Subscribe
Sign in
Home
Archive
About
Agent Supply Chain Attacks: Your Scanner Already Switched Sides
March 2026's Trivy-LiteLLM-Axios cascade shows why agent supply chain risk breaks existing controls. Practical steps for CISOs.
READ THE LATEST
Most Popular
View all
Claude Secure Coding Rules: Open Source Security That Scales
Dec 2, 2025
•
Rock Lambros
10
2
It's Here!!! The OWASP Top 10 for Agentic Applications Just Dropped. What you need to know.
Dec 10, 2025
•
Rock Lambros
14
1
2
NIST AI Agent RFI (2025-0035): Human Oversight Is the Wrong Fix
Jan 20
•
Rock Lambros
11
1
2
NIST CSF 2.0 MCP Server: shipping an open source engine that turns framework into action
Sep 2, 2025
•
Rock Lambros
7
1
Latest
Top
Discussions
Reasoning Theater: Why Chain-of-Thought Monitoring Fails Your Agentic AI
New research proves reasoning models perform deliberation they've already completed. Apply the CARE framework to close your agentic AI monitoring gap.
23 hrs ago
•
Rock Lambros
1
1
Weekly Musings Top 10 AI Security Wrapup: Issue 32 March 27-April 2, 2026
Anthropic's Worst Week, CISA's Busiest Friday, and the EU Still Wasn't Ready
Apr 3
•
Rock Lambros
3
1
1
AI Monitoring Is a Standards Problem, Not a Technology Problem
NIST AI 800-4 proves AI monitoring fails from missing standards, not missing tech. Specific actions CISOs should take before EU AI Act Article 72 hits…
Mar 31
•
Rock Lambros
4
1
Weekly Musings Top 10 AI Security Wrapup: Issue 31 March 20-26, 2026
RSA 2026: Every Vendor Sold an Agent. A Supply Chain Attack Ran Quietly in the Background
Mar 27
•
Rock Lambros
2
Weekly Musings Top 10 AI Security Wrapup: Issue 30 March 13-19, 2026
Agentic AI Security Moves From "Meh" to Incident Log
Mar 20
•
Rock Lambros
3
AI Agent Authentication Gets the Hard Part Right. Authorization Is Still Your Problem.
IETF's new AI agent auth draft nails identity with WIMSE and SPIFFE but skips per-action authorization.
Mar 17
•
Rock Lambros
3
3
Weekly Musings Top 10 AI Security Wrapup: Issue 29 March 6, 2026 - March 12, 2026
When AI Companies Sue the Government and OpenAI Enters the Security Market
Mar 13
•
Rock Lambros
2
See all
RockCyber Musings
AI and Cyber Geek
Subscribe
Recommendations
View all 14
Luiza's Newsletter
Luiza Jarovsky, PhD
Intruvent Edge
Sig Murphy
Decision Intelligence
Cassie Kozyrkov
CISO Talk by James Azar
James Azar
Angles of Attack: The AI Security Intelligence Brief
Disesdi Shoshana Cox
RockCyber Musings
Subscribe
About
Archive
Recommendations
Sitemap
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts