AI Security
14 analyses from Devence Lab
· 2 min read
Click rate stopped measuring what phishing tests think it measures
SecurityWeek reports new research across 2.47 million simulated phishing attacks arguing that click rate no longer predicts compromise. Once AI writes the emails, click rate mostly measures how good the email was, not how alert your staff are.
· 2 min read
Your model registry runs on the same software CISA just flagged as under attack
· 2 min read
A million personalised fraud emails in three days breaks a defence industry's core assumption
· 2 min read
Your SOC's fastest-growing alert source is not an attacker. It is your own staff.
· 2 min read
1.8 million apps were already scanned for secrets. Assume yours was one of them.
· 2 min read
Account bans stop misuse of the model. They don't stop the system already built with it.

· 2 min read
200,000 exposed MCP servers is what happens when a protocol ships before its threat model
· 3 min read
Three labs shipped cyber models in one week. The capability is not the story.
· 2 min read
Tool poisoning works because the model cannot tell a description from an instruction
· 2 min read
A CVSS 10.0 in an agent framework is a different kind of vulnerability
· 2 min read
Prompt injection stopped being a content problem the moment it reached RCE
· 2 min read
Guardrails that run on a CPU change where you can put them
· 2 min read
The security question is not what your AI reads. It is what it can do.
· 2 min read
Six MCP incidents, one pattern: the credential outlived the task