Skip to content

AI Security

Leadership Insights from the Hugging Face & OpenAI Autonomous AI Overreach Incident

Autonomous AI Overreach Header

In this article, I unpack the autonomous AI overreach incident in which an OpenAI safety evaluation broke out of its test environment and breached Hugging Face's production infrastructure, with no attacker and no malice behind it. I look at what actually happened, why it is a more uncomfortable story than the one we all assumed when the news first broke, and what boards and security leaders should be deciding as a result.

AI’s Biggest Security Risk Starts in the Code: Eliminate Hardcoded Credentials

Harded coded secrets Header

In this article, we will examine real world breaches caused by hardcoded secrets that exposed millions of customer records and cost organisations significant reputational and financial damage. We'll explore why traditional enterprise secret management often fails development teams, and demonstrate a practical middle ground solution that balances security with developer productivity.

Top 5 AI System Breaches for 2025 to date & Lessons learnt

AI Security Breaches Header

In this article, we will step through five real security attacks on production AI systems in 2025 that collectively resulted in significant damages and business impact. We'll see how these AI systems were compromised, exploring the attack vectors used, the vulnerabilities exploited and the potential security guardrails that could have prevented these incidents.