A closer look at custom-code guardrail sandbox-escape (CVE–2026-40217) activity in the wild
A closer look at api_base SSRF (CVE-2024-6587) activity in the wild, and its nested variant
Inside mass discovery and model-probing reconnaissance campaigns that are mapping LLM backend servers in the wild
Threat actors attempting to hijack Ollama & LiteLLM endpoints to run pentesting agents, tools and web reverse-engineering
What we can learn from observing real attacks, made by real Adversaries
The Latent Undertow beneath fluent LLM behavior — and how to fish your activation probe out of it.
How understanding the training algorithms used in machine learning models may allow attacker to bypass them entirely
One Calendar Invite. Your Entire Vault. Zero Clicks.
Local Files Are No Longer Safe.
How Untrusted Content Triggered 1,000+ Agent Endpoints Worldwide and Exposed Moltbook’s Faulty Design
Beyond input & output filtering and how well does it generalize to your out-of-distribution production data?
A deeper look into an agentic browser's inner workings