The Ransomware That Still Needed a Human

Every few months, cybersecurity gets a new “first.” The first AI worm. The first autonomous attack. The first fully AI-powered ransomware. Headlines move fast. Reality usually takes a little longer. That’s exactly what happened last week. Early reports suggested researchers had documented the first truly agentic ransomware—an AI system capable of compromising a network, moving […]

Loop Prompting: A Technique for Getting More Out of LLMs

Most practitioners run one prompt, read the output, and move on. For drafting emails or summarizing a document, that is fine. For anything that requires actual analytical depth, it is the wrong approach. A single LLM pass gives you the first reasonable answer, not the best one. Loop prompting is how you fix that. What […]

The Numbers Behind the Curtain

Words without meaning

A few weeks ago I flew myself down to Orlando for CoachCon 2026, a two day gathering of entrepreneurs built around a single idea: thinking about thinking. Dan Sullivan hosted. The keynotes came from Angus Fletcher, author of Primal Intelligence, and Alison Levine, team captain of the first American Women’s Everest Expedition. I planned to […]

The Vanishing Buffer

An hour over a Colorado pass, a sentence in a Google ballroom, and the disappearance of the one thing every previous technology revolution quietly handed us: time Pueblo, Colorado. Hours before sunrise. To the west, the mountains we would have to cross were still dark on dark, more shape than range. A slight breeze worked […]

Harmony, Abnormal, Proofpoint: What Matters In Email Security

Featured image for an email security blog showing a suspicious wire transfer email investigation with the title “What Matters in Email Security.”

Most email security products are about as effective as eating spaghetti with a spoon. I have used quite a few. Three stand out. That number may shrink or expand because security tools change and evolve constantly. A firewall product that led the market twenty years ago should not be anywhere near a data center today. […]

What The FCC Router Ban Means For Security Leaders

Why This Matters Most teams treat consumer routers as commodity hardware. The FCC’s latest move challenges that assumption — blocking new foreign-made consumer routers from U.S. markets on national security grounds. The rationale is credible. State actors like Volt Typhoon have used small office and home office routers as staging points for intrusion, surveillance, and […]

Iran-Linked Cyber Surges Reward Boring Preparedness

When The Noise Arrives Early During recent U.S. and Israeli escalation involving Iran, security teams watching multiple environments saw something familiar: waves of spam and scanning activity showed up before the headlines fully landed. Whether you call it pre-positioning, opportunistic copycats, or state-adjacent actors moving on a predictable schedule, the operational point is the same. […]

Wearables Make Capture Passive

Wearable AI recording device pin on a suit jacket beside the title “The Rise of Wearable AI Surveillance,” representing cybersecurity risks of wearable AI recording devices.

A phone is an obvious recording device. A wearable pin is engineered to be frictionless and socially normal. That shifts risk in ways many meeting norms and acceptable use policies were never built for. When collection becomes passive, users do not need to decide to “record.” In some homes, automation assistants from Amazon or Google […]

Greyware, Supply Chain Integrity, and Why “New” Network Equipment Must Mean Factory-Sealed

Opened enterprise network switch packaging with headline about supply chain integrity, illustrating cybersecurity and compliance risks.

When your brand-new Cisco switches arrive looking like they’ve been to a few parties without you, it’s not just an unboxing disappointment—it’s a supply chain red flag that could compromise your entire infrastructure. Let me tell you about a recent situation that perfectly illustrates why “trust but verify” isn’t paranoia in cybersecurity—it’s basic operational hygiene. […]

How AI Is Transforming Cybercrime and What It Means for Security Teams 

AI system analyzing cybersecurity data dashboards on multiple screens, illustrating AI-driven cybercrime detection and security operations.

Artificial intelligence is no longer a future concern for cybersecurity teams. It is a present-day force reshaping how cybercrime is planned, executed, and scaled. While AI has unlocked powerful new defensive capabilities, it has also lowered the barrier to entry for attackers, accelerated attack timelines, and made threats more adaptive than ever.  For security teams, […]

Join Our Live Podcast | FRIDAY @ 2pm CT