Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Latest posts

How Medical Dictation Technology Can Save You Time Without Creating New Risks

Healthcare professionals spend countless hours documenting care, often long after the patient interaction has ended. Between clinical notes, treatment plans, referrals, and compliance requirements, documentation can become one of the most time-consuming parts of the job. Medical dictation technology offers a way to reduce that burden by turning spoken information into structured records. However, saving time only matters when accuracy, privacy, and workflow compatibility remain intact.

How Owners Can Protect Their Time While Growing Their Investments

Owning rental property is one of those wealth-building moves that sounds simple from the outside. Buy the property, rent it out, collect checks, repeat. Then reality shows up with a leaking faucet, a late rent payment, three vendor texts, and a lease renewal you forgot was due Friday.

Episode 22 - The CTO's Case for AI: Fixing Bugs, Vibe Coding, and the Future of Dev Jobs

In this episode, host Richard Bejtlich sits down with Steve Smoot, Chief Technical Officer at Corelight, to explore how AI is reshaping the daily work of engineers and defenders alike. Steve traces his path from early employee to CTO and explains why the flexibility of Open NDR—where a simple ten-line Zeek or Spicy script can solve a customer's edge case without a full product release—remains a core advantage. The conversation digs into practical realities of working with large language models.

SEC Advances Crypto Asset Capital Formation Framework

On August 18, 2026, the SEC proposed Regulation Crypto Assets1, a new regulatory framework intended to create a tailored registration exemption regime for certain crypto asset offerings while maintaining core investor protection requirements. The proposal represents a significant evolution in the SEC's approach to digital assets and could provide the clearest pathway to date for crypto issuers seeking to raise capital in the United States.

Ship a Working Detection Pipeline in One Workshop: Headless SOC with Grid by LimaCharlie

By the end of this hands-on workshop, you will have deployed a working detection pipeline, ingested a cloud log source, and shipped a bespoke dashboard app, all using Claude Code integrated with Grid by LimaCharlie. Along the way, you will see how Grid compresses the traditional SIEM/EDR/SOAR stack into a single automated workspace. We go well beyond standard EDR and SIEM use cases. What to expect.

ESP32 Marauder tutorial for WPA2 deauthentication and handshake capture

Wireless networks are often assumed to be secure once WPA2 is enabled. In practice, that assumption is only partly true. While WPA2 remains widely used and is not inherently broken, the real security of a wireless network depends heavily on how it is configured, how client devices behave, and how strong the Pre-Shared Key (PSK) actually is. As a result, the protocol label alone can sometimes create a misleading sense of security.

The AI challenge most companies don't have

A few months ago, I attended a GC AI Summit hosted by Harvard Law School. As expected, there was plenty of discussion about AI tools, governance frameworks, emerging regulations, and the future of the legal profession. One topic of discussion stood out above the others: Most organizations only need to think about how they deploy AI, whereas we have to think about how we deploy AI and how we develop AI.