176 Followers
194 Following
757 Posts
Security engineer at @srlabs in Berlin
Websitehttps://louismerl.in

We don't need to hack your AI Agent to hack your AI Agent …and we don't need an AI agent for that either :)

Via a large enterprise's AI assistant, we obtained access to several million Entra identities and all chat logs including attachments — no prompt injection or model tricks required.

For all we know, the poor agent was not at fault and may not have even been able to witness what was happening.

https://srlabs.de/blog/hacking-ai-agent

#AI #AIhacking #VulnerabilityDisclosure #ResponsibleDisclosure

We don't need to hack your AI Agent to hack your AI Agent - SRLabs Research

We strolled through an enterprise AI assistant's backend, helped ourselves to full application takeover and access to every chat log, and had a Microsoft Entra ID dump for dessert — no prompt injection, no model tricks, no AI expertise required.

SRLabs
Having fun with my kid playing with the delay time on the #microrack
#openhardware #synth
@wakest lol nvm saw your follow-up post about mastodon only showing 4 images and was able to look at the plaque on pixelfed
@wakest do you know what’s inside?

Pokémon Go players thought they were catching Pikachus.

They were actually building the nervous system for robot civilization.

500M humans. 30B images. Zero consent forms.

The game was the harvest.
https://www.technologyreview.com/2026/03/10/1134099/how-pokemon-go-is-helping-robots-deliver-pizza-on-time/

How Pokémon Go is giving delivery robots an inch-perfect view of the world

Niantic's AI spinout is training a new world model using 30 billion images of urban landmarks crowdsourced from players.

MIT Technology Review
@liaizon thank you Liaizon for pushing this forward 🙌

What's the state of digital sovereignty for our academic landscape?

Inspired by a similar post looking at digital sovereignty of municipalities, I explored what messaging infrastructure universities rely on. Sadly, many have switched to hyper scalars but few large universities keep running their own email infrastructure. Germany, Austria, France does not look too bad and lead by example.

[Note that the assessment is based on a simple MX records comparison against a list of known scalars, I don't yet check SPF records or guesstimate the SMTP software/version, this may be done in a future version.]

Check out the interactive map: https://nebelwelt.net/gannimo/unimx/

The MacBook Neo is such an interesting machine that it coaxed a thousand-word-essay out of me: https://samhenri.gold/blog/20260312-this-is-not-the-computer-for-you/
“This Is Not The Computer For You” · Sam Henri Gold

Sam Henri Gold is a product design engineer building playful, useful software.

@nastasiahadjadji @pixelsfr j’ai beaucoup aimé l’article merci beaucoup !
J’ai créé ce site l’année dernière, je me dit que ça peut vous intéresser :
https://far.computer/
farphone

farphone is a website running on a repurposed smartphone