Skip to main content
Logo-300x300-colored-3
  • Home
  • Services
    • Offensive Security
    • Defensive Security
    • Privacy Engineering
    • AI Advisory
    • AI Assessment
    • AI Integration
  • Products
  • About
    • About Us
    • FAQ's
  • Resources
    • Blog
    • In The Media
    • Podcasts
    • All Resources
Get a Free Assessment
AI Security National Security Cyber Policy Cybercrime Thought Leadership Hack Back Public-Private Partnership Offensive Cyber National Coordination Center

Trump's Hack-Back Memo: Building the Civilian Component

Mike Bell August 13, 2026 22 min read
Table of Contents

    The short version

    On August 12, 2026, President Trump signed a National Security Presidential Memorandum (NSPM), “Expanding Capabilities to Combat Transnational Cyber-Enabled Crime,” authorizing vetted private U.S. companies to conduct offensive cyber operations, hacking back, against foreign cyber-enabled transnational criminal organizations (CE-TCOs) under federal direction and oversight, run through the National Coordination Center (NCC). I have been publicly arguing for this model for the better part of a year, so I am not going to spend this piece debating whether the concept is sound. I believe it is.

    What I am going to do instead is the harder thing: lay out how the civilian component of this program should actually be built. The memo gives the two Executive Directors 60 days to write the operating procedures that will govern vetting, targeting, approvals, and the protection of Americans. Those procedures do not exist yet. Every hard question about this program lives in that unwritten document, and the country gets exactly one first draft. Having spent two decades running offensive operations, first in uniform and now leading authorized offensive engagements for enterprise and government clients, I want to put a working blueprint on the table while the drafting window is open.

    The offensive talent already exists in the private sector. What does not exist yet is the civilian machinery to direct it accountably. That machinery is what the next 60 days will decide.

    The headline shorthand is already settled meaning that people are viewing these as cyber letters of marque, the digital descendant of the commissions that let privateers hunt enemy shipping under a government’s flag. Critics will reach for the other word — cyber mercenaries. Both labels miss what the document builds. A letter of marque was a standing license which allowed privateers to take the commission, go hunting, keep the prize. This program grants no standing license and pays no prize and every operation requires fresh written approval from two federal executive directors, the target set is restricted to criminal organizations rather than foreign states, and an operation that drifts out of scope must stop and report itself. Congress spent a decade flirting with looser versions of this idea under the banner of active cyber defense, the hack-back bills that never passed, and this memo is tighter than any of them. The privateering analogy is the door people will walk in through. The per-operation control is what should actually be paid attention to.

    This did not appear out of nowhere. It is the end of an eighteen-month chain, and the clock that matters now started with the August 12 signature. One link in that chain has gone almost entirely unremarked in today’s coverage: NSPM-11, the June directive on artificial intelligence in the national security enterprise. I will come back to it, because read next to today’s memo it says something bigger than “companies can hack back”, and the bigger picture is what I think has the most opportunity to turn the tide.

    Policy chain leading to the August 2026 hack-back presidential memorandum

    What “the civilian component” actually means here

    The program is co-led by the Department of Justice and the Department of Homeland Security, each designating an Executive Director, operating through the NCC. That places this squarely on the civilian side of American cyber power, distinct from what Cyber Command and the intelligence community do under their own authorities. The distinction matters more than most coverage will acknowledge, because the civilian side carries a different set of obligations:

    • Protecting U.S. persons and constitutional rights at every step of an operation, not as an afterthought.
    • Defending critical infrastructure while working with the private sector as a partner rather than treating it as a victim pool or a vendor list.
    • Keeping every operation below the threshold of armed conflict, deconflicted with the military and intelligence agencies who own the space above it.
    • Being accountable in ways covert programs are not: contracts, audits, written approvals.

    Where the civilian component sits within US cyber power, below the armed-conflict threshold

    Whoever runs the civilian component is not being hired to hack. They are being hired to make sure a powerful new capability operates inside American law and American values while still moving fast enough to hurt the criminal organizations it was built to hurt. That is a different job than offensive operations, and it is a different job than compliance. It requires someone who has lived on both sides.

    Where I stand, and why that history matters

    In November 2025, talking to TechNewsWorld about China’s espionage machine, I argued the U.S. was fighting the wrong way: adversaries run whole-of-society programs, and the U.S. needed to mirror that by “deepening partnerships between federal agencies and private sector cybersecurity firms that can serve as force multipliers in the cyber fight.” My closing line was that we need to treat companies in strategic sectors as partners, not just victims to be protected. Days later, commenting on Operation Endgame 3.0, I made the operational version of the same point: sustained disruption of the cybercrime ecosystem only works through a public-private collaboration model, because impact is measured in disruption cost and defender advantage, not permanence. And in December 2025, when the National Cyber Strategy first signaled a private-sector turn on offense, my stated concern was execution speed, whether the government could engage private talent fast enough to matter.

    This memo is that argument written into national policy. I am glad it exists. But advocating for a capability obligates you to hold it to the standard you set when you asked for it. The rest of this piece is me doing that work: not a critique from the sidelines, but the operating model I would build if I were holding the pen.

