Every secure API draws a line between code and data. HTTP separates headers from bodies. SQL has prepared statements. Even email distinguishes the envelope from the message. The Model Context Protocol (MCP), the fast-growing standard for connecting AI agents to external services, inherits that gap from the models it sits on top of. Its central premise is that a language model reads tool descriptions, tool responses, and user instructions through the same context window, with…
TL;DR AI risk doesn’t live in the model. It lives in the APIs behind it. Every AI interaction triggers a…
Dimitris Georgiou has been a self-professed computer geek since the early 80s. At university, he studied the convergence of educational…
Your board wants AI. Your developers are building with it. Your budget committee is asking for an ROI timeline. But…
AI systems are no longer just isolated models responding to human prompts. In modern production environments, they are increasingly chained…
Broken authorization is one of the most widely known API vulnerabilities. It features in the OWASP Top 10, AppSec conversations,…
The shadow technology problem is getting worse. Over the past few years, organizations have scaled microservices, cloud-native apps, and partner…
API security has been a growing concern for years. However, while it was always seen as important, it often came…
It’s an unusually cold winter morning in Houston, and Craig Riddell is settling into his new role as Wallarm’s Global…
You probably think the security mantra “you can’t protect what you don’t know about” is an inarguable truth. But you…