Blog
Perspectives on AI-powered cybersecurity, agentic tools, and the frameworks that matter — MITRE ATT&CK, NIST CSF 2.0, and OWASP Top 10.

The Vibe Coding Security Top 10 Gotchas: What Actually Broke in 2025–26
An app that took an afternoon to "vibe code" into existence can leak its entire database to anyone who opens dev tools. Not hypothetically, this happened, repeatedly, to real products with real users, in 2025 and 2026. We pulled together the sourced pattern behind ten of the most common ways it happens, and built a live-fire workshop around it.

Black Hat Arsenal Lab 02 - Cybersecurity Skills for AI
TollBooth & OpenDoor: Taking Our Arsenal Live-Fire Kit Open Source

Black Hat 2026: Casky Brings Real AI-Powered Security Investigations to Arsenal
We'll be at Black Hat Arsenal 2026 this August in Las Vegas. Watch Casky turn raw security evidence from CloudTrail exports, PCAP summaries, IAM policy dumps, and web app logs into structured, MITRE ATT&CK-mapped investigation plans in seconds. Fully AI-generated reasoning. Executable steps. Actionable findings

Always On Security Coverage with Hermes Agent and Claude Cybersecurity Skills
Most teams get security coverage during business hours — if they're lucky. Red Teaming tests are rare. Hermes Agent changes that. Pair it with Claude Cybersecurity Skills and you have a persistent AI agent scanning for threats, surfacing findings, and suggesting fixes around the clock. No SOC required.

How AI Agent Tech Is Moving Through Time
Anthropic, OpenAI, and Perplexity shipped flagship agent products on overlapping release calendars over 30 days. Here is what changed, what the benchmarks say, and where the arc of agent development is bending.

ClawBots + Claude Cybersecurity Skills: The Future of Agentic Security
ClawBots put autonomous AI agents in everyone’s hands. Pair them with the 754 Claude Cybersecurity Skills and you get an always-on security agent that monitors, detects, and responds — no SOC required.

The Mythos Era Has Arrived: Why the Next Generation of Cybersecurity Engineers Must Become AI-Native Defenders
Claude Mythos Preview autonomously discovered thousands of zero-day vulnerabilities across every major OS and browser in hours. The offense-defense gap is collapsing. Here is what cybersecurity engineers need to do right now to become AI-native defenders and how to measure where you stand today.

Claude Mythos: Manufactured Fear, Real Consequences
Anthropic's most powerful model is real. The "thousands of zero-days" headline is not. Here is what the evidence actually says — and why the gap between the two matters for every security researcher in this industry.

What are Claude Cybersecurity Skills? Complete Guide
Claude cybersecurity skills are structured markdown files that tell an AI agent exactly how to perform a security task. This guide explains what they are, how they work, and why they are becoming the standard building block for AI-assisted security work.
Anthropic's Project Glasswing: AI Now Finds Vulnerabilities Better Than Most Humans
Anthropic has launched Project Glasswing — a coalition of 12 major tech companies using its new Claude Mythos Preview model to find and fix critical software vulnerabilities before attackers do. The model has already uncovered thousands of zero-day flaws, some buried for over 27 years.