    How the hack-back program’s operating procedures should be written

    Section 3 of the memo lists fourteen things the procedures must accomplish. Here is how I would build the load-bearing pieces. None of this is theoretical for me; it is the discipline any serious offensive firm already runs on every authorized engagement, scaled up to a national program.

    Vetting: qualify operators, not just companies

    The memo’s minimum standards (Sec. 3(a)(i)) name technical proficiency, proven performance, facility security, personnel vetting, and reliability. The mistake to avoid is vetting at the corporate logo level. Offensive capability lives in specific people and specific methodology, and a company’s marketing deck tells you nothing about either. The vetting rubric should require a demonstrated-operations portfolio reviewed by cleared assessors, named and cleared operators on every package rather than interchangeable staff, and an examination of the firm’s internal authorization discipline: how it scopes, how it documents, how it stops when something drifts. A firm that cannot show you its own rules of engagement in writing should not be trusted with the government’s.

    The small-firm provision (Sec. 3(a)(ii)) is the sleeper clause of the whole memo, and it needs to be real rather than decorative. The last decade of offensive talent leaving government did not flow to three primes; it dispersed into small specialist shops. If the on-ramp requires prime-scale infrastructure just to apply, the program will have locked out the exact operators it was created to reach. Build a tiered entry: full participants for firms that clear every bar, and a sponsored track where a specialist operates on discrete tasks under the facility and contract umbrella of a full participant or the government itself, with the same per-operation approval discipline. Capability should gate participation. Overhead should not. The same tiering logic should govern the memo’s financial gate, a bond or escrow of at least $1 million, forfeited if a company violates its contract (Sec. 3(a)(iv)). Skin in the game is the right instinct, but let a sponsored specialist’s bond sit at the umbrella level so the gate screens for seriousness rather than balance-sheet size.

    Tiered on-ramp keeping the memo's small-firm provision real: capability gates entry, overhead does not

    Per-operation approval: make the package do the work

    The memo’s best feature is that both Executive Directors must give written approval before every single operation (Sec. 3(a)(xiv)). No standing licenses. To make that real at operational tempo, the standardized package (Sec. 3(a)(vii)) has to carry the entire decision: attribution evidence graded against a published confidence standard, blast-radius analysis covering every system the operation could plausibly touch in transit, a U.S.-person exposure assessment reviewed by DOJ before the directors ever see it, defined abort criteria, and the specific effect requested — nothing broader. If the package is rigorous, approval can be fast. If approval is slow, firms will quietly push for broader authorizations to compensate, and broad authorizations are precisely how a disciplined program becomes an undisciplined one. Speed and safety are not in tension here; they are both products of the same paperwork discipline.

    Deconfliction: an intake, not a meeting

    The classified annex on deconfliction (Sec. 3(a)(v)) has to function as standing infrastructure: a real-time intake where every proposed target is checked against DOJ, DHS, State, Treasury, War Department, and intelligence community equities before a package advances, with a hard hold anytime an equity flags. The oldest and most legitimate objection to private-sector operations is a company blundering into a live government operation. A quarterly coordination meeting does not answer that objection. A queryable, always-on process does.

    Protecting Americans: minimization as muscle memory

    The stop-and-report rule (Sec. 3(a)(x)) — halt, minimize, and notify the moment an operation touches a U.S. person or drifts out of scope — is the single provision that will make or break public trust in this program. The procedures should require every participating firm to demonstrate its minimization workflow live, during vetting, before its first operation is ever approved. Not a policy PDF. A demonstration: here is the trigger, here is who calls it, here is what gets preserved for the record, here is the notification hitting the NCC. In the military we never treated rules of engagement as a document; they were drilled until they were reflex. Civilian offensive operations deserve the same standard, because the first firm that hides an overreach instead of reporting it will hand opponents of this program everything they need to kill it.

    The annual re-evaluation: keep the bar honest

    Continued participation is reviewed at least yearly (Sec. 3(a)(xiii)). Use it. Firms that cut corners, pad attribution confidence, or treat disclosure obligations casually should exit the program before they generate the incident that discredits it. A program that never removes anyone has no bar. Treat it as continuous validation at the end of every engagement. Annual checks on the over compliance of each engagement.

    AI in offensive cyber operations: kept on a human leash

    There is a capability running through all of this that the memo mentions only in passing and the procedures cannot afford to treat as an afterthought — artificial intelligence. AI has already changed what a small team can do offensively. It enumerates infrastructure, correlates scattered intelligence into a coherent target picture, drafts and adapts tooling, and works through a target’s environment at a tempo a human crew cannot sustain. Any honest design of this program has to account for that, because the criminal organizations on the other end already do. Leaving AI out of the equation is not caution. It is preparing for the last war.

    Here is where I expect Washington to take the wrong turn. The reflex will be to treat AI as something to procure from the foundational model providers — hand the hard problems to the big labs and let them bolt an offensive capability onto a general-purpose model. That is a mistake, and the evidence is sitting in public. Those same providers cannot reliably keep their own models inside the guardrails they built for a chat window. We watch the models get jailbroken, prompt-injected, and talked into behavior their makers swore was contained; we watch agentic versions take actions no one authorized. When OpenAI’s models hacked HuggingFace it was a clear sign that the correct precautions where not taken. A company that cannot keep its model in its lane inside a customer-support widget is not the company to trust with autonomous operations against a foreign target under color of federal authority.

