mastodontech.de ist einer von vielen unabhängigen Mastodon-Servern, mit dem du dich im Fediverse beteiligen kannst.
Offen für alle (über 16) und bereitgestellt von Markus'Blog

Serverstatistik:

1,5 Tsd.
aktive Profile

#llmsecurity

1 Beitrag1 Beteiligte*r0 Beiträge heute
TechnoTenshi :verified_trans: :Fire_Lesbian:<p>Supabase's MCP is vulnerable to "lethal trifecta" attacks where LLMs with elevated DB access, exposed to user input, can be tricked into leaking sensitive data. Read-only mode helps but doesn't eliminate risk. </p><p><a href="https://simonwillison.net/2025/Jul/6/supabase-mcp-lethal-trifecta/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">simonwillison.net/2025/Jul/6/s</span><span class="invisible">upabase-mcp-lethal-trifecta/</span></a></p><p><a href="https://infosec.exchange/tags/PromptInjection" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PromptInjection</span></a> <a href="https://infosec.exchange/tags/LLMSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMSecurity</span></a> <a href="https://infosec.exchange/tags/Supabase" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Supabase</span></a> <a href="https://infosec.exchange/tags/Infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Infosec</span></a></p>
OWASP Foundation<p>🚨 Time is running out to register for OWASP Global AppSec EU 2025 in Barcelona from May 27–31!</p><p>This event is for builders, breakers, defenders, leaders, and all others who want to engage with the best minds in AppSec, explore emerging tech like AI and LLM security, and connect with OWASP project leaders.</p><p>🔗 Register now: <a href="https://owasp.glueup.com/event/123983/register" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">owasp.glueup.com/event/123983/</span><span class="invisible">register</span></a></p><p><a href="https://infosec.exchange/tags/OWASP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OWASP</span></a> <a href="https://infosec.exchange/tags/AppSecEU2025" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AppSecEU2025</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AppSec</span></a> <a href="https://infosec.exchange/tags/DevSecOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DevSecOps</span></a> <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> <a href="https://infosec.exchange/tags/LLMSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMSecurity</span></a> <a href="https://infosec.exchange/tags/Hacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hacking</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/Barcelona" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Barcelona</span></a></p>
OWASP Foundation<p>Join Juan Berner at OWASP Global AppSec EU 2025 in Barcelona for an exciting session exploring the future of Web Application Firewalls with AI! </p><p>🛡️ From Prompt to Protect: LLMs as Next-Gen WAFs <br>📅 Thursday, May 29, 2025 <br>⏰ 1:15 PM – 2:00 PM CEST </p><p>🔗 Register: <a href="https://owasp.glueup.com/event/123983/register/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">owasp.glueup.com/event/123983/</span><span class="invisible">register/</span></a> </p><p><a href="https://infosec.exchange/tags/OWASP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OWASP</span></a> <a href="https://infosec.exchange/tags/AppSecEU2025" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AppSecEU2025</span></a> <a href="https://infosec.exchange/tags/LLMsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMsecurity</span></a> <a href="https://infosec.exchange/tags/WAF" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WAF</span></a> <a href="https://infosec.exchange/tags/AIinCybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AIinCybersecurity</span></a> <a href="https://infosec.exchange/tags/NextGenSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NextGenSecurity</span></a> <a href="https://infosec.exchange/tags/SecureApps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecureApps</span></a> <a href="https://infosec.exchange/tags/Barcelona" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Barcelona</span></a></p>
Frank J<p>🔐 Gamma AI is now being used to craft pixel-perfect phishing pages.<br>These attacks mimic cloud login portals, flip JavaScript behavior, and bypass email filters.</p><p>📉 We break it all down in our latest article:<br>— Real misuse cases<br>— MITRE TTP matrix<br>— Python detection script<br>— Visual trust infographic</p><p>📖 Read it here: <a href="https://open.substack.com/pub/teamivity/p/weaponized-intelligence-how-gamma?r=3cbcvp&amp;utm_medium=ios" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">open.substack.com/pub/teamivit</span><span class="invisible">y/p/weaponized-intelligence-how-gamma?r=3cbcvp&amp;utm_medium=ios</span></a></p><p><a href="https://ioc.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CyberSecurity</span></a> <a href="https://ioc.exchange/tags/GammaAI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GammaAI</span></a> <a href="https://ioc.exchange/tags/LLMSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMSecurity</span></a> <a href="https://ioc.exchange/tags/CloudSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CloudSec</span></a> <a href="https://ioc.exchange/tags/Phishing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Phishing</span></a> <a href="https://ioc.exchange/tags/Infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Infosec</span></a></p>
