Trust is becoming the attack surface

The most dangerous scam is no longer the one that looks fake.

It is the one that contains enough truth to feel routine.

A message refers to your real hotel reservation. A WhatsApp request comes from a known contact. Software is downloaded from an official website. An artificial intelligence agent acts using permissions you knowingly granted.

Continue reading →


The MIT-Licensed Frontier: Why GLM-5.2 Reshapes Enterprise AI Trade-Offs

Enterprise artificial intelligence strategy is shifting from model selection to control architecture selection.

As organizations move from experimental deployments toward production-grade agentic systems, the dominant constraints are no longer model performance alone. They are increasingly defined by control over weights, data residency, licensing structure, and operational governance boundaries.

The release of GLM-5.2 by Z.ai (Zhipu AI) reflects this shift. Based on publicly available technical documentation and reported benchmark evaluations, the model is positioned as a large-scale mixture-of-experts system targeting frontier-level capability in software engineering and multi-step reasoning tasks.

Its significance is not isolated performance. It is the combination of capability, deployment flexibility, and permissive licensing under a widely used open-source framework.

Continue reading →


The first hurdle is the hardest in generative AI adoption – and businesses keep falling | IT Pro Despite rapid AI adoption, many businesses struggle with implementation, falling into “pilot purgatory” due to issues like skills gaps, legacy systems, and a lack of advanced use cases. While employees report individual productivity gains, companies are slow to achieve business-wide benefits, with a significant portion of firms still in basic AI application stages.

Continue reading →


Personas in AI, friend or foe?

Are you using persona prompts with AI? Here’s what the research actually says. arxiv.org/html/2603… A new study from USC (“Expert Personas Improve LLM Alignment but Damage Accuracy”) tested expert persona prompts across six large language models and finally explains why the community has seen such mixed results. The finding is simple but important: persona prompts are an alignment tool, not a knowledge tool. When personas HELP: → Writing tone and style (scores jumped from 7/10 to 9/10 on professional email drafting) → Safety and refusal (jailbreak resistance improved by up to 17.

Continue reading →


CodeWall says it hacked McKinsey’s AI platform. Here’s what holds up — and what doesn’t.

This reflects my personal assessment of publicly available reporting and CodeWall’s published blog post. I was not involved in the testing, I do not have access to McKinsey’s internal facts or forensic findings, and my views should be read as commentary and opinion rather than statements of verified fact.

A security startup called CodeWall claims its autonomous agent compromised McKinsey’s internal AI platform, Lilli, within two hours and gained unauthenticated read-write access to a production database containing tens of millions of consultant conversations. The vulnerability appears credible. The claimed scope of impact is not fully evidenced. The primary CodeWall post is here: codewall.ai/blog/how-… Independent reporting by Jessica Lyons in The Register is here: www.theregister.com/2026/03/0…

Continue reading →


DeerFlow 2.0: ByteDance’s open-source AI agent harness for research and software tasks

DeerFlow 2.0, an open-source project from ByteDance, has quickly become one of the most visible AI agent releases of early 2026. The project’s public repository says it reached No. 1 on GitHub Trending on Feb. 28, 2026, and the repository currently shows about 25,000 stars and 3,000 forks. For teams evaluating agentic systems, DeerFlow deserves attention, but it also warrants disciplined review.

Continue reading →


Heretic and the new reality of modifiable AI safety

Open-source large language models have made advanced generative AI broadly accessible. What is changing now is not only model capability, but the ease with which model behaviour can be altered after release — including behaviour that vendors and labs describe as “safety alignment.”

One of the most visible examples is Heretic, an open-source project that automates the removal of refusal behaviour in transformer-based language models. The project is not subtle about its purpose. It describes itself as “fully automatic censorship removal,” and it is gaining traction quickly.

This post does not provide instructions for disabling safeguards. Instead, it focuses on what is verifiably true about the tool, the research it is built on, and why this matters for security leaders, developers and governance teams.

Continue reading →


Are Dorsey’s giant job cuts the start of an AI jobs apocalypse? Economists weigh in Block CEO Jack Dorsey’s decision to cut nearly half the company’s workforce raises questions about AI’s impact on jobs, but economists suggest this is a company-specific adjustment rather than a sign of a broader labor market shift. While AI may disrupt some jobs, experts like Claudia Sahm emphasize that it doesn’t necessarily lead to mass layoffs, and other economists believe AI will enhance productivity by changing workflows rather than eliminating jobs outright.

Continue reading →


OpenAI is rolling out GPT-5.2 “Codex-Max” for some users OpenAI is rolling out GPT-5.2-Codex-Max, a new model for its Codex service, to select subscribers. This advanced version is expected to offer enhanced capabilities for long tasks, context management, and improved reliability, particularly with tool use and understanding visual inputs like screenshots.

Continue reading →


The "Stein Standard": What the OpenAI ruling means for privacy and discovery

On Jan. 5, 2026, U.S. District Judge Sidney Stein affirmed a significant discovery order requiring OpenAI to produce 20 million de-identified ChatGPT conversation logs to plaintiffs in the consolidated copyright litigation involving The New York Times and other publishers.

As security and privacy professionals, we often warn about “Shadow AI” and data leakage. This ruling makes those risks concrete. Here is a balanced analysis of what happened and what it means for Canadian organizations.

Continue reading →