs must rethink cyber risk as an economic and governance challenge, not only a technical one.
4 min read
29
Jul
Buildings Under Attack: Why Every CISO Must Prepare for Cyber-Physical Threats

Buildings Under Attack: Why Every CISO Must Prepare for Cyber-Physical Threats

Buildings are no longer passive infrastructure. They are connected cyber-physical systems that combine IT, OT, IoT and AI. This article introduces the emerging attack landscape every CISO should understand before smart buildings become the next major enterprise risk.
4 min read
17
Jul
THE AI CONTROL GAP

THE AI CONTROL GAP

2 min read
12
Jul
Data Sovereignty Is Not About Where Your Data Sleeps

Data Sovereignty Is Not About Where Your Data Sleeps

9 min read
07
Jul
AI Cost Governance Is Becoming a Security Control

AI Cost Governance Is Becoming a Security Control

AI cost governance is becoming a security control. As chatbots evolve into agents, costs are driven by autonomous decisions, retrieval and tools—not users alone. The question is no longer what a token costs, but whether the organization can still see, limit and justify its AI-driven work.
11 min read
05
Jul
The AI Control Gap

The AI Control Gap

AI governance is becoming too small for the risks it is meant to manage. The real challenge is no longer responsible AI use, but whether organizations can still see, control, explain and stop the systems shaping their data, decisions, costs and dependencies.
8 min read