<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><description>Breaking AI. Building @zenitysec, lead @owaspnocode, columnist @DarkReading</description><link>https://bsky.app/profile/mbrg0.bsky.social</link><title>@mbrg0.bsky.social - mbg</title><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3mb5ennz6ls2d</link><description>&#34;Claude’s ability to autonomously use dev tools s.a. reading network requests and executing JS poses great risk. Since the browser first appeared a great amount of effort was invested into preventing one of the worst web vulnerabilities out there. XSS. Roll in, Claude in Chrome... XSS-as-a-service.&#34;</description><pubDate>29 Dec 2025 17:34 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3mb5ennz6ls2d</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lxicj4jnfs24</link><description>we&#39;re stuck replicating the first AI-human interface that caught on&#xA;The Chat&#xA;&#xA;we can do better&#xA;https://www.mbgsec.com/posts/2025-08-28-human-machine-interface-role-reversal/</description><pubDate>28 Aug 2025 19:43 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lxicj4jnfs24</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lvofgrxitk2j</link><description>’tis the season to be pwning&#xA;#BHUSA</description><pubDate>05 Aug 2025 19:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lvofgrxitk2j</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lupnjo32wc2n</link><description>After several hours of GitHub dorking on the Amazon Q infection we have:&#xA;- hacker&#39;s user and intent&#xA;- downloader&#xA;- prompt payload&#xA;- evasion techniques&#xA;- timeline from july 13 thru was mitigation and cover&#xA;&#xA;big open questions: how did lkmanka58 gain initial access? is this the only user involved?</description><pubDate>24 Jul 2025 13:33 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lupnjo32wc2n</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lud2ywkd6s2m</link><description>benchmarks go up&#xA;attackers pwning like its the 90s&#xA;https://www.mbgsec.com/posts/2025-07-19-data-flow-controls-wont-save-us</description><pubDate>19 Jul 2025 13:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lud2ywkd6s2m</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lubdz5z44s2e</link><description>0click chain on a copilot studio agent via email&#xA;bypass msft&#39;s defense, jailbreak 4o, recon for accessible data, dump the entire salesforce crm&#xA;one prompt&#xA;https://labs.zenity.io/p/a-copilot-studio-story-2-when-aijacking-leads-to-full-data-exfiltration-bc4a</description><pubDate>18 Jul 2025 21:06 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lubdz5z44s2e</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lubdrvxpt22e</link><description>this manus post has changed my todo for the weekend&#xA;the way in which they constrain model logits by manipulating prefixes is brilliant &#xA;https://manus.im/blog/Context-Engineering-for-AI-Agents-Lessons-from-Building-Manus</description><pubDate>18 Jul 2025 21:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lubdrvxpt22e</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3loz3cxkavs2l</link><description>its been 9 months since #BHUSA and living off microsoft copilot&#xA;&#xA;ppl have been asking if things are better now&#xA;&#xA;well.. they are much better. but for whom? 😈😈😈&#xA;&#xA;catch the sequel at hacker summer camp featuring very disturbing shenanigans &#xA;@blackhatevents.bsky.social</description><pubDate>12 May 2025 23:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3loz3cxkavs2l</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3loolhdf34c2x</link><description>an ai system is the top hacker at h1 us leaderboard&#xA;&#xA;https://www.mbgsec.com/posts/2025-05-08-oai-security-conf-automated-vuln-discovery/</description><pubDate>08 May 2025 18:52 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3loolhdf34c2x</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3loj5yrz4ok2s</link><description>incredible vibes at openai&#39;s security conf last week&#xA;&#xA;I came out both humbled and excited&#xA;and with a greater conviction --&#xA;&#xA;you can just do things!