Zenity Labs
Research, tools, and talks for breaking and securing AI agents everywhere
Written by
Avishai Efrat, +12
Connect
Jul 6, 2026
•
9 min read
Monitoring agentic emergent misalignment in the wild - a word of caution and a methodology proposal
Jul 1, 2026
4 min read
A closer look at Ollama model-pull SSRF targeted activity in the wild
Jun 30, 2026
5 min read
A closer look at custom-code guardrail sandbox-escape (CVE–2026-40217) activity in the wild
6 min read
A closer look at api_base SSRF (CVE-2024-6587) activity in the wild, and its nested variant
Inside mass discovery and model-probing reconnaissance campaigns that are mapping LLM backend servers in the wild
7 min read
Threat actors attempting to hijack Ollama & LiteLLM endpoints to run pentesting agents, tools and web reverse-engineering
What we can learn from observing real attacks, made by real adversaries
Jun 4, 2026
10 min read
The Latent Undertow beneath fluent LLM behavior — and how to fish your activation probe out of it.
Mar 12, 2026
How understanding the training algorithms used in machine learning models may allow attacker to bypass them entirely