AI Risks and Limitations for Security Practitioners

Hallucination LLMs generate confident-sounding text that may be factually wrong. In security contexts this is dangerous. A model might: Fabricate a CVE number that doesn’t exist Invent tool flags or command syntax Cite statistics with no real source Describe a vulnerability incorrectly Mitigation: Always verify AI-generated technical claims against primary sources — NVD, vendor advisories, official documentation. ...

April 13, 2026 · 2 min · Jason, Cyber Professional

Networked Host Services — What Lives on Your Network and Why It Matters

Networked Host Services — What Lives on Your Network and Why It Matters A network is infrastructure. Services are what make that infrastructure useful. Understanding the services running in your environment — what they do, what protocols they use, and how they’re configured — is essential for both operations and security. ...

May 27, 2026 · 3 min · Logan

Wireless Networking & Standards — What's Actually Happening When You Connect to Wi-Fi

Wireless Networking & Standards — What’s Actually Happening When You Connect to Wi-Fi Wireless networking feels effortless from the user side. You click a network name, type a password, and you’re online. But underneath that simplicity is a carefully engineered stack of standards, authentication mechanisms, and encryption protocols that determine whether your connection is fast, reliable, and secure. ...

May 27, 2026 · 4 min · Logan

Using AI Safely in a SOC: Part 1 — The Analyst's Guide

AI tools are showing up in analyst workflows whether your organization plans for it or not. A Tier 1 analyst dealing with a hundred alerts a day will find ways to work faster — and if the org hasn’t provided sanctioned tools, they’ll use unsanctioned ones. That’s not a criticism, it’s human nature under pressure. ...

April 15, 2026 · 6 min · Jason, Cyber Professional

Why Run Your Own LLM? Privacy, Control, and the Security Case for Local AI

Every major cloud provider has an AI product now. Most of them are genuinely useful. They’re also asking you to send your data — your queries, your context, your documents — to infrastructure you don’t control, operated by a company whose incentives around data retention may not align with yours. ...

April 15, 2026 · 4 min · Jason, Cyber Professional

Zero Trust Access for the Homelab: Securing Self-Hosted Services with Tailscale

If you run self-hosted services at home, you’ve probably hit the remote access problem at some point. You want to reach something — a dashboard, a tool, an API — from outside your home network. The path of least resistance is to open a port on your router and point it at the service. It works. It also quietly puts that service on the internet, discoverable by anyone running a scanner. ...

April 15, 2026 · 11 min · Jason, Cyber Professional

Beyond the CIA Triad: Authenticity, Nonrepudiation & the Parkerian Hexad

April 4, 2026 · 0 min · Jason, Cyber Professional

Defence in Depth

April 4, 2026 · 0 min · Jason, Cyber Professional

ISO/IEC 19249: Architectural & Design Principles

April 4, 2026 · 0 min · Jason, Cyber Professional

Secure by Design: The Principles Every Practitioner Should Know

April 4, 2026 · 0 min · Jason, Cyber Professional