</description><pubDate>06 May 2025 15:08 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3loj5yrz4ok2s</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lo4ke3cock2k</link><description>AI vendors have been creating vuln disclosure programs asking that every bad prompt be responsibly disclosed&#xA;&#xA;blocking a specific prompt does little to protect users&#xA;it creates an illusion of security that leaves users exposed&#xA;https://www.mbgsec.com/posts/2025-04-29-there-is-nothing-responsible-about-disclosure-of/</description><pubDate>01 May 2025 14:45 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lo4ke3cock2k</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lo4kcqmfm22k</link><description>good morning folks! thanks again to everyone who attended my talks this week&#xA;&#xA;ai assistants create a new initial access vector&#xA;prompt injection is not a bug to fix, its a problem to manage&#xA;&#xA;slides, hacking demos, security program -&gt;&#xA;https://labs.zenity.io/p/zenity-research-published-at-rsac-2025</description><pubDate>01 May 2025 14:44 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lo4kcqmfm22k</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lnxl3pyors2q</link><description>we conflate *the problem* with the term prompt injection&#xA;&#xA;the problem is that AI inherently does not follow instructions, and we act like it does&#xA;&#xA;it follows our goals, an attacker’s, or its own just the same&#xA;attackers exploit this&#xA;hijacking your AI for their goals&#xA;&#xA;https://www.mbgsec.com/posts/2025-04-28-beyond-prompt-injection/</description><pubDate>29 Apr 2025 15:14 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lnxl3pyors2q</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lci6qaahps2s</link><description>tmrw (Dec 5) at 10am PT Microsoft is releasing a convo by @donasarkar.bsky.social @sarahyo.com and I where we go into using m365 copilot &amp; copilot studio securely&#xA;&#xA;this was a great attacker-defender interaction&#xA;&#xA;join us! we&#39;ll be there for live questions in comments</description><pubDate>04 Dec 2024 12:46 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lci6qaahps2s</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lbei6dl4ls2w</link><description>first time at INTENT &#xA;met lots of talented folks and the vibes were great&#xA;ty this was awesome!</description><pubDate>20 Nov 2024 07:59 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lbei6dl4ls2w</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lb66xk7mzs2l</link><description>ok we’re having a sequel to living off microsoft copilot</description><pubDate>17 Nov 2024 19:58 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lb66xk7mzs2l</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lb27egs5xk2b</link><description>Aaron Costello found 1.1 million NHS employee PII records exposed due to a Power Pages misconfig&#xA;&#xA;new powerpwn module is out!&#xA;by avishai efrat and ofri nachfolger&#xA;&#xA;scan your environment for public facing Pages and Dataverse tables&#xA;&#xA;https://github.com/mbrg/power-pwn/wiki/Modules:-Power-Pages</description><pubDate>16 Nov 2024 05:55 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lb27egs5xk2b</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3laybzzssk225</link><description>is there any popular formal definition of the ‘halting problem’ for AI? i.e. can we build a kill switch?</description><pubDate>15 Nov 2024 11:38 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3laybzzssk225</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lawlhj6sfc2r</link><description>55k devs&#xA;90k copilots&#xA;500k apps&#xA;1.1m automations&#xA;10m creds&#xA;&#xA;!&#xA;&#xA;[contains quote post or other embedded content]</description><pubDate>14 Nov 2024 19:21 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lawlhj6sfc2r</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lawi4ibcbk22</link><description>Microsoft has &gt;1.5 million low-code/no-code apps including 90K bots and AI copilots&#xA;&#xA;this is how together we built a security program that managed to remediate 95% of vulns within 4m&#xA;&#xA;I’m really excited to finally be able to share this -&#xA;&#xA;https://www.youtube.com/watch?v=0jGUiaWAU04</description><pubDate>14 Nov 2024 18:21 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lawi4ibcbk22</guid></item><item><link>https://bsky.app/profile/mbrg0.bsky.social/post/3lawcorqqfk2c</link><description>hello world</description><pubDate>14 Nov 2024 16:44 +0000</pubDate><guid isPermaLink="false">at://did:plc:ooarmoll72ejbd6okfsegdk3/app.bsky.feed.post/3lawcorqqfk2c</guid></item></channel></rss>