Cybersecurity stealth founder, AppSec leader, speaker, and security podcast host.
Sep 29, 2026
•
3 min read
What an issue-tracker experiment reveals about agent trust boundaries, tool permissions, verification, and runtime monitoring.
Sep 22, 2026
4 min read
Prompt injection is no longer just a bad prompt. Agents can find instructions anywhere they can read.
Sep 15, 2026
A controlled experiment found two observability paths with different switches, payloads, and privacy profiles.
Sep 8, 2026
5 min read
Chris’s take, worthwhile security reads, and the latest podcast episodes.
Sep 1, 2026
A practical control model for coding agents: identity, least privilege, constrained execution, and evidence you can review.
Aug 28, 2026
A practical look at helping AppSec teams embrace AI speed while keeping human judgment and clear ownership intact.
Nov 12, 2024
6 min read
A review of application security happenings and industry news from Chris Romeo.
Nov 4, 2024
8 min read
Oct 29, 2024
7 min read
Oct 22, 2024
Oct 15, 2024
Oct 8, 2024
10 min read
Oct 1, 2024
Sep 24, 2024
Sep 17, 2024
Sep 10, 2024
Sep 3, 2024
Aug 27, 2024
12 min read
Aug 20, 2024
Aug 13, 2024
Aug 7, 2024
Jul 29, 2024
Jul 22, 2024
Jul 16, 2024
Jul 1, 2024