Really good research on practical attacks against LLM agents. > "Invitation Is All You Need! Promptware Attacks Against LLM-Powered Assistants in ...
In the early 1960s, National Security Agency cryptanalyst and cryptanalysis instructor Lambros D. Callimahos coined the term "Stethoscope" to descr...
First-person account of someone accidentally catching several Humboldt squid on a fishing line. No photos, though. As usual, you can also use this...
I just heard about this: > There's a travel scam warning going around the internet right now: You should keep your baggage tags on your bags until...
The US Director of National Intelligence is reporting that the UK government is dropping its backdoor mandate against the Apple iPhone. For now, at...
Nice indirect prompt injection attack: > Bargury's attack starts with a poisoned document, which is shared to a potential victim's Google Drive. (...
I wrote about this in 2023. Here's the story: > Three Dutch security analysts discovered the vulnerabilities--five in total--in a European radio...
Look at this: McDonald's chose the password "123456" for a major corporate system.
Nice short article on the bobtail squid. As usual, you can also use this squid post to talk about the security stories in the news that I haven't ...
This academic year, I am taking a sabbatical from the Kennedy School and Harvard University. (It's not a real sabbatical--I'm just an adjunct--but ...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.