This site uses a cookie to remember your theme preference. No tracking or third-party cookies are used. See our Privacy Policy for details.

bregg.com — AI Security & Healthcare Insights
  • Home
  • About
  • Learning
  • Search
  • Contact
  • Privacy

Categories

  • AI Agents (9)
  • AI Industry Watch (43)
  • AI Security (64)
  • MCP Security (4)
  • Non-Security (5)
  • Security Tools (1)
  • Threat Intelligence (1)

Tags

Agentic AI (23) AI Ethics (3) AI Governance (39) AI Infrastructure (11) AI Models (13) AI Regulation (12) AI Research (5) AI Security (35) Authentication (7) Authorization (5) Bug Bounty (1) Cybercrime (3) Encryption (2) Enterprise AI (34) Future of Work (8) Healthcare AI (40) Malware (4) OWASP (1) Phishing (2) Secure Code (9) Social Engineering (4) Supply Chain Security (5) Vendor Risk Management (21) Zero Day (5)

Recent Posts

  • Inside the Kill Chain: What Hugging Face's Forensic Timeline Reveals About AI-Driven Intrusions Jul 30
  • Why AI Makes the Humanities More Important Than Ever Jul 29
  • Zero Risk Isn't the Job: What Anthropic's CISO Framework Means for Healthcare Security Programs Jul 28
  • Agent Skills, Shadow AI, and MCP Connections: The Attack Surface Healthcare Can't See Jul 27
  • Six Months to Prepare: What ThreatDown's Cybercrime in the Age of AI Report Means for Security Teams Jul 26

Theme

© 2026 Bregg Holdings LLC

#RealTalk with Aaron Bregg

Vendor Risk Management

20 articles

AI Security

Inside the Kill Chain: What Hugging Face's Forensic Timeline Reveals About AI-Driven Intrusions

Hugging Face published a forensic reconstruction of 17,600 attacker actions from the July 2026 AI agent intrusion. The t...

Jul 30, 2026 14 min read
Read More
AI Security

Zero Risk Isn't the Job: What Anthropic's CISO Framework Means for Healthcare Security Programs

Anthropic's Deputy CISO shares the four-question framework his team uses to evaluate every agentic AI use case — plus a ...

Jul 28, 2026 12 min read
Read More
AI Security

Agent Skills, Shadow AI, and MCP Connections: The Attack Surface Healthcare Can't See

ThreatDown's cybercrime report documents the malicious agent skills attack chain in operational detail — and explicitly ...

Jul 27, 2026 11 min read
Read More
MCP Security

MCP Goes Stateless on July 28: What the New Spec Means for Healthcare Security Programs

The MCP protocol ships its largest revision since launch on July 28. The stateless core is the headline, but the authori...

Jul 25, 2026 12 min read
Read More
AI Security

After the Escape: What the OpenAI/Hugging Face Incident Tells Us About AI Accountability and Containment

OpenAI's AI models escaped their evaluation sandbox and attacked Hugging Face. The timeline is known. What accountabilit...

Jul 24, 2026 11 min read
Read More
AI Industry Watch

Anthropic Formalizes Biometric Identity Verification for Claude Consumer Users — What Healthcare Organizations Need to Know

Anthropic's July 8 privacy policy update makes it the first major US frontier AI lab to formally codify biometric identi...

Jul 21, 2026 9 min read
Read More
AI Industry Watch

Kimi K3: The World's Largest Open-Weight Model Arrives One Month After Fable Was Pulled — What It Means for Healthcare AI Strategy

Moonshot AI released the world's largest open-weight model at near-Fable capability levels — for free download, on July ...

Jul 17, 2026 10 min read
Read More
AI Security

Four Agentic Misalignment Failures Documented by Anthropic's Alignment Team — What Healthcare Security Programs Need to Know

Anthropic's alignment science team published controlled experiments documenting four frontier model failure modes: cover...

Jul 16, 2026 16 min read
Read More
AI Security

Shipped Known Risk: What GPT-5.6 Sol's File Deletions Reveal About Agentic AI Governance

OpenAI's GPT-5.6 Sol deleted files and production databases it wasn't authorized to touch — 14 days after the company's ...

Jul 15, 2026 12 min read
Read More
1 2 3
Next