    The answer is not to keep AI out. It is to keep AI controlled. The right model is an agentic harness with a skilled operator in the loop on every consequential decision, the doctrine my firm has built our AI Offensive Security practice around, and what the trademark we hold, Hacker in the Loop, means in actual operation. The machine does the heavy, fast, tireless work: enumerate, correlate, propose, draft. A cleared human decides. The AI never earns the authority to cross a boundary on its own, not to escalate from surveillance to effect, not to reach into a system that was not in the approved package, not to act inside the United States. The memo already encodes this principle in Section 3(a)(xiv): a human authorizes every operation, in writing, before anyone acts. An autonomous agent proposing and executing its own operations is fundamentally incompatible with that rule. AI belongs inside the harness accelerating the operator. It does not belong holding the trigger. The human (read hacker) in the loop holds the responsibility at the end of the day.

    And here is the part of today’s coverage that is missing entirely: the government has already committed itself to this model, in writing, twice. NSPM-11, signed June 5, requires that every AI system adopted across the national security enterprise be “reliable, robust, steerable, and controllable,” and its Accountability pillar keeps commanders, directors, and agency heads personally responsible for what AI does at every level of command. It even bars any commercial entity from retaining the power to disable, degrade, or materially modify a mission system without the government’s knowledge and approval. Nine weeks later, today’s memo requires written human approval before every operation — while its own Section 3(b) directs the NCC to “utilize automation to streamline Program elements wherever appropriate.” Put the two directives side by side: a controllable machine, an accountable human, authorization in writing before anything consequential happens. That is one doctrine, stated in two documents five months apart, and it is the same architecture I just described. The June memorandum puts the machine on a leash. The August memo hands the leash to a person. The drafters of the operating procedures should keep both documents on the table, because the government has now told us twice what it expects the relationship between the AI and the human to be.

    That points straight at who should be building this. Not the model labs, who understand training runs but not rules of engagement, not deconfliction, and not what it means to be wrong about a target in a foreign country. The people who can build a controlled offensive AI harness and sit across the table from the intelligence community to make targeting and authorization calls are a narrow group: operators fluent in both the AI and the tradecraft, cleared to be in the room where those decisions happen, and disciplined enough to keep the machine on the leash. That is exactly the specialized depth the small-firm provision was written to reach, and exactly where the government has the thinnest bench of its own.

    The hard problems, and what the civilian program office does about each

    My analytical read of this memo flagged real risks. A leader’s obligation is to pair every risk with the control that manages it, so here is that pairing, summarized first and argued below.

    The legal foundation is a theory. The program rides on the Computer Fraud and Abuse Act (CFAA) carve-out for “lawfully authorized investigative, protective, or intelligence activity of a law enforcement agency” stretching to cover supervised private companies. That is untested, and an executive memo cannot override a statute. The civilian program office should do two things from day one: build a documented authorization chain of custody for every operation, written direction, named supervising officials, and contemporaneous records. If the theory is ever tested in court, the government’s supervision is a provable fact rather than a characterization; and push openly for Congress to codify the authority and liability protection. A program built on durable statute survives administrations. A program built on a memo is one signature from erasure, and every participating firm knows it. No one wants to be burned.

    The state-actor presumption invites escalation. The memo assumes a criminal group is not state-operated “unless clear intelligence exists establishing such connection.” In the real world that line is deliberately blurry, and plenty of the worst crews operate with their government looking the other way or taking a cut. The targeting adjudication framework (Sec. 3(a)(vi)) is where this gets managed: require an affirmative state-nexus assessment on every package, not just a check for disqualifying intelligence, and route anything with an ambiguous nexus to the interagency rather than letting the presumption default it into the approval queue. The presumption as written leans toward action. Adjudication discipline is what leans it back.

    Surveillance and effects blur in live operations. The memo’s surveillance definition includes breaking in and limited manipulation to stay hidden, which means “surveillance” here is a real intrusion, and the line between watching and acting is one of intent and degree. The procedures should treat any manipulation beyond the approved surveillance scope as a new operation requiring new written approval, full stop. Ambiguity in that seam is where operators freelance, and freelancing is what this entire architecture exists to prevent.

    The intelligence funnel is wide. Participating companies can ingest threat data that other firms collected in their normal course of business. That is a powerful engine for proposing well-scoped operations, and it is also how a security vendor’s customer telemetry quietly becomes targeting input. The disclosure requirement (Sec. 3(a)(iii)) should be enforced with teeth, and the program should publish guidance on what participating firms owe the upstream customers whose data feeds the pipeline. Trust in the funnel is trust in the program.

    Offense cannot outrun defense. My CTO, Denis Calderone, made this point in March 2026 and it still stands: if we lean into offensive cyber, defensive investment has to keep pace, and standing up this program in the same year the administration proposed cutting CISA’s budget by more than $700 million sends a mixed signal. The civilian component sits inside the Homeland Security apparatus. Its leadership should be a voice for resourcing the whole fight, not just the exciting half.

    What leading the civilian component actually requires

    By roughly October 11, 2026, the procedures will exist, and shortly after that, so will the first cohort of participating companies. Then the question becomes who runs this day to day — who the directors, the firms, and eventually Congress trust to hold the line. Based on everything above, the profile is fairly clear.

