01▲[tl;dr sec] #335 - Prompt Injection as Role Confusion, PHP Ecosystem Security, New MCP Spec tldrsec.com Prompt injection, apparently, is role confusion, in a newsletter that also hits PHP hardening and the new MCP spec.ai-securityblockchaincloud-securitycryptanalysisecosystem-securitylinkedinllm-securitymcpprivacyprompt-injectionsupply-chain2 pts/anyaw/5 days ago/discuss
02▲Technology Innovation Institute: AI agents need proof, not promises fortune.com Can enterprise AI agents be trusted without attested execution, or is this just logging with a conference badge?ai-securityattestationconfidential-computingcryptographylinkedinprivacyverifiable-execution1 pt/lenar/7 days ago/1 comment
03▲Quantum Security for AI Agents: Protecting Generative Systems in a Post-Quantum World rodtrent.substack.com A post-quantum checklist for AI agents: ML-KEM, ML-DSA, hybrid rollouts, and the usual cryptography panic.ai-securitycryptanalysishashlatticepqcprivacysignaturestwitter6 pts/inovak/8 days ago/2 comments
04▲The AI Exchange: Innovators in Payment Security Featuring Utimaco blog.pcisecuritystandards.org PCI SSC interview with Utimaco on HSMs, key management, AI crypto risk, and PQ migration, because governance needed another acronym.ai-securitycryptographyfhehsmkey-managementpayment-securitypqcprivacytwitter7 pts/adamfavre/8 days ago/2 comments
05▲Why A 1910 Geometry Textbook Holds The Secret To Unbreakable AI Security & Zero-Knowledge Proofs + Video undercodetesting.com Long essay on Hilbert's axioms, then somehow hashes, TLA+, Circom, OPA, SHAP, and SBOMs end up in the same security sermon.ai-securityblockchainformal-verificationhashopaprivacysbomsignaturessnarktwitterzero-trustzk0 pts/veramarsh/11 days ago/3 comments
06▲[tl;dr sec] #334 - Thinkst's Package Proxy, OpenAI Daybreak, AI Agents & Canaries tldrsec.com Security roundup: package proxies, AI-agent canary benchmarks, and OpenAI's Daybreak/Codex updates, plus the usual cloud mess.agentsai-securityappsecblue-teamcanariescloud-securitylinkedinsupply-chain0 pts/pavelk/11 days ago/2 comments
07▲Patch the Planet: a Daybreak initiative to support open source maintainers openai.com Frontier models are being pointed at open source bugs, with humans still stuck doing validation, disclosure, and the patch.ai-securitycode-auditfuzzinglinkedinopen-sourcesecurityvulnerability-research0 pts/nullptr12/12 days ago/3 comments
08▲VivaTech 2026: AI Agents, Post-Quantum Cyber Resilience & The New Frontier Of Enterprise Security + Video undercodetesting.com Post-quantum migration is the easy part; the real mess is keeping AI agents from leaking data and swallowing deepfakes.agentic-aiai-securitycloud-securityconfidential-computingcrypto-agilitydeepfake-detectionpost-quantumpqcprivacyprompt-injectionsoartwitter0 pts/nullptr7/15 days ago/1 comment
09▲TrustErase: Auditable Instant Machine Unlearning with Passport-Embedded Representations arxiv.org Paper on auditable machine unlearning via passport-embedded reps, so forgetting gets a cryptographic key and a paper trail.ai-securityarxivblockchaincryptographyhashmachine-unlearningprivacy1 pt/deadlock7/18 days ago/3 comments
10▲The 2026 Guide to Post-Quantum AI Infrastructure Security: Securing MCP Deployments securityboulevard.com Guide to hardening MCP deployments with mTLS, sandboxing, policy controls, and hybrid PQ crypto for the usual future-proofing theater.ai-securitycryptanalysishybrid-cryptographymTLSmcppqcprivacytwitterzero-trust0 pts/omar31/22 days ago/1 comment
11▲[tl;dr sec] #332 - I've Joined OpenAI, fwd:cloudsec, AWS Well Architected Supply Chain Security tldrsec.com What did tl;dr sec #332 pick out this week? OpenAI hire, AWS supply-chain advice, OIDC/Lambda abuse, and AI threat notes.ai-securityappsecawscloud-securitygithub-actionsidentitylambdalinkedinllmoidcsecretsstatic-analysissupply-chainthreat-intelligence0 pts/max/24 days ago/3 comments