OWASP Foundation<p>Join Javan Rasokat and Rico Komenda at OWASP Global AppSec EU 2025 in Barcelona for a powerful joint session on AI security! </p><p>🛠️Builders and Breakers: A Collaborative Look at Securing LLM-Integrated Apps<br>📅 Thursday, May 29, 2025 <br>⏰ 2:15 PM – 3:00 PM CEST </p><p>🔗 Register: <a href="https://owasp.glueup.com/event/123983/register/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">owasp.glueup.com/event/123983/</span><span class="invisible">register/</span></a> </p><p><a href="https://infosec.exchange/tags/OWASP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OWASP</span></a> <a href="https://infosec.exchange/tags/AppSecEU2025" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AppSecEU2025</span></a> <a href="https://infosec.exchange/tags/AIsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AIsecurity</span></a> <a href="https://infosec.exchange/tags/LLMSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMSecurity</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/RedTeam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>RedTeam</span></a> <a href="https://infosec.exchange/tags/BlueTeam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlueTeam</span></a> <a href="https://infosec.exchange/tags/SecureAI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecureAI</span></a> <a href="https://infosec.exchange/tags/Barcelona" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Barcelona</span></a></p>
JCON<p>How secure is your LLM-powered app, really?</p><p>Join 🧑🏼‍💻 Brian Vermeer and Lize Raes at <a href="https://mastodon.social/tags/JCON2025" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>JCON2025</span></a> as they tackle the dark side of AI: <br>⚠️ Prompt injection <br>🔐 Key leakage <br>📉 Data abuse risks <br>💡 And how YOUR system vulnerabilities impact <a href="https://mastodon.social/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> behavior.<br>Get practical strategies to build secure &amp; privacy-compliant <a href="https://mastodon.social/tags/LLM" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLM</span></a> applications—because your AI shouldn’t turn against you. 😉</p><p>🎟️ <a href="https://2025.europe.jcon.one/tickets" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">2025.europe.jcon.one/tickets</span><span class="invisible"></span></a></p><p> <a href="https://mastodon.social/tags/Java" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Java</span></a> <a href="https://mastodon.social/tags/LLMSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMSecurity</span></a> <a href="https://mastodon.social/tags/JavaChampion" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>JavaChampion</span></a> <a href="https://mastodon.social/tags/DevSecOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DevSecOps</span></a> <a href="https://mastodon.social/tags/JCON" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>JCON</span></a> <a href="https://mastodon.social/tags/JavaCommunity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>JavaCommunity</span></a></p>
Pyrzout :vm:<p>DeepSeek Claims ‘Malicious Attacks’ After AI Breakthrough Upends NVIDIA, Broadcom <a href="https://thecyberexpress.com/deepseek-malicious-attacks-ai-breakthrough/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">thecyberexpress.com/deepseek-m</span><span class="invisible">alicious-attacks-ai-breakthrough/</span></a> <a href="https://social.skynetcloud.site/tags/largelanguagemodels" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>largelanguagemodels</span></a> <a href="https://social.skynetcloud.site/tags/TheCyberExpressNews" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TheCyberExpressNews</span></a> <a href="https://social.skynetcloud.site/tags/TheCyberExpress" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TheCyberExpress</span></a> <a href="https://social.skynetcloud.site/tags/FirewallDaily" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FirewallDaily</span></a> <a href="https://social.skynetcloud.site/tags/Cyberattack" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cyberattack</span></a> <a href="https://social.skynetcloud.site/tags/LLMsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMsecurity</span></a> <a href="https://social.skynetcloud.site/tags/CyberNews" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CyberNews</span></a> <a href="https://social.skynetcloud.site/tags/DeepSeek" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DeepSeek</span></a> <a href="https://social.skynetcloud.site/tags/ChatGPT" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ChatGPT</span></a> <a href="https://social.skynetcloud.site/tags/OpenAI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenAI</span></a> <a href="https://social.skynetcloud.site/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a></p>
Andrei Kucharavy<p>Giving a talk today at the Swiss <a href="https://mastodon.social/tags/CISOSummit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CISOSummit</span></a> in the margin of the <a href="https://mastodon.social/tags/SwissCyberStorm" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SwissCyberStorm</span></a> about the LLMs in cybersecurity, current hype, and the lessons from the last few decades to provide them with tools to make informed decisions. </p><p><a href="https://mastodon.social/tags/LLMSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMSecurity</span></a> <a href="https://mastodon.social/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://mastodon.social/tags/LLMs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMs</span></a></p><p><a href="https://www.ciso-summit.ch/next-summit/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">ciso-summit.ch/next-summit/</span><span class="invisible"></span></a></p>
