Suzu Labs

Resources

Expert Insights Strategic Guides Validate Research

Suzu Labs Blog

View All
The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code
Cybersecurity
May 20, 2026 Jacob Krell

The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code

GitHub's 3,800 Repositories Stolen Through a Single IDE Extension On May 19, 2026, a single VS Code extension on a ...

Read More: The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code
The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability
May 20, 2026 Hannah Perez

The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability

If you think a basic pop-up banner that reads "By continuing to browse this site, you accept cookies" protects your ...

Read More: The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability
Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore
Data Privacy
May 19, 2026 Jacob Krell

Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore

In April 2026 alone, the ShinyHunters extortion group breached ADT (5.5 million customers), Amtrak (2.1 million ...

Read More: Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore
Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.
Vulnerability Management
May 05, 2026 Jacob Krell

Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.

Mandiant's M-Trends 2026 report puts estimated mean time to exploit at negative seven days. That number should reset ...

Read More: Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.
When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance
Prompt Injection
Apr 30, 2026 Hannah Perez

When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance

When AI Billing Breaks Trust: Lessons from the Claude Code Backlash AI adoption is accelerating, but trust is still ...

Read More: When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance
From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield
Cybersecurity
Apr 29, 2026 Suzu Labs

From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield

Cybersecurity doesn’t start with tools, it starts with mindset. In this episode featuring Aaron Colclough, we get a ...

Read More: From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield
When Elite Cyber Teams Can't Crack Web Security
Cybersecurity
Apr 23, 2026 Jacob Krell

When Elite Cyber Teams Can't Crack Web Security

HTB's 2025 benchmark tested 796 security teams. Only 21% passed web security challenges. The Security Illusion Security ...

Read More: When Elite Cyber Teams Can't Crack Web Security
The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them
Cybersecurity
Apr 22, 2026 Jacob Krell

The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them

In today's security landscape, some of the most dangerous vulnerabilities aren't flagged by automated scanners at all. ...

Read More: The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them
Suzu Labs Acquires Emulated Criminals
Apr 20, 2026 Hannah Perez

Suzu Labs Acquires Emulated Criminals

Bridging the gap between theory and the threat reality, Suzu Labs is proud to announce the acquisition of Emulated ...

Read More: Suzu Labs Acquires Emulated Criminals
The Wall Around Claude 4.7 Does Not Extend to Dread
Cybersecurity
Apr 17, 2026 Suzu Labs

The Wall Around Claude 4.7 Does Not Extend to Dread

Anthropic released Claude Opus 4.7 on April 16, 2026 with automated cybersecurity safeguards and a Cyber Verification ...

Read More: The Wall Around Claude 4.7 Does Not Extend to Dread
The AI Revolution: How Jobs Will Change by 2030
Cybersecurity
Apr 07, 2026 Suzu Labs

The AI Revolution: How Jobs Will Change by 2030

Host Phillip Wylie sits down with Nicolas Chaillan to discuss the sobering reality of AI replacement, the critical need ...

Read More: The AI Revolution: How Jobs Will Change by 2030
The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?
Generative AI
Apr 01, 2026 Hannah Perez

The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?

In late 2024, Sydney tech entrepreneur Paul Conyngham was told his rescue dog, Rosie, had months to live. She was ...

Read More: The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?
From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone
Cybersecurity
Mar 30, 2026 Suzu Labs

From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone

The world of cybersecurity has undergone a massive transformation in just a few decades. In this episode of Simply ...

Read More: From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone
While TSA Made Headlines, CISA Went Dark
Critical Infrastructure
Mar 30, 2026 Jacob Krell

While TSA Made Headlines, CISA Went Dark

The Department of Homeland Security has been partially shut down for over 45 days. In that time, 460 TSA officers have ...

Read More: While TSA Made Headlines, CISA Went Dark
The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks
AI Security
Mar 30, 2026 Suzu Labs

The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks

In cybersecurity, we often operate in silos. The red team breaks things, the blue team fixes them, and management ...

Read More: The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks
Claude Mythos and the Cybersecurity Risk That Was Already Here
Threat Intelligence
Mar 27, 2026 Jacob Krell

Claude Mythos and the Cybersecurity Risk That Was Already Here

On March 26, Anthropic confirmed the existence of Claude Mythos, an unreleased AI model described internally as "a step ...

Read More: Claude Mythos and the Cybersecurity Risk That Was Already Here
Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026
Cybersecurity
Mar 23, 2026 Hannah Perez

Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026

We are incredibly proud to announce a monumental achievement. At this year’s Global InfoSec Awards 2026, hosted by ...

Read More: Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026
From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity
Cybersecurity
Mar 17, 2026 Suzu Labs

From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity

In the world of cybersecurity, we often talk about "gatekeeping" or the "skills gap," but rarely do we find individuals ...

