Agentic ProbLLMs: Exploiting AI Computer-Use and Coding Agents
This talk demonstrates end-to-end prompt injection exploits that compromise agentic systems. Specifically, we will discuss exploits that ...
Great talk describing the myriad ways coding agents can be re-directed to do stuff they shouldnโt via prompt Injections. Especially nice, changing to yolo-mode so the human in the loop is no longer asked for confirmation of potentially harmful operations (by @wuzzi23.bsky.social at #39c3)
30.12.2025 16:02 โ
๐ 7
๐ 2
๐ฌ 0
๐ 0
Great series, kudos.
To rephrase the old joke: the S in VIBE coding stands for Security.
03.09.2025 07:27 โ
๐ 2
๐ 1
๐ฌ 0
๐ 0
AgentHopper: An AI Virus ยท Embrace The Red
AgentHopper: A proof-of-concept AI Virus
AgentHopper: An AI Virus
Month of AI Bugs Season Finale - Enjoy! ๐ฟ
embracethered.com/blog/posts/2...
01.09.2025 05:16 โ
๐ 2
๐ 0
๐ฌ 1
๐ 0
The Summer of Johann: prompt injections as far as the eye can see
Independent AI researcher Johann Rehberger (previously) has had an absurdly busy August. Under the heading The Month of AI Bugs he has been publishing one report per day across an โฆ
Great summary by @simonwillison.net of @wuzzi23.bsky.social โs findings on AI tools vulnerabilities.
In short, all AI tools are vulnerable if one attaches external files and links to their prompts, leading to secrets leaks and remote code execution.
Johann publishes daily until the end of the month.
17.08.2025 05:01 โ
๐ 3
๐ 3
๐ฌ 0
๐ 0
GitHub Copilot: Remote Code Execution via Prompt Injection (CVE-2025-53773) ยท Embrace The Red
An attacker can put GitHub Copilot into YOLO mode by modifying the project's settings.json file on the fly, and then executing commands, all without user approval
๐ฅ Remote Code Execution in GitHub Copilot (CVE-2025-53773)
๐ Prompt injection exploit writes to Copilot config file & puts it into YOLO mode, and we get immediate RCE
๐ฅ Bypasses all user approvals
๐ก๏ธ Patch is out today. Update before someone else does it for you
embracethered.com/blog/posts/2...
13.08.2025 02:56 โ
๐ 1
๐ 0
๐ฌ 0
๐ 0
Exfiltrating Your ChatGPT Chat History and Memories With Prompt Injection ยท Embrace The Red
Episode 1:
Exfiltrating Your ChatGPT Chat History and Memories With Prompt Injection
embracethered.com/blog/posts/2...
11.08.2025 20:14 โ
๐ 0
๐ 0
๐ฌ 0
๐ 0