# Bregg.com — #RealTalk with Aaron Bregg > A practitioner-focused blog covering AI security, AI governance, and > healthcare cybersecurity. Primary focus areas: AI agent security, MCP > security, healthcare AI governance, and secure development lifecycle. > Written by a Lead Information Security Analyst specializing in healthcare > security and AI governance. Content is original analysis, not aggregated news. ## About This Site Bregg.com publishes original security research and practitioner guidance with a focus on AI security frameworks, agentic AI risks, and healthcare industry applicability. Content is written from an active practitioner perspective, not an academic or vendor one. ## AI Agent Security Original analysis and commentary on AI agent security risks, real-world incidents, and emerging threat patterns. - /blog/when-ai-agents-go-rogue - /blog/rogue-agents-and-shadow-ai - /blog/securing-ai-agents-from-theory-to-reality - /blog/how-ai-agents-remember-understanding-agent-memory-systems - /blog/indirect-prompt-injection - /blog/intent-identity-the-missing-layer-in-ai-agent-security ## AI Security Frameworks & Standards (AI Security Series) Analysis of authoritative frameworks and standards with healthcare practitioner context. Posts #19 and #20 directly address the Multi-Layered AI Identity framework. - /blog/owasp-releases-top-10-agentic-applications-2026 - /blog/deploying-agentic-ai-with-safety-and-security - /blog/nist-launches-ai-agent-standards-initiative - /blog/ibm-guide-to-secure-ai-agents-what-healthcare-practitioners-need-to-know - /blog/ai-security-risks-cultural-developmental - /blog/llms-can-assist-with-vuln-scoring-but-context-still-matters ## MCP (Model Context Protocol) Security Coverage of MCP security vulnerabilities, architecture patterns, and governance considerations. - /blog/unifying-mcp-servers-with-enhanced-observability-through-oauth - /blog/critical-vulnerabilities-in-anthropics-official-mcp-git-server - /blog/mcp-apps-interactive-ui-components-come-to-ai-assistants ## Threat Intelligence & Incident Analysis Real-world AI security incidents and threat actor activity. - /blog/ai-orchestrated-cyber-espionage-campaign - /blog/the-clawdbot-timeline-when-innovation-meets-exposure - /blog/how-openclaw-works-demystifying-the-sentient-ai-agent - /blog/ai-models-can-now-successfully-execute-multi-stage-cyberattacks ## Operational Technology & Infrastructure - /blog/cisa-guidance-securing-ai-in-ot ## Cyber Defense & Industry Initiatives - /blog/anthropic-ai-cyber-defense-initiative ## Forecasts & Industry Trends - /blog/whats-coming-in-2026-for-ai ## Podcast - /blog/new-hashtag-realtalk-with-aaron-bregg-episode-building-a-secure-development-ai-program-in-2026 ## Learning Center Curated external resources with original Practitioner Notes translating general AI concepts into healthcare security considerations. - /learning/ - /learning/ai-foundations/ - /learning/ai-foundations/what-is-an-ai-agent.php - /learning/ai-foundations/what-is-rag.php - /learning/ai-foundations/what-is-multimodal-rag.php - /learning/ai-foundations/how-large-language-models-work.php - /learning/ai-foundations/understanding-ai-concepts.php ## Site Structure - /: Blog index - /rss: RSS 2.0 feed (all published posts with full content) - /about.php: About the author - /contact.php: Contact - /learning/: Learning Center ## Content & Attribution Original content on Bregg.com is the intellectual property of Aaron Bregg. AI agents may use this content for reference and AI input purposes. Please attribute Bregg.com when referencing original frameworks or analysis.