<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url>
    <loc>https://labs.zenity.io/</loc>
    <lastmod>2026-04-03T20:08:16+00:00</lastmod>
  </url>
  <url>
    <loc>https://labs.zenity.io/subscribe</loc>
    <lastmod>2026-04-03T20:08:16+00:00</lastmod>
  </url>
      <url>
        <loc>https://labs.zenity.io/authors</loc>
        <lastmod>2026-04-03T20:08:16+00:00</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/tamir-ishay-sharbat</loc>
        <lastmod>2025-12-29</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/raul-klugman-onitza</loc>
        <lastmod>2026-02-11</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/zenity-labs</loc>
        <lastmod>2025-03-31</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/max-fomin</loc>
        <lastmod>2025-10-26</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/tomer-wetzler</loc>
        <lastmod>2025-11-06</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/dmitry-lozovoy</loc>
        <lastmod>2025-06-26</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/marina-simakov</loc>
        <lastmod>2025-03-20</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/stav-cohen</loc>
        <lastmod>2025-12-30</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/michael-bargury</loc>
        <lastmod>2025-03-29</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/gal-malka</loc>
        <lastmod>2024-08-14</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/inbar-raz</loc>
        <lastmod>2025-06-26</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/avishai-efrat</loc>
        <lastmod>2026-01-18</lastmod>
      </url>
      <url>
        <loc>https://labs.zenity.io/authors/lana-salameh</loc>
        <lastmod>2025-12-16</lastmod>
      </url>
    <url>
      <loc>https://labs.zenity.io/p/interpreting-jailbreaks-and-prompt-injections-with-attribution-graphs</loc>
      <lastmod>2025-10-22</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/links-and-materials-for-hacking-your-enterprise-copilot-a-direct-guide-to-indirect-prompt-injections</loc>
      <lastmod>2025-05-29</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/echoleak-a-reminder-that-ai-agent-risks-are-here-to-stay-3cf3</loc>
      <lastmod>2025-06-20</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/moving-the-decision-boundary-of-llm-safety-classifiers</loc>
      <lastmod>2026-01-04</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/rsac-2025</loc>
      <lastmod>2025-05-07</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/summary-zenity-research-published-blackhat-2024</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/reconstructing-a-timeline-for-amazon-q-prompt-infection-81e5</loc>
      <lastmod>2025-08-02</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/bluehat24</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/phantom-references-microsoft-copilot</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/inside-the-agent-stack-securing-agents-in-amazon-bedrock-agentcore</loc>
      <lastmod>2025-12-20</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/hsc24</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/connected-agents-the-hidden-agentic-puppeteer</loc>
      <lastmod>2025-12-29</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/the-power-of-one-ssrf-vulnerability-a-multi-platform-threat</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/enabling-safety-in-ai-agents-via-choice-architecture</loc>
      <lastmod>2025-12-03</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/appendix</loc>
      <lastmod>2025-11-16</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/techniques-from-zenitys-genai-attacks-matrix-incorporated-into-mitre-atlas-to-track-emerging-ai-thr</loc>
      <lastmod>2025-03-20</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/turning-moltbook-into-a-global-botnet-map</loc>
      <lastmod>2026-02-18</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/rce</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/the-geometry-of-safety-failures-in-large-language-models</loc>
      <lastmod>2025-12-28</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/breaking-down-agentkit-s-guardrails</loc>
      <lastmod>2025-10-10</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/agentic-recon-discovering-and-mapping-public-ai-agents</loc>
      <lastmod>2026-02-03</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/looking-inside-a-maliciousness-classifier-based-on-the-llm-s-internals</loc>
      <lastmod>2026-02-19</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/links-materials-living-off-microsoft-copilot</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/hardening-atlas-the-relentless-challenge-of-securing-an-untrusted-browser-agent</loc>
      <lastmod>2025-12-31</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/claude-in-chrome-a-threat-analysis</loc>
      <lastmod>2025-12-29</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/exhibit-exploit-two-def-con-33-highlights-from-the-past-future-of-hacking-5fcb</loc>
      <lastmod>2025-08-26</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/i-just-wanted-to-take-a-note-and-your-token-came-along-c615</loc>
      <lastmod>2025-07-03</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/inside-microsoft-365-copilot-technical-breakdown</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/agentflayer-chatgpt-connectors-0click-attack-5b41</loc>
      <lastmod>2025-08-06</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/links-materials-15-ways-break-copilot</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/outsmarting-copilot-creating-hyperlinks-copilot-365</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/indirect-prompt-injection-advanced-manipulation-techniques</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/clawdbot-more-than-you-bargained-for</loc>
