<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>AI Security Wire</title><description>Intelligence on AI security threats, vulnerabilities, threat actors, and defensive techniques.</description><link>https://aisecuritywire.com/</link><item><title>Defending Against Prompt Injection at the AI Gateway Layer</title><link>https://aisecuritywire.com/post/ai-gateway-prompt-injection-defense/</link><guid isPermaLink="true">https://aisecuritywire.com/post/ai-gateway-prompt-injection-defense/</guid><description>A practical framework for implementing prompt injection detection and containment at the API gateway layer — covering input sanitisation, context isolation, output filtering, and anomaly-based detection for production LLM deployments.</description><pubDate>Wed, 20 May 2026 23:00:00 GMT</pubDate></item><item><title>Critical RCE in Popular ML Model Serving Framework — CVE-2026-24817</title><link>https://aisecuritywire.com/post/cve-2026-24817-ml-framework-rce/</link><guid isPermaLink="true">https://aisecuritywire.com/post/cve-2026-24817-ml-framework-rce/</guid><description>A critical deserialization vulnerability in a widely-deployed ML model serving framework allows unauthenticated remote code execution via crafted model files. Patch immediately — active exploitation observed in the wild.</description><pubDate>Wed, 20 May 2026 23:00:00 GMT</pubDate></item><item><title>Deepfake Fraud Losses Hit $2.1B in Q1 2026 as Attack Tooling Commoditises</title><link>https://aisecuritywire.com/post/deepfake-fraud-financial-sector-2026/</link><guid isPermaLink="true">https://aisecuritywire.com/post/deepfake-fraud-financial-sector-2026/</guid><description>Deepfake video and audio fraud against financial institutions reached record levels in Q1 2026, driven by the commoditisation of real-time face-swap and voice cloning tools now available for under $50/month on criminal markets.</description><pubDate>Thu, 14 May 2026 23:00:00 GMT</pubDate></item><item><title>Incident Report: LLM-Assisted Intrusion at a Mid-Market Financial Firm</title><link>https://aisecuritywire.com/post/incident-report-llm-assisted-intrusion/</link><guid isPermaLink="true">https://aisecuritywire.com/post/incident-report-llm-assisted-intrusion/</guid><description>A detailed post-mortem of a multi-stage intrusion in which threat actors used LLM-generated spear phishing, AI-assisted credential stuffing, and automated reconnaissance to compromise a wealth management firm — from initial access to detection.</description><pubDate>Tue, 19 May 2026 23:00:00 GMT</pubDate></item><item><title>Prompt Injection via Third-Party Plugins: A Growing LLM Supply Chain Risk</title><link>https://aisecuritywire.com/post/llm-prompt-injection-supply-chain/</link><guid isPermaLink="true">https://aisecuritywire.com/post/llm-prompt-injection-supply-chain/</guid><description>Threat actors are embedding prompt injection payloads in third-party LLM plugins and data sources to hijack AI agent actions, exfiltrate data, and pivot within enterprise environments.</description><pubDate>Fri, 22 May 2026 23:00:00 GMT</pubDate></item><item><title>Many-Shot Jailbreaking: Long-Context Windows as an Attack Surface</title><link>https://aisecuritywire.com/post/many-shot-jailbreaking-research/</link><guid isPermaLink="true">https://aisecuritywire.com/post/many-shot-jailbreaking-research/</guid><description>Research demonstrates that LLMs with large context windows can be reliably jailbroken by embedding hundreds of fictitious dialogues before the target request — a technique that scales with context length and bypasses standard safety training.</description><pubDate>Thu, 21 May 2026 23:00:00 GMT</pubDate></item><item><title>Model Inversion Attacks: Extracting Training Data PII from Production LLMs</title><link>https://aisecuritywire.com/post/model-inversion-pii-extraction/</link><guid isPermaLink="true">https://aisecuritywire.com/post/model-inversion-pii-extraction/</guid><description>Model inversion and training data extraction attacks allow adversaries to recover PII, proprietary data, and trade secrets from fine-tuned LLMs exposed via API — a significant compliance and IP risk for enterprises.</description><pubDate>Sat, 16 May 2026 23:00:00 GMT</pubDate></item><item><title>PhantomSynth: The Threat Actor Industrialising AI-Generated Spear Phishing</title><link>https://aisecuritywire.com/post/phantomsynth-ai-spear-phishing/</link><guid isPermaLink="true">https://aisecuritywire.com/post/phantomsynth-ai-spear-phishing/</guid><description>PhantomSynth is a financially motivated threat actor that has industrialised the use of LLMs to generate hyper-personalised spear phishing lures at scale, dramatically lowering the cost of targeted social engineering campaigns.</description><pubDate>Mon, 18 May 2026 23:00:00 GMT</pubDate></item></channel></rss>