Securing Agent-to-Agent (A2A) Communication
Securing agent-to-agent communication has become one of the harder problems in enterprise AI, because multi-agent systems are being deployed faster than their…
FIELD NOTES · 2026 EDITION
714 posts on cloud, security, DevOps and AI.
Securing agent-to-agent communication has become one of the harder problems in enterprise AI, because multi-agent systems are being deployed faster than their…
For thirty years, insider threat programs have been built around a single assumption: the insider is a person. A person can be…
AI agents now act inside tenants with the same reach as employees, yet most were stood up as ad-hoc service principals with…
Security teams that spent two years hardening chatbots are now staring at a different problem. The OWASP Top 10 for Agentic Applications,…
As a security professional who spends most working weeks inside Azure tenants watching automation scale past the point where any human reviews…
As a security architect working across Australian regulated environments, I have watched the 2023-2030 Australian Cyber Security Strategy move from foundation-setting to…
Most security programs were built to protect people. Single sign-on, multi-factor authentication, privileged access management, and quarterly access reviews all assume an…
After running cloud security posture programmes across a range of organisations, I get asked the wiz vs microsoft defender for cloud question almost every…
In June 2025, researchers at Aim Security disclosed EchoLeak, a zero-click vulnerability in Microsoft 365 Copilot tracked as CVE-2025-32711. A single crafted…
As a security professional who spends most days inside the third-party risk programmes of regulated Australian organisations, I read the Tata Electronics…