Skip to content
The blog

Written after the deployment, not before.

Essays on AI architecture, strategy and the org problems in between. Heart what’s useful, argue with me in the comments.

Tagged prompt-injectionclear ✕


Aug 07, 2026

gitlost13 min read

GitLost: How a GitHub AI Agent Leaked Private Repos from One Public Issue

Security researchers discovered "GitLost," a vulnerability where a GitHub AI agent was tricked by a malicious prompt in a public issue into leaking data from private repositories, highlighting a fundamental security flaw in agentic AI systems.

A key with a maze-shaped head lying inside an open lock box.

2 reads

Mar 26, 2026

prompt injection12 min read

Role Confusion: The 61% Attack Success Rate Exposing LLM's Core Flaw

Prompt injection isn't just "tricking an AI"; it's a classic authorization vulnerability. New research shows a 61% attack success rate by exploiting 'role confusion,' where models grant authority based on writing style, not source, demanding a shift to architectural security patterns.

Abstract gears and code with a red lock icon.

1 reads