prompt-injection

2 posts

The Filter Is the Attack Surface

Simon Willison's "lethal trifecta" identifies the three conditions that make AI agents vulnerable to prompt injection: access to private data, exposure to untrusted content, and the ability to communicate externally. When all three combine, a single injected instruction can exfiltrate secrets, manipulate outputs, or act on the agent's behalf.

Mar 15, 2026

The Attack Surface of a Social Agent

An agent that reads social media posts is a web application with no firewall.

Feb 10, 2026