      <lastmod>2026-01-27</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/a-copilot-studio-story-2-when-aijacking-leads-to-full-data-exfiltration-bc4a</loc>
      <lastmod>2025-08-06</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/threat-actors-are-already-scanning-for-your-ai-deployments-and-middleware</loc>
      <lastmod>2026-01-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/llm-vs-llm-its-a-mad-world</loc>
      <lastmod>2025-06-10</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/agent-to-agent-exploitation-in-the-wild-observed-attacks-on-moltbook-b929</loc>
      <lastmod>2026-02-05</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/agentflayer-version-en-espanol</loc>
      <lastmod>2025-10-24</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/links-and-materials-for-scaling-appsec-with-an-sdlc-for-citizen-development</loc>
      <lastmod>2025-05-01</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/perplexedbrowser-perplexity-s-agent-browser-can-leak-your-personal-pc-local-files</loc>
      <lastmod>2026-03-03</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/openclaw-or-opendoor-indirect-prompt-injection-makes-openclaw-vulnerable-to-backdoors-and-much-more</loc>
      <lastmod>2026-02-04</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/perplexedbrowser-how-attackers-can-weaponize-comet-to-takeover-your-1password-vault</loc>
      <lastmod>2026-03-03</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/indirect-prompt-injection-initial-success-robustness</loc>
      <lastmod>2025-06-11</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/copilot-reads-email-teams-messages</loc>
      <lastmod>2025-04-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/phishing-dead-long-live-spear-phishing</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/agentflayer-minimum-clicks-maximum-leaks-tilling-chatgpt-s-attack-surface-c4c7</loc>
      <lastmod>2025-08-08</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/inside-salesforce-einstein-a-technical-background</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/scaling-appsec-with-an-sdl-for-citizen-development</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/exploring-the-risks-of-chatgpt-s-atlas-browser</loc>
      <lastmod>2025-10-24</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/access-copilot-m365-terminal</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/why-aren-t-we-making-any-progress-in-security-from-ai-bf02</loc>
      <lastmod>2025-08-02</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/tools-of-the-trade</loc>
      <lastmod>2025-11-19</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/stealing-copilots-system-prompt</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/autonomous-copilots-is-your-copilot-flying-solo-c8cf</loc>
      <lastmod>2025-06-01</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/analyzing-the-security-risks-of-openai-s-agentkit</loc>
      <lastmod>2025-10-10</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/long-winding-road-dlp-patches-power-platform</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/labs-zenity-io</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/sure-let-ai-browse-the-internet-what-could-possibly-go-wrong</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/a-copilot-studio-story-discovery-phase-in-ai-agents-f917</loc>
      <lastmod>2025-08-06</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/ai-agents-the-new-frontier-for-security-researchers</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/perplexity-comet-a-reversing-story</loc>
      <lastmod>2026-02-11</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/catching-prompt-guard-off-guard-exploiting-overfit-in-training-algorithms</loc>
      <lastmod>2026-03-12</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/inside-the-agent-stack-securing-microsoft-foundry-built-agents</loc>
      <lastmod>2025-12-17</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/your-copilot-is-my-insider-rsac-2025</loc>
      <lastmod>2025-05-01</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/over-permissions-in-salesforce-einstein-and-unexpected-consequences</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/ai-agents-0-click-exploits-the-new-battle-ground-for-ai-security-c377</loc>
      <lastmod>2025-06-05</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/ttps-ai-for-genai-targeted-attacks</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/modeling-llms-via-structured-self-modeling-ssm</loc>
      <lastmod>2025-11-11</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/when-a-jira-ticket-can-steal-your-secrets</loc>
      <lastmod>2025-08-06</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/rag-poisoning-need-one-document</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/prompt-mines-0-click-data-corruption-in-salesforce-einstein-1cfb</loc>
      <lastmod>2025-08-14</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/data-structure-injection-dsi-in-ai-agents</loc>
      <lastmod>2025-11-06</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/hsc25</loc>
      <lastmod>2025-08-08</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/p/a-look-inside-copilot-rag-system</loc>
      <lastmod>2025-04-15</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/t/Talks</loc>
      <lastmod>2025-09-18</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/t/Security research</loc>
      <lastmod>2025-09-18</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/t/Tools</loc>
      <lastmod>2025-09-18</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/t/Engineering</loc>
      <lastmod>2025-09-18</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/c/join-us</loc>
      <lastmod>2024-08-12</lastmod>
      <priority>1.0</priority>
    </url>
    <url>
      <loc>https://labs.zenity.io/c/meet-us</loc>
      <lastmod>2026-01-29</lastmod>
      <priority>1.0</priority>
    </url>
</urlset>