Blog
AI security & governance, for humans
Practical writing on Shadow AI, runtime controls, evidence, and red-team validation — and how Argorix turns those problems into operating workflows.
Runtime · Incident analysis
An autonomous agent ran the whole intrusion
Hugging Face disclosed a production breach driven end to end by an autonomous AI agent — over 17,000 recorded actions across a swarm of short-lived sandboxes. What changes when the attacker never fatigues, and what to control this quarter.
Red Team · Incident
JadePuffer: the first LLM-driven ransomware, and what it broke
Sysdig documented an attack run end to end by a model. The chain is ordinary — the tempo, the adaptivity, and the unrecoverable keys are not.
Red Team · Incident
A $150,000 prompt injection, written in Morse code
An encoded reply on X moved six figures out of an AI-linked wallet. The failure was not the filter — it was that the agent could act at all.
Evidence · Incident
When hallucinations reach the official record
Court filings, audit reports, and public forecasts have all carried AI-fabricated content. The control that was missing is the same one every time.
Shadow AI · Governance
The AI you buy is the AI you answer for
Hiring platforms, pricing engines, and smart glasses: three 2026 cases where the vendor built the model and the buyer inherited the exposure.
Runtime · Governance
Was it the AI or the human? The AWS dispute is the lesson
Reporters blamed an AI coding tool for an outage. Amazon says it was a misconfigured role. The disagreement shows what most change records cannot answer.
Runtime · Governance
When the chatbot should have stopped talking
Lawsuits over AI health advice point to one missing control: a hard boundary around high-risk domains, enforced outside the prompt.
Shadow AI
Shadow AI discovery: why repository scans are not enough
Modern AI usage spreads across repositories, browser sessions, pipelines, prompts, models, and external tools — not just code.