Read More: From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity
From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time
Critical Infrastructure
Mar 13, 2026 Denis Calderone

From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time

On March 12, medical technology giant Stryker confirmed a cyberattack that wiped devices across 79 countries. The ...

Read More: From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time
Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation
Social Engineering
Mar 09, 2026 Suzu Labs Intelligence

Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation

Executive Summary Even Realities markets its G2 smart glasses as the privacy-conscious alternative to Meta Ray-Bans. ...

Read More: Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation
The Company Reviewing Your Meta Glasses Footage Has a Security Problem
Threat Intelligence
Mar 06, 2026 Mike Bell

The Company Reviewing Your Meta Glasses Footage Has a Security Problem

Last week, Swedish journalists revealed that Meta sends video footage from Meta Ray-Ban smart glasses to human data ...

Read More: The Company Reviewing Your Meta Glasses Footage Has a Security Problem
The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking
CTF
Mar 03, 2026 Jacob Krell

The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking

View White Paper Abstract: Agentic AI systems are compressing competitive hacking timelines faster than the ...

Read More: The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking
Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell
Cybersecurity
Mar 03, 2026 Phillip Wylie

Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell

In this thought-provoking episode of Simply Offensive, host Philip Wylie sits down with Jacob Krell, a penetration ...

Read More: Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell
Anthropic and Claude: 2026 AI Powerhouse
Supply Chain Security
Feb 26, 2026 Hannah Perez

Anthropic and Claude: 2026 AI Powerhouse

In early 2026, the image of Anthropic as a cautious, safety-oriented "research lab" has effectively been replaced by ...

Read More: Anthropic and Claude: 2026 AI Powerhouse
Simply Offensive Podcast: Navigating AI's Challenges in Problem Solving with Darius Houle
Cybersecurity
Feb 24, 2026 Phillip Wylie

Simply Offensive Podcast: Navigating AI's Challenges in Problem Solving with Darius Houle

In this episode of Simply Offensive, host Philip Wylie welcomes Darius Houle, an Application Security (AppSec) and ...

Read More: Simply Offensive Podcast: Navigating AI's Challenges in Problem Solving with Darius Houle
Simply Offensive Podcast: Exploring the World of Hardware Hacking with Matt Brown
Cybersecurity
Feb 17, 2026 Phillip Wylie

Simply Offensive Podcast: Exploring the World of Hardware Hacking with Matt Brown

In the latest episode of the Simply Offensive podcast, host Philip Wylie sat down with Matt Brown, a renowned hardware ...

Read More: Simply Offensive Podcast: Exploring the World of Hardware Hacking with Matt Brown
Simply Offensive Podcast: Exploring AI Vulnerabilities in Cybersecurity with Mike Bell of Suzu Labs
Cybersecurity
Feb 12, 2026 Phillip Wylie

Simply Offensive Podcast: Exploring AI Vulnerabilities in Cybersecurity with Mike Bell of Suzu Labs

In today’s rapidly evolving technological landscape, the convergence of artificial intelligence (AI) and cybersecurity ...

Read More: Simply Offensive Podcast: Exploring AI Vulnerabilities in Cybersecurity with Mike Bell of Suzu Labs
Simply Offensive Podcast: Emulated Cyber Crime with Dahvid Schloss
Threat Intelligence
Feb 10, 2026 Phillip Wylie

Simply Offensive Podcast: Emulated Cyber Crime with Dahvid Schloss

Beyond the Pentest: Why Adversarial Emulation is the Future of Defensive Training Many organizations operate under the ...

Read More: Simply Offensive Podcast: Emulated Cyber Crime with Dahvid Schloss
Under Armour Breach: What The Forum Data Actually Shows
Threat Intelligence
Jan 30, 2026 Mike Bell

Under Armour Breach: What The Forum Data Actually Shows

On January 18, 2026, the Everest ransomware group made good on their threat and released Under Armour customer data to ...

Read More: Under Armour Breach: What The Forum Data Actually Shows
SilentFrame: A Research POC on Post-Exploitation Credential Collection through Browsers
Briefing Room
Jan 29, 2026 Dahvid Schloss

SilentFrame: A Research POC on Post-Exploitation Credential Collection through Browsers

This article is in reference to our newest POC hosted on GitHub here: https://github.com/Emulated-Criminals/SilentFrame ...

Read More: SilentFrame: A Research POC on Post-Exploitation Credential Collection through Browsers
Brightspeed Breach: Crimson Collective and the Infostealer Problem
Threat Intelligence
Jan 20, 2026 Mike Bell

Brightspeed Breach: Crimson Collective and the Infostealer Problem

Recently Crimson Collective claimed they breached Brightspeed and grabbed 1 million+ customer records. The list of data ...

