Suzu Labs

Resources

Expert Insights Strategic Guides Validate Research

Suzu Labs Blog

View All
CMMC's Third-Party Assessments Are Paused. The Standard of Care Isn't
Government Security
Jul 20, 2026 Denis Calderone

CMMC's Third-Party Assessments Are Paused. The Standard of Care Isn't

On July 13 the Department of War suspended Phase 2 of CMMC, the third party certification requirement that was set to ...

Read More: CMMC's Third-Party Assessments Are Paused. The Standard of Care Isn't
The Training Tax
AI Economics
Jul 20, 2026 Jacob Krell

The Training Tax

At a Glance Training is a one-time bill. Inference compounds.GPT-4 cost over $100M to train. Serving GPT-4o at ...

Read More: The Training Tax
Why Mobile Applications Need Real Penetration Testing
Cybersecurity
Jul 20, 2026 Suzu Labs

Why Mobile Applications Need Real Penetration Testing

Mobile applications have become a primary interface between organizations and their customers, handling everything from ...

Read More: Why Mobile Applications Need Real Penetration Testing
Cloud Security Means More Than Securing the Cloud
Penetration Testing
Jul 16, 2026 Suzu Labs

Cloud Security Means More Than Securing the Cloud

As organizations connect more IoT devices to cloud platforms, the attack surface expands well beyond the device itself. ...

Read More: Cloud Security Means More Than Securing the Cloud
Third-Party Risks: When Trusted Connections Become Attack Paths
Penetration Testing
Jul 16, 2026 Suzu Labs

Third-Party Risks: When Trusted Connections Become Attack Paths

Modern applications rarely operate alone. They rely on API gateways, webhooks, cloud services, SaaS platforms, and ...

Read More: Third-Party Risks: When Trusted Connections Become Attack Paths
VPNs Aren't the Risk. The Network Paths Around Them Are.
Cybersecurity
Jul 14, 2026 Suzu Labs

VPNs Aren't the Risk. The Network Paths Around Them Are.

Virtual Private Networks (VPNs) remain one of the most common ways organizations provide secure remote access to ...

Read More: VPNs Aren't the Risk. The Network Paths Around Them Are.
Top 7 AI Security Risks in 2026
Cybersecurity
Jul 10, 2026 Hannah Perez

Top 7 AI Security Risks in 2026

Quick guide: 7 AI security risks every CISO should know Data poisoning: Attackers corrupt training datasets to ...

Read More: Top 7 AI Security Risks in 2026
Pipeline Security Testing: Securing Your Software Supply Chain
Penetration Testing
Jul 09, 2026 Suzu Labs

Pipeline Security Testing: Securing Your Software Supply Chain

Modern development teams rely on CI/CD pipelines to build, test, and deploy software faster than ever before. But the ...

Read More: Pipeline Security Testing: Securing Your Software Supply Chain
Understanding API Risk: Focus on What Attackers Actually Use
Penetration Testing
Jul 08, 2026 Suzu Labs

Understanding API Risk: Focus on What Attackers Actually Use

Application Programming Interfaces (APIs) have become the backbone of modern software. They connect web applications, ...

Read More: Understanding API Risk: Focus on What Attackers Actually Use
Enterprise AI Security Solutions for Mid-Sized Tech 2026
AI Security
Jul 08, 2026 Hannah Perez

Enterprise AI Security Solutions for Mid-Sized Tech 2026

Finding the Right AI Security Partner for Your Growing Tech Company Your engineering team just deployed a new ...

Read More: Enterprise AI Security Solutions for Mid-Sized Tech 2026
MFA Gaps: Why Strong Authentication Doesn't Always Mean Strong Security
MFA
Jul 06, 2026 Suzu Labs

MFA Gaps: Why Strong Authentication Doesn't Always Mean Strong Security

Multi-factor authentication (MFA) has become a foundational security control, and for good reason. It significantly ...

Read More: MFA Gaps: Why Strong Authentication Doesn't Always Mean Strong Security
Understanding Application Attack Paths: Beyond the Vulnerability List
Penetration Testing
Jul 03, 2026 Suzu Labs

Understanding Application Attack Paths: Beyond the Vulnerability List

Modern web applications are made up of countless interactions between users, APIs, databases, and third-party services. ...

Read More: Understanding Application Attack Paths: Beyond the Vulnerability List
AI Jailbreaking: Finding the Gaps Before Attackers Do
Cybersecurity
Jul 01, 2026 Suzu Labs

AI Jailbreaking: Finding the Gaps Before Attackers Do

As organizations rapidly integrate large language models into customer-facing applications, internal tools, and ...

