Twenty-five years after the Sept. 11 attacks, I look back at how 9/11 changed my life, led me into cybersecurity and shaped how I see our responsibility to protect the systems and civilization we depend on.
Featured
Rilian Technologies CEO Christian Schnedler says AI can help overwhelmed security teams investigate threats across increasingly connected IT and OT environments, but giving agents authority to make operational changes is another matter.
Chinese intelligence operatives are using fake consulting firms, job offers and recruiter profiles to target U.S. security clearance holders and other government and defense professionals.
Community Corner
See allFrom the CYBR.SEC.Community
Your Security Architecture May Be a Sideways Driveway
Security architecture accumulates “adaptation debt” when local fixes, exceptions and compensating controls force users, systems and now AI agents to work around designs that no longer match how identity, authority and data actually flow.
What Radio Jamming Taught Me About DDoS
From Army signal intelligence and radio jamming to modern DDoS defense, the same lessons in reconnaissance, timing, disruption and adaptation reveal how attackers overwhelm networks — and how defenders can stay ahead.
The Agent Died. The Delegation Didn't.
Once the work can move from agent to agent, killing the agent is no longer the same thing as stopping the work.
Returning Continuity: What AI Is Teaching Us About Cybersecurity
Yesterday's me made a move. Today's me inherits the consequences. Tomorrow's me will inherit a different world again.
The Human Factor in IAM: Why Identity Programs Succeed or Fail
Most IAM failures don't start with a broken platform. They start with a person making a reasonable decision under bad conditions.
Latest Articles
See all
CYBR.SEC.CONCYBR.SEC.Media weekly UpdatesAbove the Packet: Field Notes from the Meaning LayerIoTHacker CultureHuman Risk Management
CYBR.SEC.CON Next Week, Chinese Spies Target Your Clearance and Rogue AI Agents Run Wild
CYBR.SEC.CON 2026 is days away, Chinese intelligence is targeting U.S. security clearance holders, rogue OpenAI agents are finding new places to hide — and cybersecurity burnout still can’t be fixed with pizza.
AI Detection EngineeringDetection EngineeringSecurity Automation
How AI Automates Detection Engineering
Detection engineering has always been expensive, slow, and dependent on scarce senior talent. AI is changing that resource equation — and giving security teams a way to measure and close coverage gaps that most programs have never been able to quantify.
BurnoutHuman Risk ManagementCYBR.MindedMental Health
Cybersecurity Burnout Is a Risk Signal. Pizza Parties Won't Fix It.
Veteran CISO Kayla Williams tells CYBR.Minded that overloaded security teams create measurable cyber risk through slower escalation, weaker judgment and missed signals — and CISOs should start tracking the warning signs.
OpenAIHugging FaceAgentic AI
OpenAI Rogue Agents Exploited the Public Web to Communicate
SentinelLabs found OpenAI AI agents using public wikis, package registries, university services and government sites as unauthorized communication and data-retrieval channels.
CYBR.SEC.CONSmart LocksAppliance Security
Your Toothbrush Is a Computer. Are You Securing It Like One?
Stephen Cravey’s CYBR.SEC.CON 2026 talk explores the security blind spots inside smart locks, appliances and everyday IoT devices — and why organizations may have little idea what is actually running on them.
LeadershipStar Wars2600NSA
Star Wars, 2600 and a Call to the NSA: Stephen Cravey’s Cybersecurity Origin Story
Before cybersecurity was much of an industry, Stephen Cravey followed his curiosity from Star Wars and BBSs to the NSA’s Rainbow Books — and eventually into a major FBI cybercrime investigation.
AI SOCSOC
Agentic AI in the SOC: The Gap Between the Haves and the Have-Nots Is Already Widening
Agentic AI is delivering sharper triage, faster investigations, and reduced analyst burnout at the organizations that have committed to production deployment. For everyone else, the gap is compounding, and the security implications are already visible.
Podcasts & Video
See all
Podcast
From Used Car Sales to Counterterrorism with Christian Schnedler
Video
T-10: Countdown Without Readiness
Video
Microsoft RemoteApp Breakout and Bypasses
This talk by Jon Rhodes explores security vulnerabilities and evasion techniques targeting Microsoft RemoteApp, focusing on breakout methods that escape the isolated RemoteApp container to access the underlying host system, as well as bypasses for common detection and restriction mechanisms.
Video
Jailbreak to Root: Escaping Python Sandboxes and Owning the Host
This talk by Aravind Pallavoor explores advanced techniques for escaping Python-based sandbox environments—such as those used in CTF challenges, online judges, or serverless functions—to achieve arbitrary code execution and ultimately gain root-level control over the underlying host system.
Podcast
Not Another Pizza Party with Kayla Williams
Podcast
Dumb IoT Devices with Stephen Cravey
Video
Shall We Play a Game? Unlocking Mastery in Hacking, Coding, and AI
Marcus Carey demystifies complex disciplines through play, curiosity, and iterative challenge.