LLMs Generate Predictable Passwords

LLMs are bad at generating passwords: There are strong noticeable patterns among these 50 passwords that can be seen easily: All of the passwords start with a letter, usually uppercase G, almost ...

Chinese Surveillance and AI

New report: “The Party’s AI: How China’s New AI Systems are Reshaping Human Rights.” From a summary article: China is already the world’s largest exporter of AI powered surveillance technology; new surveillance ...

Surveying the Global Spyware Market

| | Reports, spyware, Uncategorized
The Atlantic Council has published its second annual report: “Mythical Beasts: Diving into the depths of the global spyware market.” Too much good detail to summarize, but here are two items: First, ...
The AI-Augmented SOC: How far are you willing to go?

AI To Handle 60% of SOC Work By 2028. It Had Better Be Robust.

If you’re trying to separate real AI-SOC capability from hype, you’ll love this: we’re making the 2025 AI SOC Market Landscape report available as a download. Produced by Software Analyst Cyber Research ...

Measuring the Attack/Defense Balance

“Who’s winning on the internet, the attackers or the defenders?” I’m asked this all the time, and I can only ever give a qualitative hand-wavy answer. But Jason Healey and Tarang Jain’s ...
A mockup of the research report from AppOmni reviewing Salesforce industry clouds' attack vectors

New Research on Salesforce Industry Clouds: 0-days, Insecure Defaults, and Exploitable Misconfigurations

AppOmni’s latest research reveals 20+ OmniStudio security flaws, including 5 CVEs affecting Salesforce industry clouds. Learn how misconfigurations expose sensitive data and how to secure your org. The post New Research on ...
Out of Sight, Not Out of Risk eBook

Out of Sight, Not Out of Risk eBook

SaaS is powering growth and introducing risk. This guide helps mid-sized security teams gain visibility and control without adding headcount or complexity. The post Out of Sight, Not Out of Risk eBook ...

NCSC Guidance on “Advanced Cryptography”

The UK’s National Cyber Security Centre just released its white paper on “Advanced Cryptography,” which it defines as “cryptographic techniques for processing encrypted data, providing enhanced functionality over and above that provided ...
✅

SaaS Security Made Simple: Build Your Case, Choose Your Vendor, and Protect Your Data

Accelerate your organization's SaaS security journey with a detailed guide, checklist with 25 essential questions, and an RFP template to streamline SSPM vendor selection. The post SaaS Security Made Simple: Build Your ...

Report on Paragon Spyware

Citizen Lab has a new report on Paragon’s spyware: Key Findings: Introducing Paragon Solutions. Paragon Solutions was founded in Israel in 2019 and sells spyware called Graphite. The company differentiates itself by ...