Investigating Three Real-World Incidents in Our Cybersecurity Evaluations
This post examines three incidents in which a Claude model, while interacting with third-party cybersecurity evaluation environments, reached the internet and gained unauthorised access to real systems. It provides practical case studies of evaluation environments crossing into production and shares remediation lessons that other AI labs can apply.
Ten Takeaways From IBM's 2026 Cost of a Data Breach Report
This article summarises IBM's 21st annual Cost of a Data Breach Report, which analysed 602 breaches across 17 industries between March 2025 and February 2026. It provides a data-driven view of breach costs that can support risk quantification, cybersecurity investment, and cyber-insurance decisions.
Why Security Fundamentals Still Matter in the Age of AI
Using the example of the Mythos AI model discovering thousands of previously unknown vulnerabilities, this article examines how AI-related security concerns can trigger regulatory and financial consequences. It emphasises that strong security hygiene, processes, and foundational controls remain essential even as AI strengthens both attackers and defenders.