Read More: AI Jailbreaking: Finding the Gaps Before Attackers Do
Understanding Attack Paths: Seeing Security the Way an Attacker Does
Penetration Testing
Jul 01, 2026 Suzu Labs

Understanding Attack Paths: Seeing Security the Way an Attacker Does

When a security incident occurs, an audit identifies gaps, or your organization introduces new applications, cloud ...

Read More: Understanding Attack Paths: Seeing Security the Way an Attacker Does
The AI Industry's Prescott Moment
LLM
Jun 30, 2026 Jacob Krell

The AI Industry's Prescott Moment

Intel killed its fastest chip in 2004 because clock speed had become the wrong metric. AI is approaching the same ...

Read More: The AI Industry's Prescott Moment
The Kylie Effect: How Meta Just Normed the Smart Glasses Privacy Dilemma
Data Privacy
Jun 30, 2026 Hannah Perez

The Kylie Effect: How Meta Just Normed the Smart Glasses Privacy Dilemma

When tech companies first tried to put cameras on our faces, the public reaction was loud, clear, and overwhelmingly ...

Read More: The Kylie Effect: How Meta Just Normed the Smart Glasses Privacy Dilemma
The Extortion Market Has Matured, And the Response Industry Is Part of It
Threat Intelligence
Jun 25, 2026 Denis Calderone

The Extortion Market Has Matured, And the Response Industry Is Part of It

In May, a criminal extortion group told 9,000 schools to hire breach coaches and negotiate ransom payments ...

Read More: The Extortion Market Has Matured, And the Response Industry Is Part of It
The ICS Exploit Pipeline Is Built for Destruction, Not Theft
Vulnerability Management
Jun 22, 2026 Jacob Krell

The ICS Exploit Pipeline Is Built for Destruction, Not Theft

The vulnerability pipeline feeding ICS attackers is structurally optimized for breaking infrastructure, not stealing ...

Read More: The ICS Exploit Pipeline Is Built for Destruction, Not Theft
973 MCP Packages, 71% Single-Maintainer: A Practitioner's Guide to AI Developer Security
Prompt Injection
Jun 17, 2026 Jacob Krell

973 MCP Packages, 71% Single-Maintainer: A Practitioner's Guide to AI Developer Security

At a Glance AI security tooling adoption lags behind AI coding tool adoption by an order of magnitude. Download ratios: ...

Read More: 973 MCP Packages, 71% Single-Maintainer: A Practitioner's Guide to AI Developer Security
The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code
Cybersecurity
May 20, 2026 Jacob Krell

The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code

GitHub's 3,800 Repositories Stolen Through a Single IDE Extension On May 19, 2026, a single VS Code extension on a ...

Read More: The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code
The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability
May 20, 2026 Hannah Perez

The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability

If you think a basic pop-up banner that reads "By continuing to browse this site, you accept cookies" protects your ...

Read More: The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability
Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore
Data Privacy
May 19, 2026 Jacob Krell

Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore

In April 2026 alone, the ShinyHunters extortion group breached ADT (5.5 million customers), Amtrak (2.1 million ...

Read More: Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore
Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.
Vulnerability Management
May 05, 2026 Jacob Krell

Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.

Mandiant's M-Trends 2026 report puts estimated mean time to exploit at negative seven days. That number should reset ...

Read More: Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.
When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance
Prompt Injection
Apr 30, 2026 Hannah Perez

When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance

When AI Billing Breaks Trust: Lessons from the Claude Code Backlash AI adoption is accelerating, but trust is still ...

Read More: When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance
From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield
Cybersecurity
Apr 29, 2026 Suzu Labs

From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield

Cybersecurity doesn’t start with tools, it starts with mindset. In this episode featuring Aaron Colclough, we get a ...

Read More: From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield
When Elite Cyber Teams Can't Crack Web Security
Cybersecurity
Apr 23, 2026 Jacob Krell

When Elite Cyber Teams Can't Crack Web Security

HTB's 2025 benchmark tested 796 security teams. Only 21% passed web security challenges. The Security Illusion Security ...

Read More: When Elite Cyber Teams Can't Crack Web Security
The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them
Cybersecurity
Apr 22, 2026 Jacob Krell

The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them

In today's security landscape, some of the most dangerous vulnerabilities aren't flagged by automated scanners at all. ...

Read More: The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them
Suzu Labs Acquires Emulated Criminals
Apr 20, 2026 Hannah Perez

Suzu Labs Acquires Emulated Criminals

Bridging the gap between theory and the threat reality, Suzu Labs is proud to announce the acquisition of Emulated ...

