The Agentic Hacking Era: Ramblings and a Tool · Joseph Thacker
A few weeks ago I wrote about how AI is going to impact bug bounty. That post was mostly predictions. This one is about what’s…
A few weeks ago I wrote about how AI is going to impact bug bounty. That post was mostly predictions. This one is about what’s…
I have been thinking about the downstream impacts of AI systems having strong cybersecurity capabilities. The United States has a lot of critical infrastructure that…
I’ve always been a fan of levelsio. He’s a serial entrepreneur who has launched a bunch of SaaS and AI products, mostly in public, one…
Over the last few weeks, we’ve explored what AI is changing in security: discovery is faster (Vulnpocalypse now?), volume is higher (Common AI misconceptions debugged!),…
Cookies are one of the most fundamental building blocks of the modern web, and yet they are often overlooked from a security perspective. When misconfigured,…
Here’s a more logical and less emotional way to look at what’s happening with the chaotic regulation of these AI models… It took decades/centuries to…
Welcome to the latest edition of Bug Bytes! In this month’s issue, we are featuring: A 10-year-old pre-auth RCE in phpBB Earning $500K hacking Google…
I’m getting more worried, and more frustrated, about this new phase of AI disillusionment. Some of it is fair. Hundreds of billions are sloshing around…
18 kits, a 37x spike in detections, and every major AiTM vendor adding it to their platform. Device code phishing has gone from espionage-grade to…
Scaling application security and attack surface monitoring inside a single enterprise is a massive headache. In June 2026, the Department for Science, Innovation and Technology…
Here are the major changes I see coming for Cybersecurity in 2026. It becomes very clear that the primary security question for a company is…
Here are the biggest changes I see coming to AI in 2026. And when I say “verifiable,” I don’t mean “trustworthy,” which a lot of…