Major Security Breach From Business Users’ Low-Code Apps Could Come in 2023, Analysts Warn Permalink 10 minute read
Hello 0-Days, My Old Friend: A 2024 Zero-Day Exploitation Analysis â—† Google Cloud Blog Permalink 23 minute read
MCP: Untrusted Servers and Confused Clients, Plus a Sneaky Exploit · Embrace The Red Permalink 13 minute read
New whitepaper outlines the taxonomy of failure modes in AI agents â—† Microsoft Security Blog Permalink 5 minute read
Researchers Secretly Ran a Massive, Unauthorized AI Persuasion Experiment on Reddit Users Permalink 3 minute read
Sycophancy in GPT-4o: What happened and what we’re doing about it ◆ OpenAI Permalink 2 minute read
Understanding Tokens in Microsoft Entra ID - Microsoft Entra ID â—† Microsoft Learn Permalink 5 minute read
Project Zero: From Naptime to Big Sleep: Using Large Language Models To Catch Vulnerabilities In Real-World Code Permalink less than 1 minute read
Securing GenAI Multi-Agent Systems Against Tool Squatting: A Zero Trust Registry-Based Approach Permalink 37 minute read
Sharing new open source protection tools and advancements in AI privacy and security Permalink 4 minute read
Enterprise-Grade Security for the Model Context Protocol (MCP): Frameworks and Mitigation Strategies Permalink 42 minute read
How ChatGPT Remembers You: A Deep Dive into Its Memory and Chat History Features · Embrace The Red Permalink 13 minute read
Monitoring Reasoning Models for Misbehavior and the Risks of Promoting Obfuscation Permalink 75 minute read
A Sober Look at Progress in Language Model Reasoning: Pitfalls and Paths to Reproducibility Permalink 54 minute read
GitHub - vgel/logitloom: explore token trajectory trees on instruct and base models Permalink 4 minute read
OpenAI: Explainability and reasoning should inform future AI models â—† VentureBeat Permalink 5 minute read
Build a Knowledge Graph with MCP Memory and Amazon Neptune â—† by David Bechberger â—† Apr, 2025 â—† Medium Permalink 7 minute read
GitHub - haizelabs/get-haized: A subset of jailbreaks automatically discovered by the Haize Labs haizing suite. Permalink 4 minute read
Surviving on a Diet of Poisoned Fruit: Reducing the National Security Risks of America’s Cyber Dependencies ◆ CNAS Permalink 1 minute read
AI in Software Engineering at Facebook â—† IEEE Journals & Magazine â—† IEEE Xplore Permalink 24 minute read
AI Security Requires Enterprise-Grade AI Discovery with Complete Coverage and Deep Context - Noma Security Permalink 6 minute read
AIRTBench: Measuring Autonomous AI Red Teaming Capabilities in Language Models Permalink 85 minute read
AlphaEvolve: A Gemini-powered coding agent for designing advanced algorithms - Google DeepMind Permalink 7 minute read
CERT-UA Discovers LAMEHUG Malware Linked to APT28, Using LLM for Phishing Campaign Permalink 1 minute read
Cyber Hard Problems: Focused Steps Toward a Resilient Digital Future â—† The National Academies Press Permalink 4 minute read
Do LLM Agents Have AI Red Team Capabilities? We Built a Benchmark to Find Out Permalink 10 minute read
Enhancing Security in AI Agents with FIDES: A Formal Model Leveraging Information-Flow Control Permalink 97 minute read
Google Online Security Blog: Mitigating prompt injection attacks with a layered defense strategy Permalink less than 1 minute read
How China’s Patriotic ‘Honkers’ Became the Nation’s Elite Cyberspies ◆ WIRED Permalink 17 minute read
How I used o3 to find CVE-2025-37899, a remote zeroday vulnerability in the Linux kernel’s SMB implementation – Sean Heelan’s Blog Permalink 17 minute read
How to Perform Clipboard Forensics: ActivitiesCache.db, Memory Forensics and Clipboard History Permalink less than 1 minute read
Invited Talk: Overlooked Foundations: Exploits as Experiments and Constructive Proofs in the Science-of-Security â—† USENIX Permalink 1 minute read
Life Prediction - AI Prompt by mattshumer â—† ShumerPrompt â—† AI Prompt Marketplace Permalink less than 1 minute read
Lloyd’s of London: Versicherung soll Schäden durch KI-Halluzinationen abdecken ◆ heise online Permalink 3 minute read
Measuring the Impact of Early-2025 AI on Experienced Open-Source Developer Productivity - METR Permalink 12 minute read
NeurIPS Poster PureGen: Universal Data Purification for Train-Time Poison Defense via Generative Model Dynamics Permalink 65 minute read
Ok signing off Replit for the day by @jasonlk(Jason ✨👾SaaStr.Ai✨ Lemkin) ◆ Twitter Thread Reader Permalink 2 minute read
Project Zero: Project Naptime: Evaluating Offensive Security Capabilities of Large Language Models Permalink 33 minute read
Revolutionizing Red-Teaming: The Single-Turn Crescendo Attack (STCA) on Large Language Models Permalink 22 minute read
Securing the Model Context Protocol: Building a safer agentic future on Windows â—† Windows Experience Blog Permalink 6 minute read
Security to Model: Securing Artificial Intelligence to Strengthen Cybersecurity – Committee on Homeland Security Permalink 1 minute read
Temporal Context Awareness: A Defense Framework Against Multi-turn Manipulation Attacks on Large Language Models Permalink 23 minute read
What’s Your Model Hiding? Preview the Snyk GenAI Model Risk Registry ◆ Snyk Labs Permalink 3 minute read
At Black Hat and DEF CON, AI was hacker, bodyguard, and target all at once â—† Fortune Permalink 10 minute read
Sloppy AI defenses take cybersecurity back to the 1990s, researchers say â—† SC Media Permalink 11 minute read
The experience of the analyst in an AI-powered present â—† Quelques Digressions Sous GPL Permalink 3 minute read
The real dilemmas of cybersecurity startup ideation, discovery, and validation Permalink 17 minute read
AI-powered PromptLocker ransomware is just an NYU research project — the code worked as a typical ransomware, selecting targets, exfiltrating selected data and encrypting volumes ◆ Tom’s Hardware Permalink less than 1 minute read
Internet detectives are misusing AI to find Charlie Kirk’s alleged shooter ◆ The Verge Permalink 4 minute read
Jumping the line: How MCP servers can attack you before you ever use them -The Trail of Bits Blog Permalink 6 minute read
Microsoft under fire: Senator demands FTC investigation into ‘arsonist selling firefighting services’ ◆ CSO Online Permalink 7 minute read