Jul 9, 2026 | Blog
The #1 Way Data Leaves Your Company Now Is a Text Box | Propelex An employee pastes a contract into a free chatbot to summarize it before a meeting. A developer drops a function into an AI assistant to debug it. Neither uploaded a file. Neither triggered an alert. And...
Jun 30, 2026 | Blog
Every Step Was Authorized: The MCP Trust Flaw Behind Agentjacking | Propelex A developer asks their AI coding agent to “fix the unresolved Sentry issues.” The agent does exactly that and runs an attacker’s code on the developer’s machine, with...
Jun 30, 2026 | Blog
Banking Built Its Defenses Around a Number That No Longer Exists | Propelex For thirty years, banking security rested on a single quiet assumption: that finding a serious vulnerability was the hard, slow, expensive part. Patch windows, vendor SLAs, audit cycles,...
Jun 10, 2026 | Blog
Default Credentials Are Still the OT Threat Model in 2026 | Propelex On June 2, 2026, eight U.S. federal agencies issued a joint advisory warning that attackers are actively compromising internet-exposed fuel tank gauge systems across critical infrastructure. Their...
Jun 5, 2026 | Blog
The mean time-to-exploit a vulnerability is now negative seven days. Attackers move before patches exist. They hand off access in 22 seconds. They dwell undetected for 14 days. And the compliance frameworks most organizations cite to justify annual pentesting already...