The European AI Office has issued its first formal enforcement notices under the EU AI Act. What security and compliance teams need to know about prohibited AI and high-risk systems.
The European AI Office has issued its first formal enforcement notices under the EU AI Act. What security and compliance teams need to know about prohibited AI and high-risk systems.
Design patterns for a prompt injection and jailbreak detection layer: rule-based filters, semantic classifiers, canary tokens, and output validation for production LLMs.
Training data can be reconstructed from foundation model weights with significantly higher accuracy than previously reported, with implications for GDPR compliance and IP protection.
PhantomSynth is a financially motivated threat actor that has industrialised LLM-generated spear phishing, dramatically reducing the cost of targeted social engineering at scale.
How injected instructions in tool outputs can escalate an agent's effective permissions, exfiltrate data, and pivot to internal services — a novel attack class for agentic AI.