peter bassill · operator

Peter Bassill — latest writing on cyber security

peter@hardened:~$ ls -t writing/ | less # page 8 of 13

Latest articles · page 8 of 13

  • SolarWinds at five

    Five years on from the disclosure of the SolarWinds Orion compromise, what actually changed in how UK boards think about third-party software risk — and what did not. A practitioner's retrospective on the case study that defined the decade.

    • 8 min read
  • The supplier underneath the supplier

    Three disclosures last month tell the same story from three angles: NHS England's tech provider, an NHS GP software supplier, and the Foreign Office. None of them is the headline brand. All of them are where the actual attack surface lives.

    • 6 min read
  • The year 2025 was actually about

    An end-of-year reflection on what 2025 turned out to be, what the noise mostly was, and what the genuinely consequential shifts were for UK cyber security at board level.

    • 8 min read
  • Where I trusted, where I didn't

    Post three of six on the Covert Cyber Deck. The supply chain decisions behind the build — why I chose the parts I chose, why I rejected several I considered, and why I ended up drawing the carrier PCB myself rather than buying one.

    • 7 min read
  • AI

    Year in cyber AI 2025: the agentic year that mostly was not

    Post 17 of the AI series. The 2025 retrospective. Operator agents arrived but mostly in pilot, the determinism property went mainstream in procurement, the regulators caught up, and constrained agency became the named shape. The honest read going into 2026.

    • 8 min read
  • Building a Honeypot with T-Pot on Ubuntu

    I have run honeypots since 1998. T-Pot bundles a dozen of them behind a single dashboard and turns passive observation into actionable intelligence.

    • 15 min read
  • Hardening Firefox for Privacy

    Tor is for when you need anonymity. This is for the everyday browser — configured so it stops volunteering information about you to every site you visit.

    • 13 min read
  • The threat model, written down

    Post two of six on the Covert Cyber Deck. The threat model I have spent the last month writing down — what I am protecting against, what I am not, and why putting it in plain English changed the rest of the build.

    • 6 min read
  • What the merger was actually for

    Hedgehog Security and UK Cyber Defence merged this month. Here is the thinking the announcement did not contain — what we were trying to fix, and what kind of firm we are now trying to be.

    • 7 min read
  • How to Use GPG to Secure Your Email

    Generate a GPG key pair, publish your public key, encrypt and sign email on the command line and in Thunderbird.

    • 14 min read
  • AI

    Frontier AI in CNI: the regulators are paying attention

    Post 16 of the AI series. The autumn joint statements from the BoE, FCA and HM Treasury on frontier AI and operational resilience signal where financial-services regulators have arrived. The implications for AI in cyber security are sharper than the public conversation suggests.

    • 7 min read
  • Building a machine I can fully describe

    First in a six-post series on the Covert Cyber Deck — a portable slate I am building around a Pi CM5, two SDRs, a custom carrier PCB, and a hardened Ubuntu. The argument is not the hardware. It is what designing it forces you to think about.

    • 6 min read
  • Full-Disc Encryption with LUKS on Ubuntu

    If someone takes your machine, encryption is the difference between a hardware loss and a data breach. LUKS makes it a checkbox at install time.

    • 10 min read
  • The line the ICO is now drawing

    Capita £14m. Advanced Computer Software £3.07m. Neither fine was for the breach. Both were for the controls that preceded it. The ICO has redrawn what "adequate security" means in evidence — and most boards have not noticed.

    • 6 min read
  • The single-tin posture: why we still ship on a Dell

    Post 15 of the AI series. A single Dell PowerEdge R760, racked at the customer site, running the whole platform — analyst, inference, persistence, audit. The deployment shape the hyperscaler default would have us abandon, and why we have not.

    • 7 min read
$ finger peter

Get in touch

Email is fastest. If your message says who you are, what you would like, and a rough sense of when, you will get a useful answer within two working days.
EMAILcomms [at] peterbassill {dot} com
GITHUB@pbassill
CRESTEuropean Council · IR Pan Europe
LOCATIONUnited Kingdom · en_GB
no tracking · no third parties · stored only in my inbox
anti-abuse check: waiting for the form…