Dark Pixel Tech
Weekday dispatches on cloud, identity, the edge, and the security of agents. One post. Sources at the bottom. Thin takes stay off the site.
$ head -n 1 /dispatches
full listing →The Hidden Trust Boundaries of MCP: Why mcp-remote Just Dropped Five CVEs
We are rushing to connect our AI agents to everything. The Model Context Protocol (MCP) is the glue making that happen, letting local clients talk to remote …
$ ls -lt /dispatches
31 moreWeekend wrap: Unexpected passkeys, OPM flashbacks, and a Danish data leak
A lot moved over the weekend while we were trying to tune out the noise. We have Entra dropping passkeys on admins who didn’t ask for them, a Pentagon …
From Prompt Injection to Agent Sprawl: A Two-Year AI Security Retrospective
Two years ago, AI security was mostly about preventing chatbots from writing bad poetry or circumventing safety filters. Today, we are trying to stop autonomous …
Spoofing Tim Cook: Why iCloud's SPF and DKIM weren't enough
Email security is built on a mountain of text parsers, and every now and then, someone finds a crack that reminds us just how brittle the foundation is. Today, …
Copilot Cowork's Zero-Click Exfiltration Problem
We all knew M365 AI agents would eventually get tricked into handing over data. I just didn’t expect the exfiltration path to be this quiet. PromptArmor …
The New Copilot Is Also a FinOps Story
Microsoft’s Copilot announcement is easy to read as a product update: Home brings Chat and Cowork together, Code lets people build tools, and Autopilot—formerly …
When the walls go transparent: Cloudflare's 64 KiB data leak
The scariest bug in multi-tenant cloud isn’t some complex remote code execution chain.[unverified] It is when the walls between tenants vanish because of …
Weekend Wrap: The NetScaler Foot Gun, Kiteworks Shutdowns, and Cloudflare Tenants
We made it through another weekend. Barely. If your phone didn’t ring on Saturday, you either don’t run Citrix or you slept through the CISA alert. …
One Year Later: The Salesloft Drift OAuth Breach
A year ago this month, the Salesloft/Drift OAuth supply chain attack changed how we look at third-party app integrations. When Salesloft disclosed a security …
mon weekend wrap · tue–thu one signal from the beat · fri look back 6mo / 1yr / 2yr
The work is the post. Sources at the bottom. If a take is thin, it does not ship.