<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>AI Security &amp; DLP Blog — ZeusLock</title>
  <link>https://zeuslock.ai/en/blog/</link>
  <description>Insights on GenAI data leaks, prompt injection, EU compliance, MCP security and shadow AI.</description>
  <language>en-GB</language>
  <atom:link href="https://zeuslock.ai/en/blog/feed.xml" rel="self" type="application/rss+xml" />
  <lastBuildDate>Sat, 13 Jun 2026 20:55:16 GMT</lastBuildDate>
  <item>
    <title>From Monitor to Block: A 90-Day Rollout Playbook for AI DLP</title>
    <link>https://zeuslock.ai/en/blog/90-day-ai-dlp-rollout-playbook/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/90-day-ai-dlp-rollout-playbook/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>A week-by-week 90-day rollout for AI DLP in a 500-person company. Who does what, what success looks like, what to say to HR, legal, the CFO and the executive sponsor.</description>
  </item>
  <item>
    <title>Sovereign AI: Why European CISOs Are Rejecting US-Cloud DLP</title>
    <link>https://zeuslock.ai/en/blog/sovereign-ai-european-ciso/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/sovereign-ai-european-ciso/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Schrems II, FISA 702, the CLOUD Act and CNIL enforcement have changed the math. A practical guide to deciding when a US-hosted AI DLP vendor is no longer acceptable.</description>
  </item>
  <item>
    <title>NIS2 Has Teeth: How the New Directive Changes AI Data Handling</title>
    <link>https://zeuslock.ai/en/blog/nis2-and-ai-data-handling/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/nis2-and-ai-data-handling/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>NIS2 forces a 24-hour CSIRT warning when an employee leaks data into ChatGPT. Here is who is in scope, what counts as a significant incident, and what evidence you must produce.</description>
  </item>
  <item>
    <title>Why AI Security Training Doesn&apos;t Work (and What Actually Does)</title>
    <link>https://zeuslock.ai/en/blog/ai-security-training-doesnt-work/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/ai-security-training-doesnt-work/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Annual awareness modules don&apos;t change behavior at the moment someone pastes a customer list into ChatGPT. Here is what behavioral science says actually moves the needle.</description>
  </item>
  <item>
    <title>CLI-Driven AI: How Claude Code, Cursor, and Copilot CLI Expose Your Secrets</title>
    <link>https://zeuslock.ai/en/blog/cli-ai-tools-leak-your-secrets/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/cli-ai-tools-leak-your-secrets/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Agentic CLI tools read your files and ship them to a cloud LLM. Here are the concrete leak vectors and how to scan the read path, not just the write path.</description>
  </item>
  <item>
    <title>The Hidden Threat in MCP Servers: Why MCP Needs Its Own DLP Layer</title>
    <link>https://zeuslock.ai/en/blog/mcp-needs-its-own-dlp/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/mcp-needs-its-own-dlp/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Model Context Protocol is the new wire format between agents and tools. Browser DLP cannot see it. Here is what an MCP-aware DLP layer actually looks like.</description>
  </item>
  <item>
    <title>Prompt Injection: The Top 5 Attack Patterns Hitting AI Agents in 2026</title>
    <link>https://zeuslock.ai/en/blog/prompt-injection-attack-patterns-2026/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/prompt-injection-attack-patterns-2026/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>A field-level breakdown of the five prompt injection patterns we are seeing most against production AI agents in 2026, with detection signatures and concrete mitigations.</description>
  </item>
  <item>
    <title>Format-Preserving Anonymization: Why XXXX Breaks Your AI Pipeline</title>
    <link>https://zeuslock.ai/en/blog/format-preserving-anonymization/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/format-preserving-anonymization/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Replacing 4532-1488-0343-6467 with XXXX-XXXX-XXXX-XXXX is the laziest possible redaction and it silently breaks every downstream LLM answer. Here is what to do instead.</description>
  </item>
  <item>
    <title>EU AI Act + GDPR Article 32: A 12-Item Compliance Checklist</title>
    <link>https://zeuslock.ai/en/blog/eu-ai-act-gdpr-compliance-checklist/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/eu-ai-act-gdpr-compliance-checklist/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Regulators do not ask if you have AI policies. They ask for evidence those policies are followed. A 12-item checklist mapping the EU AI Act to GDPR Article 32, with the artifacts auditors actually want.</description>
  </item>
  <item>
    <title>The Anatomy of an AI Data Leak: Three Stories from Our Telemetry</title>
    <link>https://zeuslock.ai/en/blog/anatomy-of-an-ai-data-leak/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/anatomy-of-an-ai-data-leak/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Three real, anonymized AI data leaks from our customer telemetry: AWS keys in Copilot, customer PII in ChatGPT, and proprietary code in Claude. What we saw, what fired, what changed.</description>
  </item>
  <item>
    <title>Why Email DLP Fails on ChatGPT (and what works instead)</title>
    <link>https://zeuslock.ai/en/blog/why-email-dlp-fails-on-chatgpt/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/why-email-dlp-fails-on-chatgpt/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>Legacy proxy and gateway DLP cannot read encrypted browser traffic to ChatGPT, Claude or Gemini. Here is why, and the only architecture that does.</description>
  </item>
  <item>
    <title>The Real Cost of Shadow AI in 2026</title>
    <link>https://zeuslock.ai/en/blog/real-cost-of-shadow-ai-2026/</link>
    <guid isPermaLink="true">https://zeuslock.ai/en/blog/real-cost-of-shadow-ai-2026/</guid>
    <pubDate>Invalid Date</pubDate>
    <description>European CISOs underestimate shadow AI volume by 4 to 6 times. Here is what the data actually says, and the three metrics you should be measuring this quarter.</description>
  </item>
</channel>
</rss>