Read More: Suzu Labs Acquires Emulated Criminals
The Wall Around Claude 4.7 Does Not Extend to Dread
Cybersecurity
Apr 17, 2026 Suzu Labs

The Wall Around Claude 4.7 Does Not Extend to Dread

Anthropic released Claude Opus 4.7 on April 16, 2026 with automated cybersecurity safeguards and a Cyber Verification ...

Read More: The Wall Around Claude 4.7 Does Not Extend to Dread
The AI Revolution: How Jobs Will Change by 2030
Cybersecurity
Apr 07, 2026 Suzu Labs

The AI Revolution: How Jobs Will Change by 2030

Host Phillip Wylie sits down with Nicolas Chaillan to discuss the sobering reality of AI replacement, the critical need ...

Read More: The AI Revolution: How Jobs Will Change by 2030
The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?
Generative AI
Apr 01, 2026 Hannah Perez

The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?

In late 2024, Sydney tech entrepreneur Paul Conyngham was told his rescue dog, Rosie, had months to live. She was ...

Read More: The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?
From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone
Cybersecurity
Mar 30, 2026 Suzu Labs

From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone

The world of cybersecurity has undergone a massive transformation in just a few decades. In this episode of Simply ...

Read More: From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone
While TSA Made Headlines, CISA Went Dark
Critical Infrastructure
Mar 30, 2026 Jacob Krell

While TSA Made Headlines, CISA Went Dark

The Department of Homeland Security has been partially shut down for over 45 days. In that time, 460 TSA officers have ...

Read More: While TSA Made Headlines, CISA Went Dark
The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks
AI Security
Mar 30, 2026 Suzu Labs

The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks

In cybersecurity, we often operate in silos. The red team breaks things, the blue team fixes them, and management ...

Read More: The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks
Claude Mythos and the Cybersecurity Risk That Was Already Here
Threat Intelligence
Mar 27, 2026 Jacob Krell

Claude Mythos and the Cybersecurity Risk That Was Already Here

On March 26, Anthropic confirmed the existence of Claude Mythos, an unreleased AI model described internally as "a step ...

Read More: Claude Mythos and the Cybersecurity Risk That Was Already Here
Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026
Cybersecurity
Mar 23, 2026 Hannah Perez

Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026

We are incredibly proud to announce a monumental achievement. At this year’s Global InfoSec Awards 2026, hosted by ...

Read More: Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026
From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity
Cybersecurity
Mar 17, 2026 Suzu Labs

From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity

In the world of cybersecurity, we often talk about "gatekeeping" or the "skills gap," but rarely do we find individuals ...

Read More: From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity
From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time
Critical Infrastructure
Mar 13, 2026 Denis Calderone

From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time

On March 12, medical technology giant Stryker confirmed a cyberattack that wiped devices across 79 countries. The ...

Read More: From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time
Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation
Social Engineering
Mar 09, 2026 Suzu Labs Intelligence

Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation

Executive Summary Even Realities markets its G2 smart glasses as the privacy-conscious alternative to Meta Ray-Bans. ...

Read More: Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation
The Company Reviewing Your Meta Glasses Footage Has a Security Problem
Threat Intelligence
Mar 06, 2026 Mike Bell

The Company Reviewing Your Meta Glasses Footage Has a Security Problem

Last week, Swedish journalists revealed that Meta sends video footage from Meta Ray-Ban smart glasses to human data ...

Read More: The Company Reviewing Your Meta Glasses Footage Has a Security Problem
The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking
CTF
Mar 03, 2026 Jacob Krell

The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking

View White Paper Abstract: Agentic AI systems are compressing competitive hacking timelines faster than the ...

Read More: The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking
Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell
Cybersecurity
Mar 03, 2026 Phillip Wylie

Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell

In this thought-provoking episode of Simply Offensive, host Philip Wylie sits down with Jacob Krell, a penetration ...

Read More: Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell
Anthropic and Claude: 2026 AI Powerhouse
Supply Chain Security
Feb 26, 2026 Hannah Perez

Anthropic and Claude: 2026 AI Powerhouse

In early 2026, the image of Anthropic as a cautious, safety-oriented "research lab" has effectively been replaced by ...

Read More: Anthropic and Claude: 2026 AI Powerhouse
Simply Offensive Podcast: Navigating AI's Challenges in Problem Solving with Darius Houle
Cybersecurity
Feb 24, 2026 Phillip Wylie

Simply Offensive Podcast: Navigating AI's Challenges in Problem Solving with Darius Houle

In this episode of Simply Offensive, host Philip Wylie welcomes Darius Houle, an Application Security (AppSec) and ...

