Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Find Your Security Gaps Before AI Does

Before AI Finds Your Forgotten Data, Find the Security Gaps Around It – AI does not need to bypass security when outdated permissions already provide a path. Ask an enterprise AI assistant to summarize what your organization knows about a customer, project, employee, or acquisition. Within seconds, it may surface years-old files, inactive collaboration spaces, past emails and chats, and documents that were shared more broadly than anyone remembers. No system had to be hacked.

Stronger Teams Build Stronger Cyber Resilience

LevelBlue has been named a U.S. News & World Report 2026–2027 Best Company to Work For, earning recognition across three categories: Best Companies to Work For Overall, Best Companies to Work For in Information Technology, and Best Companies to Work For in the Midwest. We are proud of this recognition because it reflects something central to who we are: our people.

What Claude Mythos Means for Vulnerability Management Programs

If you've been following the cybersecurity conversation over the last several weeks, you've heard some version of the phrase “Claude Mythos changes everything.” It’s dominated the industry news cycles since early April. While the capabilities these stories tout are very much real, I have an issue with the framing being wrong when it comes to vulnerability management. There’s a narrative that Mythos and other frontier models will find too many vulnerabilities to deal with.

CertKit Private PKI: A private certificate authority without running one yourself

In May I wrote that you probably don’t need private PKI for internal infrastructure, because DNS validation gets a publicly trusted certificate onto hosts that never touch the internet. In June I pointed out that Apple enforces an 825-day cap on private certificates, so your own CA doesn’t even free you from the browser vendors. Two days ago I told you that public client certificates stop renewing in October, and that the replacement is a private certificate authority.

The Fuyao Enterprise: Building an Ad-Fraud Empire with AI and Kids' Coding Blocks

In this post, we will uncover the “Fuyao Enterprise,” a previously unknown, sophisticated and highly modular botnet operating within Android TV boxes. This operation marks a shift in modern ad-fraud, where automated bots fake both clicks and views to defraud advertisers and ad-networks. While deploying novel tactics and techniques, Fuyao managed to escape public research for several years. Now, its operators openly advertise their network of over 120,000 “AI digital humans.".

Emerging Threat: (July 2026 Release) Apache Traffic Server Denial of Service and Access Control Bypass

The July 2026 Apache Traffic Server security release addresses a large batch of vulnerabilities across the proxy core and its plugin ecosystem, disclosed on July 29, 2026 and fixed in versions 9.2.15 and 10.1.4. Published counts of the batch differ. The Apache Traffic Server project describes the release as addressing 34 CVEs, while Belgium’s Centre for Cybersecurity puts the figure at 38 vulnerabilities.

The 14-Hour Recovery: Rethinking Healthcare Cyber Resilience

Ransomware recovery for healthcare IT depends on isolated recovery environments (IRE) and the ability to find clean data for patient safety. Jeremy Cathey shares insights on building cyber resilience by moving away from traditional disaster recovery toward a model that handles systemic cyberattacks. He details the three essential zones of an IRE: the clean room for forensics, the staging zone for validation, and the standby production environment where clinicians resume work.