Essays
Long-form pieces that knock the security industry's sacred cows over. Meant to change your perspective.
20 posts
Essays
9 min read
"We get pentested so we're secure"
9 min read
Zero-day as a marketing term (and why almost everything is an n-day)
10 min read
Security theatre and the airport
11 min read
MOVEit and the door already open
11 min read
The patch you can't apply
11 min read
"We use AWS so we're secure"
11 min read
Security awareness theatre: why training your people doesn't work
11 min read
The insider nobody saw coming (and mostly doesn't exist)
9 min read
The logs nobody reads, and why you still need them
8 min read
MFA fatigue and the teenager from Argentina
9 min read
The cyber insurance fairy tale
9 min read
Snowflake and the door you left open yourself
9 min read
The questionnaire that proves nothing but takes three weeks
8 min read
The CrowdStrike weekend and what it taught you about trust
8 min read
NIS2: the reality check your consultant didn't charge for
8 min read
LastPass and the lie of the vault
6 min read
Your backup is a lie your vendor sold you
7 min read
The mediocre hacker and your unremarkable business
7 min read
Compliance theatre: fifty documents, zero defence
7 min read