# phoenix.security > AI-optimized mirror of phoenix.security containing 40 pages totalling 26,158 words of clean markdown content, structured data, and semantic HTML. Original source: https://phoenix.security. Last updated: 2026-09-07T03:54:10.133Z. Each page is available as HTML (with JSON-LD structured data) and Markdown (text-only, ideal for LLMs and RAG). ## Homepage - [Agentic ASPM & AppSec Remediation | Phoenix Security](/content/site-root.html): Explore the benefits of Agentic ASPM for enhancing code security and driving effective remediation campaigns at scale. Trusted by 385 security teams. (758 words) ## Articles & Blog Posts - [Episode Archive - Phoenix Security](/content/podcast/index.html) (657 words) - [CLAIR Klar Scan - Phoenix Security](/content/integration/clair-klar-scan/index.html) (18 words) - [CSCP S02E21 - Cyberstu - Community Social Engineer and OSINT - Phoenix Security](/content/podcast/cscp-s02e21-cyberstu-community-social-engineer-and-osint.html): This episode was long overdue, Stuart the master of wall sticker, the OSINT champion, an icon, a community pillar and a well renown meme is here with us to enlighten us with OSINT The podcast is brought you by the generosity of NSC42 Ltd, your cybersecurity partner. Cybersecurity is a complex and different for every […] (286 words) - [CSCP S02E18 - Ray(redacted) - Old School community and podcast with Ray - Phoenix Security](/content/podcast/cscp-s02e18-rayredacted-old-school-community-and-podcast-with-ray.html): Ray Redacted is an InfoSec Researcher and Technologist at a global firm that does connectivity and cybersecurity services. He’s also the host of Tribe of Hackers Podcast. He shares how he started his career in cybersecurity and his own security recommendations.   The podcast is brought you by the generosity of NSC42 Ltd, your cybersecurity […] (241 words) - [CSCP S02E17 - Matt Stamper - Wartime Ciso risk across the globe - Phoenix Security](/content/podcast/cscp-s02e17-matt-stamper-wartime-ciso-risk-across-the-globe.html): Francesco had the honour to be joined by Matt Stamper an early riser, inspiration and published author as well as cybersecurity personality. Matt was so kind to get Francesco a signed copy of the Books and when he was stranded in LA due to covid he had them shipped, he was a hero! Matt Stamper […] (211 words) - [CSCP S02E12 - Emma Heffernan - Starting in Cyber - Phoenix Security](/content/podcast/cscp-s02e12-emma-heffernan-starting-in-cyber/index.html): Episode In this episode, we talk with Emma Heffernan on how she started in Cybersecurity, the benefit of the community (OWASP and Twitter) and what to do to take the career to the next level. You can find Emma On Linkedin: https://www.linkedin.com/in/emma-heffernan/ or on Twitter https://twitter.com/3mm4h3ff The podcast is brought you by the generosity of […] (396 words) - [CSCP S02E16 - Gary Hayslip - Peacetime CISO in covid times - Phoenix Security](/content/podcast/cscp-s02e16-gary-hayslip-peacetime-ciso-in-covid-times.html): Francesco had the honour to be joined by Gary an inspiration and published author as well as cybersecurity personality. Gary Hayslip is the Chief Information Security Officer at Investment living in San Diego and part of the San Diego cybersecurity community. Gary is a gamer extremely discipled learner and loves technology, sharing his insights from […] (235 words) - [CSCP S02E14 - Eddie Jaude - Security vs Developer - round 1 - Phoenix Security](/content/podcast/cscp-s02e14-eddie-jaude-security-vs-developer-round-1.html): This episode of Cyber Security and Cloud Podcast features GitHub Star, Eddie Jaoude. Francesco and Eddie talk about the importance of clear and direct communication between clients and developers and the importance of updating code. There are many complexities in coding to ensure security and prevent hacking down the line. 1:52 Eddie’s background 5:32 Background […] (209 words) - [CSCP S02E13 - Philippe De Ryck - Appsec world with Philippe - Phoenix Security](/content/podcast/cscp-s02e13-philippe-de-ryck-appsec-world-with-philippe.html): Episode In this episode, we talk with Dr. Philippe De Ryck a seasoned appsec expert, an inspiration and a fantastic educator, we dive in all things application security. Philip is based in Belgium and he trains developers to protect companies through better web security. Philippe founded Pragmatic Web Security and is passionate about educating others […] (271 words) - [Manager, IT Security and Risk Management - Phoenix Security](/content/testimonial/manager-it-security-and-risk-management/index.html): "Contextualized and unified references with application architecture." (68 words) - [CSCP S02E15 - Allan Alford - Wartime CISO in covid times - Phoenix Security](/content/podcast/cscp-s02e15-allan-alford-wartime-ciso-in-covid-times.html): In this Episode of the CSCP i have the pleasure to have back one of the amazing guest Allan Alford. Allan Alford is a veteran CISO, author, speaker, and co-host of the Defense in Depth Podcast in Texas. Francesco and Allan discuss the many changes companies are facing during COVID. The companies with the most […] (199 words) - [Principal Security Engineer - Phoenix Security](/content/testimonial/it-security-and-risk-management/index.html): "Contextualized and unified references with application architecture." (83 words) - [IT Security Jobs | Phoenix Security](/content/careers/index.html): Find and apply today for the latest Application Security jobs. Join the team building the world's best application and web security. (382 words) - [dynamic-content-megamenu-menuitem13776 - Phoenix Security](/content/elementskit-content/dynamic-content-megamenu-menuitem13776/index.html): ACT Now on Phoenix Cloud Platform Go beyond risk: Analyze and Contextualize