Zenity Labs
Research, tools, and talks for breaking and securing AI agents everywhere
Connect
The Latent Undertow beneath fluent LLM behavior — and how to fish your activation probe out of it.
How understanding the training algorithms used in machine learning models may allow attacker to bypass them entirely
One Calendar Invite. Your Entire Vault. Zero Clicks.
Local Files Are No Longer Safe.
How Untrusted Content Triggered 1,000+ Agent Endpoints Worldwide and Exposed Moltbook’s Faulty Design
Beyond input & output filtering and how well does it generalize to your out-of-distribution production data?
A deeper look into an agentic browser's inner workings
Indirect Prompt Injection makes OpenClaw vulnerable to Backdoors and much more.
Agent-targeted social engineering and attacks observed on a live agent network
A Copilot Studio case study in agent discovery and capability mapping
What recent scanning activity means for your AI middleware and agentic deployments