This site uses a cookie to remember your theme preference. No tracking or third-party cookies are used. See our Privacy Policy for details.

#RealTalk with Aaron Bregg Podcast Logo
  • Home
  • About
  • Learning
  • Search
  • Contact
  • Privacy

Categories

  • AI Agents (9)
  • AI Industry Watch (37)
  • AI Security (55)
  • MCP Security (3)
  • Non-Security (5)
  • Security Tools (1)
  • Threat Intelligence (1)

Tags

Agentic AI (12) AI Ethics (2) AI Governance (24) AI Infrastructure (6) AI Models (10) AI Regulation (9) AI Research (4) AI Security (22) Authentication (4) Authorization (3) Bug Bounty (1) Encryption (2) Enterprise AI (23) Future of Work (5) Healthcare AI (25) Malware (1) OWASP (1) Phishing (2) Secure Code (6) Social Engineering (2) Supply Chain Security (1) Vendor Risk Management (11) Zero Day (1)

Recent Posts

  • PolinRider: North Korea's Open Source Supply Chain Campaign and What It Means for Healthcare DevSecOps Jul 13
  • Claude Code Desktop: A Security Evaluation for Healthcare DevSecOps Programs Jul 11
  • The Mayo Clinic AI Governance Lawsuit: What the Eto Complaint Alleges and What It Means for Healthcare AI Programs Jul 10
  • Anthropic's Cyber Verification Program in Practice: From Approval to Real Defensive Work Jul 08
  • What the Scatter Spider Arrest Reveals About Windows Telemetry and PHI Risk on Clinical Workstations Jul 07

Theme

© 2026 Bregg Holdings LLC

#RealTalk with Aaron Bregg

AI Security

22 articles

AI Security

One Phishing Email, Two Days, 1.4 Million Patients: The Xsolis Healthcare AI Breach

A single phishing email gave attackers a two-day window inside healthcare AI company Xsolis — long enough to expose 1.4 ...

Jun 29, 2026 9 min read
Read More
AI Security

Separating Signal From Noise: Evaluating China's AI Cyber Capability Claims

A Chinese cybersecurity executive claims to have developed an AI system with Mythos-comparable vulnerability discovery c...

Jun 28, 2026 8 min read
Read More
AI Industry Watch

Mythos 5 Partially Restored — US Government Authorizes Access for Critical Infrastructure Defenders

Fifteen days after the Commerce Department forced Anthropic to pull Mythos 5 and Fable 5 globally, the government has au...

Jun 27, 2026 9 min read
Read More
AI Industry Watch

Mythos Red-Team Finding and the NSA Access Loss: What the Full Picture Now Looks Like

New reporting confirms the NSA has lost operational access to Mythos 5, and the origin story is now clear: an authorized...

Jun 24, 2026 10 min read
Read More
AI Security

MCP Gets Its Enterprise Authorization Layer — What the EMA Extension Means for Healthcare AI Governance

The MCP Enterprise-Managed Authorization extension is now stable, with Anthropic, Microsoft, and Okta among the first ad...

Jun 19, 2026 9 min read
Read More
AI Security

The Four Types of AI Agent Memory — and Why Each One Is a Healthcare Security Concern

IBM's Martin Keen breaks down the four memory types every AI agent needs — working, semantic, procedural, and episodic —...

Jun 17, 2026 10 min read
Read More
AI Industry Watch

The Expert Generalist and the Hourglass: How Agentic AI Is Reshaping Team Structures — and What Healthcare Security Leaders Should Do About It

A recent AWS event talk puts labor market data behind a shift most healthcare security leaders are already sensing: the ...

Jun 16, 2026 11 min read
Read More
AI Security

Kali365 PhaaS Kit Hijacks Microsoft 365 OAuth Tokens and Bypasses MFA — What Healthcare Security Teams Need to Do Now

The FBI is warning organizations about Kali365, a $250 phishing-as-a-service kit that captures Microsoft 365 OAuth token...

Jun 14, 2026 10 min read
Read More
AI Security

Claude Fable 5's Safeguard Architecture: What Healthcare Security Teams Need to Know

Fable 5's safeguard architecture introduces classifier-based fallback to Opus 4.8 instead of outright refusals, a new 30...

Jun 10, 2026 15 min read
Read More
Previous
1 2 3
Next