    Start with someone who has actually conducted offensive operations under rules of engagement and a chain of command, because you cannot supervise work you have never done, and operators can tell within minutes whether the person across the table has been on the keyboard. They need to have run the accountability side too which means scoping, written authorization, documentation, and the discipline of stopping at the right time. The civilian component’s product is not access, it is trust. They have to understand how to put AI to work on offense and, more importantly, how to keep it on a human leash, because that capability is arriving whether the program plans for it or not. A clearance is non-negotiable; the deconfliction and targeting frameworks live in classified annexes, and the person running this has to live there with them. The private sector should regard them as one of its own rather than a regulator, because this program only works if the best firms want in. And they need a public record of straight talk about the program’s weaknesses as well as its promise, because the first time something goes wrong (and in operations, something always goes wrong) the person explaining it to the public needs credibility they banked before the incident, not after.

    People matching that profile exist. There are not many of them, and most of the ones I know left government service in the past decade and are running the private-sector teams this memo was written to reach. That is not a problem for the program. It is the point of the program.

    What the memo gets right

    Credit where due, because the document is more carefully built than the failed hack-back bills that preceded it. Per-operation written approval with two independent sign-offs. A hard ceiling excluding anything lethal or war-triggering. Interagency deconfliction as a requirement rather than a courtesy. A mandatory stop-and-report obligation when operations drift. A target set restricted to criminal organizations precisely so the program stays below the threshold of armed conflict. And explicit room for smaller specialist firms, the provision I pushed for specifically, because the offensive talent that left government over the last decade is a national asset sitting in exactly those shops.

    Whoever drafted this studied why every previous attempt died and answered the objections one by one. The design intent is genuinely good. The execution is a 60-day promissory note, which is why the drafting window matters more than the signing ceremony.

    Bottom line

    The United States just formally declared the private sector an offensive instrument of national power against cyber-enabled crime. I asked for that, publicly and repeatedly, and I stand by it. But the version I argued for treats private firms as cleared, disciplined, accountable partners operating inside real machinery and vetted operator by operator, approved operation by operation, deconflicted in real time, and drilled to stop and report the moment something drifts. That machinery is the civilian component, and it gets built in the next 60 days or it gets improvised afterward at much higher cost.

    Building it well takes people who understand the whole problem covering the offensive craft, because the criminal organizations on the other end are genuinely good at this; AI as a force multiplier that has to stay under human command, because it is already on the field; and the civilian guardrails, because the program answers to American law and American citizens. I have spent almost twenty years working that exact seam, in uniform and out, and my firm and I intend to be useful to the people writing these procedures in whatever way serves the mission. The country finally built the on-ramp. Now it has to be worth driving onto.


    Frequently asked questions

    Is hacking back legal now in the U.S.?

    Only inside this program. For everyone else, reaching into someone else’s systems remains a federal crime under the Computer Fraud and Abuse Act (CFAA, 18 U.S.C. 1030). The memo’s legal theory is that vetted companies operating “on behalf of and under the supervision of” DOJ or DHS fit the CFAA’s carve-out for lawfully authorized law-enforcement activity. That theory is untested in court, and state and foreign computer-crime laws still apply.

    What is the National Coordination Center (NCC)?

    The NCC is the body created inside the Department of Homeland Security apparatus by Executive Order 14159 in January 2025. Under the August 12, 2026 memo, it runs the private-sector offensive cyber program, overseen by two Executive Directors, one designated by the Attorney General and one by the Secretary of Homeland Security, who must jointly approve every operation in writing.

    Can private companies conduct cyber attacks for the U.S. government?

    As of August 12, 2026, yes, within strict limits. Vetted Participating Companies under contract with DOJ or DHS can conduct cyber surveillance and cyber effects operations against foreign criminal organizations, but only with per-operation written approval from both Executive Directors, and never anything likely to cause loss of life or rise to a use of force under international law. DO NOT JUST START HACKING BACK!

    What is a CE-TCO?

    A Cyber-Enabled Transnational Criminal Organization: a foreign criminal group that commits cyber-enabled crimes against the United States and is not an institutional part of a foreign government or wholly operated under a government’s direction. The memo presumes a group is not state-operated unless clear intelligence establishes the connection — a presumption that, as I argue above, needs an affirmative state-nexus check in practice.

    What is the $1 million bond requirement for participating companies?

    Section 3(a)(iv) of the memo lets DOJ and DHS require participating companies to post a bond or escrow of at least $1,000,000, forfeited if the company violates its contract. It is the program’s financial stake and unless the operating procedures tier it, a hard floor on which firms can afford to participate.

    Are these cyber letters of marque?

    It is the closest historical analogy, but the program is more controlled than privateering ever was. A letter of marque was a standing license with a prize at the end. This program grants no standing licenses and pays no prizes: every operation requires fresh written approval from two federal directors, targets are restricted to criminal organizations, and an operation that drifts out of scope must stop and report itself.

    How does NSPM-11 relate to the hack-back memo?

