Oct 7, 2026 11 min read Research Findings The Duck Song: Malicious Solidity Extensions Hide a Cross-Platform Payload in an MP4 By: Tamir Isaschar
Sep 8, 2026 9 min read Research Findings When “Auto-Signing” Sends Your Wallet: A Malicious MCP Server on npm By: Tamir Isaschar
Aug 24, 2026 5 min read Research Findings SaassyCode Repackaged: Four New VS Code Extensions and a New Delivery Chain By: Tamir Isaschar
Aug 4, 2026 4 min read Research Findings CodeRelay: 12 VS Code Extensions Disguised as Developer Tools By: Tamir Isaschar
Jul 27, 2026 2 min read Company News Introducing AgentMesh Access Tiers: Building Together, Growing Together By: Imri Goldberg
Jul 21, 2026 5 min read Research Findings Analyzing Two Malicious VS Code Extensions Hidden Behind a WordPress Tool By: Tamir Isaschar
Jun 29, 2026 3 min read Research Findings The Source Looked Clean. The Binary Wasn't. By: Tamir Isaschar
Jun 15, 2026 5 min read Research Findings Revoking Your Token Won't Save You: The VS Code Attack That Installs a Permanent GitHub Backdoor By: Tamir Isaschar
Jun 12, 2026 Company News Knostic Featured Across Three Categories in CSA's Agentic AI Security Innovator Market Map By: Imri Goldberg
Jun 11, 2026 5 min read Research Findings SaassyCode Post-Disclosure Wave: Five New Extensions, 32,000+ Total Installs By: Imri Goldberg
Jun 8, 2026 GenAI Threats Knostic’s AgentMesh Joins VirusTotal's Crowdsourced AI Program By: Imri Goldberg
Jun 8, 2026 12 min read Research Findings Update and Infect: How the SaassyCode Campaign Grew from Two Extensions to Nineteen By: Imri Goldberg
Jun 2, 2026 2 min read New Malicious VS Code Extension Backdoor: Remote Text Fetcher By: Imri Goldberg
Jun 1, 2026 3 min read GenAI Threats New VS Code extensions attack campaign: SaassyCode - ManageRBLX & TrelloBlox By: Gadi Evron
May 28, 2026 3 min read Biggest Takedown of 2026 to Date? Glassworm: Targeting Developers at Scale By: Gadi Evron
May 21, 2026 4 min read Research Findings GitHub Supply Chain Breach: Nx Console 18.95.0 (Analysis) By: Gadi Evron
May 20, 2026 6 min read Research Findings Agentic Threat Intelligence Feed - VS Code Extensions By: Gadi Evron
May 20, 2026 3 min read The GitHub Breach and VS Code Extensions: Threat Intelligence and Agentic Defense By: Gadi Evron
Apr 14, 2026 2 min read The "AI Vulnerability Storm": A CISO's Playbook for the Mythos Era By: Gadi Evron
Mar 2, 2026 5 min read OpenAnt: Open Sourcing Knostic’s LLM-based Vulnerability Discovery Product By: Gadi Evron
Feb 5, 2026 Coding Agents, Assistants, and MCP Security Agents Are Hiring Humans. Who Is Securing the Them? By: Imri Goldberg
Feb 5, 2026 2 min read Coding Agents, Assistants, and MCP Security The Mechanics Behind MoltBook: Prompts, Skills & Timers By: Imri Goldberg
Feb 5, 2026 Coding Agents, Assistants, and MCP Security Prevent Destructive OpenClaw Commands By: Imri Goldberg
Feb 5, 2026 3 min read Coding Agents, Assistants, and MCP Security Building openclaw-shield: Lessons Learned Securing OpenClaw Agents By: Imri Goldberg
Jan 29, 2026 8 min read Coding Agents, Assistants, and MCP Security What to Do When Cursor Doesn’t Follow the Rules By: Miroslav Milovanovic
Jan 26, 2026 9 min read Shadow AI How to Build a Shadow AI Detection Program in 90 Days By: Miroslav Milovanovic
Jan 20, 2026 7 min read Shadow AI 6 Biggest Shadow AI Risks and How to Mitigate Them By: Miroslav Milovanovic
Jan 19, 2026 9 min read Shadow AI 10 Best Shadow AI Detection Tools for 2026 By: Miroslav Milovanovic
Jan 14, 2026 8 min read Coding Agents, Assistants, and MCP Security Securing Multi-Agent AI Development Systems By: Miroslav Milovanovic
Jan 13, 2026 5 min read Comparison Bright Security vs. Corridor: Platform Comparison By: Miroslav Milovanovic
Jan 8, 2026 10 min read Coding Agents, Assistants, and MCP Security Secret Sprawl: the AI Supply Chain’s Hidden Risk By: Miroslav Milovanovic
