<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>InfoSec on ku5e | Cybersecurity Portfolio</title><link>https://ku5e.com/tags/infosec/</link><description>Recent content in InfoSec on ku5e | Cybersecurity Portfolio</description><generator>Hugo -- 0.162.1</generator><language>en-us</language><lastBuildDate>Mon, 13 Apr 2026 20:18:00 +0000</lastBuildDate><atom:link href="https://ku5e.com/tags/infosec/index.xml" rel="self" type="application/rss+xml"/><item><title>The Attacker in Your Network Is Not in Your Inbox</title><link>https://ku5e.com/blog/the-attacker-in-your-network-is-not-in-your-inbox/</link><pubDate>Mon, 13 Apr 2026 20:18:00 +0000</pubDate><guid>https://ku5e.com/blog/the-attacker-in-your-network-is-not-in-your-inbox/</guid><description>description: Cisco Talos reported that 40% of all intrusions in Q4 2025 came from exploited vulnerabilities, not phishing. The monitoring infrastructure at most organizations was built for phishing. That design gap is where attackers are living.</description></item><item><title>193 Applications Taught Me That HR AI Agents Are an Unmonitored Attack Surface</title><link>https://ku5e.com/blog/193-applications-taught-me-that-hr-ai-agents-are-an-unmonitored-attack-surface/</link><pubDate>Mon, 13 Apr 2026 20:09:00 +0000</pubDate><guid>https://ku5e.com/blog/193-applications-taught-me-that-hr-ai-agents-are-an-unmonitored-attack-surface/</guid><description>description: HR AI agents are running application screeners, confirmation senders, denial generators, and support chats. They read unstructured external input and route it into internal processes. That is an injection surface. Most companies did not buy them as security infrastructure.</description></item><item><title>Your DLP Policy Does Not Know What Your Employees Are Running</title><link>https://ku5e.com/blog/your-dlp-policy-does-not-know-what-your-employees-are-running/</link><pubDate>Sun, 12 Apr 2026 22:22:00 +0000</pubDate><guid>https://ku5e.com/blog/your-dlp-policy-does-not-know-what-your-employees-are-running/</guid><description>76% of organizations now call shadow AI a definite or probable problem. The tools deployed against it have the same blind spot that plagiarism detectors have against a student who knows humanizer tools exist.</description></item></channel></rss>