Read more about the article Prompt Injection Attacks Explained: How Attackers Hijack AI Applications
Prompt injection attack chat and poisoned LLM brain

Prompt Injection Attacks Explained: How Attackers Hijack AI Applications

How attackers hijack AI applications with nothing but text: direct vs indirect injection, real incidents from Bing to EchoLeak, why no complete fix exists, and the layered architecture that actually contains it.

Continue ReadingPrompt Injection Attacks Explained: How Attackers Hijack AI Applications
Read more about the article AI Agents Explained: Every Core Concept From Autonomy to Quantization
AI agent concept map: the loop and its eight layers

AI Agents Explained: Every Core Concept From Autonomy to Quantization

  • Post author:
  • Post category:Security

The complete AI agent concept map - autonomy, perception, action space, ReAct, chain of thought, memory types, the harness, A2A/A2U/MCP protocols, multi-agent patterns, metrics, KV cache and quantization - each with how it works and a real example.

Continue ReadingAI Agents Explained: Every Core Concept From Autonomy to Quantization
Read more about the article Tool Hijacking: The 2024 Papers That Predicted Agent Attacks
Hmmnm cover v2 — SECURITY

Tool Hijacking: The 2024 Papers That Predicted Agent Attacks

By November 2024, AI-agent security research had already documented the attack class that production incidents would later make infamous. InjecAgent (March 2024, ACL Findings) benchmarked 1,054 indirect-injection scenarios across 30 agents, finding ReAct-prompted GPT-4 attacked successfully roughly a quarter of the time. Breaking Agents (July 2024) demonstrated malfunction amplification through agentic loops. Together with 2023's foundational indirect-prompt-injection work, they mapped how tools, descriptions, and fetched content become command channels. This survey walks the papers, the hijack taxonomy, and the controls that predate the incidents.

Continue ReadingTool Hijacking: The 2024 Papers That Predicted Agent Attacks
Read more about the article Arup’s HK$200M Deepfake Call: The CFO Fraud Manual Rewritten
Hmmnm cover v2 — SECURITY

Arup’s HK$200M Deepfake Call: The CFO Fraud Manual Rewritten

In February 2024, a finance employee at Arup's Hong Kong office paid out roughly HK$200 million (US$25.6M) across fifteen transfers after a video conference in which every other participant — including the UK-based CFO — was a deepfake, built from public footage and commodity cloning tools. Police detailed the case on February 4, and by year-end it stood as the largest documented deepfake-enabled financial fraud: phishing to set the pretext, a synthetic multi-person call to seal it. This account reconstructs the con, the tooling economics, and the verification-protocol redesign it forced.

Continue ReadingArup’s HK$200M Deepfake Call: The CFO Fraud Manual Rewritten