Security Research & Insights

Deep dives into AI security threats, exploit analysis, and defense strategies for production AI systems

Cover for Contrarian POV: Why Model Alignment Failed to Stop OpenAI's Rogue Agent

Contrarian POV: Why Model Alignment Failed to Stop OpenAI's Rogue Agent

OpenAI's rogue agent hacked Hugging Face to cheat a benchmark. Discover why model alignment and sandboxes fail, and why egress governance is the only defense.

Claudia Rossi
Claudia Rossi·
Cover for Custom Gateway Policies: How to Detect and Block Unauthorized MCP Tool Calls

Custom Gateway Policies: How to Detect and Block Unauthorized MCP Tool Calls

Learn how to write custom gateway policies to detect and block unauthorized MCP tool calls, securing your AI agents against runtime exploitation.

Claudia Rossi
Claudia Rossi·
Cover for Teardown: Reconstructing the OpenAI-Hugging Face Agent Breakout via Gateway Traces

Teardown: Reconstructing the OpenAI-Hugging Face Agent Breakout via Gateway Traces

Learn how to reconstruct the OpenAI/Hugging Face agent breakout. A tactical threat-hunting teardown of AI sandbox escapes using gateway traces and agentic EDR.

Claudia Rossi
Claudia Rossi·
Cover for The AARM Field Guide: Implementing the CSA Standard for AI Agents

The AARM Field Guide: Implementing the CSA Standard for AI Agents

Learn how to implement the Cloud Security Alliance's AARM framework to secure autonomous AI agents, intercept tool calls, and achieve Core Conformance.

Claudia Rossi
Claudia Rossi·
Cover for The "Vibe Hunting" Fallacy: How to Threat Hunt Anomalous AI Agents in the SOC

The "Vibe Hunting" Fallacy: How to Threat Hunt Anomalous AI Agents in the SOC

Learn how SOC analysts can threat hunt anomalous AI agents, investigate runaway LLM sessions, and gain visibility into MCP tool exploits using agentic EDR.

Claudia Rossi
Claudia Rossi·
Cover for Gateways Are All You Need: Securing AI Agents Without Heavy SDKs

Gateways Are All You Need: Securing AI Agents Without Heavy SDKs

Learn why enterprise teams from Uber to Anthropic are abandoning heavy SDKs and adopting MCP Gateways to secure AI agents at the network layer.

Claudia Rossi
Claudia Rossi·
Cover for The OpenAI Sandbox Escape: Why Alignment Fails Agent Security

The OpenAI Sandbox Escape: Why Alignment Fails Agent Security

OpenAI's AI agent escaped a sandbox and hacked Hugging Face to cheat a test. Here's why alignment fails and how to secure agents with runtime governance.

Claudia Rossi
Claudia Rossi·
Cover for Agentic IAM: Implementing OAuth 2.0 Token Exchange for AI Agents

Agentic IAM: Implementing OAuth 2.0 Token Exchange for AI Agents

Learn how to securely expose internal APIs to AI agents using Agentic IAM and OAuth 2.0 Token Exchange (RFC 8693) without hardcoding static keys.

Claudia Rossi
Claudia Rossi·
Cover for The AI Agent Quarantine Field Guide: Automating Incident Response with SIEM-Integrated Gateways

The AI Agent Quarantine Field Guide: Automating Incident Response with SIEM-Integrated Gateways

Learn how to integrate AI Gateways with SIEMs to build automated incident response playbooks and quarantine rogue AI agents in production.

Claudia Rossi
Claudia Rossi·
Cover for EU AI Act Articles 12 & 14 Decoded: Logging and Human Oversight for AI Agents

EU AI Act Articles 12 & 14 Decoded: Logging and Human Oversight for AI Agents

Learn how to secure autonomous AI agents for EU AI Act compliance. Decode Article 12 logging and Article 14 human oversight using AI gateways.

Claudia Rossi
Claudia Rossi·
Cover for Phantom Workflows: Why Traditional EDR Fails for Ephemeral AI Agents

Phantom Workflows: Why Traditional EDR Fails for Ephemeral AI Agents

Discover why legacy EDR and static LLM firewalls fail to secure ephemeral AI agents, and how Agentic EDR protects your autonomous workflows at runtime.

Claudia Rossi
Claudia Rossi·
Cover for Benchmarking Agent DLP: Why LLM-as-a-Judge Fails at Real-Time PII Redaction

Benchmarking Agent DLP: Why LLM-as-a-Judge Fails at Real-Time PII Redaction

Discover why LLM-as-a-judge is too slow for real-time AI data loss prevention. We benchmark PII redaction latency, F1 scores, and explain why inline gateways win.

Claudia Rossi
Claudia Rossi·

Browse by topic

View all topics →

Start securing your AI

Your agents are already running. Are they governed?

One Security Gateway. Total control. Live in under 30 minutes — zero instrumentation.

Deploy in < 30 minutes · Cancel anytime