Read More: Brightspeed Breach: Crimson Collective and the Infostealer Problem
When Grid Data Goes Dark Web
Power Grid
Jan 19, 2026 Mike Bell

When Grid Data Goes Dark Web

Inside a threat actor's critical infrastructure targeting In January 2026, 139 gigabytes of engineering data from a ...

Read More: When Grid Data Goes Dark Web
The $150,000 Password
Critical Infrastructure
Jan 19, 2026 Mike Bell

The $150,000 Password

How one threat actor turned stolen credentials into a global breach portfolio Between December 2025 and January 2026, a ...

Read More: The $150,000 Password
Seeing Everything, Understanding Nothing
Briefing Room
Jan 16, 2026 Dahvid Schloss

Seeing Everything, Understanding Nothing

To help you get a head start on making your environment safer and in keeping with the theme of January’s “New Year, New ...

Read More: Seeing Everything, Understanding Nothing
New Year, New Priorities - So, what to fix first?
Briefing Room
Jan 08, 2026 Dahvid Schloss

New Year, New Priorities - So, what to fix first?

The most common phrase we hear from our prospects is, “We are overwhelmed, and we aren’t sure what to tackle first.” ...

Read More: New Year, New Priorities - So, what to fix first?
UnderByte — A Ransomware experiment using Alternate Data Streams (ADS)
Briefing Room
Nov 21, 2025 Dahvid Schloss

UnderByte — A Ransomware experiment using Alternate Data Streams (ADS)

Repository purpose: this research was to evaluate the feasiabilty of using Alternate Data Stream (ADS) in staging and ...

Read More: UnderByte — A Ransomware experiment using Alternate Data Streams (ADS)

'Simply Offensive' by Suzu Labs Podcasts

23 items available
View All →
Simply Offensive YT S3E16 Jim Nitterauer
Season 3 | Episode 16

From Bioremediation to Boardroom (and Back to the Terminal) with Jim Nitterauer

In this episode of Simply Offensive, Phillip Wylie sits down with longtime cybersecurity professional Jim Nitterauer to ...

Simply Offensive YT S3E15 V Wixon
Season 3 | Episode 15

Building a Cybersecurity Career Through Community, GRC, and IAM with V

In this episode of Simply Offensive, Phillip Wylie sits down with V, a longtime contributor to the Dallas cybersecurity ...

Simply Offensive YT S3E14 Andrew Crotty
Season 3 | Episode 14

From Law Enforcement to Cyber Threat Intelligence: Andrew Crotty’s Journey into Cybersecurity

In this episode of Simply Offensive, Phillip Wylie sits down with Andrew “GingerHacker” Crotty to talk about breaking ...

Simply Offensive YT S3E13 Steven Swift
Season 3 | Episode 13

Building Secure AI, Incident Response, and the Reality of Cybersecurity with Steven Swift

In this episode of Simply Offensive, Phillip Wylie sits down with fellow Suzu Labs team member Steven Swift to discuss ...

1777397283634
Season 3 | Episode 11

Army Ranger Turned Professional Hacker with Aaron Colclough

In this episode, Aaron Colclough shares his unique journey from military service to cybersecurity, emphasizing the ...

nocholas chaillan
Season 3 | Episode 10

The AI Revolution: How Jobs Will Change by 2030 with Nicolas Chaillan

In this episode of Simply Offensive, host Phillip Wylie sits down with entrepreneur and former U.S. Air Force and Space ...

Simply Off Denis
Season 3 | Episode 9

From Analog Hacks to Agentic AI – The Evolution of Offensive Security with Denis Calderone

In this episode of Simply Offensive, host Phillip Wylie sits down with Denis Calderone, Co-Founder and Principal at ...

Simply Offensive YT S3E8 Christopher Marks
Season 3 | Episode 8

Offensive Security Mindset, Leadership, and AI with Chris Marks

In this episode of Simply Offensive, host Phillip Wylie sits down with cybersecurity leader Christopher Marks to ...

1773779752772
Season 3 | Episode 7

From Military to Cybersecurity with Josh Mason

In this episode, Phillip Wylie interviews cybersecurity expert Josh Mason about his journey from military service to ...

1773153507999
Season 3 | Episode 6

The Future of Pentesting: AI, Automation, and Better Reporting with Dan DeCloss

In this episode of Simply Offensive, Phillip Wylie interviews Dan DeCloss, founder of PlexTrack, discussing the ...

simply offensive jacob krell
Season 3 | Episode 5

AI Killed the CTF Star with Jacob Krell

In this episode, Phillip Wylie and Jacob Krell discuss the integration of AI in Capture The Flag (CTF) competitions and ...

season 3 ep 4
Season 3 | Episode 4

Navigating AI's Challenges in Problem Solving with Darius Houle

In this episode, Darius Houle joins the conversation to explore the real-world limitations of AI in problem-solving and ...

season 3 ep 2
Season 3 | Episode 3

Exploring the World of Hardware Hacking with Matt Brown

In this episode, Phillip Wylie interviews Matt Brown, a hardware hacker and content creator, discussing his journey in ...

