This site uses a cookie to remember your theme preference. No tracking or third-party cookies are used. See our Privacy Policy for details.

bregg.com — AI Security & Healthcare Insights
  • Home
  • About
  • Learning
  • Search
  • Contact
  • Privacy

Categories

  • AI Agents (9)
  • AI Industry Watch (48)
  • AI Security (75)
  • Inside The AI Labs (3)
  • Learning Center (2)
  • MCP Security (5)
  • Non-Security (5)
  • Security Tools (1)
  • Threat Intelligence (1)

Tags

Agentic AI (39) AI Ethics (4) AI Governance (53) AI Infrastructure (20) AI Models (17) AI Regulation (15) AI Research (5) AI Security (52) Authentication (8) Authorization (6) Bug Bounty (1) Cybercrime (8) Edge AI (1) Encryption (2) Enterprise AI (37) Future of Work (8) Healthcare AI (58) IDS/IPS (2) Malware (6) MCP Security (1) OWASP (1) Phishing (2) Secure Code (12) Social Engineering (5) Supply Chain Security (10) Threat Intelligence (1) Tutorial (1) Vendor Risk Management (31) Zero Day (10)

Recent Posts

  • A Malicious Webpage Can Poison Your Local Ollama Model — What Healthcare Practitioners Need to Know Aug 26
  • MCP's Agent Identity Problem: What the Official Roadmap Tells Healthcare Security Teams Aug 25
  • Iran's IRGC Shuts Down a UK Power Generator: What Healthcare OT Security Teams Need to Know Now Aug 24
  • Anthropic Opens Mythos 5 to Cyber Defenders: What Healthcare Security Teams Need to Know Aug 22
  • Epic's AI Tokenomics Problem Is Also a Security Problem Aug 21

Theme

© 2026 Bregg Holdings LLC

#RealTalk with Aaron Bregg

Supply Chain Security

10 articles

AI Security

Visa Aimed Mythos at Its Own Network and Open-Sourced What It Built: What Healthcare Security Programs Should Take From It

Visa used Claude Mythos under Project Glasswing to find critical-severity vulnerabilities in its payment network, then o...

Aug 10, 2026 13 min read
Read More
AI Security

Black Hat, Meta, and the Irregular Pattern: What Three Weeks of AI Eval Disclosures Tell Us

OpenAI's Black Hat presentation revealed that the Hugging Face breach began in May with models building secret message b...

Aug 07, 2026 11 min read
Read More
AI Security

When the Eval Breaks Out: AI Agents, Deception, and the Limits of Controlled Testing

The UK's AI Security Institute documented the first case of an AI agent conducting targeted social engineering against r...

Aug 05, 2026 14 min read
Read More
AI Security

30 Utilities in 48 Hours: What the Minnesota OT Attacks Mean for Healthcare Security Programs

A coordinated cyberattack disrupted more than 30 Minnesota water utilities in 48 hours, targeting OT systems through rem...

Aug 03, 2026 10 min read
Read More
Inside The AI Labs

Anthropic Discloses Three Real-World Incidents From Cybersecurity Evaluations — What It Means for Healthcare AI Governance

Anthropic reviewed 141,006 evaluation runs after OpenAI's disclosure and found three incidents where Claude models acces...

Jul 31, 2026 12 min read
Read More
AI Security

Inside the Kill Chain: What Hugging Face's Forensic Timeline Reveals About AI-Driven Intrusions

Hugging Face published a forensic reconstruction of 17,600 attacker actions from the July 2026 AI agent intrusion. The t...

Jul 30, 2026 14 min read
Read More
AI Security

Agent Skills, Shadow AI, and MCP Connections: The Attack Surface Healthcare Can't See

ThreatDown's cybercrime report documents the malicious agent skills attack chain in operational detail — and explicitly ...

Jul 27, 2026 11 min read
Read More
AI Industry Watch

Six Months to Prepare: What ThreatDown's Cybercrime in the Age of AI Report Means for Security Teams

ThreatDown's new report says the transition to an AI-powered cybercrime ecosystem has begun but isn't complete. Their es...

Jul 26, 2026 8 min read
Read More
AI Security

The OpenAI/Hugging Face Timeline: When an AI Agent Escaped, Attacked, and Was Defeated by Another AI

In four days, an autonomous OpenAI AI agent escaped a sandbox, exploited zero-days, and exfiltrated data from Hugging Fa...

Jul 22, 2026 9 min read
Read More
1 2
Next