<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Zero Trust on Sammy Farida</title><link>https://me.itsecurity.network/tags/zero-trust/</link><description>Recent content in Zero Trust on Sammy Farida</description><generator>Hugo -- 0.147.3</generator><language>en</language><lastBuildDate>Fri, 13 Mar 2026 00:00:00 -0500</lastBuildDate><atom:link href="https://me.itsecurity.network/tags/zero-trust/index.xml" rel="self" type="application/rss+xml"/><item><title>Docker Sandboxes: Why Your AI Coding Agents Should Never Run on Bare Metal</title><link>https://me.itsecurity.network/blog/docker-sandboxes-enterprise-security-for-ai-coding-agents/</link><pubDate>Fri, 13 Mar 2026 00:00:00 -0500</pubDate><guid>https://me.itsecurity.network/blog/docker-sandboxes-enterprise-security-for-ai-coding-agents/</guid><description>Running AI coding agents directly on enterprise endpoints expands the attack surface. Docker Sandboxes isolate agents in microVMs with private Docker daemons and network controls, materially reducing the risk.</description></item><item><title>Agent Skills: The New Supply Chain Attack Vector</title><link>https://me.itsecurity.network/blog/agent-skills-the-new-supply-chain-attack-vector/</link><pubDate>Sun, 01 Mar 2026 00:00:00 -0500</pubDate><guid>https://me.itsecurity.network/blog/agent-skills-the-new-supply-chain-attack-vector/</guid><description>AI agent skills marketplaces like ClawHub and OpenClaw promise productivity magic but hide malware risks. These ecosystems bypass traditional supply chain defenses, enabling prompt injection, credential theft, and silent data exfiltration.</description></item><item><title>Building Workforce Security Guardrails Without Slowing Engineers</title><link>https://me.itsecurity.network/blog/building_workforce_security_guardrails/</link><pubDate>Sun, 01 Feb 2026 00:00:00 -0500</pubDate><guid>https://me.itsecurity.network/blog/building_workforce_security_guardrails/</guid><description>A practical, architecture-focused deep dive into designing workforce security guardrails that reduce blast radius and systemic risk without slowing engineering teams at scale.</description></item><item><title>Change Healthcare Ransomware Breakdown</title><link>https://me.itsecurity.network/blog/change-healthcare-ransomware-breakdown/</link><pubDate>Wed, 13 Aug 2025 22:14:31 -0400</pubDate><guid>https://me.itsecurity.network/blog/change-healthcare-ransomware-breakdown/</guid><description>The 2024 Change Healthcare ransomware attack exposed how a single missing control MFA on remote access systems led to the largest healthcare data breach in history. This post analyzes the architectural failures that allowed attackers to compromise 190 million patient records.</description></item><item><title>Microsoft's Zero Trust Transformation: A Case Study</title><link>https://me.itsecurity.network/blog/microsoft-zero-trust-transformation/</link><pubDate>Mon, 11 Aug 2025 00:56:53 -0400</pubDate><guid>https://me.itsecurity.network/blog/microsoft-zero-trust-transformation/</guid><description>A deep dive into Microsoft&amp;#39;s Zero Trust security model, breaking down their implementation into actionable phases for any organization looking to modernize its security architecture.</description></item></channel></rss>