Season 3 | Episode 2

Emulated Cyber Crime with Dahvid Schloss

In this episode of Simply Offensive, Phillip Wylie interviews Dahvid Schloss, a cybersecurity expert and the emulated ...

Season 3 | Episode 1

Exploring AI Vulnerabilities in Cybersecurity with Mike Bell

In this episode of Simply Offensive, Phillip Wylie and Suzu Labs CEO Mike Bell dive into the intersection of AI and ...

Simply Offensive YT S2E8 Len Noe-1
Season 2 | Episode 8

Human Hacked: Life as the World’s First Augmented Ethical Hacker w/ Len Noe

In this episode of Simply Offensive, Phillip Wylie sits down with Len Noe (HaCkEr_213) — the world’s first recognized ...

Simply Offensive YT S2E7 Shubham Khichi
Season 2 | Episode 7

AI vs Pentesters with Shubham Khichi

In this episode of Simply Offensive, Phillip Wylie interviews Shubham Khichi, an offensive security professional and ...

Simply Offensive YT S2E6 Daniel Lowrie
Season 2 | Episode 6

You've Got to Build Some Labs with Daniel Lowrie

In this episode of Simply Offensive, Phillip Wylie interviews Daniel Lowrie, who shares his extensive background in IT ...

Simply Offensive YT S2E5 Mike Holcomb
Season 2 | Episode 5

OT and ICS Pentesting and Security with Mike Holcomb

In this episode of Simply Offensive, Phillip Wylie interviews Mike Holcomb, an expert in Operational Technology (OT) ...

Simply Offensive YT S2E4 Danny Jenkins
Season 2 | Episode 4

From Hacker to CEO with Danny Jenkins

In this episode of Simply Offensive, Phillip Wylie interviews Danny Jenkins, CEO and founder of ThreatLocker. Danny ...

Simply Offensive YT S2E3 Greg Hatcher & John Stigerwalt
Season 2 | Episode 3

Unlocking Advanced Penetration Testing with Greg Hatcher & John Stigerwalt

In this episode of Simply Offensive, Phillip Wylie is joined by Greg Hatcher and John Stigerwalt from White Knight ...

Simply Offensive YT S2E2 Jacob Krell
Season 2 | Episode 2

30 Certifications and Counting with Jacob Krell

In this episode of Simply Offensive, Phillip Wylie is joined by Jacob Krell, a cybersecurity professional with a wealth ...

Simply Offensive YT S2E1 - Corey LeBleu
Season 2 | Episode 1

Arrested During a Pentest with Corey LeBleu

In this episode of Simply Offensive, Phillip Wylie is joined by Corey LeBleu, a cybersecurity professional with over 20 ...

Suzu Labs In The Media

View All

Suzu Labs Research

image (41) EBOOK

What's Being Said About You In The Shadows

Right now, your employee credentials, customer records, or internal documents could be circulating on hacker forums and you'd have no idea.

Most organizations only find out about dark web exposure after the damage is done. Suzu Labs' new Executive Brief shows exactly how threat actors operate, what they're trading, and how continuous dark web monitoring gives your team the early warning it needs.

PDF
image (42) WHITEPAPER

Building Trust by Design: Privacy Engineering for the AI Era

As organizations race to adopt AI, expand digital ecosystems, and navigate an increasingly complex regulatory landscape, privacy has evolved from a compliance concern into a critical business imperative. Yet many organizations still rely on policies, consent banners, and periodic assessments that fail to address the realities of how data is collected, processed, and shared across modern technology environments.

 

PDF
image (3) WHITEPAPER

The Death of the CTF

Jacob Krell | February 2026

This White Paper details how agentic AI is drastically accelerating competitive hacking, with CTF "first blood" times on Hack The Box declining by 16% annually. It argues that hacking competitions are shifting from tests of manual human skill to benchmarks for autonomous AI systems. To preserve the industry's integrity, the author suggests adopting a chess-like model with separate tracks for human and AI-augmented performance.

PDF

White Papers

The Death of the CTF
White Paper

The Death of the CTF

This White Paper details how agentic AI is drastically accelerating competitive hacking, with CTF "first blood" times on Hack The Box declining by 16% annually. It argues that hacking competitions are shifting from tests of manual human skill to benchmarks for autonomous AI systems. To preserve the industry's integrity, the author suggests adopting a chess-like model with separate tracks for human and AI-augmented performance.