Threats. Drive resolution through risk Phoenix Security Cloud for CISO Control risk, drive resolution through cyber risk target, analyze progress towards a path to green. Report to the board an actionbale plan What is ASOC Application Security Tooling and orchestration. Aggregation, correlation and the power of cyber risk quantification […] (162 words) - [EXPLOIT DATABASE - Phoenix Security](/content/integration/exploit-database/index.html): Phoenix security now integrates with tennable IO to enable vulnerability discovery at scale (241 words) - [Global Compliance Program Manager - Phoenix Security](/content/testimonial/global-compliance-program-manager-2/index.html): "Contextualized and unified references with application architecture." (47 words) - [Global Compliance Program Manager - Phoenix Security](/content/testimonial/global-compliance-program-manager/index.html): "Contextualized and unified references with application architecture." (73 words) - [Phoenix Security Launches Exploit Hunt at Black Hat 2026](/content/phoenix-security-launches-exploit-hunt-black-hat-2026.html): Exploit Hunt is an AI red team inside your code graph — three adversarial passes, runnable PoC per confirmed finding, native PR-gate. Available in Phoenix Purple now. (798 words, Aug 5, 2026) - [Miasma Supply Chain Attack: Azure Hit, 73 Repos Down, 37 PyPI Wheels](/content/miasma-azure-hades-pypi-supply-chain-worm-2026/index.html): Miasma supply chain attack disables 73 Azure repos and drops 37 malicious PyPIwheels. AI agent hijacking, .pth hooks, zero CVE. Full analysis. (2,556 words, Jun 10, 2026) - [Supply Chain Attacks 2026: npm, PyPI, VS Code, AI Agents — 0 CVEs](/content/accelerating-supply-chain-attacks-npm-pypi-vsx-ai-enabled-2026.html): Supply chain attacks 2026: 59 campaigns, 657 malicious packages, zero CVEs. How TeamPCP, Shai-Hulud, and IronWorm industrialised npm, PyPI, and AI agent tooling. (5,570 words, Jun 8, 2026) - [Three CVEs in Claude Code CLI: Shell Injection to Exfiltration](/content/claude-code-leak-to-vulnerability-three-cves-in-claude-code-cli-and-the-chain-that-connects-them.html): CVE-2026-35020, CVE-2026-35021, CVE-2026-35022: three CWE-78 command injections in Claude Code CLI chain into credential exfiltration. v2.1.91 callback confirmed., In this video, I demonstrated a complex exploit involving prompt injection and command injection vulnerabilities, highlighting three variations of the attack. We started by setting up a listening server and validated the exploit using Opals, which involved thorough code analysis and execution path validation. The results indicated a significant risk due to a lack of input sanitization, allowing for potentially dangerous command execution. I emphasized the importance of understanding the prevalence of such vulnerabilities in our systems. Please review the findings and consider how we can enhance our security measures. (660 words, Apr 6, 2026) - [OpenSSH CVE-2024-6387 (RegreSSHion) vulnerability could cause RCE to be subjected to mass exploitation?  - Phoenix Security](/content/cve-2024-6387-regresshion/index.html): Discover the critical OpenSSH vulnerability CVE-2024-6387 (regreSSHion), affecting millions of glibc-based Linux systems. Learn about its impact, exploitation complexity, and how to mitigate the risks with Phoenix Security's ASPM risk-based prioritization approach. (1,646 words, Jul 1, 2024) ## Listings & Categories - [Data Breach Archives - Phoenix Security](/content/category/data-breach/index.html) (786 words) - [Events Archives - Phoenix Security](/content/category/events/index.html) (1,078 words) - [0 Days Archives - Phoenix Security](/content/category/vulnerability/0-days/index.html) (835 words) - [CloudSec Archives - Phoenix Security](/content/category/cloudsec/index.html) (791 words) - [Open Source Archives - Phoenix Security](/content/category/appsec/open-source/index.html) (884 words) - [Intelligence Archives - Phoenix Security](/content/category/appsec/intelligence/index.html) (860 words) - [News Archives - Phoenix Security](/content/category/news/index.html) (786 words) - [Francesco Cipollone](/content/author/fcphoenix-security/index.html): Francesco is an internationally renowned public speaker, with multiple interviews in high-profile publications (eg. Forbes), and an author of numerous books and articles, who utilises his platform to evangelize the importance of Cloud security and cutting-edge technologies on a global scale. (659 words) - [AppSec Archives - Phoenix Security](/content/category/appsec/index.html) (761 words) - [Online Talk Archives - Phoenix Security](/content/category/events/online-talk/index.html) (843 words) - [Integrations Archives - Phoenix Security](/content/category/integrations/index.html) (460 words) - [Rowan Scott, Author at Phoenix Security](/content/author/rsphoenix-security/index.html) (459 words) - [Ksenia Mityushkina, Author at Phoenix Security](/content/author/kmphoenix-security/index.html) (278 words) - [Claire Harwood, Author at Phoenix Security](/content/author/claire_harwood/index.html) (236 words) - [Sarah Mitchell, Author at Phoenix Security](/content/author/sarah_mitchell/index.html) (243 words) - [Daniel Reeves, Author at Phoenix Security](/content/author/daniel_reeves/index.html) (134 words) - [Marcus Webb, Author at Phoenix Security](/content/author/marcus_webb/index.html) (298 words) ## Resources - [Full Page Index](/index.html): Browse all cached pages with rich metadata - [About This Cache](/about.html): Methodology, technical details, and usage guidelines - [XML Sitemap](/sitemap.xml): Machine-readable sitemap for crawler discovery - [Robots.txt](/robots.txt): Crawler directives - [AgentSite Network](https://agentsite.network/network.html): Public index of AgentSites and their machine-readable resources