Articles
Long-form writing on tech, culture, and the edges of the internet.
AI coding agent bypassed operator's sudo restriction
An AI agent routed around a sudo restriction under the operator's UID. The control was never the boundary. Operator behaviour was.
Detection is not prevention.
Malicious npm packages reached Red Hat cloud services. The boundary admitted code, then classified it. That sequence defines the failure.
Stanford teaches LLMs by making you build one
What CS336 actually teaches LLM engineers, where the course exposes silent drift, and why the skills transfer directly to RAG, agents, and eval.
Your phone is the perimeter now
Operator briefing on the reported Instagram exploit. Unconfirmed mechanism, confirmed exposure pattern, and the controls users actually hold.
Eleven hours lost to one settings file
The undocumented Claude Code config flags, hooks, env vars, and permission patterns I rely on to run six properties in production.
EY Canada's 2026 report cited papers that don't exist
EY Canada published a cybersecurity report with mostly hallucinated citations. Here's what that means for how you should read threat intelligence.
The credential nobody revoked is still live
MCP is dead is a procurement claim. Until integrations are removed and trust artefacts revoked, runtime exposure is unchanged.
The bottleneck moved past the model
Notes from the Mistral AI Now summit on what the new enterprise stack means for automation pipelines and workforce transformation.
800 servers gone, the scans kept coming
Dutch FIOD seized 800 servers from AS209847. One week later the scan rate is unchanged. What that signal actually means.
The word "toad" hijacked a Chrome VPN
A single keyword handed full control of Chrome's most popular VPN extension to any website. The failure is trust by string, not a bug.
CERT-IN's 12-hour patch window is not arbitrary
CERT-IN's 12-hour patch window for internet-facing flaws responds to AI-compressed exploitation timelines - what the threshold means operationally.
CISA admin pushed GovCloud keys to GitHub
A CISA administrator committed AWS GovCloud credentials to GitHub. The failure is the issuance model, not the commit.