Read More: Simply Offensive Podcast: Navigating AI's Challenges in Problem Solving with Darius Houle

'Simply Offensive' by Suzu Labs Podcasts

26 items available
View All →
image (69)
Season 3 | Episode 19

AI Won't Make You a Hacker: Why Fundamentals Still Matter

In this episode of Simply Offensive, Phillip Wylie is joined by offensive security researcher Milton "wetw0rk" Valencia ...

Simply Offensive YT S3E18 Katherine McNamara
Season 3 | Episode 18

AI, Certifications, and Security Reality with Katherine McNamara

In this episode of Simply Offensive, Phillip Wylie welcomes Katherine (Kat) McNamara, Technical Solutions Architect at ...

Simply Offensive YT S3E17 Darin Fredde
Season 3 | Episode 17

xFrom AutoCAD to Adversary Emulation: Darin Fredde's Journey Through Technology and Cybersecurity

In this episode of Simply Offensive, Phillip Wylie sits down with longtime friend, former coworker, and cybersecurity ...

Simply Offensive YT S3E16 Jim Nitterauer
Season 3 | Episode 16

From Bioremediation to Boardroom (and Back to the Terminal) with Jim Nitterauer

In this episode of Simply Offensive, Phillip Wylie sits down with longtime cybersecurity professional Jim Nitterauer to ...

Simply Offensive YT S3E15 V Wixon
Season 3 | Episode 15

Building a Cybersecurity Career Through Community, GRC, and IAM with V

In this episode of Simply Offensive, Phillip Wylie sits down with V, a longtime contributor to the Dallas cybersecurity ...

Simply Offensive YT S3E14 Andrew Crotty
Season 3 | Episode 14

From Law Enforcement to Cyber Threat Intelligence: Andrew Crotty’s Journey into Cybersecurity

In this episode of Simply Offensive, Phillip Wylie sits down with Andrew “GingerHacker” Crotty to talk about breaking ...

Simply Offensive YT S3E13 Steven Swift
Season 3 | Episode 13

Building Secure AI, Incident Response, and the Reality of Cybersecurity with Steven Swift

In this episode of Simply Offensive, Phillip Wylie sits down with fellow Suzu Labs team member Steven Swift to discuss ...

1777397283634
Season 3 | Episode 11

Army Ranger Turned Professional Hacker with Aaron Colclough

In this episode, Aaron Colclough shares his unique journey from military service to cybersecurity, emphasizing the ...

nocholas chaillan
Season 3 | Episode 10

The AI Revolution: How Jobs Will Change by 2030 with Nicolas Chaillan

In this episode of Simply Offensive, host Phillip Wylie sits down with entrepreneur and former U.S. Air Force and Space ...

Simply Off Denis
Season 3 | Episode 9

From Analog Hacks to Agentic AI – The Evolution of Offensive Security with Denis Calderone

In this episode of Simply Offensive, host Phillip Wylie sits down with Denis Calderone, Co-Founder and Principal at ...

Simply Offensive YT S3E8 Christopher Marks
Season 3 | Episode 8

Offensive Security Mindset, Leadership, and AI with Chris Marks

In this episode of Simply Offensive, host Phillip Wylie sits down with cybersecurity leader Christopher Marks to ...

1773779752772
Season 3 | Episode 7

From Military to Cybersecurity with Josh Mason

In this episode, Phillip Wylie interviews cybersecurity expert Josh Mason about his journey from military service to ...

1773153507999
Season 3 | Episode 6

The Future of Pentesting: AI, Automation, and Better Reporting with Dan DeCloss

In this episode of Simply Offensive, Phillip Wylie interviews Dan DeCloss, founder of PlexTrack, discussing the ...

simply offensive jacob krell
Season 3 | Episode 5

AI Killed the CTF Star with Jacob Krell

In this episode, Phillip Wylie and Jacob Krell discuss the integration of AI in Capture The Flag (CTF) competitions and ...

season 3 ep 4
Season 3 | Episode 4

Navigating AI's Challenges in Problem Solving with Darius Houle

In this episode, Darius Houle joins the conversation to explore the real-world limitations of AI in problem-solving and ...

season 3 ep 2
Season 3 | Episode 3

Exploring the World of Hardware Hacking with Matt Brown

In this episode, Phillip Wylie interviews Matt Brown, a hardware hacker and content creator, discussing his journey in ...

