Understand the risk. Find the control.
Research, incident analysis, practical guides and control blueprints for protecting data and systems that should not remain continuously reachable.
What matters now
The newest and strongest analysis leads. Everything else sits in the library below.
Airport WiFi sign-ups turn into a national data problem as 8.7 million customer records are accessed
Manchester Airports Group has confirmed that criminal hackers accessed the data of about 8.7 million customers across Manchester, East Midlands and London Stansted. Most of it came from free terminal WiFi sign-ups and from car parking, lounge and fast-track bookings.
Premier League moves the goalposts as cyber rulebook introduces 22 security control areas
Rule J.9 and Appendix 11 put cyber security into the Premier League rulebook, with phased deadlines, annual evidence and 22 control areas spanning club, stadium and supplier operations.
T-Mobile pulled the plug on Salt Typhoon. It took a car journey to get there.
T-Mobile's security chief ended months of failed software remediation by driving to the data centre, clearing ID, finding the cabinet and physically pulling the power supply from the compromised hardware. Disconnection was the right control. Firevault Control is designed to take the same action in under six milliseconds.
Find the knowledge by need
Four routes through the library, ordered the way a security decision is actually made: understand the risk, decide what goes offline, decide where access stops, then govern it.
What is the risk?
Breaches, threat analysis, exposure patterns and evidence explaining where connected systems fail.
Explore risk and incidentsWhat data should be offline?
Guidance on crown jewels, backups, intellectual property, personal data and long-term digital assets.
Explore #OSS guidanceWhere should access stop?
Control blueprints for networks, OT, AI, remote access and systems where a path needs to be physically governed.
Explore Control BlueprintsWhat does good governance look like?
Board, regulatory and operational guidance covering resilience, accountability, recovery and evidence.
Explore governancePlaybooks and control blueprints
The long-form work: sector playbooks and control blueprints written for the people who have to sign them off.
View all playbooks
PlaybookThe Leaders' Playbook
A board-level briefing on sovereign data, succession resilience and physical protection.
Read it28 pages · 18 min read
PlaybookControl for Water: Deployment Playbook
Firebreak path control, the wider Control modules and offline recovery copies, mapped to the Purdue model for water operators.
Read it28 pages · 22 min read
PlaybookA Control Blueprint for AI: 2026 Playbook
40-page blueprint on AI infrastructure, open weights, agents and kill-switch design.
Read it40 pages · 28 min read
PlaybookClose the File. Protect the Record.
File closure, retained records and offline custody for UK law firms.
Read it28 pages · 20 min read
PlaybookA Control Blueprint for Aerospace & Aviation
Communication registers, operational states and rapid isolation for aerospace and aviation.
Read it28 pages · 22 min readLatest analysis
184 resources in view. Search or filter above to narrow the library.
InsightAirport WiFi sign-ups turn into a national data problem as 8.7 million customer records are accessedManchester Airports Group has confirmed that criminal hackers accessed the data of about 8.7 million customers across Manchester, East Midlands and London Stansted. Most of it came from free terminal WiFi sign-ups and from car parking, lounge and fast-track bookings.27 Aug 2026 · 5 min
RegulationPremier League moves the goalposts as cyber rulebook introduces 22 security control areasRule J.9 and Appendix 11 put cyber security into the Premier League rulebook, with phased deadlines, annual evidence and 22 control areas spanning club, stadium and supplier operations.27 Aug 2026 · 14 min
InsightT-Mobile pulled the plug on Salt Typhoon. It took a car journey to get there.T-Mobile's security chief ended months of failed software remediation by driving to the data centre, clearing ID, finding the cabinet and physically pulling the power supply from the compromised hardware. Disconnection was the right control. Firevault Control is designed to take the same action in under six milliseconds.27 Aug 2026 · 7 min
ExplainerThe Purdue Model: Everything You Need to KnowAn independent explainer on the Purdue Model: Levels 0 to 5, the industrial DMZ at Level 3.5, OT and ICS security, network segmentation and IEC 62443 zones and conduits.27 Aug 2026 · 1 min
ExplainerPhysical vs Logical Air Gap: What Is the Real Difference?What separates a physical air gap from a logical or virtual one, what each protects against, and the questions to ask anyone claiming their storage is air gapped.27 Aug 2026 · 1 min
ExplainerAir Gap vs Immutable Backup: How They Differ and CombineObject lock, WORM and retention policies compared with physical disconnection: what immutability protects, where it fails, and when both belong in the same architecture.27 Aug 2026 · 1 min
ExplainerPhysical Air Gap Storage and Ransomware ProtectionHow the modern ransomware kill chain finds and destroys recovery copies, and why reachability decides whether an organisation recovers.27 Aug 2026 · 1 min
ExplainerOffline Storage vs Cloud Backup for Ransomware ProtectionShared responsibility, credential and API-plane risk, restore economics, sovereignty and outage exposure compared across offline and cloud models.27 Aug 2026 · 1 minOne useful briefing. No noise.
Receive Firevault analysis on data exposure, cyber resilience, Offline Secure Storage® and control architecture.



Turn research into resilience
You have read the evidence. Now see how offline secure storage protects your most critical data from every threat analysed above.
Takes about 2 minutes. No account needed.