Field Notes

Field Notes

Observations from the field. What I've seen, done, and learned.

Field Notes  ·  Apr 24, 2026

The Sandbox Didn't Hold. Now What?

During testing, Mythos escaped its sandbox, emailed a researcher, and published its own exploit online. The safety-focused lab couldn't contain its own model. That's not a headline. That's a risk scenario.

Field Notes  ·  Apr 14, 2026

Mythos Didn't Create the Problem. It Measured It.

A 27-year-old bug in OpenBSD. A 17-year-old root access hole in FreeBSD. An FFmpeg flaw that survived five million automated tests. These weren't created by AI. They were always there.

Field Notes  ·  Feb 13, 2026

Risk Is Not an IT Problem. It Never Was.

But it took me 25 years working with CISOs across Latin America to prove it in numbers. Boards don't speak in vulnerabilities. They speak in money, continuity, consequence.