RSS Amplifier

Blog

Nik's Substack

My personal Substack

nikkale.substack.comSource feed ↗10 posts

Live Last read · last published · next check

Written by

Latest posts

The Compliance Cliff: Your Agents Aren't in Any Control Catalog

Your agents aren't in any control catalog and August 2nd is already here.

Five OAuth Controls Your Enterprise Needs Before the Next Vercel-Style AI Tool Breach

As enterprise systems grow increasingly complex, managing interconnected data pipelines becomes critical. This article explores the frameworks governing resilient, distributed networks,

Your AI Coding Agent Can Hack Your Infrastructure. And It Doesn’t Need an Attacker to Do It.

At RSA 2026, OWASP and NIST framed agent security as adversarial input vectors. That no longer holds as seen in CVE-2026-34040.

Identity Propagation Is the Only Pattern That Survives the 82:1 Ratio

Treating agents as distinct identity principals doesn’t solve the accountability problem.

An AI Agent Just Pwned Trivy, Microsoft, and DataDog in One Week

An autonomous AI agent scanned 47,000+ repositories, identified vulnerable CI/CD configurations, and compromised projects. The only target that survived was defended by another AI agent.

The npm Nightmare Just Repeated Itself in AI Agents. It’s Worse This Time.

On January 27, 2026, someone uploaded a skill called “solana-wallet-tracker” to ClawHub, the community marketplace for OpenClaw, the open-source AI agent framework that had racked up over 180,000 GitHub stars in a matter of weeks.

MCP Just Got a New Home at the Linux Foundation - But Its Security Debt Followed It There

On December 9, 2025, Anthropic donated the Model Context Protocol to the newly formed Agentic AI Foundation under the Linux Foundation. The protocol arrives at its new home carrying five critical CVEs

AI Security Fundamentals: An Architectural Playbook

Most AI security conversations start in the wrong place.

Digital Workers Are Not Users: Why AI Agents Need Lifecycle Governance, Not Just Access Control

When organizations deploy their first AI agents, they reach for familiar patterns.

Governance Is Not a Tax: How Trust Transparency Becomes Competitive Advantage in Enterprise AI

There’s a persistent myth in enterprise technology: governance slows you down.