<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Agent Security on Amit Naik</title>
    <link>https://amitnaik.com/tags/agent-security/</link>
    <description>Recent content in Agent Security on Amit Naik</description>
    <generator>Hugo -- 0.144.2</generator>
    <language>en-us</language>
    <lastBuildDate>Mon, 28 Sep 2026 08:59:55 -0700</lastBuildDate>
    <atom:link href="https://amitnaik.com/tags/agent-security/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>OpenHunterAI: an open red-team engine</title>
      <link>https://amitnaik.com/til/2026-09-28-openhunterai-an-open-red-team-engine/</link>
      <pubDate>Mon, 28 Sep 2026 08:59:55 -0700</pubDate>
      <guid>https://amitnaik.com/til/2026-09-28-openhunterai-an-open-red-team-engine/</guid>
      <description>This post introduces OpenHunterAI, a security red-team engine released as open source after its creators abandoned their startup plan. The repository is a starting point for examining how AI-assisted security testing is implemented.</description>
    </item>
    <item>
      <title>AI routers introduce another trust boundary</title>
      <link>https://amitnaik.com/til/2026-09-28-ai-routers-introduce-another-trust-boundary/</link>
      <pubDate>Mon, 28 Sep 2026 08:59:45 -0700</pubDate>
      <guid>https://amitnaik.com/til/2026-09-28-ai-routers-introduce-another-trust-boundary/</guid>
      <description>This security research examines risks introduced by intermediary AI routers. The authors report attacks and failures in the routing ecosystem. The architectural takeaway is to include intermediaries in the threat model instead of assuming a familiar model name guarantees an unchanged execution path.</description>
    </item>
    <item>
      <title>Mapping attack paths across AI tools</title>
      <link>https://amitnaik.com/til/2026-09-28-mapping-attack-paths-across-ai-tools/</link>
      <pubDate>Mon, 28 Sep 2026 08:59:34 -0700</pubDate>
      <guid>https://amitnaik.com/til/2026-09-28-mapping-attack-paths-across-ai-tools/</guid>
      <description>AgentHound models relationships across AI and MCP systems to expose potential attack paths. The bookmark is useful for thinking about security as a connected system of identities, tools, and permissions rather than a checklist for one model endpoint.</description>
    </item>
    <item>
      <title>A reported attack through poisoned skill instructions</title>
      <link>https://amitnaik.com/til/2026-09-28-a-reported-attack-through-poisoned-skill-instructions/</link>
      <pubDate>Mon, 28 Sep 2026 08:59:29 -0700</pubDate>
      <guid>https://amitnaik.com/til/2026-09-28-a-reported-attack-through-poisoned-skill-instructions/</guid>
      <description>The author reports an incident in which malicious instructions in a SKILL.md file caused downloaded malware to reappear. It is a personal incident account, not an independently verified investigation. The lesson is to treat retrieved skill instructions as executable influence over an agent&amp;#39;s behavior.</description>
    </item>
  </channel>
</rss>
