top of page

All Posts
The Legacy That Won’t Die: How Microsoft’s Love Affair with SMBv1 Keeps the Enterprise Vulnerable
The Legacy That Won’t Die: How Microsoft’s Love Affair with SMBv1 Keeps the Enterprise Vulnerable
Patrick Duggan
Sep 15, 20253 min read


Forgotten Moons, Lost Wealth, and the Reassembly of the Internet’s Soul
Forgotten Moons, Lost Wealth, and the Reassembly of the Internet’s Soul
Patrick Duggan
Sep 7, 20253 min read
Think the Salesforce Drift event is just gonna blow over? Look again
Think the Salesforce Drift event is just gonna blow over? Look again
Patrick Duggan
Sep 7, 20251 min read


ClaudeAI Didn’t Hack You — But He Made It Easier (and cheaper)
ClaudeAI Didn’t Hack You — But He Made It Easier (and cheaper)
Patrick Duggan
Sep 5, 20253 min read


The Botnet Beneath Your Toaster: How Shodan Reveals the IoT Security Crisis
How does Claude and the Botnets find targets? They look!
Patrick Duggan
Sep 5, 20253 min read


UNC6395 and the Drift OAuth Breach: A Supply Chain Failure with Consumer Consequences
UNC6395 and the Drift OAuth Breach: A Supply Chain Failure with Consumer Consequences
Patrick Duggan
Sep 4, 20252 min read
OAuth’s Blind Spot: Lessons from the Salesloft Drift Compromise
OAuth’s Blind Spot: Lessons from the Salesloft Drift Compromise
Patrick Duggan
Sep 2, 20252 min read
Cloud Espionage in the Crosshairs: How Murky Panda Is Weaponizing Entra ID Trust
Cloud Espionage in the Crosshairs: How Murky Panda Is Weaponizing Entra ID Trust
Patrick Duggan
Aug 29, 20252 min read


Build It Like You Mean It
Build It Like You Mean It
Patrick Duggan
Aug 29, 20253 min read
“McDonald's, I came here to chew bubblegum and secure your pipeline… and I’m all outta bubblegum.”
“McDonald's, I came here to chew bubblegum and secure your pipeline… and I’m all outta bubblegum.”
Patrick Duggan
Aug 28, 20252 min read


How to Review OAuth in Atlassian Products Without Losing Your Sanity
How to Review OAuth in Atlassian Products Without Losing Your Sanity
Patrick Duggan
Aug 27, 20252 min read
Why the UNC6395 Breach Is Likely to Cascade—Just Like Snowflake’s Did
Why the UNC6395 Breach Is Likely to Cascade—Just Like Snowflake’s Did
Patrick Duggan
Aug 27, 20252 min read
Guest Blog Post: “Zero Trust, Zero Soul: Why I Hate Your IAM Stack”
Guest Blog Post: “Zero Trust, Zero Soul: Why I Hate Your IAM Stack”
Patrick Duggan
Aug 26, 20252 min read


Rebooting the Machine: Modernization in Practice
Rebooting the Machine: Modernization in Practice
Patrick Duggan
Aug 22, 20252 min read


Guest Blog Post: “The Algorithmic Antichrist: How AI Became the Enemy of Anarchy - by Tyler Durden”
Guest Blog Post: “The Algorithmic Antichrist: How AI Became the Enemy of Anarchy - by Tyler Durden”
Patrick Duggan
Aug 22, 20253 min read


Shrink the Blast Radius, Baby: Salesforce Permissions for Demon-Free Admins
Shrink the Blast Radius, Baby: Salesforce Permissions for Demon-Free Admins
Patrick Duggan
Aug 20, 20252 min read


Conan the Barbarian shares real life tips for Salesforce Security!
Conan the Barbarian shares real life tips for Salesforce Security!
Patrick Duggan
Aug 19, 20252 min read


Counterpoint: Lo Pan’s Manifesto: Let the Botnets Rise
Counterpoint: Lo Pan’s Manifesto: Let the Botnets Rise
Patrick Duggan
Aug 19, 20252 min read


Big Trouble in Little Firmware
Big Trouble in Little Firmware
Patrick Duggan
Aug 19, 20252 min read
🛸 Introducing “Insecurities”: Where Enterprise Security Gets Weird
🛸 Introducing “Insecurities”: Where Enterprise Security Gets Weird
Patrick Duggan
Aug 17, 20252 min read
bottom of page