Indirect prompt injection: why your AI agent reads attacker instructions
How instructions hidden in emails, web pages and documents reach an agent, and the controls that stop them acting on it.
Practical writing on AI threats, AI governance and running a security programme with a small team. New articles every two weeks.
How instructions hidden in emails, web pages and documents reach an agent, and the controls that stop them acting on it.
A practical scope, the documents you actually need, and how long readiness takes for a small team.
What a good vCISO delivers in week 1, month 1 and month 3, and how to measure it.
When consent is needed, what to put in your notices, and how to set up AI tools safely.
Authentication, tool scoping, logging and supply-chain checks for Model Context Protocol servers.
A template and the five numbers directors should see every quarter.
Get a short email when we publish new research. No marketing, and you can unsubscribe any time.