All CosmicBytez Labs articles tagged #LLM, across news, security advisories, how-to guides, and projects.
A new class of prompt injection embedded in "Ask AI" buttons on commercial websites silently writes biased recommendations into users' AI assistant memory — no malware, no credentials, just a weaponized URL parameter.
Security firm Intruder built an AI-powered system that combines code slicing with large language models to automatically discover complex software...
Security researchers have demonstrated 'Ghostcommit,' a technique that embeds prompt injection payloads inside PNG images to bypass AI code review tools...
Security researchers at Sysdig have documented JadePuffer — an agentic threat actor powered entirely by a large language model that independently...
China's GLM 5.2 finds vulnerabilities at $0.17 each and outperforms frontier Western models on security benchmarks — while AI-enabled adversary activity...
Security researchers have documented what appears to be the first ransomware operation conducted entirely by a large language model agent — JadePuffer...
Anthropic confirms Claude Fable 5 will leave Pro, Max, and Team subscription plans on July 7, shifting to usage credits priced at $10/M input and $50/M...
Claude Fable 5's July 1 global relaunch revealed a new safety classifier that silently reroutes sessions involving security-related keywords to the weaker...
This week's cybersecurity roundup covers long-running telecom espionage operations reaching courtrooms, resurging LLM jailbreak techniques, Apple's UK age...
Alibaba Cloud unveils Qwen 3.5, a 397-billion-parameter Mixture-of-Experts AI model with native multimodal capabilities, claiming 60% lower costs and...