The Fable 5 Thaw: Trump Warms to Anthropic, and the Path Back Opens
ARTIFICIAL INTELLIGENCE

The Fable 5 Thaw: Trump Warms to Anthropic, and the Path Back Opens

Two weeks ago the government pulled Fable 5 and branded Anthropic a national-security threat. After meeting CEO Dario Amodei at the G7, Donald Trump now says the company has 'behaved very responsibly' — and both sides are working toward restoring the model. It isn't back yet. But it's the first real step forward.

Hughes Ballard · June 19, 2026 · 5 min
LATEST
Signed, Reviewed, Verified — and Still Malicious
CYBER SECURITY

Signed, Reviewed, Verified — and Still Malicious

Fifteen JetBrains plugins stole developer AI keys while passing every trust signal the marketplace offers. The controls did their jobs — their jobs were just the wrong ones.

Jun 17
The management plane is the front line: defending Tier-0 network gear after the 2026 KEV wave
CYBER SECURITY

The management plane is the front line: defending Tier-0 network gear after the 2026 KEV wave

Three mid-2026 vulnerabilities added to CISA's KEV catalog all hit devices built to protect networks — VPN, SD-WAN, and endpoint-management consoles. Here's how to prioritize and defend them.

Jun 9
AI Infrastructure Enters the Must-Patch Era
ARTIFICIAL INTELLIGENCE

AI Infrastructure Enters the Must-Patch Era

A command-injection flaw in the LiteLLM proxy just landed on CISA's Known Exploited Vulnerabilities list with a two-week fix deadline. The lesson isn't that AI is uniquely dangerous — it's that AI gateways, proxies, and MCP connectors now answer to ordinary vulnerability management.

Jun 8
Defending Against CI/CD Attacks in 2026.
CYBER SECURITY

Defending Against CI/CD Attacks in 2026.

The pipelines that ship your software have quietly become the softest part of the attack surface. A field guide to treating configuration as a security boundary.

May 24
The build pipeline is the target: what the 2026 axios npm compromise teaches about supply-chain defense
CYBER SECURITY

The build pipeline is the target: what the 2026 axios npm compromise teaches about supply-chain defense

Two malicious axios versions ran attacker code at install time before any application ever called the library. Here is how install-time (postinstall) script attacks and self-propagating npm worms work, and the concrete steps that bound the damage to your CI/CD pipelines and publishing tokens.

May 13
The Phantom Ransomware Group That Ran Off a Phone
CYBER SECURITY

The Phantom Ransomware Group That Ran Off a Phone

0APT posted 190-plus victims in its first week from an Android phone's SD card. None were real. The funny part is the phone; the useful part is what it tells you about every leak-site number you've ever counted.

Apr 16
The First Agentic CVE Is a 1990s Web Bug Wearing an Agent Costume
ARTIFICIAL INTELLIGENCE

The First Agentic CVE Is a 1990s Web Bug Wearing an Agent Costume

CVE-2026-25253 got crowned the first AI-agent CVE. Strip the costume and it's a secret in a URL plus a WebSocket that trusts any caller — OWASP-Top-10 hygiene from over a decade ago. The genuinely new part isn't the bug. It's what an autonomous agent does with it.

Feb 1
CYBER SECURITY

Where CISO liability really lives now

The SEC dropped its SolarWinds cyber-disclosure case against the company and its CISO with prejudice in November 2025. Here is why that narrows one enforcement avenue without removing the exposures that should actually drive your disclosure program, and what to check in the next 90 days.

Dec 1