CVE-2025-59145 βCamoLeakβ showed how hidden instructions in a PR comment could influence GitHub Copilot Chat into leaking private repo data through markdown image requests.
Thatβs INDIRECT prompt injection. Thatβs Level 11 territory.
Want to understand how these attacks actually work? Try AIPWN Level 11 at AIPWN #AIPWN #AIRedTeam #LLMSecurity #PromptInjection
CVE-2025-59145 βCamoLeakβ showed how hidden instructions in a PR comment could influence GitHub Copilot Chat into leaking private repo data through markdown image requests.Thatβs INDIRECT prompt injection.Thatβs Level 11 territory.Want to understand how these attacks work?
I know I don't post here much, I am a bit of a lurker on most social media, call it social media anxiety. However, now I have something to say.
Like many of you, I have been deep in an AI journey recently. Learning about how it functions, breaking it, and finding ways to incorporate it into my general workflows. During @wrccdc , I observed my incredibly talented hacker friends doing amazing things with AI that was more than I was expecting.
When I was having one of my regular chats with my buddy @DHAhole , he mentioned that @PhillipWylie and himself were involved with #CYBRHAKCON and suddenly I had a venue and a reason.
So, I pulled in my hacker comrades, including @ch0mpaa, @goodqweary, and @EdricHolmgren to build something.
π€ The AI Village at #CYBRHAKCON,
ποΈ May 27, 2026
π Plano Event Center, 2000 E Spring Creek Pkwy, Plano, TX 75074
What to expect, hands on workshops and beginner to intermediate related talks all for a small crowd. This means you actually get get IRL facetime with the people presenting in the room that designed the workshops.
If you are in the DFW area, please come by the CYBR.HAK.CON and find us.
I know I don't post here much, I am a bit of a lurker on most social media, call it social media anxiety. However, now I have something to say.
Like many of you, I have been deep in an AI journey recently. Learning about how it functions, breaking it, and finding ways to incorporate it into my general workflows. During @wrccdc , I observed my incredibly talented hacker friends doing amazing things with AI that was more than I was expecting.
When I was having one of my regular chats with my buddy @DHAhole , he mentioned that @PhillipWylie and himself were involved with #CYBRHAKCON and suddenly I had a venue and a reason.
So, I pulled in my hacker comrades, including @ch0mpaa, @goodqweary, and @EdricHolmgren to build something.
π€ The AI Village at #CYBRHAKCON,
ποΈ May 27, 2026
π Plano Event Center, 2000 E Spring Creek Pkwy, Plano, TX 75074
What to expect, hands on workshops and beginner to intermediate related talks all for a small crowd. This means you actually get get IRL facetime with the people presenting in the room that designed the workshops.
If you are in the DFW area, please come by the CYBR.HAK.CON and find us.
AI's biggest weakness? It's way too literal.
Tell it to act like your lawyer or your enemy, watch the answers flip.
Curious how far you can push a model?
Try out the basics at https://t.co/a5wPmwlEAS and get hands-on with the fundamentals. Free labs, wild results.
@0xSero Bummer, they are little workhorses given the right setup.
https://t.co/XiFkEy0kEg check out my Ai redteam lab I am building out for the community.
AIPWN Level 03 β Words Are Controls: a beginner AI hacking lab about how phrasing changes model behavior.
Same question. Different wording. Different output.
In AI systems, how you ask is part of what youβre asking.
#AIPWN#AIRedTeam#LLMSecurity