Alexander Romanov · cyber defence practitioner

Detect what others miss — turning the attacker's perspective into the defender's capability.

From red-team engagements to leading security operations. I write about purple teaming, detection, secure architecture, and the open-source tools I build. Evidence over assertions.

Latest

MCP 2026-06-28 · 11 min
AI agents are talking to everything. Nobody agreed on who can ask.

MCP makes connecting AI agents to tools so easy that the governance question arrives after the connections are live. Part 1 of a series on MCP security — the structural problem: there's no single place to ask whether a tool call should happen.

All posts →