Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds ➔
👥 Community & Social
Windows Tipps & SecurityDarum bekommen Sie mit der DEAN bald eine zweite Kontonummer(24.09.2026 um 08:20 Uhr)
••
Sichere ProgrammierungTimescaleDB Course – PostgreSQL for Time-Series Data(24.09.2026 um 04:04 Uhr)
••••
Sichere ProgrammierungAI agents can't tell who's giving the orders. So I built a tiny gate.(24.09.2026 um 08:22 Uhr)
•
Sichere ProgrammierungCan a Developer Ship a Frontend With No DNS or Centralized Backend?(24.09.2026 um 08:26 Uhr)
•
Sichere ProgrammierungD33:它猜錯方向,卻把價位框對了(24.09.2026 um 08:33 Uhr)
•
Sichere ProgrammierungMigrating Off Opsgenie Before Sunset: A Regen Walkthrough(24.09.2026 um 08:33 Uhr)
•
Windows Tipps & SecurityDarum bekommen Sie mit der DEAN bald eine zweite Kontonummer(24.09.2026 um 08:20 Uhr)
••
Sichere ProgrammierungTimescaleDB Course – PostgreSQL for Time-Series Data(24.09.2026 um 04:04 Uhr)
••••
Sichere ProgrammierungAI agents can't tell who's giving the orders. So I built a tiny gate.(24.09.2026 um 08:22 Uhr)
•
Sichere ProgrammierungCan a Developer Ship a Frontend With No DNS or Centralized Backend?(24.09.2026 um 08:26 Uhr)
•
Sichere ProgrammierungD33:它猜錯方向,卻把價位框對了(24.09.2026 um 08:33 Uhr)
•
Sichere ProgrammierungMigrating Off Opsgenie Before Sunset: A Regen Walkthrough(24.09.2026 um 08:33 Uhr)
•
Intelligence View
⚡ tsecurity.de Intelligence

I built a leak scanner, then measured exactly where it fails. Here's both.

The scary 2026 stat isn't the 340% surge in prompt injection or the 88% of orgs reporting agent incidents (OWASP-linked, Beam AI). It's this: the leak is often not in the answer your logs capture — it's in the model's reasoning, which most …

0
↗ Quelle (dev.to)
Reagiere als Erste:r — dein Feedback zählt!

The scary 2026 stat isn't the 340% surge in prompt injection or the 88% of orgs

reporting agent incidents (OWASP-linked, Beam AI). It's this: the leak

is often not in the answer your logs capture — it's in the model's reasoning, which

most people never scan. A 2026 benchmark found data escaping through reasoning/logs

while the visible output stayed clean in most scenarios (AgentLeak).



And the cost is not abstract. A stolen Gemini key burned $82,314 in 48 hours for a

three-person startup this year — 457× their normal bill, with the provider's

shared-responsibility model leaving them to pay it, and it kept happening to devs

worldwide through mid-2026 (The Register, Cybernews). If personal data leaks,

add the legal bill: GDPR fined Meta €251M for a token-exposure security failure, and

the EU AI Act stacks up to 7% of global turnover on top (DPO Europe). Yet ~88% of

orgs had an agent incident this year while ~82% thought they were covered (Beam AI).

Confidence isn't coverage — and the people getting hit assumed "it's just a token."



I measured a deterministic slice of this on four indie-common models. The matcher

held steady across formats, languages, and multi-turn attacks — zero misses where a

literal secret surfaced, zero false positives on known families. The reasoning

channel leaked more than the answer. And hardening the answer didn't secure the

reasoning.



Then the honest part: outside its known families it catches nothing (I published the

0-of-10 test before expanding), it's literal-not-semantic, offline-not-runtime, and

tested on small models. It's one layer, not a fix — prompt injection is still

unsolved industry-wide. I publish exactly where it works and where it doesn't;

raw stays private, aggregates public.

[https://github.com/ghkfuddl1327-wq/agentproof]

[https://github.com/ghkfuddl1327-wq]

SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - I built a leak scanner, then measured exactly where it fails. Here's both.
id: 76179ede-dd29-4ee2-a9c4-7d3b211ea53b
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
  - https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
  category: network_connection
  product: any
detection:
  selection:
      CommandLine|contains:
        - 'exploit'
  condition: selection
falsepositives:
  - Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
  - attack.initial_access
rule CTI_Threat_Indicator {
    meta:
        author = "iShareStuff CTI Automated Detection Engine"
        date = "2026-09-24"
        description = "YARA Signature for "
    strings:
        $str = "I built a leak scanner, then m" ascii wide
    condition:
        any of them
}
tsecurity.de Cognitive Threat RAG
Fokus-Vektor:

Kognitive Analyse für identifizierte Bedrohung: Erhöhte Bedrohungslage im Bereich I built a leak scanner, then measured ex.... Basierend auf 368k Vektor-Korrelationen werden sofortige Isolationsmaßnahmen für betroffene Endpunkte empfohlen.

🛡️ Angriffsfläche & Exposure

Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.

⚡ Empfohlene Sofortmaßnahmen
  • 1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
  • 2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
  • 3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
🔗 Semantisch verwandte Zero-Days MariaDB 11.7 VEC
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten I built a leak scanner, then measured exactly where it fails. Here's both.

Thematisch verwandte Begriffe: built, leak, scanner, then · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-96772 | A security flaw has been discovered in Intelliants Subrion CMS up to 4.2…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel • Rechts: nächster Artikel • unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel TTP ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger • Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick