<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Strategic Briefs on Security Unlocked</title><link>https://securityunlocked.com/weekly-intelligence/</link><description>Recent content in Strategic Briefs on Security Unlocked</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 27 Apr 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://securityunlocked.com/weekly-intelligence/index.xml" rel="self" type="application/rss+xml"/><item><title>The Advisory Is the Starting Gun</title><link>https://securityunlocked.com/weekly-intelligence/the-advisory-is-the-starting-gun/</link><pubDate>Mon, 27 Apr 2026 00:00:00 +0000</pubDate><guid>https://securityunlocked.com/weekly-intelligence/the-advisory-is-the-starting-gun/</guid><description>AI infrastructure platforms are being weaponized within a single attacker shift of vulnerability disclosure, exposing a structural incompatibility between how organizations govern AI patching and the actual window available to them.</description></item><item><title>The Protocol Is Doing Its Job</title><link>https://securityunlocked.com/weekly-intelligence/the-protocol-is-doing-its-job/</link><pubDate>Sun, 19 Apr 2026 00:00:00 +0000</pubDate><guid>https://securityunlocked.com/weekly-intelligence/the-protocol-is-doing-its-job/</guid><description>MCP&amp;rsquo;s trust architecture makes any exposed management interface a pre-authenticated command shell by design, not by accident, and two RCE vulnerabilities in the same week reveal a deployment curve that has outrun both audit methodology and detection playbooks.</description></item><item><title>Mythos Finds Zero-Days. npm Found Three More.</title><link>https://securityunlocked.com/weekly-intelligence/mythos-finds-zero-days.-npm-found-three-more./</link><pubDate>Sun, 12 Apr 2026 00:00:00 +0000</pubDate><guid>https://securityunlocked.com/weekly-intelligence/mythos-finds-zero-days.-npm-found-three-more./</guid><description>The same week Anthropic unveiled an AI that autonomously finds zero-days, its own CLI shipped a CVSS 9.8 command injection, exposed by a debugging artifact that had been sitting in an npm package since March 31.</description></item><item><title>Trust Is the Exploit</title><link>https://securityunlocked.com/weekly-intelligence/trust-is-the-exploit/</link><pubDate>Mon, 06 Apr 2026 00:00:00 +0000</pubDate><guid>https://securityunlocked.com/weekly-intelligence/trust-is-the-exploit/</guid><description>From a six-month DPRK social engineering operation to mass exploitation of developer ecosystems, this week&amp;rsquo;s threat landscape reveals that the most reliable attack surface is the trust we extend by default.</description></item><item><title>The Mental Model Is the Vulnerability</title><link>https://securityunlocked.com/weekly-intelligence/the-mental-model-is-the-vulnerability/</link><pubDate>Fri, 27 Mar 2026 00:00:00 +0000</pubDate><guid>https://securityunlocked.com/weekly-intelligence/the-mental-model-is-the-vulnerability/</guid><description>Five AI infrastructure disclosures in one day share the same root cause: the gap between what users believe their security settings do and what the framework actually executes.</description></item><item><title>Trust Is the Attack Surface</title><link>https://securityunlocked.com/weekly-intelligence/trust-is-the-attack-surface/</link><pubDate>Tue, 17 Mar 2026 00:00:00 +0000</pubDate><guid>https://securityunlocked.com/weekly-intelligence/trust-is-the-attack-surface/</guid><description>Every major incident this week exploited institutional or interpersonal trust rather than technical vulnerabilities. The adversary&amp;rsquo;s target is not the system. It is the relationship.</description></item></channel></rss>