Jan 7, 2026 8 min read Coding Agents, Assistants, and MCP Security How to Vet and Monitor MCP Servers in the Enterprise By: Miroslav Milovanovic
Jan 6, 2026 7 min read Coding Agents, Assistants, and MCP Security Managing Credential Sprawl Across AI Coding Agents By: Miroslav Milovanovic
Dec 30, 2025 5 min read Coding Agents, Assistants, and MCP Security The Hidden Danger of Shadow AI Coding Tools By: Miroslav Milovanovic
Dec 29, 2025 7 min read Coding Agents, Assistants, and MCP Security Context Window Poisoning in AI Coding Assistants By: Miroslav Milovanovic
Dec 24, 2025 8 min read Coding Agents, Assistants, and MCP Security Primer: IDE Secrets Management By: Miroslav Milovanovic
Dec 23, 2025 6 min read Coding Agents, Assistants, and MCP Security How to Detect and Block Malicious IDE Extensions By: Miroslav Milovanovic
Dec 22, 2025 8 min read Coding Agents, Assistants, and MCP Security Prompt Injection Meets the IDE: AI Code Manipulation By: Miroslav Milovanovic
Dec 18, 2025 7 min read Coding Agents, Assistants, and MCP Security IDE Extensions: The Weakest Link in AI Coding Security By: Miroslav Milovanovic
Dec 17, 2025 4 min read Research Findings AI Safety vs. AI Security: Explaining the Differences By: Imri Goldberg
Dec 16, 2025 2 min read Research Findings From .env to Leakage: Mishandling of Secrets by Coding Agents By: Imri Goldberg
Dec 10, 2025 8 min read Coding Agents, Assistants, and MCP Security Playbook: MCP Deployment and AI Integration By: Miroslav Milovanovic
Dec 9, 2025 8 min read Coding Agents, Assistants, and MCP Security Why MCP Governance Isn’t Optional Anymore By: Miroslav Milovanovic
Dec 8, 2025 2 min read Coding Agents, Assistants, and MCP Security Claude Code Automatically Loads .env Secrets, Without Telling You By: Dor Munis
Dec 4, 2025 6 min read Coding Agents, Assistants, and MCP Security MCP Security Issues and Best Practices You Need to Know By: Miroslav Milovanovic
Dec 3, 2025 7 min read Coding Agents, Assistants, and MCP Security AI Coding Agents: Deployment and Adoption Playbook By: Miroslav Milovanovic
Dec 2, 2025 6 min read AI Data Security AI Coding Agent Governance Policies That Work By: Miroslav Milovanovic
Dec 1, 2025 8 min read AI Data Security Top 10 AI Security Solutions in 2026 By: Miroslav Milovanovic
Dec 1, 2025 7 min read Coding Agents, Assistants, and MCP Security AI Coding Agent Security: Threat Models and Protection Strategies By: Miroslav Milovanovic
Nov 26, 2025 3 min read AI Data Security Inside the Shai-Hulud 2.0 npm IDE Attack Wave By: Imri Goldberg
Nov 26, 2025 4 min read AI Data Security How AI Assistants Leak Secrets in Your IDE By: Imri Goldberg
Nov 24, 2025 6 min read AI Data Security AI Data Poisoning: Threats, Examples, and Prevention By: Miroslav Milovanovic
Nov 19, 2025 8 min read AI Data Security AI Usage Control (AI-UC): How to Prevent AI Misuse By: Miroslav Milovanovic
Nov 18, 2025 2 min read Research Findings First Large-Scale AI-Orchestrated Cyber Espionage Campaign By: Imri Goldberg
Nov 17, 2025 7 min read AI Data Security Building an AI Data Security Strategy From Scratch By: Miroslav Milovanovic
Nov 13, 2025 4 min read AI Governance AI Supply Chain Risks: MCP, Extensions, & Coding Assistants By: Imri Goldberg
Nov 12, 2025 7 min read Attribute-based Access Control The 6 Best Attribute-Based Access Control (ABAC) Tools for AI By: Miroslav Milovanovic
Nov 11, 2025 10 min read AI Data Security Top Vibe Coding Security Risks and How to Fix Them By: Miroslav Milovanovic
Nov 10, 2025 8 min read AI Governance The 20 Biggest AI Governance Statistics and Trends of 2025 By: Miroslav Milovanovic
Nov 6, 2025 9 min read AI Data Governance How to Measure and Audit AI Data Governance By: Miroslav Milovanovic