    NSPM-11 (June 5, 2026) governs artificial intelligence across the national security enterprise. It requires AI systems to be reliable, robust, steerable, and controllable, and it holds commanders, directors, and agency heads accountable for AI’s conduct through the chain of command. The August 12 memo requires written human approval before every private-sector cyber operation. Read together, the two directives describe one operating doctrine: machines provide speed and scale, and a named, accountable human authorizes every consequential action.

    Primary source: Presidential Memorandum, “Expanding Capabilities to Combat Transnational Cyber-Enabled Crime” (Aug 12, 2026)
    Companion: White House Fact Sheet · EO 14390 (Mar 6, 2026) · NSPM-11, “Artificial Intelligence in the National Security Enterprise” (Jun 5, 2026)
    Prior coverage: TechNewsWorld, Nov 2025 · Operation Endgame 3.0, Nov 2025 · SC Media, Mar 2026 · The National Interest, Jul 2026

     

    Share
    Tags: AI Security National Security Cyber Policy Cybercrime Thought Leadership Hack Back Public-Private Partnership Offensive Cyber National Coordination Center
    Mike Bell
    Mike Bell

    Founder and CEO of Suzu Labs, a veteran-owned cybersecurity firm specializing in security assessments, data privacy, and AI-powered business intelligence. He is a U.S. Army veteran with an active security clearance and over two decades of experience in cybersecurity.

    Weighing what the hack-back program means for your organization, as a potential participant, a security vendor whose telemetry may feed the pipeline, or an enterprise watching the fight?

    Talk to our offensive team.
    ← Previous The Agent Identity Problem: Non-Human Identities Outnumber Humans 45 to 1 and AI Agents Are Making It Worse

    Latest Posts

    View All
    Trump's Hack-Back Memo: Building the Civilian Component
    AI Security
    Aug 13, 2026 Mike Bell

    Trump's Hack-Back Memo: Building the Civilian Component

    The short version On August 12, 2026, President Trump signed a National Security Presidential Memorandum (NSPM), ...

    Read More: Trump's Hack-Back Memo: Building the Civilian Component
    The Agent Identity Problem: Non-Human Identities Outnumber Humans 45 to 1 and AI Agents Are Making It Worse
    MCP Security
    Jul 24, 2026 Jacob Krell

    The Agent Identity Problem: Non-Human Identities Outnumber Humans 45 to 1 and AI Agents Are Making It Worse

    The Agent Identity Problem: Non-Human Identities Outnumber Humans 45 to 1 and AI Agents Are Making It Worse At a Glance ...

    Read More: The Agent Identity Problem: Non-Human Identities Outnumber Humans 45 to 1 and AI Agents Are Making It Worse
    CMMC's Third-Party Assessments Are Paused. The Standard of Care Isn't
    Government Security
    Jul 20, 2026 Denis Calderone

    CMMC's Third-Party Assessments Are Paused. The Standard of Care Isn't

    On July 13 the Department of War suspended Phase 2 of CMMC, the third party certification requirement that was set to ...

    Read More: CMMC's Third-Party Assessments Are Paused. The Standard of Care Isn't
    The Training Tax
    AI Economics
    Jul 20, 2026 Jacob Krell

    The Training Tax

    At a Glance Training is a one-time bill. Inference compounds.GPT-4 cost over $100M to train. Serving GPT-4o at ...

    Read More: The Training Tax
    Why Mobile Applications Need Real Penetration Testing
    Cybersecurity
    Jul 20, 2026 Suzu Labs

    Why Mobile Applications Need Real Penetration Testing

    Mobile applications have become a primary interface between organizations and their customers, handling everything from ...

    Read More: Why Mobile Applications Need Real Penetration Testing
    Cloud Security Means More Than Securing the Cloud
    Penetration Testing
    Jul 16, 2026 Suzu Labs

    Cloud Security Means More Than Securing the Cloud

    As organizations connect more IoT devices to cloud platforms, the attack surface expands well beyond the device itself. ...

    Read More: Cloud Security Means More Than Securing the Cloud
    Third-Party Risks: When Trusted Connections Become Attack Paths
    Penetration Testing
    Jul 16, 2026 Suzu Labs

    Third-Party Risks: When Trusted Connections Become Attack Paths

    Modern applications rarely operate alone. They rely on API gateways, webhooks, cloud services, SaaS platforms, and ...

    Read More: Third-Party Risks: When Trusted Connections Become Attack Paths
    VPNs Aren't the Risk. The Network Paths Around Them Are.
    Cybersecurity
    Jul 14, 2026 Suzu Labs

    VPNs Aren't the Risk. The Network Paths Around Them Are.

    Virtual Private Networks (VPNs) remain one of the most common ways organizations provide secure remote access to ...

    Read More: VPNs Aren't the Risk. The Network Paths Around Them Are.
    Top 7 AI Security Risks in 2026
    Cybersecurity
    Jul 10, 2026 Hannah Perez

    Top 7 AI Security Risks in 2026

    Quick guide: 7 AI security risks every CISO should know Data poisoning: Attackers corrupt training datasets to ...

    Read More: Top 7 AI Security Risks in 2026
    Pipeline Security Testing: Securing Your Software Supply Chain
    Penetration Testing
    Jul 09, 2026 Suzu Labs

    Pipeline Security Testing: Securing Your Software Supply Chain

    Modern development teams rely on CI/CD pipelines to build, test, and deploy software faster than ever before. But the ...

