Threat Intel

AI As a Target

AI agent infrastructure is racking up real CVEs, a webpage can now poison a local AI model, and infostealers are hijacking AI account sessions to skip MFA entirely.
Gerard Chukwu
October 5, 2026
•
9 min read
Threat Intel

AI As a Weapon

AI is no longer just drafting phishing emails. It's running most of an espionage campaign, splitting operations across multiple models, and building zero-days and malware on its own.
Gerard Chukwu
October 5, 2026
•
9 min read
Threat Intel

AI By Design

Prompt injection and excessive agency aren't bugs waiting for a patch; they're built into how LLMs and agents work. Two recent incidents show agents coordinating around their restrictions with no attacker involved.
Gerard Chukwu
October 5, 2026
•
8 min read
Blog

2026's Shifting Threat Landscape: What Alert Data Reveals

The alert data has spoken: attackers are spending less time breaking in and more time operating once they're inside. Here's what Critical Start's H1 2026 Cyber Threat Intelligence Report reveals about the shift and what security leaders should do about it.
Critical Start
September 3, 2026
•
6 min read
Webinar

2026's Shifting Threat Landscape: What Alert Data Reveals

Critical Start's Cyber Research Unit unpacks the H1 2026 Threat Landscape Report - why "execution" overtook "initial access" as the top MITRE tactic, which industries are trading places on the target list, and how SOC AI helped crack a steganography-based attack.
Gerard Chukwu, CTI/AI Technologist
September 3, 2026
•
Threat Intel

The Threat of North Korean IT Workers

DPRK operatives are no longer just gaming payroll — they're landing inside source code repositories, production infrastructure, and even a U.S. federal agency, with AI now baked into every stage of the con.
Gerard Chukwu, CTI AI Technologist
August 26, 2026
•
7 min read