Subscribe
Sign in
Home
Archive
About
Weekly Musings Top 10 AI Security Wrapup: Issue 33 April 3-April 9, 2026
AI’s Dual-Use Reckoning: Restricted Models, Supply Chain Fallout, and the Governance Gap Nobody Is Closing
READ THE LATEST
Most Popular
View all
Claude Secure Coding Rules: Open Source Security That Scales
Dec 2, 2025
•
Rock Lambros
10
2
It's Here!!! The OWASP Top 10 for Agentic Applications Just Dropped. What you need to know.
Dec 10, 2025
•
Rock Lambros
14
1
2
NIST AI Agent RFI (2025-0035): Human Oversight Is the Wrong Fix
Jan 20
•
Rock Lambros
11
1
2
NIST CSF 2.0 MCP Server: shipping an open source engine that turns framework into action
Sep 2, 2025
•
Rock Lambros
7
1
Latest
Top
Discussions
Agent Supply Chain Attacks: Your Scanner Already Switched Sides
March 2026's Trivy-LiteLLM-Axios cascade shows why agent supply chain risk breaks existing controls. Practical steps for CISOs.
Apr 7
•
Rock Lambros
3
Reasoning Theater: Why Chain-of-Thought Monitoring Fails Your Agentic AI
New research proves reasoning models perform deliberation they've already completed. Apply the CARE framework to close your agentic AI monitoring gap.
Apr 7
•
Rock Lambros
1
1
Weekly Musings Top 10 AI Security Wrapup: Issue 32 March 27-April 2, 2026
Anthropic's Worst Week, CISA's Busiest Friday, and the EU Still Wasn't Ready
Apr 3
•
Rock Lambros
3
1
1
AI Monitoring Is a Standards Problem, Not a Technology Problem
NIST AI 800-4 proves AI monitoring fails from missing standards, not missing tech. Specific actions CISOs should take before EU AI Act Article 72 hits…
Mar 31
•
Rock Lambros
5
1
Weekly Musings Top 10 AI Security Wrapup: Issue 31 March 20-26, 2026
RSA 2026: Every Vendor Sold an Agent. A Supply Chain Attack Ran Quietly in the Background
Mar 27
•
Rock Lambros
2
Weekly Musings Top 10 AI Security Wrapup: Issue 30 March 13-19, 2026
Agentic AI Security Moves From "Meh" to Incident Log
Mar 20
•
Rock Lambros
3
AI Agent Authentication Gets the Hard Part Right. Authorization Is Still Your Problem.
IETF's new AI agent auth draft nails identity with WIMSE and SPIFFE but skips per-action authorization.
Mar 17
•
Rock Lambros
3
3
See all
RockCyber Musings
AI and Cyber Geek
Subscribe
Recommendations
View all 14
Angles of Attack: The AI Security Intelligence Brief
Disesdi Shoshana Cox
DazzaGreenwood's Weblog
Dazza Greenwood
Agentic AI
Ken Huang
Resilient Cyber
Chris Hughes
[cmd] + [opt] + <agent>
Peter Holcomb
RockCyber Musings
Subscribe
About
Archive
Recommendations
Sitemap
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts