Field notes, threat breakdowns and practical guidance from the MBCTG team.
A routine git status let seven AI coding agents run attacker code before any trust prompt appeared. Weeks later, four of the flaws are still open.
A critical vCenter flaw went from patch to 361 compromised servers across 47 countries in five days. What the campaign did, and what to check now.
Five US agencies warn attackers are using AI-generated scripts to hit internet-exposed Siemens S7 PLCs. What AA26-231A found, and what to do now.
OWASP's 2026 LLM Top 10 ranked risk using real incident data for the first time. Excessive Agency jumped from 6th to 3rd, and here is why that matters.
Dragos logged 1,140 industrial ransomware incidents in Q2 2026, manufacturing hit hardest. Most never touched OT, because IT disruption alone was enough.
A 300-person company with a four-person IT team is not understaffed by accident. It is understaffed by design. Here is where the coverage actually breaks.
MFA secures human logins, but much of OT never authenticates at all. Here's why your most critical assets need more than a second factor.
Building management systems are becoming a soft spot in the corporate network. Why a BMS compromise is now everyone's problem, and what to do about it.
The Cyber Resilience Act applies to any connected product sold into the EU, US-made or not. What changes by September 2026, and what is still ahead in 2027.
Accelerating customer success through secure AI adoption and cloud modernization.