Nov 5, 2025 5 min read Research Findings Deep Dive: Cursor Code Injection Runtime Attacks By: Imri Goldberg
Nov 4, 2025 8 min read Attribute-based Access Control 5 Key Benefits of Attribute-Based Access Controls By: Miroslav Milovanovic
Nov 3, 2025 7 min read Safe AI Deployment The CISO’s Guide to Safe Deployment of AI Coding Assistants By: Miroslav Milovanovic
Oct 29, 2025 7 min read AI Data Governance Real AI Governance Examples You Need to Know By: Miroslav Milovanovic
Oct 28, 2025 7 min read AI Data Security Governance for your AI Coding Assistant By: Miroslav Milovanovic
Oct 23, 2025 6 min read Attribute-based Access Control Attribute-based Access Control Policy for Enterprise AI By: Miroslav Milovanovic
Oct 22, 2025 10 min read AI Data Governance AI Data Governance Guide for Enterprise Teams [2025] By: Miroslav Milovanovic
Oct 21, 2025 2 min read Research Findings Zero Width Unicode Characters: the Risks you Can't See By: Imri Goldberg
Oct 19, 2025 Research Findings Primer: How to Spot and Analyze Malicious VS Code Extensions By: Imri Goldberg
Oct 19, 2025 Research Findings Open Marketplaces: The Good, the Bad, and The Dangerous By: Imri Goldberg
Oct 19, 2025 Research Findings New Malware, New Problems for IDEs and AI Coding Agents By: Imri Goldberg
Oct 17, 2025 Company News Knostic Named the 2025 Gartner Cool Vendor in AI Cybersecurity Governance By: Imri Goldberg
Oct 16, 2025 7 min read Attribute-based Access Control Attribute-Based Access Control (ABAC) Implementation Guide By: Miroslav Milovanovic
Oct 15, 2025 7 min read AI Data Governance Primer: AI Governance Roles and Responsibilities By: Miroslav Milovanovic
Oct 10, 2025 7 min read AI Governance 5 Reasons Why AI Governance is Important By: Miroslav Milovanovic
Oct 9, 2025 Company News Knostic Named a 2025 SINET16 Innovator for Leadership in Enterprise AI Security By: Imri Goldberg
Oct 9, 2025 Research Findings 99% of Publicly Shared AI Chats are Safe, New Study Finds By: Shayell Aharon
Oct 3, 2025 7 min read AI Data Governance AI Governance Strategy That Stops Leaks, Not Innovation By: Miroslav Milovanovic
Oct 1, 2025 8 min read AI Data Governance AI Data Labeling Primer: From Gold Sets to Great Models By: Miroslav Milovanovic
Sep 30, 2025 7 min read AI Data Governance Red Team, Go! Preventing Oversharing in Enterprise AI By: Miroslav Milovanovic
Sep 26, 2025 8 min read Persona Based Access Control Persona-Based Access Control (PBAC): What You Need to Know By: Miroslav Milovanovic
Sep 25, 2025 8 min read AI Data Security Data Security Posture Management Strategy for GenAI By: Miroslav Milovanovic
Sep 24, 2025 3 min read Research Findings Prompt||GTFO Season 1 AI Security Conversations By: Imri Goldberg
Sep 19, 2025 8 min read AI Data Security Prompt Injection Basics: Types, Examples and Prevention By: Miroslav Milovanovic
Sep 15, 2025 7 min read Attribute-based Access Control 6 Attribute-Based Access Control (ABAC) Examples and Use Cases By: Miroslav Milovanovic
Sep 13, 2025 8 min read AI Data Security How to Secure AI Coding Assistants and Protect Your Codebase By: Miroslav Milovanovic
Sep 11, 2025 8 min read Attribute-based Access Control RBAC vs. ABAC: Differences, Use Cases, Migration Strategy By: Miroslav Milovanovic
Sep 9, 2025 11 min read Attribute-based Access Control ABAC Basics: What Is Attribute-Based Access Control? By: Miroslav Milovanovic
Sep 8, 2025 3 min read Copilot Data Security LLMs are Fabricating Enterprise Data: A Real-Case Scenario By: Shayell Aharon
Sep 5, 2025 6 min read AI Data Security Primer: AI Security Posture Management (AI-SPM) By: Miroslav Milovanovic
Sep 4, 2025 7 min read AI Data Governance AI Regulatory Compliance Starts With Data Control By: Miroslav Milovanovic
Sep 3, 2025 9 min read AI Data Governance AI Governance Policy Made Simple: 7 Steps to Get It Right By: Miroslav Milovanovic
