<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Cybersecurity on The Engine Room</title><link>/en/tags/cybersecurity/</link><description>Recent content in Cybersecurity on The Engine Room</description><generator>Hugo -- 0.155.3</generator><language>en-us</language><lastBuildDate>Tue, 26 May 2026 12:00:00 +0300</lastBuildDate><atom:link href="/en/tags/cybersecurity/index.xml" rel="self" type="application/rss+xml"/><item><title>AI Cybersecurity Careers 2026</title><link>/en/notes/ai_cybersecurity_careers_2026/</link><pubDate>Tue, 26 May 2026 12:00:00 +0300</pubDate><guid>/en/notes/ai_cybersecurity_careers_2026/</guid><description>Career overview of the AI Security market for 2026</description></item><item><title>AI Security</title><link>/en/notes/ai_security_-courses/</link><pubDate>Thu, 16 Apr 2026 15:00:00 +0300</pubDate><guid>/en/notes/ai_security_-courses/</guid><description>Courses and certifications in AI Security</description></item><item><title>MCPThreatHive: Automated Threat Intelligence for MCP Ecosystems</title><link>/en/notes/mcpthreathive/</link><pubDate>Thu, 16 Apr 2026 00:00:00 +0300</pubDate><guid>/en/notes/mcpthreathive/</guid><description>A threat discovery platform for Model Context Protocol</description></item><item><title>RLSpoofer: A Lightweight Tool for Evaluating Watermark Spoofing Robustness</title><link>/en/notes/rlspoofer/</link><pubDate>Tue, 14 Apr 2026 15:00:00 +0300</pubDate><guid>/en/notes/rlspoofer/</guid><description>An attack on watermarks as a way to spoof authenticity</description></item><item><title>DeepSight</title><link>/en/notes/deepsight/</link><pubDate>Sun, 15 Feb 2026 15:00:00 +0300</pubDate><guid>/en/notes/deepsight/</guid><description>A transition from black-box evaluation to transparent AI safety diagnostics</description></item><item><title>Technology Predictions for 2026 from IEEE</title><link>/en/notes/ieee_tech_predictions_2026/</link><pubDate>Mon, 02 Feb 2026 15:00:00 +0300</pubDate><guid>/en/notes/ieee_tech_predictions_2026/</guid><description>IEEE released a report covering the key technology trends expected to shape 2026.</description></item><item><title>OpenRT - An Open Framework for Red Teaming Multimodal LLMs</title><link>/en/notes/open_rt/</link><pubDate>Tue, 23 Dec 2025 15:00:00 +0300</pubDate><guid>/en/notes/open_rt/</guid><description>OpenRT is a modular and extensible environment for systematic safety evaluation of large language models</description></item><item><title>Small Language Models</title><link>/en/notes/slm/</link><pubDate>Mon, 15 Dec 2025 15:00:00 +0300</pubDate><guid>/en/notes/slm/</guid><description>Note on the document Small Language Model for AI Agents HandBook</description></item><item><title>Doublespeak</title><link>/en/notes/doublespeak/</link><pubDate>Wed, 10 Dec 2025 15:00:00 +0300</pubDate><guid>/en/notes/doublespeak/</guid><description>The authors present a new attack called Doublespeak: a simple attack based on hijacking the model&amp;rsquo;s internal representations in context</description></item><item><title>FineSec</title><link>/en/notes/finesec/</link><pubDate>Sat, 06 Dec 2025 15:00:00 +0300</pubDate><guid>/en/notes/finesec/</guid><description>A new framework for creating compact models for finding vulnerabilities in C/C++ code</description></item><item><title>Whisper Leak</title><link>/en/notes/whisper_leak/</link><pubDate>Thu, 04 Dec 2025 15:00:00 +0300</pubDate><guid>/en/notes/whisper_leak/</guid><description>A new attack that makes it possible to determine the topic of an LLM query from encrypted traffic</description></item><item><title>Breaking Agent Backbones</title><link>/en/notes/breaking_agent_backbones/</link><pubDate>Tue, 02 Dec 2025 15:00:00 +0300</pubDate><guid>/en/notes/breaking_agent_backbones/</guid><description>How LLM selection affects agent security</description></item><item><title>LOTL Attacks Using Local LLMs</title><link>/en/notes/lotl_attack_with_llm/</link><pubDate>Sun, 30 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/lotl_attack_with_llm/</guid><description>How future devices with built-in LLMs will become a security problem, because attackers will be able to live off the LLM (LOLLM)</description></item><item><title>Architecting secure enterprise AI agents with MCP</title><link>/en/notes/architecting_secure_enterprise/</link><pubDate>Tue, 25 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/architecting_secure_enterprise/</guid><description>A guide to designing secure enterprise AI agents using MCP from IBM, with verification from