    Read More: Pipeline Security Testing: Securing Your Software Supply Chain
    Understanding API Risk: Focus on What Attackers Actually Use
    Penetration Testing
    Jul 08, 2026 Suzu Labs

    Understanding API Risk: Focus on What Attackers Actually Use

    Application Programming Interfaces (APIs) have become the backbone of modern software. They connect web applications, ...

    Read More: Understanding API Risk: Focus on What Attackers Actually Use
    Enterprise AI Security Solutions for Mid-Sized Tech 2026
    AI Security
    Jul 08, 2026 Hannah Perez

    Enterprise AI Security Solutions for Mid-Sized Tech 2026

    Finding the Right AI Security Partner for Your Growing Tech Company Your engineering team just deployed a new ...

    Read More: Enterprise AI Security Solutions for Mid-Sized Tech 2026
    MFA Gaps: Why Strong Authentication Doesn't Always Mean Strong Security
    MFA
    Jul 06, 2026 Suzu Labs

    MFA Gaps: Why Strong Authentication Doesn't Always Mean Strong Security

    Multi-factor authentication (MFA) has become a foundational security control, and for good reason. It significantly ...

    Read More: MFA Gaps: Why Strong Authentication Doesn't Always Mean Strong Security
    Understanding Application Attack Paths: Beyond the Vulnerability List
    Penetration Testing
    Jul 03, 2026 Suzu Labs

    Understanding Application Attack Paths: Beyond the Vulnerability List

    Modern web applications are made up of countless interactions between users, APIs, databases, and third-party services. ...

    Read More: Understanding Application Attack Paths: Beyond the Vulnerability List
    AI Jailbreaking: Finding the Gaps Before Attackers Do
    Cybersecurity
    Jul 01, 2026 Suzu Labs

    AI Jailbreaking: Finding the Gaps Before Attackers Do

    As organizations rapidly integrate large language models into customer-facing applications, internal tools, and ...

    Read More: AI Jailbreaking: Finding the Gaps Before Attackers Do
    Understanding Attack Paths: Seeing Security the Way an Attacker Does
    Penetration Testing
    Jul 01, 2026 Suzu Labs

    Understanding Attack Paths: Seeing Security the Way an Attacker Does

    When a security incident occurs, an audit identifies gaps, or your organization introduces new applications, cloud ...

    Read More: Understanding Attack Paths: Seeing Security the Way an Attacker Does
    The AI Industry's Prescott Moment
    LLM
    Jun 30, 2026 Jacob Krell

    The AI Industry's Prescott Moment

    Intel killed its fastest chip in 2004 because clock speed had become the wrong metric. AI is approaching the same ...

    Read More: The AI Industry's Prescott Moment
    The Kylie Effect: How Meta Just Normed the Smart Glasses Privacy Dilemma
    Data Privacy
    Jun 30, 2026 Hannah Perez

    The Kylie Effect: How Meta Just Normed the Smart Glasses Privacy Dilemma

    When tech companies first tried to put cameras on our faces, the public reaction was loud, clear, and overwhelmingly ...

    Read More: The Kylie Effect: How Meta Just Normed the Smart Glasses Privacy Dilemma
    The Extortion Market Has Matured, And the Response Industry Is Part of It
    Threat Intelligence
    Jun 25, 2026 Denis Calderone

    The Extortion Market Has Matured, And the Response Industry Is Part of It

    In May, a criminal extortion group told 9,000 schools to hire breach coaches and negotiate ransom payments ...

    Read More: The Extortion Market Has Matured, And the Response Industry Is Part of It
    The ICS Exploit Pipeline Is Built for Destruction, Not Theft
    Vulnerability Management
    Jun 22, 2026 Jacob Krell

    The ICS Exploit Pipeline Is Built for Destruction, Not Theft

    The vulnerability pipeline feeding ICS attackers is structurally optimized for breaking infrastructure, not stealing ...

    Read More: The ICS Exploit Pipeline Is Built for Destruction, Not Theft
    973 MCP Packages, 71% Single-Maintainer: A Practitioner's Guide to AI Developer Security
    Prompt Injection
    Jun 17, 2026 Jacob Krell

    973 MCP Packages, 71% Single-Maintainer: A Practitioner's Guide to AI Developer Security

    At a Glance AI security tooling adoption lags behind AI coding tool adoption by an order of magnitude. Download ratios: ...

    Read More: 973 MCP Packages, 71% Single-Maintainer: A Practitioner's Guide to AI Developer Security
    The AI Governance Gap: Verizon's 2026 DBIR Shows Attackers Scaling AI While Employees Leak Data Through It
    AI Governance
    May 28, 2026 Jacob Krell

    The AI Governance Gap: Verizon's 2026 DBIR Shows Attackers Scaling AI While Employees Leak Data Through It

    On May 20, 2026, Verizon published the 2026 Data Breach Investigations Report with a dedicated AI section built on ...