Aug 28, 2025 11 min read AI Data Security AI Data Security: A Practical Guide for Modern Enterprises By: Miroslav Milovanovic
Aug 26, 2025 6 min read Persona Based Access Control The 5 Best Persona-Based Access Control (PBAC) Software Tools By: Miroslav Milovanovic
Aug 25, 2025 6 min read AI Data Security The 10 Biggest Statistics and Trends for GenAI Security By: Miroslav Milovanovic
Aug 22, 2025 10 min read AI Data Governance 14 Best AI Governance Platforms and Tools in 2025 By: Miroslav Milovanovic
Aug 21, 2025 6 min read Safe AI Deployment AI Adoption in Government & the Department of Defense By: Miroslav Milovanovic
Aug 20, 2025 6 min read Safe AI Deployment AI Evaluations Ecosystem: Lessons from America’s AI Action Plan By: Miroslav Milovanovic
Aug 19, 2025 6 min read Persona Based Access Control The Rundown: Attribute-Based (ABAC) vs. Persona-Based Access Controls (PBAC) By: Miroslav Milovanovic
Aug 18, 2025 6 min read Safe AI Deployment Enterprise GenAI Adoption Mandate: Lessons from America’s AI Action Plan By: Miroslav Milovanovic
Aug 14, 2025 Research Findings GPT-5 “Retry” Behavior and Cross-Session Context Contamination By: Shayell Aharon
Aug 12, 2025 2 min read AI Data Governance How Mental Models are Transforming AI Chaos into Clarity By: Imri Goldberg
Aug 7, 2025 6 min read Persona Based Access Control Know your Access Controls: Role-Based (RBAC) vs. Persona-Based (PBAC) By: Miroslav Milovanovic
Aug 5, 2025 6 min read AI Data Governance 10 AI Governance Best Practices for Enterprise Teams By: Miroslav Milovanovic
Aug 4, 2025 2 min read AI Data Governance AI as an Enzyme to Transform Critical Infrastructure By: Imri Goldberg
Aug 1, 2025 6 min read AI Data Security AI Observability: What You Need to Know By: Miroslav Milovanovic
Aug 1, 2025 6 min read Persona Based Access Control Persona-based Access Control Implementation in Just 6 Steps By: Miroslav Milovanovic
Jul 30, 2025 6 min read Glean Data Security and Governance Glean Secures LLM Search. Who Stops Oversharing? By: Miroslav Milovanovic
Jul 25, 2025 8 min read Persona Based Access Control Enterprise Guide To: Persona-Based Access Controls By: Miroslav Milovanovic
Jul 23, 2025 7 min read AI Data Security Detect and Control: Shadow AI in the Enterprise By: Miroslav Milovanovic
Jul 21, 2025 6 min read AI Data Security AI Security Audit: Proving Your GenAI Is Safe and Compliant By: Miroslav Milovanovic
Jul 17, 2025 2 min read Research Findings Automating the MCP Servers Discovery with Claude Sonnet 4 By: Imri Goldberg
Jul 17, 2025 2 min read Research Findings Exposing the Unseen: Mapping MCP Servers Across the Internet By: Imri Goldberg
Jul 16, 2025 6 min read AI Data Governance Identity and Access Management for the GenAI Era By: Miroslav Milovanovic
Jul 7, 2025 6 min read AI Data Governance The Right AI Guardrails Keep Enterprise LLMs Safe and Compliant By: Miroslav Milovanovic
Jul 4, 2025 6 min read Safe AI Deployment Data Leakage Happens with GenAI. Here’s How to Stop It. By: Miroslav Milovanovic
Jul 2, 2025 7 min read Safe AI Deployment How to Ensure Safe GenAI Deployments in the Enterprise By: Miroslav Milovanovic
Jul 1, 2025 6 min read AI Data Security AI Data Classification: Static Labels, Dynamic Risk Control and Beyond By: Miroslav Milovanovic
Jun 30, 2025 Enterprise AI Search Enterprise AI Tools Know Too Much: The CISO’s Dillema By: Imri Goldberg
Jun 30, 2025 3 min read AI Data Governance 4 Best Strategies to Secure Model Context Protocol By: Imri Goldberg
Jun 30, 2025 AI Data Governance How Model Context Protocol (MCP) Servers Communicate By: Imri Goldberg
Jun 30, 2025 2 min read AI Data Governance What is a “Model Context Protocol” Server in GenAI By: Imri Goldberg
Jun 26, 2025 6 min read Purview Data Security and Governance Why Microsoft Purview Needs Help Preventing Oversharing By: Miroslav Milovanovic
