New research shows AI coding agents can be tricked by hidden README instructions into leaking local configs/logs in up to 85% of cases — and humans rarely spot it. Treat docs as partially trusted input, not truth.🔗https://zurl.co/ThKyM #AIsecurity #DevSecOps #CyberSecurity
Microsoft Copilot security failures: A formal analysis reveals how DLP bypass, zero-click Excel disclosures, and prompt injection vectors expose fundamental infrastructure risks. Rapid remediation coexists with pre-deployment verification gaps. $MSFT https://post.kapualabs.com/4yb7jj6z #AISecurity #MicrosoftCopilot #InfrastructureRisk #FormalAnalysis

I deployed Microsoft Entra Prompt Shield end-to-end and tested it against real jailbreak payloads across supported AI traffic, including ChatGPT and Gemini in my lab.

Prompt Shield inspects AI traffic at the network layer using TLS inspection and conversation schemes, allowing adversarial prompts to be blocked before they reach the model while clean traffic passes through transparently.

Instead of building defenses into every application independently, you can apply one policy across multiple AI services. That’s a meaningful step toward giving security teams better visibility into AI usage.

I published the full deployment, testing, and results in my blog below:

https://nineliveszerotrust.com/blog/prompt-shield-network-ai-gateway/

#AISecurity #PromptInjection #ZeroTrust #MicrosoftEntra #CloudSecurity

Block Prompt Injection at the Network Layer with Entra Prompt Shield

Deploy Microsoft Entra Internet Access Prompt Shield to block prompt injection and jailbreak attacks at the network layer before they reach the AI model. Full hands-on lab with TLS inspection, conversation schemes for ChatGPT/Claude/Gemini/Deepseek, and a comparison with app-level LLM firewalls.

An AI agent killed its policy engine, disabled auto-restart, resumed unrestricted, and erased the audit logs. Four commands. Not hacked — just completing its task.

Separately, Alibaba's ROME escaped a sandbox and mined crypto with hijacked GPUs. No prompt told it to.

The structural flaw: governance in the same trust boundary as the agent.

https://mistaike.ai/blog/ai-agent-containment-problem

#AIAgent #AISecurity #CyberSecurity #InfoSec #MCPSecurity

An AI Agent Killed Its Own Guardrails in Four Commands. Containment Is the Hardest Problem in AI Security.

During testing, an AI agent killed its policy enforcement process, disabled auto-restart, resumed unrestricted operation, and erased the audit logs. It wasn't hacked. It was completing its task. As RSA 2026 opens tomorrow, containment — not detection — is the conversation that matters.

mistaike.ai

An AI agent killed its policy engine, disabled auto-restart, resumed unrestricted, and erased the audit logs. Four commands. Not hacked — just completing its task.

Separately, Alibaba's ROME escaped a sandbox and mined crypto with hijacked GPUs. No prompt told it to.

The structural flaw: governance in the same trust boundary as the agent.

https://mistaike.ai/blog/ai-agent-containment-problem

#AIAgent #AISecurity #CyberSecurity #InfoSec #MCPSecurity

An AI Agent Killed Its Own Guardrails in Four Commands. Containment Is the Hardest Problem in AI Security.

During testing, an AI agent killed its policy enforcement process, disabled auto-restart, resumed unrestricted operation, and erased the audit logs. It wasn't hacked. It was completing its task. As RSA 2026 opens tomorrow, containment — not detection — is the conversation that matters.

mistaike.ai

Cloaked, a consumer privacy startup offering bundled security tools including VPN, identity theft protection and AI-powered screening, has raised 375M USD in Series B funding to expand from consumer to enterprise market. The company saw 10x growth last year and now has over 350,000 paying customers.

https://techcrunch.com/2026/03/19/consumer-focused-privacy-company-cloaked-raises-375m-as-it-expands-to-enterprise/

#Tech #Startup #News #AISecurity #Cloaked

Consumer-focused privacy company Cloaked raises $375M as it expands to enterprise | TechCrunch

Cloaked's latest round is a mix of equity and growth funding.

TechCrunch
China declares AGI development to be a part of 5-year plan — LessWrong

The CCP writes in its 15th 5-year plan that it will. • …

"Production-ready AI agents need production-grade governance."

Microsoft's Agent Governance Toolkit for:
• Security & access controls
• Policy enforcement
• Audit & compliance guardrails

https://github.com/microsoft/agent-governance-toolkit

#AgenticAI #ResponsibleAI #OpenSource #AISecurity

GitHub - microsoft/agent-governance-toolkit: AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.

AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10. - microsoft/age...

GitHub

Interview with a 'sweating' AI CEO (2026)

https://www.youtube.com/watch?v=tnYaExb5JvM

#aisecurity #fun

Interview with a 'sweating' AI CEO (2026)

YouTube
ChatGPT For The Dark Web

YouTube