๐ Registration is now OPEN for the Real World AI Security Conference 2026 (June 23-25)! ๐
Join us at @Stanford for a unique event bringing together leading researchers and industry practitioners to explore the most pressing challenges in AI securityโfrom cutting-edge attacks to real-world defenses.
๐ค Keynote Speakers:
Matthew Knight (former CISO of OpenAI)
@NicolasPapernot (@Uoft)
@wunderwuzzi23 (https://t.co/G3sMz5UQVl)
Alina Oprea (Northeastern University)
๐ง Invited Talks Include:
โข Edoardo Debenedetti (@aisequrity & @ETH ) - Evaluating and Defending Against Prompt Injection Attacks
โข Jerry Wei (@AnthropicAI ) - Deployable Defenses for Safeguarding Language Models from Jailbreaks
โข Neha Sharma & Nicolas Lidzborski (@Google Workspace) - Fortifying the AI-Integrated Workspace: A Multi-Layered, Adaptive Architecture Against Indirect Prompt Injection
โข John Sotiropoulos (@owasp ) - The OWASP Top 10 for Agentic AI: Real-World Failure Modes and Enforceable Defenses
โข Milad Nasr (@AnthropicAI ) - The Attacker Moves Second: Stronger Adaptive Attacks Bypass Defenses Against LLM Jailbreaks and Prompt Injections
โข Kaiyuan Zhang (Purdue University) - BrowseSafe: Understanding and Preventing Prompt Injection Within AI Browser Agents
โข Neil Perry (@Princeton) - Comparing AI Agents to Cybersecurity Professionals in Real-World Penetration Testing
โข Andy Zhang (Berkeley & @Stanford) - Building and Benchmarking Cybersecurity Agents
โข Yisroel Mirsky (@bengurionu ) - GAVEL: Rule-Based Security over LLM Activations
โข Giles Edkins & Joe Needham (MATS Research) - LLMs Often Know When Theyโre Being Evaluated
โข Illia Polosukhin (https://t.co/cn4svllq8B) - Building Secure Personal Agents
โข Kristopher R. (Hood College) - Trojans in Artificial Intelligence: Lessons Learned
โข @ben_nassi , PhD (@TelAvivUni ) - The Promptware Kill Chain: How Prompt Injections Gradually Evolved Into a Multistep Malware Delivery Mechanism
We will soon publish the remaining talks and the final agenda.
Donโt miss the opportunity to engage with the people shaping the future of AI s urity.
๐ Register for the conference:
https://t.co/fsZHUcCaNk
Please share with your network...
#RW_AISec #AISecurity #CyberSecurity #infosec #AI #SecurityResearch #LLMSecurity #AgenticAI #PromptInjection #Conference
๐จ Registration is now open! ๐จ
We are excited to announce that registration is officially open for the Real World AI Security Conference 2026.
๐ June 23โ25, 2026
๐ Arrillaga Alumni Center, Stanford University
If you work on AI security, adversarial ML, LLM safety, AI system attacks, or defenses, this event is designed for you.
๐ Register here (we have a limitation on the number of attendees):
https://t.co/fsZHUcCaNk
We look forward to bringing together the community to explore the latest advances in AI security in the real world.
