Security·7 min read·
A Correct Answer Doesn't Mean the Agent's Memory Is Clean
A synthetic memory-recovery drill shows why a correct task result and a clean derived state are separate checks.
Vol. MMXXVINo. 95
Field reports from cloud-security engineering, AI experiments, and a homelab that keeps getting bigger.
Start here: agentic security, tools, and homelab reading paths
Security·7 min read·
A synthetic memory-recovery drill shows why a correct task result and a clean derived state are separate checks.
Security·5 min read·
Timelock Drive puts retention below a compromised host. An offline model shows why unfreezing a backup must start a countdown, not erase its protection.
Security·6 min read·
A disposable PostgreSQL lab tests what an agent-facing database role can actually do, including the SELECT that writes through a privileged function.
Systems·3 min read·
Pilot Execution treats recovery as a state-changing program and previews its cross-component effects before committing the action.
Security·8 min read·
A proved gate is only as good as the policy it enforces, and the policy is the part that changes while the agent is running. What OSCAL and the agent-authorization drafts both assume, and what breaks.
Systems·4 min read·
SYSSPEC treats a filesystem specification as the thing an agent edits, then asks generated code to live up to the contract.