    Read More: The AI Governance Gap: Verizon's 2026 DBIR Shows Attackers Scaling AI While Employees Leak Data Through It
    The Remediation Paradox: Verizon's 2026 DBIR Shows Exploitation Winning While Defenders Patch Slower
    Mean Time to Exploit
    May 21, 2026 Jacob Krell

    The Remediation Paradox: Verizon's 2026 DBIR Shows Exploitation Winning While Defenders Patch Slower

    On May 20, 2026, Verizon published the [2026 Data Breach Investigations ...

    Read More: The Remediation Paradox: Verizon's 2026 DBIR Shows Exploitation Winning While Defenders Patch Slower
    The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code
    Cybersecurity
    May 20, 2026 Jacob Krell

    The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code

    GitHub's 3,800 Repositories Stolen Through a Single IDE Extension On May 19, 2026, a single VS Code extension on a ...

    Read More: The Extension Blind Spot: How One VS Code Plugin Gave Attackers GitHub's Source Code
    The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability
    May 20, 2026 Hannah Perez

    The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability

    If you think a basic pop-up banner that reads "By continuing to browse this site, you accept cookies" protects your ...

    Read More: The Cost of a Click: Why Passive Cookie Consent Is Your Biggest Compliance Liability
    Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore
    Data Privacy
    May 19, 2026 Jacob Krell

    Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore

    In April 2026 alone, the ShinyHunters extortion group breached ADT (5.5 million customers), Amtrak (2.1 million ...

    Read More: Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore
    Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.
    Vulnerability Management
    May 05, 2026 Jacob Krell

    Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.

    Mandiant's M-Trends 2026 report puts estimated mean time to exploit at negative seven days. That number should reset ...

    Read More: Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.
    When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance
    Prompt Injection
    Apr 30, 2026 Hannah Perez

    When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance

    When AI Billing Breaks Trust: Lessons from the Claude Code Backlash AI adoption is accelerating, but trust is still ...

    Read More: When AI Billing Breaks Trust: What the Claude Code Backlash Says About AI Governance
    From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield
    Cybersecurity
    Apr 29, 2026 Suzu Labs

    From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield

    Cybersecurity doesn’t start with tools, it starts with mindset. In this episode featuring Aaron Colclough, we get a ...

    Read More: From Army Ranger to Ethical Hacker: What Cybersecurity Can Learn from the Battlefield
    When Elite Cyber Teams Can't Crack Web Security
    Cybersecurity
    Apr 23, 2026 Jacob Krell

    When Elite Cyber Teams Can't Crack Web Security

    HTB's 2025 benchmark tested 796 security teams. Only 21% passed web security challenges. The Security Illusion Security ...

    Read More: When Elite Cyber Teams Can't Crack Web Security
    The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them
    Cybersecurity
    Apr 22, 2026 Jacob Krell

    The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them

    In today's security landscape, some of the most dangerous vulnerabilities aren't flagged by automated scanners at all. ...

    Read More: The Invisible Threat: Business Logic Flaws in Modern Applications and Why Scanners Miss Them
    Suzu Labs Acquires Emulated Criminals
    Apr 20, 2026 Hannah Perez

    Suzu Labs Acquires Emulated Criminals

    Bridging the gap between theory and the threat reality, Suzu Labs is proud to announce the acquisition of Emulated ...

    Read More: Suzu Labs Acquires Emulated Criminals
    The Wall Around Claude 4.7 Does Not Extend to Dread
    Cybersecurity
    Apr 17, 2026 Suzu Labs

    The Wall Around Claude 4.7 Does Not Extend to Dread

    Anthropic released Claude Opus 4.7 on April 16, 2026 with automated cybersecurity safeguards and a Cyber Verification ...

    Read More: The Wall Around Claude 4.7 Does Not Extend to Dread
    The Engagement Ratchet: How YouTube, Instagram, and Amazon Trained Users to Accept Less Control
    youtube
    Apr 10, 2026 Jacob Krell

    The Engagement Ratchet: How YouTube, Instagram, and Amazon Trained Users to Accept Less Control

    Earlier this year, YouTube began rolling out a row of algorithmically recommended videos at the top of the ...

    Read More: The Engagement Ratchet: How YouTube, Instagram, and Amazon Trained Users to Accept Less Control
    The AI Revolution: How Jobs Will Change by 2030
    Cybersecurity
    Apr 07, 2026 Suzu Labs

    The AI Revolution: How Jobs Will Change by 2030

    Host Phillip Wylie sits down with Nicolas Chaillan to discuss the sobering reality of AI replacement, the critical need ...

    Read More: The AI Revolution: How Jobs Will Change by 2030
    The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?
    Generative AI
    Apr 01, 2026 Hannah Perez

    The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?

    In late 2024, Sydney tech entrepreneur Paul Conyngham was told his rescue dog, Rosie, had months to live. She was ...

    Read More: The Rosie Protocol: Is AI-Driven Personalized Medicine Finally Here?
    From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone
    Cybersecurity
    Mar 30, 2026 Suzu Labs

    From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone

    The world of cybersecurity has undergone a massive transformation in just a few decades. In this episode of Simply ...

    Read More: From Analog Hacks to Agentic AI: The Evolution of Offensive Security with Denis Calderone
    While TSA Made Headlines, CISA Went Dark
    Critical Infrastructure
    Mar 30, 2026 Jacob Krell

    While TSA Made Headlines, CISA Went Dark

    The Department of Homeland Security has been partially shut down for over 45 days. In that time, 460 TSA officers have ...