#AISecurity #CyberSecurity #MachineLearningSecurity #LLMSecurity #AdversarialML #AIResearch #AIConference #SecurityResearch #RealWorldAISecurity
Black Hat Webcast ๐จ The Promptware Kill Chain: From Prompt Injection to MultiโStep LLM Malware ๐ Feb 26, 2026 โข 2โ3 PM ET. Join Ben Nassi as he breaks down how promptโinjection attacks have evolved into a powerful fiveโstage LLM malware kill chain. Donโt miss this fast, insightsโpacked session today. Register ๐ https://t.co/h6KiNYSApd
Black Hat Webcast ๐จ The Promptware Kill Chain: From Prompt Injection to MultiโStep LLM Malware ๐ Feb 26, 2026 โข 2โ3 PM ET. Join Ben Nassi as he breaks down how promptโinjection attacks have evolved into a powerful fiveโstage LLM malware kill chain. Donโt miss this fast, insightsโpacked session today. Register ๐ https://t.co/h6KiNYSApd
On ๐ง๐ต๐๐ฟ๐๐ฑ๐ฎ๐, ๐๐ฒ๐ฏ๐ฟ๐๐ฎ๐ฟ๐ ๐ฎ๐ฒ๐๐ต, ๐ฎ๐ ๐ญ๐ฐ:๐ฌ๐ฌ ๐๐ฎ๐๐๐ฒ๐ฟ๐ป ๐ง๐ถ๐บ๐ฒ, I will present a @BlackHatEvents ๐๐ฒ๐ฏ๐ถ๐ป๐ฎ๐ฟ titled โ๐ง๐ต๐ฒ ๐ฃ๐ฟ๐ผ๐บ๐ฝ๐๐๐ฎ๐ฟ๐ฒ ๐๐ถ๐น๐น ๐๐ต๐ฎ๐ถ๐ป: From Prompt Injection to Multi-Step LLM Malware.โ The talk is based on joint work with Oleg Brodt, Elad Feldman, and Bruce Schneier.
Registration link: https://t.co/AKlkaz4kgU
#blackhat #infosec #webinar #prompt_injection #promptware
On ๐ง๐ต๐๐ฟ๐๐ฑ๐ฎ๐, ๐๐ฒ๐ฏ๐ฟ๐๐ฎ๐ฟ๐ ๐ฎ๐ฒ๐๐ต, ๐ฎ๐ ๐ญ๐ฐ:๐ฌ๐ฌ ๐๐ฎ๐๐๐ฒ๐ฟ๐ป ๐ง๐ถ๐บ๐ฒ, I will present a ๐๐ฒ๐ฏ๐ถ๐ป๐ฎ๐ฟ titled โ๐ง๐ต๐ฒ ๐ฃ๐ฟ๐ผ๐บ๐ฝ๐๐๐ฎ๐ฟ๐ฒ ๐๐ถ๐น๐น ๐๐ต๐ฎ๐ถ๐ป: From Prompt Injection to Multi-Step LLM Malware.โ The talk is based on joint work with Oleg Brodt, Elad Feldman, and Bruce Schneier.
Registration link:
https://t.co/AKlkaz4kgU
๐๐ฏ๐๐๐ฟ๐ฎ๐ฐ๐:
The Promptware Kill Chain: From Prompt Injection to Multi-Step LLM Malware, explores the evolution of prompt injection attacks into a sophisticated seven-stage kill chain: initial access, privilege escalation, reconnaissance, persistence, command & control, lateral movement, and actions on objectives. It introduces the concept of Promptware and provides an in-depth analysis of each stage, highlighting advancements in the field over the last three years.
#blackhat #infosec #webinar #prompt_injection #promptware
While not the first demonstration, this is one of a few known incidents that targeted a system's long-term memory for ๐ฝ๐ฒ๐ฟ๐๐ถ๐๐๐ฒ๐ป๐ฐ๐ฒ using prompt injection, turning systems into trojans to affect recommendations.
https://t.co/6FCXxa94r5
#promptware#trojans#persistence #infsec #LLM #persistence
Academics nerds published a research paper a few days about LLM malware and their argument for a new classification of malware dubbed "Promptware".
X fucks up links a lot, they don't display properly, so the link to their academic paper will be in the post subsequent to this one.
As is tradition, their academic paper is just a bunch of goobers being all philosophical about shit and including a bunch of fancy pictures and graphs.
I unironically sat here and read most of this paper.
Is there argument valid?
Yes, but some of the examples provided are theoretical and have not existed in-the-wild (yet?). They do however provide real-life examples of LLM payloads which have been successful. I personally have not seen these techniques described, but they provided citations and they are indeed real.
I do malware stuff everyday (collecting, reverse engineering, development) and I have not seen any of the papers they reference. This paper has demonstrated, unironically, there is a gap right now between LLM research and malware research. In essence, we are at the point now where LLM research is now bleeding into malware research and malware nerds may have to pay more attention.
