Skip to the main content.

Bloggin’!

Turn and face the strange. We have all sorts of helpful posts here to get you leveled up ASAP. From cutting edge changes to best practices, we've got you covered.

Home as an Attack Vector: How Hackers Target Families to Compromise Companies

When attackers want to access your business, they don’t always aim for the server room. Increasingly, they’re finding their way in through overlooked entry points—quiet...

4 min read

Securing the Loop: How to Train Oversight Humans for AI-Era Security

In the frenzied sprint toward AI adoption, every enterprise is bolting generative models onto their operations like carbon-fiber wings on a paper...

5 min read

What Does "Human in the Loop" Mean in AI Security?

The New Frontier of Human Risk: Securing the AI Loop In a world where artificial intelligence is embedded into code review, customer support, cyber...

4 min read

Patch the Human OS: A Roadmap for Programmatic Behavior Change

TL;DR — You don’t “fix” behavior with one training. You engineer it. Treat HumanOS™ like a living system: diagnose → design → reinforce → measure →...

4 min read

Self-Patching with Misinformation: Why People “Update” Themselves with Bad Data

In today’s cyber landscape, everyone is doing their best to stay ahead. But what happens when your people go looking for answers and end up with the...

3 min read

What is Human OS and Why Humans Are the New Endpoints

TL;DR — If devices are patched, your people need a plan too. Humans are now effective endpoints: they hold tokens, make access decisions, route...

3 min read

Proving the Value: A CISO’s Guide to Human Risk ROI for the Boardroom

TL;DR — Human Risk ROI = fewer incidents, faster recovery, and lower cost per mistake. Start with visibility into behavior, readiness, and response...

4 min read

Asymmetric ROI: How One Behavior Change Can Block 10 Technical Vulnerabilities

TL;DR? Behavior is a force-multiplier. The right single behavior change (e.g., phishing-resistant MFA, password manager + unique passwords,...

3 min read

Beyond Awareness: How CISOs Can Drive Behavioral Resilience in 2025

TL;DR? 2025 is the year to operationalize behavioral resilience. Move from “awareness” events to measurable human-risk operations: behaviors,...

3 min read

How to Measure the ROI of Security Awareness and Human Risk Programs

TL;DR? Measure outcomes, not activities. Boards don’t buy “courses completed”; they buy fewer incidents, faster recovery, and lower loss. Track...

3 min read