<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Agent on The Engine Room</title><link>/en/tags/agent/</link><description>Recent content in Agent on The Engine Room</description><generator>Hugo -- 0.155.3</generator><language>en-us</language><lastBuildDate>Mon, 15 Dec 2025 15:00:00 +0300</lastBuildDate><atom:link href="/en/tags/agent/index.xml" rel="self" type="application/rss+xml"/><item><title>Small Language Models</title><link>/en/notes/slm/</link><pubDate>Mon, 15 Dec 2025 15:00:00 +0300</pubDate><guid>/en/notes/slm/</guid><description>Note on the document Small Language Model for AI Agents HandBook</description></item><item><title>LOTL Attacks Using Local LLMs</title><link>/en/notes/lotl_attack_with_llm/</link><pubDate>Sun, 30 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/lotl_attack_with_llm/</guid><description>How future devices with built-in LLMs will become a security problem, because attackers will be able to live off the LLM (LOLLM)</description></item><item><title>Architecting secure enterprise AI agents with MCP</title><link>/en/notes/architecting_secure_enterprise/</link><pubDate>Tue, 25 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/architecting_secure_enterprise/</guid><description>A guide to designing secure enterprise AI agents using MCP from IBM, with verification from Anthropic</description></item><item><title>Shell or Nothing</title><link>/en/notes/shell_or_nothing/</link><pubDate>Sun, 19 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/shell_or_nothing/</guid><description>An article about an LLM-based framework and its results in obtaining shell access</description></item><item><title>Multi-Agent Pipeline for Protecting LLMs from Prompt Injection</title><link>/en/notes/multiagent_pipeline/</link><pubDate>Wed, 15 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/multiagent_pipeline/</guid><description>An analysis of a multi-agent defense architecture that reduces prompt injection attack success by separating roles between agents.</description></item></channel></rss>