I am now a believer. LLM malware is indeed real and will become a thing. I give these academic nerds two (2) cat pictures for this interesting paper. This is the first academic paper I've read in awhile that I actually think isn't complete dog shit.
My main criticism however is they kind of butcher some malware terminology. For example, they incorrectly refer to some of this LLM malware stuff as Polymorphic, but this is not polymorphic ... unless we get really, really, really flexible with definition of polymorphic malware and we make it more akin to high-level class inheritance polymorphism. It doesn't really matter that much though because I understand what they're trying to convey.
Attacks on LLM-based systems have evolved into a distinct class of malware execution mechanisms. Bruce Schneier, @BrodtOleg, Elad Feldman, and @ben_nassi propose a โpromptware kill chainโ to provide policymakers with a framework to address the escalating AI threat landscape.
๐ ๐ง๐ต๐ฒ ๐ฅ๐ฒ๐ฎ๐น ๐ช๐ผ๐ฟ๐น๐ฑ ๐๐ ๐ฆ๐ฒ๐ฐ๐๐ฟ๐ถ๐๐ ๐๐ผ๐ป๐ณ๐ฒ๐ฟ๐ฒ๐ป๐ฐ๐ฒ ๐ฎ๐ฌ๐ฎ๐ฒ ๐
We are excited to announce the first 3 day ๐ฅ๐ฒ๐ฎ๐น ๐ช๐ผ๐ฟ๐น๐ฑ ๐๐ ๐ฆ๐ฒ๐ฐ๐๐ฟ๐ถ๐๐ ๐๐ผ๐ป๐ณ๐ฒ๐ฟ๐ฒ๐ป๐ฐ๐ฒ, taking place on ๐๐๐ป๐ฒ ๐ฎ๐ฏโ๐ฎ๐ฑ, ๐ฎ๐ฌ๐ฎ๐ฒ, at ๐ฆ๐๐ฎ๐ป๐ณ๐ผ๐ฟ๐ฑ ๐จ๐ป๐ถ๐๐ฒ๐ฟ๐๐ถ๐๐. The conference is intended to brief the most impactful AI security work presented over the past year at ๐น๐ฒ๐ฎ๐ฑ๐ถ๐ป๐ด ๐ถ๐ป๐ฑ๐๐๐๐ฟ๐ ๐ฐ๐ผ๐ป๐ณ๐ฒ๐ฟ๐ฒ๐ป๐ฐ๐ฒ๐ (Black Hat, DEF CON, RSAC, CCC) and ๐๐ผ๐ฝ ๐ฎ๐ฐ๐ฎ๐ฑ๐ฒ๐บ๐ถ๐ฐ ๐๐ฒ๐ป๐๐ฒ๐ (CCS, IEEE S&P, USENIX Security, NDSS).
๐ง๐ต๐ถ๐ ๐ถ๐ ๐ฎ ๐ป๐ผ๐ป-๐ฝ๐ฟ๐ผ๐ณ๐ถ๐, ๐ฐ๐ผ๐บ๐บ๐๐ป๐ถ๐๐-๐ฑ๐ฟ๐ถ๐๐ฒ๐ป ๐ฐ๐ผ๐ป๐ณ๐ฒ๐ฟ๐ฒ๐ป๐ฐ๐ฒ focused exclusively on technical AI security talks with real-world impact on deployed AI systems.
The goal is to curate a concise agenda that distills the most important advances in AI security from the past year, while bringing together ๐ถ๐ป๐ฑ๐๐๐๐ฟ๐ ๐ฝ๐ฟ๐ฎ๐ฐ๐๐ถ๐๐ถ๐ผ๐ป๐ฒ๐ฟ๐ ๐ฎ๐ป๐ฑ ๐ฎ๐ฐ๐ฎ๐ฑ๐ฒ๐บ๐ถ๐ฐ ๐ฟ๐ฒ๐๐ฒ๐ฎ๐ฟ๐ฐ๐ต๐ฒ๐ฟ๐ to establish new connections, collaborations, and future research directions.
We will share additional details soon.
Here is the link to the website of the conference: https://t.co/fsZHUcCaNk
#security #ai #llm #ai_security #cybersecurity #infosec