Anton’s Security Blog Quarterly Q3 2026
Anton’s Security Blog Quarterly now again covers Anton on Security only. It no longer includes my posts from Google Cloud blog, Google Cloud community blog (some exceptions noted below), and sadly I no longer run a Cloud Security Podcast by Google …

Top 10 posts with the most lifetime views (excluding paper announcement blogs):
- Anton’s Alert Fatigue: The Study [A.C. — wow, this is still #1 now! Awesome! Perhaps I need more of such deep studies…]
- Security Correlation Then and Now: A Sad Truth About SIEM [A.C. — this is also an extra long one, perhaps this needs some Part 2 updating the ideas to 2026…]
- Can We Have “Detection as Code”?
- Detection Engineering is Painful — and It Shouldn’t Be (Part 1)
- Revisiting the Visibility Triad for 2020 (update for 2025 is here!)
- Beware: Clown-grade SOCs Still Abound
- Why is Threat Detection Hard?
- Top 10 SIEM Log Sources in Real Life?
- A SOC Tried To Detect Threats in the Cloud … You Won’t Believe What Happened Next
- Log Centralization: The End Is Nigh?
Now, fun posts by topic.
Vulnerability Management, VulnOps, etc
- Beyond the Vulnerability Apocalypse: Scaling Your Basics and Vulnerability Management
- Breaking the Patch Sound Barrier: Your Vulnerability Remediation Will Not Keep Up With AI Exploit Speed. So?
- Breaking the Patch Sound Barrier Part 2: So Is The Apocalypse Coming and What Is It?
- Survival of the Basics: Which Security Fundamentals Were Secretly Relying on Lazy Attackers?
Security operations / detection & response:
- “Security Correlation Then and Now: A Sad Truth About SIEM”
- “Migrate Off That Old SIEM Already!” (VIDEO, a 2026 update is coming soon!)
- “Measuring the SOC: What Counts and What Doesn’t in 2025?” (Google Cloud Blog)
- “Can We Have “Detection as Code”?”
- “Revisiting the Visibility Triad for 2020” and “SOC Visibility Triad is Now A Quad — SOC Visibility Quad 2025”
- “Beware: Clown-grade SOCs Still Abound”
- “Why is Threat Detection Hard?”
- “A SOC Tried To Detect Threats in the Cloud … You Won’t Believe What Happened Next”
- “Stop Trying to Take Humans Out of SOC … Except … Wait… Wait… Wait…” and “A Brief Guide for Dealing with ‘Humanless SOC’ Idiots”
- “Top 10 SIEM Log Sources in Real Life?” (NEWER VERSION)
- “Debating SIEM in 2023, Part 1” and “Debating SIEM in 2023, Part 2”
- “Log Centralization: The End Is Nigh?”
- “Decoupled SIEM: Brilliant or Stupid?” and “Decoupled SIEM: Where I Think We Are Now?”
- “How to Make Threat Detection Better?”
- “SIEM Content, False Positives and Engineering (Or Not) Security”
Cloud security:
- “Secure cloud. Insecure use. (And what you can do about it)”
- “Using Cloud Securely — The Config Doom Question”
- “Who Does What In Cloud Threat Detection?”
- “How to Solve the Mystery of Cloud Defense in Depth?”
- “Does the World Need Cloud Detection and Response (CDR)?”
- “How to Think about Threat Detection in the Cloud”
- “Use Cloud Securely? What Does This Even Mean?!”
- “Who Does What In Cloud Threat Detection?”
- “AI Adoption: Learning from the Cloud’s Early Days”
- “Cloud Migration Security Woes”
AI security:
(as an exception, most resources here are from Google blogs)
- “Implementing Secure AI Framework Controls in Google Cloud”
- “Office of the CISO 2025 Year in Review: 3 Key AI Security & Governance Themes”
- “Shadow Agents: A New Era of Shadow AI Risk in the Enterprise”
- “Risk Tiering AI Use Case — A Practical Guide” (Google Cloud Community blog)
- “Securing AI Supply Chain: Like Software, Only Not”
- “Spotlighting ‘shadow AI’: How to protect against risky AI practices” (Google Cloud blog)
- “Shadow AI Strikes Back: Enterprise AI Absent Oversight in the Age of Gen AI”
- “Cloud CISO Perspectives: How Google secures AI Agents”
- “New Paper: “Securing AI: Similar or Different?“
- “The Prompt: What to think about when you’re thinking about securing AI” (Google Cloud blog)
- “Gen AI governance: 10 tips to level up your AI program” (Google Cloud blog)
- “AI Adoption: Learning from the Cloud’s Early Days” (Google Community blog)
- “How Google secures AI Agents” (Google Cloud blog)
- “Demystifying AI Security: New Paper on Real-World SAIF Applications”
- “To securely build AI on Google Cloud, follow these best practices” (Google Cloud blog)
- “Oops! 5 serious gen AI security mistakes to avoid” (Google Cloud blog)
- “3 new ways to use AI as your security sidekick” (Google Cloud blog)
- “Shadow Agents: A New Era of Shadow AI Risk in the Enterprise” (Google Cloud Community blog)
Enjoy!
P.S. With some help from Claude, I rebuilt my old Blogger blog to be a backup. If something happens to my Medium, you can enjoy my 2005–2026+ posts there. Or you can train your AI on it and then have your very own Anton-bot? :-)
Previous posts in this series:
- Anton’s Security Blog Quarterly Q2 2026
- Anton’s Security Blog Quarterly Q1 2026
- Anton’s Security Blog Quarterly Q4 2025
- Anton’s Security Blog Quarterly Q3 2025
- Anton’s Security Blog Quarterly Q2 2025
- Anton’s Security Blog Quarterly Q1 2025
- Anton’s Security Blog Quarterly Q4 2024
- Anton’s Security Blog Quarterly Q3 2024
- Anton’s Security Blog Quarterly Q2 2024
- Anton’s Security Blog Quarterly Q1 2024 Lite
- Anton’s Security Blog Quarterly Q3 2023
- Anton’s Security Blog Quarterly Q2 2023
- Anton’s Security Blog Quarterly Q1 2023
- Anton’s Security Blog Quarterly Q4 2022
- Anton’s Security Blog Quarterly Q3 2022
- Anton’s Security Blog Quarterly Q2 2022
- Anton’s Security Blog Quarterly Q1 2022
- Anton’s Security Blog Quarterly Q4 2021
- Anton’s Security Blog Quarterly Q3 2021
- Anton’s Security Blog Quarterly Q2 2021
- Anton’s Security Blog Quarterly Q1 2021
- Anton’s Security Blog Quarterly Q3.5 2020
Anton’s Security Blog Quarterly Q3 2026 was originally published in Anton on Security on Medium, where people are continuing the conversation by highlighting and responding to this story.
Originally published at Medium.