AI Security Incident Case: Account Takeover Due to Meta AI Support Assistant Authorization Flaw

AI Security Incident Case: Account Takeover Due to Meta AI Support Assistant Authorization Flaw

Overview Between late May and early June 2026, several high-profile Instagram accounts were reportedly taken over by attackers, including Barack Obama’s White House account, the personal account of U.S. Space Force Chief ...
AI Security Incident Case: Both Grok and Gemini Hallucinated When Verifying Minab Cemetery Photo

AI Security Incident Case: Both Grok and Gemini Hallucinated When Verifying Minab Cemetery Photo

Overview A core risk within AI security threats lies in the reliability of AI models, manifested as distorted outputs, hallucinations, and the generation of misleading content. While these issues may seem like ...

Bypassing LLM Supervisor Agents Through Indirect Prompt Injection

Indirect prompt injection lets attackers bypass LLM supervisor agents by hiding malicious instructions in profile fields and contextual data. Learn how this attack works and how to defend against it. The post ...
AI Infrastructure LiteLLM Supply Chain Poisoning Alert

AI Infrastructure LiteLLM Supply Chain Poisoning Alert

Overview Recently, NSFOCUS Technology CERT detected that the GitHub community disclosed that there was a credential stealing program in the new version of LiteLLM. Analysis confirmed that it had suffered supply chain ...

Novee Brings Autonomous Red Teaming to LLM Applications, Built From Its Own Vulnerability Research

Novee has introduced AI Red Teaming for LLM Applications, an autonomous security testing capability built into its AI penetration testing platform. The product is designed to find vulnerabilities in AI-powered applications before ...

Julius v0.2.0: From 33 to 63 Probes — Now Detecting Cloud AI, Enterprise Inference, and RAG Pipelines

TL;DR: Julius v0.2.0 nearly doubles LLM fingerprinting probe coverage from 33 to 63, adding detection for cloud-managed AI services (AWS Bedrock, Azure OpenAI, Vertex AI), high-performance inference servers (SGLang, TensorRT-LLM, Triton), AI ...
SOC Engineers Go Deep on AI SOC Guardrails

SOC Engineers Go Deep on AI SOC Guardrails

What to automate, what needs human approval, and why 'the AI did it' won't satisfy your auditors" would pull better. The post SOC Engineers Go Deep on AI SOC Guardrails appeared first ...
Analysis of the Attack Surface in the Agent SKILL Architecture: Case Studies and Ecosystem Research

Analysis of the Attack Surface in the Agent SKILL Architecture: Case Studies and Ecosystem Research

Background As LLMs and intelligent agents expand from dialogue to task execution, the encapsulation, reuse and orchestration of LLM capabilities have become key issues. As a capability abstraction mechanism, SKILL encapsulates reasoning ...
NSFOCUS Unveils Enhanced AI LLM Risk Threat Matrix for Holistic AI Security Governance

NSFOCUS Unveils Enhanced AI LLM Risk Threat Matrix for Holistic AI Security Governance

SANTA CLARA, Calif., Jan 29, 2026 – Security is a prerequisite for the application and development of LLM technology. Only by addressing security risks when integrating LLMs can businesses ensure healthy and sustainable ...