Season 3 | Episode 2

Emulated Cyber Crime with Dahvid Schloss

In this episode of Simply Offensive, Phillip Wylie interviews Dahvid Schloss, a cybersecurity expert and the emulated ...

Season 3 | Episode 1

Exploring AI Vulnerabilities in Cybersecurity with Mike Bell

In this episode of Simply Offensive, Phillip Wylie and Suzu Labs CEO Mike Bell dive into the intersection of AI and ...

Simply Offensive YT S2E8 Len Noe-1
Season 2 | Episode 8

Human Hacked: Life as the World’s First Augmented Ethical Hacker w/ Len Noe

In this episode of Simply Offensive, Phillip Wylie sits down with Len Noe (HaCkEr_213) — the world’s first recognized ...

Simply Offensive YT S2E7 Shubham Khichi
Season 2 | Episode 7

AI vs Pentesters with Shubham Khichi

In this episode of Simply Offensive, Phillip Wylie interviews Shubham Khichi, an offensive security professional and ...

Simply Offensive YT S2E6 Daniel Lowrie
Season 2 | Episode 6

You've Got to Build Some Labs with Daniel Lowrie

In this episode of Simply Offensive, Phillip Wylie interviews Daniel Lowrie, who shares his extensive background in IT ...

Simply Offensive YT S2E5 Mike Holcomb
Season 2 | Episode 5

OT and ICS Pentesting and Security with Mike Holcomb

In this episode of Simply Offensive, Phillip Wylie interviews Mike Holcomb, an expert in Operational Technology (OT) ...

Simply Offensive YT S2E4 Danny Jenkins
Season 2 | Episode 4

From Hacker to CEO with Danny Jenkins

In this episode of Simply Offensive, Phillip Wylie interviews Danny Jenkins, CEO and founder of ThreatLocker. Danny ...

Simply Offensive YT S2E3 Greg Hatcher & John Stigerwalt
Season 2 | Episode 3

Unlocking Advanced Penetration Testing with Greg Hatcher & John Stigerwalt

In this episode of Simply Offensive, Phillip Wylie is joined by Greg Hatcher and John Stigerwalt from White Knight ...

Simply Offensive YT S2E2 Jacob Krell
Season 2 | Episode 2

30 Certifications and Counting with Jacob Krell

In this episode of Simply Offensive, Phillip Wylie is joined by Jacob Krell, a cybersecurity professional with a wealth ...

Simply Offensive YT S2E1 - Corey LeBleu
Season 2 | Episode 1

Arrested During a Pentest with Corey LeBleu

In this episode of Simply Offensive, Phillip Wylie is joined by Corey LeBleu, a cybersecurity professional with over 20 ...

Suzu Labs In The Media

View All

Suzu Labs Research

image (41) EBOOK

What's Being Said About You In The Shadows

Right now, your employee credentials, customer records, or internal documents could be circulating on hacker forums and you'd have no idea.

Most organizations only find out about dark web exposure after the damage is done. Suzu Labs' new Executive Brief shows exactly how threat actors operate, what they're trading, and how continuous dark web monitoring gives your team the early warning it needs.

PDF
image (42) WHITEPAPER

Building Trust by Design: Privacy Engineering for the AI Era

As organizations race to adopt AI, expand digital ecosystems, and navigate an increasingly complex regulatory landscape, privacy has evolved from a compliance concern into a critical business imperative. Yet many organizations still rely on policies, consent banners, and periodic assessments that fail to address the realities of how data is collected, processed, and shared across modern technology environments.

 

PDF
image (3) WHITEPAPER

The Death of the CTF

Jacob Krell | February 2026

This White Paper details how agentic AI is drastically accelerating competitive hacking, with CTF "first blood" times on Hack The Box declining by 16% annually. It argues that hacking competitions are shifting from tests of manual human skill to benchmarks for autonomous AI systems. To preserve the industry's integrity, the author suggests adopting a chess-like model with separate tracks for human and AI-augmented performance.

PDF
image (62) GUIDE

The Penetration Testing Sourcing Guide

Everything you need to plan, scope, and buy a penetration test that reduces real risk and stands up to scrutiny.

Written by practitioners who run the tests. Use it to compare providers, understand cost, and ask the right questions before you sign.

PDF

White Papers

The Death of the CTF
White Paper

The Death of the CTF

This White Paper details how agentic AI is drastically accelerating competitive hacking, with CTF "first blood" times on Hack The Box declining by 16% annually. It argues that hacking competitions are shifting from tests of manual human skill to benchmarks for autonomous AI systems. To preserve the industry's integrity, the author suggests adopting a chess-like model with separate tracks for human and AI-augmented performance.