We don't need to hack your AI Agent to hack your AI Agent …and we don't need an AI agent for that either :)
Via a large enterprise's AI assistant, we obtained access to several million Entra identities and all chat logs including attachments — no prompt injection or model tricks required.
For all we know, the poor agent was not at fault and may not have even been able to witness what was happening.
https://srlabs.de/blog/hacking-ai-agent
#AI #AIhacking #VulnerabilityDisclosure #ResponsibleDisclosure

We strolled through an enterprise AI assistant's backend, helped ourselves to full application takeover and access to every chat log, and had a Microsoft Entra ID dump for dessert — no prompt injection, no model tricks, no AI expertise required.
#Karlsruhe zeigt alles, was im Radnetz schief läuft — auf 4,0 km https://www.youtube.com/watch?v=ShQocM-sIkI
Video von @StadtLandRad

Das erinnert mich irgendwie an die alten Google Hüllen für die Nexus Reihe, wo man einen beliebigen Kartenausschnitt drauf drucken lassen konnte.
https://birchtree.me/blog/terraink-makes-rad-maps-on-demand/
LOL:
BahnBet — Bet on German Train Delays https://bahn.bet/auth/register
Via ~n (@nblr) https://chaos.social/@nblr/116166510689733235
Ist jemand vom #KVV #VBK #AVG in #Karlsruhe anwesend?
„Ich nehm das jetzt selbst in die Hand!“– Student löst Fahrplan-Problem in Karlsruhe
https://www.swr3.de/aktuell/nachrichten/karlsruhe-website-student-fahrplan-100.html