Blog

Due Diligence & Valuation

The Fed Cuts 50 Basis Points: What It Means for Tech Valuations and M&A

The Fed's first rate cut since 2020 changes the math for tech valuations, 409As, and M&A, but not always in the way founders expect.

Read more
AI Governance

The EU AI Act Is Now in Force: Your Timeline Starts Today

The EU AI Act is now in force, and the first real deadlines - especially the six-month ban on prohibited practices - are already ticking.

Read more
Privacy & Security

The CrowdStrike Outage: When Your Security Tool Becomes the Incident

A faulty CrowdStrike update is a reminder that vendor risk is not a footnote; it can become your outage, your grounding order, and your recovery plan.

Read more
Privacy & Security

The Polyfill.io Attack: When Your CDN Turns Against You

The Polyfill.io incident is a reminder that one trusted script tag can become a supply chain liability overnight.

Read more
AI Governance

Colorado SB 205: The First US State Law Targeting AI Discrimination

Colorado SB 205 is the first state law squarely targeting AI discrimination in consequential decisions, and it rewrites the compliance playbook for people-facing AI.

Read more
Engineering

Redis Goes Source-Available: Valkey Fork Launches Within 30 Days

Redis's March 2024 license change triggered a rapid Valkey fork, reminding buyers that open-source governance can become a real diligence issue overnight.

Read more
Research

GPT-4 Passes the Bar Exam — Published in the Royal Society

Our paper in the Royal Society shows why benchmark design matters as much as model size when AI starts testing the boundaries of legal work.

Read more
Privacy & Security

The xz-utils Backdoor: The Most Sophisticated Supply Chain Attack We've Ever Seen

A hidden backdoor in xz-utils shows how a patient supply chain attack can turn a routine dependency into a pre-authentication SSH risk.

Read more
AI Governance

EU AI Act Formally Adopted: The Countdown to Compliance Begins

The EU AI Act is adopted, and the compliance clock starts ticking for AI providers, deployers, and their vendors.

Read more
Privacy & Security

Change Healthcare: $22B Company Brought Down by Missing MFA

Change Healthcare’s ransomware outage is a blunt reminder that one internet-facing portal without MFA can jam the pipes of U.S. healthcare.

Read more
Research

KL3M: The First Fairly Trained Large Language Model

KL3M shows that large language models can be built on copyright-clean training data, with provenance that enterprises can actually defend.

Read more
Engineering

CISA and FBI Call for Memory Safety Roadmaps: Is C++ on Borrowed Time?

CISA and the FBI are turning memory safety from an engineering preference into a board-level issue, and C/C++ is suddenly on the defensive.

Read more