Security Research from the AI Agent Frontier
Research, tools, and talks for breaking and securing Agents
9 ThreatsSweeping ยท 2h ago
Security ResearchAgentFlayer: When AIjacking Leads to Full Data Exfiltration in Copilot Studio
Tamir Ishay Sharbat
I Just Wanted to Take a Note โ and Your Token Came Along
Dmitry Lozovoy
Security ResearchEchoLeak: A Reminder That AI Agent Risks Are Here to Stay
Marina Simakov
Security ResearchAgentFlayer: Discovery Phase of AI Agents in Copilot Studio
Tamir Ishay Sharbat
LLM vs. LLM: It's a MAD world.
Inbar Raz
Security ResearchAI Agents & 0-Click Exploits: The New Battle Ground for AI Security
Tamir Ishay Sharbat
Autonomous Copilots: Is your Copilot flying solo?
Inbar Raz
Links and materials for Hacking Your Enterprise Copilot: A Direct Guide to Indirect Prompt Injections
Tamir Ishay Sharbat
TalksZenity Research Published at RSAC 2025
Copilots and agents are a new access vector; How to build an AppSec program that scales to the level of citizen development
Michael Bargury
TalksLinks and materials for Scaling AppSec With an SDLC for Citizen Development
Links, demos, tools and slides for RSAC 2025
Michael Bargury
TalksLinks and materials for Your Copilot Is My Insider
Links, demos, tools and slides for RSAC 2025
Michael Bargury
ToolsTechniques from Zenity's GenAI Attacks Matrix Incorporated into MITRE ATLAS to Track Emerging AI Threats
TL;DR: Zenity has partnered with MITRE ATLAS to integrate GenAI Attacks Matrix techniques into the MITRE ATLAS framework, ensuring organizations stay ahead of evolving AI threats. As part of this collaboration, we introduce into ATLAS a new case study and 8 new attack techniques and 4 subtechniques.
Marina Simakov
AI Agents: The New Frontier for Security Researchers
Inbar Raz
The Power of One SSRF Vulnerability: A Multi-Platform Threat
Dmitry Lozovoy
Inside Salesforce Einstein: A Technical Background
Tamir Ishay Sharbat
