Latest Articles
AI on AI Part III: Convergence (Hacking the infra and Cracking the math)
Two weeks ago, an OpenAI agent broke into Hugging Face. Last week, an AI model killed HAWK, a PQC candidate designed to resist quantum computers, using classical mathematics. This convergence of AI accelerating both hacking and cracking the maths cannot be ignored. Until now, we were preparing for a predicted event in the future (Q-Day). Now, we must prepare for an unpredictable event that could happen anytime. Part III extends the CISO’s action plan from Part II with crypto-agility deliverables built to endure both threats.
AI on AI Part II: Actions for a CISO amidst agent chaos
Part I argued the headlines overblew the OpenAI and Hugging Face incident. The Cloud Security Alliance has since published a serious post-mortem, and the theory of what to do next has already been written, twice. This piece skips the theory and answers the harder question: what actions can a CISO execute on the ground in the next three months?
AI on AI Part I: Overblown Headlines Likely to Spook Insurers
An OpenAI model broke out of its own test lab and hacked Hugging Face, unsupervised. Everyone is calling it unprecedented. It isn't. Two of the most sophisticated AI companies on the planet got caught out by security mistakes any first-year analyst would recognise, and the insurance market is already taking note.