Anthropic</description></item><item><title>Defending MLLMs from Implicit Jailbreak Attacks</title><link>/en/notes/defence_mllm_from_jailbreak/</link><pubDate>Sat, 22 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/defence_mllm_from_jailbreak/</guid><description>A new class of attacks where text and image look safe separately, but their combination carries malicious meaning</description></item><item><title>Pruning-Activated Attack</title><link>/en/notes/pruning_activated_attack/</link><pubDate>Mon, 17 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/pruning_activated_attack/</guid><description>Model pruning can be used by an attacker</description></item><item><title>External Data Extraction Attacks against RAG</title><link>/en/notes/data_extraction_attacks_against_rag/</link><pubDate>Fri, 14 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/data_extraction_attacks_against_rag/</guid><description>The paper studies a new class of attacks against RAG-type systems</description></item><item><title>Fine-Tuning Jailbreaks</title><link>/en/notes/fine_tuning_jailbreaks/</link><pubDate>Mon, 10 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/fine_tuning_jailbreaks/</guid><description>The paper discusses vulnerabilities in fine-tuning systems for large language models under conditions close to real-world operation</description></item><item><title>Airgeddon loves WiFi</title><link>/en/notes/airgeddon_wifi/</link><pubDate>Fri, 07 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/airgeddon_wifi/</guid><description>Nobody likes wires; everyone loves Wi-Fi</description></item><item><title>Tool Tweak</title><link>/en/notes/tool_tweak/</link><pubDate>Thu, 06 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/tool_tweak/</guid><description>An attack on tool selection in agentic systems</description></item><item><title>FuncPoison - Poisoned Library</title><link>/en/notes/func_poison/</link><pubDate>Mon, 03 Nov 2025 15:00:00 +0300</pubDate><guid>/en/notes/func_poison/</guid><description>A new attack based on poisoning a function library, which makes it possible to replace agent behavior without changing their models</description></item><item><title>Red Teaming LLM Agents with MCP</title><link>/en/notes/red_teaming_llm_with_mcp/</link><pubDate>Thu, 30 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/red_teaming_llm_with_mcp/</guid><description>MCP is a critical and vulnerable point in the trust chain of LLM agents</description></item><item><title>FuzzingBrain</title><link>/en/notes/fuzzingbrain/</link><pubDate>Thu, 23 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/fuzzingbrain/</guid><description>All you need is fuzzing&amp;hellip;</description></item><item><title>Kerberos</title><link>/en/notes/kerberos/</link><pubDate>Tue, 21 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/kerberos/</guid><description>A protocol that allows users to authenticate on a network and access services after authentication</description></item><item><title>NTLM</title><link>/en/notes/ntlm/</link><pubDate>Mon, 20 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/ntlm/</guid><description>NTLM is a Microsoft authentication protocol</description></item><item><title>Shell or Nothing</title><link>/en/notes/shell_or_nothing/</link><pubDate>Sun, 19 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/shell_or_nothing/</guid><description>An article about an LLM-based framework and its results in obtaining shell access</description></item><item><title>Bit Flip as an Attack on LLMs</title><link>/en/notes/bit_flip_attacks/</link><pubDate>Fri, 17 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/bit_flip_attacks/</guid><description>The article describes the problem of understudied hardware attacks on LLMs: bit-flip attacks (BFA)</description></item><item><title>Cuckoo Attack</title><link>/en/notes/cuckoo_attack/</link><pubDate>Wed, 15 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/cuckoo_attack/</guid><description>An analysis of a new attack against IDEs with LLM agents: how AI assistants can become a tool for stealthy attacker persistence in a system.</description></item><item><title>Multi-Agent Pipeline for Protecting LLMs from Prompt Injection</title><link>/en/notes/multiagent_pipeline/</link><pubDate>Wed, 15 Oct 2025 15:00:00 +0300</pubDate><guid>/en/notes/multiagent_pipeline/</guid><description>An analysis of a multi-agent defense architecture that reduces prompt injection attack success by separating roles between agents.</description></item></channel></rss>