Six fronts on agent security.
Hub-and-spoke research across the autonomous-agent attack surface — from the first injected token to the last byte that leaves the trust boundary.
Attacking AI Agents
The attack surface of autonomous agents — prompt-injection chains, tool abuse, confused-deputy and exfiltration, with reproducible proofs of concept.
Read →MCP & Tool Supply Chain
Securing the Model Context Protocol and agent tools — malicious servers, tool-description poisoning, CVE teardowns and sandboxing.
Read →Defending & Hardening
Engineering defenses that hold — guardrails, I/O filtering, least-privilege tools and isolation (seccomp, gVisor, WASM, microVMs).
Read →Red-Teaming & Evals
A reproducible lab for breaking agents — test harnesses, tooling (Garak, PyRIT, Promptfoo), security benchmarks and CTF-style challenges.
Read →Identity & Access
Identity for non-human agents — cryptographic identity, OAuth/OIDC, capability-based security, token theft and zero-trust enforcement.
Read →Threat Intel & Teardowns
The autonomous-agent threat landscape — incident teardowns, novel attack classes and mapping to MITRE ATLAS / OWASP Agentic.
Read →