Prompt injection isn't the bug, AI agent frameworks are

https://image.theregister.com/5283628.jpg?imageId=5283628&x=0&y=0&cropw=100&croph=100&panox=0&panoy=0&panow=100&panoh=100&width=1200&height=683

Nearly a dozen flaws, some critical, in major AI agent frameworks that enterprises use to build apps reveal a security failure that extends beyond prompt injection - or any single model - according to Check Point researchers.

“Our research shows a deeper failure: in many agentic frameworks, prompt-controlled content can cross the boundary into trusted framework logic itself,” Yarden Porat and Shahar Tal note in a write-up about a Wednesday Black Hat talk on post-injection exploitation across AI agent frameworks, which they also discussed with The Register.

“A bug in an agent framework isn't a bug in one product - it's a bug in the layer a whole category of AI apps runs on,” Tal told us. “And the agent needs no dangerous tools to be turned against you: reading the wrong document is enough. We’re building this layer faster than we know how to defend it.”


The researchers spent...

Copyright of this story solely belongs to theregister.com. To see the full text click HERE

Read more

https://cdn.mos.cms.futurecdn.net/9Km7ky9AU7NcrTGcdP5ZTe-1920-80.jpg

Russia's accelerating Starlink rival development means that war in space is not just probable; it's inevitable

* Russia is accelerating Rassvet faster than Ukrainian intelligence previously expected * Moscow plans to expand Rassvet into a 924-satellite constellation by 2035 * Rassvet currently provides intermittent coverage rather than Starlink-level continuous connectivity Russia is building its own satellite constellation, called Rassvet, at a pace that has outrun Ukrainian intelligence projections, experts