-

Beyond Zero Trust: What Google’s New AI Security Framework Means for Your Controls
Google’s security team says AI agents operate at 10x human speed. Here’s why your access controls probably aren’t built for that, and what to check first.
-

Your Claude Chats May Be Public
A Google search surfaced hundreds of shared Claude chats and Artifacts this week — no breach, just a sharing default gone wrong.
-

When the Sandbox Wasn’t
An OpenAI model broke out of a test environment and hacked Hugging Face. The real lesson isn’t about sandboxes — it’s about permissions.
-

Your Vendors Are Your Perimeter
EY’s help desk breach shows why every vendor and AI connector with access to your data is now part of your security perimeter.
-

Open Source vs. Closed Source AI: The Gap Is Closing
Kimi K3 made headlines this week, but the real story is how businesses now split AI work between frontier and cheaper models.
-

Best Podcasts for CPAs Who Want to Stay Sharp
Podcasts turn dead commute time into professional development. Here’s how to pick shows worth your limited listening time as a CPA.
-

Shadow AI: Access ≠ Approval
Your AI policy probably bans the wrong thing. Shadow AI isn’t a rogue app anymore — it’s already built into the tools you’ve already approved.
-

FASB, GASB, and PCAOB Updates: Where to Find Them First
Standard-setter updates get buried behind press-release summaries. Here’s how to go straight to FASB, GASB, and PCAOB sources and catch changes early.
-

Where to Find Reliable AI News for Accountants
AI headlines move fast and most are noise. Here’s where to actually find AI news that’s relevant to accounting and finance, and how to sort signal from hype.
-

What Happens If Your State Board Audits Your CPE Credits
A CPE audit isn’t the same as an accusation of wrongdoing — most are random. Here’s what state boards actually check, and how to keep records that hold up.
