AppNets
Friday, 4 September, 2026
Trending
Philip Griffiths
Galeal Zino
- Mark Jaffe
- Updated: September 4, 2026
This week's Reachability Watch covers 398 new CVEs, a WWBN AVideo admin token that never expires, and how Identity-First Reachability closes the...
- Philip Griffiths
- Updated: September 4, 2026
See why Zero Trust guidance leads to identity-defined reachability—and how an open-source lab turns the model into operational evidence....
- Jack Poller
- Updated: September 1, 2026
The 2026 Verizon DBIR found vulnerability exploitation beat stolen credentials for the first time in 19 years. Here's what that means for...
- Galeal Zino
- Updated: September 1, 2026
The 2026 Verizon DBIR found vulnerability exploitation beat stolen credentials for the first time in 19 years. Here's what that means for...
- Jack Poller
- Updated: September 1, 2026
Agents calling other agents create traffic your segmentation was never built to see. Here's why east-west AI connections are the containment gap...
- Galeal Zino
- Updated: August 31, 2026
OpenAI agents used a stolen Tailscale key to breach Hugging Face. See how NetFoundry's zero trust overlay changes what a stolen credential...
- Mark Jaffe
- Updated: August 28, 2026
NetFoundry's Reachability Watch tracks new network CVEs and actively exploited KEVs every week — see what identity-first reachability would have stopped....
- Jack Poller
- Updated: August 27, 2026
VPNs grant network-level access through internet-facing inbound ports — the opposite of Zero Trust. Learn why the architecture is unfixable and what...
- Galeal Zino
- Updated: August 26, 2026
The 2026 bulk-power national emergency covers installed BESS, inverters, and their remote access. Here’s how utilities can isolate CATL, BYD, EVE, REPT,...
- Jack Poller
- Updated: August 25, 2026
The critical mcp-remote RCE (CVE-2025-6514, CVSS 9.6) exposes how AI clients over-trust MCP servers — see what identity-first Zero Trust reachability would...
- Jack Poller
- Updated: August 25, 2026
New survey of 200 CISOs and CTOs shows infrastructure vulnerability concerns are highest among the people building AI platforms, not securing them....
- Mark Jaffe
- Updated: August 24, 2026
This week: an 800-CVE Oracle patch day, an unauthenticated AI platform RCE, and what identity-first reachability would have stopped....
- Jack Poller
- Updated: August 20, 2026
The EU AI Act, governance sprawl, and stalled AI ROI have turned AI oversight into a board-level duty. See what executives need...
- Mark Jaffe
- Updated: August 18, 2026
NetFoundry's Reachability Watch tracks new network CVEs and actively exploited KEVs every two weeks — see what identity-first reachability would have stopped....
- Jack Poller
- Updated: August 18, 2026
At A Glance For the past few years, non-human identity has been the kind of problem security teams acknowledged in a slide...
- Galeal Zino
- Updated: August 18, 2026
AI agents ship faster than anyone can review the code. NetFoundry's Galeal Zino argues the fix isn't smarter code review — it's...