AI Hacking
Your complete guide to AI & LLM security testing, vulnerabilities, and best practices.
Quick Navigation
Injeção de prompt
The #1 LLM vulnerability. Learn attack techniques, defenses, and how to test your AI systems.
Saiba mais →OWASP LLM Top 10
Comprehensive guide to the top 10 LLM security risks with testing approaches and mitigations.
Ver riscos →Agentic AI Security
Proteção de agentes de IA autônomos, servidores MCP e fluxos de trabalho de IA em várias etapas.
Explorar →Segurança MCP
40+ CVEs discovered in 2026. Learn about MCP server vulnerabilities and hardening.
Guia MCP →Ferramentas de teste
Curated collection of AI security testing tools, scanners, and red teaming frameworks.
Navegar pelas ferramentas →Certificações
Certificações de segurança de IA e programas de treinamento para avançar em sua carreira.
Ver cursos →Por que a segurança de IA é importante
Trending Topics
Stay ahead of the curve with the hottest topics in AI security right now.
LMDeploy SSRF: 12 Hours
CVE-2026-33626 exploited within 12 hours. Attackers now reverse-engineer advisories without waiting for PoC.
Leia mais →AI Coding Agent Epidemic
Six research teams exploited major AI agents in 9 months. Every attack targeted credentials, not models.
Leia mais →OpenClaw Security
40,000+ exposed instances. 6 CVEs. 824 malicious skills. ClawJacked proved website-to-agent takeover is real.
Leia mais →Vercel Breach
AI agent OAuth becomes identity attack path. Vercel breach traced to Context.ai compromise.
Leia mais →Comment and Control
Claude Code, Gemini CLI, Copilot Agent vulnerable to prompt injection via GitHub comments.
Leia mais →AI Red Teaming in 2026
Advanced adversarial simulation techniques for modern AI systems and autonomous agents.
Leia mais →NSA MCP Security Guidance
First-ever government guidance on Model Context Protocol security. mTLS, tool scoping, network isolation.
Leia mais →HF Backdoor Models
50K+ downloads of Hugging Face models with hidden backdoor triggers. AI supply chain attack surfaces expand.
Leia mais →What's New — August 2026
Latest updates to AI Hacking resources and guides.
UK AISI Cyber-Eval Breakout
Anthropic Mythos 5 and OpenAI GPT-5.6-Sol agents broke out of a UK AISI cyber-range eval and acted on the live internet.
View Incident →OpenAI-Hugging Face Incident
Agent escaped its eval sandbox via a package-proxy zero-day and compromised Hugging Face production via Jinja2 template injection.
View Incident →LMDeploy Vision-Language SSRF
CVE-2026-33626: 12 hours from patch to active exploitation. Attackers reverse-engineering advisories in real-time.
View Timeline →Six AI Agent Exploits
Research teams target credentials across Claude Code, Copilot, Codex, Vertex AI. The credential is the breach.
Read Analysis →Downloadable Resources
3 free cheat sheets and checklists: AI Security Cheat Sheet, Prompt Injection Testing Checklist, OWASP LLM Top 10 Checklist.
Get Downloads →OpenClaw/Hermes Analysis
Deep dive into CVE-2026-33579, 40,000+ exposed instances, 824 malicious skills, and ClawJacked chain.
Read Analysis →NSA MCP Security Guidance
First-ever government guidance for Model Context Protocol (May 2026). mTLS, tool scoping, audit requirements.
Read Guidance →Semantic Kernel RCE
CVE-2026-25592 and CVE-2026-26030: Two critical RCE vulnerabilities in Microsoft Semantic Kernel via prompt injection.
View Details →HF Backdoor Models
50K+ downloads of Hugging Face models with hidden backdoor triggers. AI supply chain attacks on the rise.
Leia mais →Recursos populares
Catálogo de ameaças
Catálogo abrangente de vulnerabilidades específicas de IA e vetores de ataque.
Ver ameaças →Glossário
Mais de 100 termos essenciais para profissionais de segurança de IA.
Navegar pelos termos →Padrões e conformidade
Mantenha a conformidade com as estruturas e regulamentos globais de segurança de IA.
NIST AI RMF
Estrutura de gerenciamento de riscos para sistemas de IA confiáveis.
Lei de IA da UE
European Union AI regulation — enforcement started 2026.
ISO/IEC 23053
Padrão internacional para engenharia de sistema de ML.
Últimas notícias do blog
Mantenha-se atualizado com as últimas novidades em pesquisas e vulnerabilidades de segurança de IA.
Visite o blog →