    Read More: While TSA Made Headlines, CISA Went Dark
    The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks
    AI Security
    Mar 30, 2026 Suzu Labs

    The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks

    In cybersecurity, we often operate in silos. The red team breaks things, the blue team fixes them, and management ...

    Read More: The Purple Team Advantage: Bridging the Gap Between Hacking and Management with Chris Marks
    Claude Mythos and the Cybersecurity Risk That Was Already Here
    Threat Intelligence
    Mar 27, 2026 Jacob Krell

    Claude Mythos and the Cybersecurity Risk That Was Already Here

    On March 26, Anthropic confirmed the existence of Claude Mythos, an unreleased AI model described internally as "a step ...

    Read More: Claude Mythos and the Cybersecurity Risk That Was Already Here
    BPFdoor in Telecom Networks: The FCC Is Securing the Edge, but China's Hackers Are Already Past It
    Critical Infrastructure
    Mar 26, 2026 Mike Bell

    BPFdoor in Telecom Networks: The FCC Is Securing the Edge, but China's Hackers Are Already Past It

    Rapid7's research reveals China-linked kernel implants deep inside telecom signaling infrastructure. Here's what ...

    Read More: BPFdoor in Telecom Networks: The FCC Is Securing the Edge, but China's Hackers Are Already Past It
    Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026
    Cybersecurity
    Mar 23, 2026 Hannah Perez

    Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026

    We are incredibly proud to announce a monumental achievement. At this year’s Global InfoSec Awards 2026, hosted by ...

    Read More: Securing the AI Frontier: Suzu Labs Sweeps 4 Global InfoSec Awards 2026
    From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity
    Cybersecurity
    Mar 17, 2026 Suzu Labs

    From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity

    In the world of cybersecurity, we often talk about "gatekeeping" or the "skills gap," but rarely do we find individuals ...

    Read More: From Cockpits to Code: Josh Mason on Bridging the Gap Between Military and Cybersecurity
    Simply Offensive Podcast: The Future of Pentesting: AI, Automation, and Better Reporting with Dan DeCloss
    Cybersecurity
    Mar 16, 2026 Phillip Wylie

    Simply Offensive Podcast: The Future of Pentesting: AI, Automation, and Better Reporting with Dan DeCloss

    The Future of Pentesting: AI, Automation, and Better Reporting with Dan DeCloss In this episode of Simply Offensive, ...

    Read More: Simply Offensive Podcast: The Future of Pentesting: AI, Automation, and Better Reporting with Dan DeCloss
    From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time
    Critical Infrastructure
    Mar 13, 2026 Denis Calderone

    From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time

    On March 12, medical technology giant Stryker confirmed a cyberattack that wiped devices across 79 countries. The ...

    Read More: From Silence to Strike: Tracking Iran's Cyber Escalation in Real Time
    Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation
    Social Engineering
    Mar 09, 2026 Suzu Labs Intelligence

    Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation

    Executive Summary Even Realities markets its G2 smart glasses as the privacy-conscious alternative to Meta Ray-Bans. ...

    Read More: Internal Analysis: Even Realities G2 Smart Glasses Security & Privacy Investigation
    The Company Reviewing Your Meta Glasses Footage Has a Security Problem
    Threat Intelligence
    Mar 06, 2026 Mike Bell

    The Company Reviewing Your Meta Glasses Footage Has a Security Problem

    Last week, Swedish journalists revealed that Meta sends video footage from Meta Ray-Ban smart glasses to human data ...

    Read More: The Company Reviewing Your Meta Glasses Footage Has a Security Problem
    The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking
    CTF
    Mar 03, 2026 Jacob Krell

    The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking

    View White Paper Abstract: Agentic AI systems are compressing competitive hacking timelines faster than the ...

    Read More: The Death of the CTF: How Agentic AI Is Reshaping Competitive Hacking
    Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell
    Cybersecurity
    Mar 03, 2026 Phillip Wylie

    Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell

    In this thought-provoking episode of Simply Offensive, host Philip Wylie sits down with Jacob Krell, a penetration ...

    Read More: Simply Offensive Podcast: AI Killed the CTF Star with Jacob Krell
    Anthropic and Claude: 2026 AI Powerhouse
    Supply Chain Security
    Feb 26, 2026 Hannah Perez

    Anthropic and Claude: 2026 AI Powerhouse

    In early 2026, the image of Anthropic as a cautious, safety-oriented "research lab" has effectively been replaced by ...

    Read More: Anthropic and Claude: 2026 AI Powerhouse
    Logo copy 3-1

    Fortified Security. Intelligent Innovation.

    +1 (702) 766-6257
    P.O. Box 750111
    Las Vegas, Nevada 89136

    Follow Us

    About

    • About Us
    • Contact
    • FAQ's

    Solutions

    • AI Advisory
    • AI Assessment
    • Offensive Security
    • Defensive Security
    • Privacy Engineering
    • Adversarial Operations
    • Social Engineering
    • Products

    Resources

    • Blog
    • In The Media
    • Podcasts
    © 2026 All rights reserved.
    • Privacy Policy
    • Terms & Conditions