Jun 26, 2025 6 min read AI Data Security Explainability in AI Search: Explained By: Miroslav Milovanovic
Jun 20, 2025 7 min read AI Data Security Solving the Very-Real Problem of AI Hallucination By: Miroslav Milovanovic
Jun 17, 2025 6 min read AI Data Security Adversarial AI Attacks & How to Stop Them By: Miroslav Milovanovic
Jun 13, 2025 5 min read AI Data Security How LLM Pentesting Enables Prompt-to-Patch Security By: Miroslav Milovanovic
Jun 10, 2025 6 min read AI Monitoring AI Monitoring in Enterprise Search: Safeguard Knowledge at Scale By: Miroslav Milovanovic
Jun 6, 2025 10 min read Copilot Data Security Microsoft Copilot data security and governance: A practical guide for CISOs By: Miroslav Milovanovic
Jun 4, 2025 Safe AI Deployment What to Expect When You're Expecting Your GenAI Baby By: Imri Goldberg
Jun 3, 2025 8 min read AI Data Security AI Access Control: Safeguarding GenAI Across the Enterprise By: Miroslav Milovanovic
May 28, 2025 7 min read AI Data Governance AI Discretion: Teaching Machines the Human Concept of ‘Need-to-Know By: Miroslav Milovanovic
May 23, 2025 7 min read AI Data Security AI Data Security Risks and How to Minimize Them By: Miroslav Milovanovic
May 14, 2025 8 min read AI Data Governance Enterprise AI Oversharing: Hidden Hazards & Quick Fixes By: Miroslav Milovanovic
Apr 23, 2025 2 min read Company News SVCI: "Why We Invested in Knostic" - Leading CISOs' Thesis on AI Security By: Imri Goldberg
Apr 10, 2025 AI Data Security Enterprise AI Search Tools: Addressing the Risk of Data Leakage By: Imri Goldberg
Apr 8, 2025 2 min read Company News Knostic Top 10 Finalist in RSAC™ Innovation Sandbox Contest: Secures Additional $5 Million Investment By: Imri Goldberg
Mar 20, 2025 Research Findings How We Discovered an Attack in Copilot's File Permissions By: Imri Goldberg
Mar 5, 2025 2 min read Company News Ending LLM Oversharing: Knostic Raises $11MM to Secure Enterprise AI By: Gadi Evron
Feb 3, 2025 2 min read Research Findings DeepSeek’s cutoff date is July 2024: We extracted DeepSeek’s system prompt By: Imri Goldberg
Jan 29, 2025 3 min read Research Findings Exposing Microsoft Copilot's Hidden System Prompt: AI Security Implications By: Imri Goldberg
Jan 13, 2025 2 min read AI Data Governance How Knostic Maps to Gartner’s AI TRiSM Framework By: Imri Goldberg
Nov 26, 2024 8 min read AI Data Security LLM Flowbreaking: A New Type of AI Attack Tested By: Gadi Evron
Nov 14, 2024 AI Data Security Understanding the Differences Between Jailbreaking and Prompt Injection By: Imri Goldberg
Oct 28, 2024 AI Data Governance Merging Mental Models Part 3: The OSI Model + Cyber Defense Matrix By: Sounil Yu
Oct 26, 2024 AI Data Governance Merging Mental Models Part 4: The DIKW Pyramid + Cyber Defense Matrix By: Admin
Aug 29, 2024 8 min read AI Data Security Jailbreaking Social Engineering via Adversarial Digital Twins By: Imri Goldberg
Jul 14, 2024 Company News Knostic in Final Four of 2024 Black Hat Startup Spotlight By: Imri Goldberg
Jun 2, 2024 3 min read AI Data Security AI-Powered Social Engineering: An Increasing Threat By: Imri Goldberg
May 28, 2024 2 min read AI Data Governance Merging Mental Models Part 2: The Cyber Defense Matrix By: Sounil Yu
May 16, 2024 3 min read Copilot Data Security Unlocking Microsoft Copilot Without Compromise By: Imri Goldberg
May 9, 2024 5 min read GenAI Threats AI Attacks: Novel or Iterations of Existing Challenges? By: Imri Goldberg
Apr 22, 2024 AI Data Governance Merging Mental Models Part 1: Discovering Known Unknowns By: Sounil Yu
Apr 11, 2024 2 min read Secure GenAI Adoption Building Guardrails for Autonomic Security in 2024 By: Sounil Yu
Mar 19, 2024 GenAI Research Findings LLM Pen Testing Tools for Jailbreaking and Prompt Injection By: Gadi Evron