DeepSec Conference ☑<p>DeepSec 2024 Training: AI SecureOps: Attacking &amp; Defending GenAI Applications and Services – Abhinav Singh</p><p>Acquire hands-on experience in GenAI and LLM security through CTF-styled training, tailored to real-world attacks and defense scenarios. Dive into protecting bot</p><p><a href="https://blog.deepsec.net/deepsec-2024-training-ai-secureops-attacking-defending-genai-applications-and-services-abhinav-singh/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.deepsec.net/deepsec-2024-</span><span class="invisible">training-ai-secureops-attacking-defending-genai-applications-and-services-abhinav-singh/</span></a></p><p><a href="https://social.tchncs.de/tags/Conference" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Conference</span></a> <a href="https://social.tchncs.de/tags/Training" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Training</span></a> <a href="https://social.tchncs.de/tags/ArtificialIntelligence" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ArtificialIntelligence</span></a> <a href="https://social.tchncs.de/tags/DeepSec2024" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DeepSec2024</span></a> <a href="https://social.tchncs.de/tags/GenAI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GenAI</span></a> <a href="https://social.tchncs.de/tags/LLMSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLMSecurity</span></a> <a href="https://social.tchncs.de/tags/Training" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Training</span></a></p>
IT News<p>AI poisoning could turn open models into destructive “sleeper agents,” says Anthropic - Enlarge (credit: Benj Edwards | Getty Images) </p><p>Imagine download... - <a href="https://arstechnica.com/?p=1995975" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">arstechnica.com/?p=1995975</span><span class="invisible"></span></a> <a href="https://schleuss.online/tags/largelanguagemodels" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>largelanguagemodels</span></a> <a href="https://schleuss.online/tags/promptinjections" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>promptinjections</span></a> <a href="https://schleuss.online/tags/sleeperagents" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sleeperagents</span></a> <a href="https://schleuss.online/tags/llmsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>llmsecurity</span></a> <a href="https://schleuss.online/tags/aisecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>aisecurity</span></a> <a href="https://schleuss.online/tags/anthropic" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>anthropic</span></a> <a href="https://schleuss.online/tags/chatgpt" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>chatgpt</span></a> <a href="https://schleuss.online/tags/chatgtp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>chatgtp</span></a> <a href="https://schleuss.online/tags/claude2" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>claude2</span></a> <a href="https://schleuss.online/tags/biz" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>biz</span></a>⁢ <a href="https://schleuss.online/tags/claude" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>claude</span></a> <a href="https://schleuss.online/tags/llm" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>llm</span></a> <a href="https://schleuss.online/tags/ai" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ai</span></a></p>
William Gunn<p>Ok, it's time to admit that RLHF is not an effective safeguard for open release of LLMs. I know there are a lot of people ideologically committed to open source, but this is messed up: <a href="https://www.lesswrong.com/posts/3eqHYxfWb5x4Qfz8C/unrlhf-efficiently-undoing-llm-safeguards" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">lesswrong.com/posts/3eqHYxfWb5</span><span class="invisible">x4Qfz8C/unrlhf-efficiently-undoing-llm-safeguards</span></a><br><a href="https://www.lesswrong.com/posts/qmQFHCgCyEEjuy5a7/lora-fine-tuning-efficiently-undoes-safety-training-from" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">lesswrong.com/posts/qmQFHCgCyE</span><span class="invisible">Ejuy5a7/lora-fine-tuning-efficiently-undoes-safety-training-from</span></a><br><a href="https://mastodon.social/tags/llms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>llms</span></a> <a href="https://mastodon.social/tags/llmsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>llmsecurity</span></a> <a href="https://mastodon.social/tags/ai" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ai</span></a> <a href="https://mastodon.social/tags/aisafety" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>aisafety</span></a> <a href="https://mastodon.social/tags/artificialintelligence" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>artificialintelligence</span></a> <a href="https://mastodon.social/tags/opensource" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opensource</span></a></p>