The Breach That Skips Your Wi-Fi: Why Physical Security Still Matters
Someone walks past every firewall you own because a colleague held the door. Why physical security still decides breaches, and how testing exposes it.
Read the post →The latest security treads, threat analysis, testing methodology, and more — from the people doing the work.
113 posts
Someone walks past every firewall you own because a colleague held the door. Why physical security still decides breaches, and how testing exposes it.
Read the post →A video call from your boss authorising an urgent payment, except it is not her. A plain guide to deepfakes and the process changes that defeat them.
Read the post →Your staff already use AI tools you have not approved, exactly as they once used Dropbox. What is genuinely at risk, and why blocking it does not work.
Read the post →Public WiFi is safer than it used to be, and the network is no longer the main risk when you travel. What to set up before you go, and what to avoid.
Read the post →Most breaches are not clever. They come through an unpatched update, an unlocked screen, or an unencrypted disk. Three boring controls that do the work.
Read the post →Test, receive a report, fix the criticals, file the PDF, repeat next year. Why that cycle stopped being good enough, and what retesting should look like.
Read the post →If 95% of your estate is a priority and 32% of it is tested, you do not have a program, you have a bet. Where the gap comes from and how it widens.
Read the post →The annual penetration test satisfied compliance and reassured boards for a decade. The numbers now say that model has been overtaken. What replaces it.
Read the post →Scoping, rules of engagement, and the real difference between a penetration test, a vulnerability scan, and a red team engagement. What you are buying.
Read the post →Attackers used to give you a month to patch and now give you five days, while regulators remove the choice about testing. What good looks like in 2026.
Read the post →