<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>AI on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/ai/</link>
    <description>Recent content in AI on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 16 Jun 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/ai/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Vulnerability Disclosure: Stealing Emails via Firefox’s AI Features</title>
      <link>https://insinuator.net/2026/06/vulnerability-disclosure-stealing-emails-via-firefoxs-ai-features/</link>
      <pubDate>Tue, 16 Jun 2026 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2026/06/vulnerability-disclosure-stealing-emails-via-firefoxs-ai-features/</guid>
      <description>&lt;p&gt;Imagine the following: You visit a webpage with a lot of text you don’t want to read and ask your AI assistant for a summary. A few moments later, the AI assistant has extracted one of your emails and sent it to an attacker without you ever knowing.&lt;/p&gt;&#xA;&lt;p&gt;In October 2025, we found exactly this vulnerability in Firefox’s AI chatbot integration&lt;sup id=&#34;fnref:1&#34;&gt;&lt;a href=&#34;#fn:1&#34; class=&#34;footnote-ref&#34; role=&#34;doc-noteref&#34;&gt;1&lt;/a&gt;&lt;/sup&gt;.&lt;/p&gt;&#xA;&lt;p&gt;Firefox offers a summarization, explaination and proofread AI feature. When a user makes use of one of these features, Firefox pastes a prompt into the sidebar AI chat including the page title, the selected text (or, if the whole page is summarized, a selection is being made by Firefox) and an instruction on how to process the provided text. The sidebar AI chat is essentially an IFrame of a third-party chatbot (Claude, Copilot, …).&lt;/p&gt;</description>
    </item>
    <item>
      <title>When paradigms are shifting: InfoSec in the age of AI</title>
      <link>https://insinuator.net/2026/04/when-paradigms-are-shifting-infosec-in-the-age-of-ai/</link>
      <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2026/04/when-paradigms-are-shifting-infosec-in-the-age-of-ai/</guid>
      <description>&lt;p&gt;Over the last few weeks, I have had a very productive exchange with&#xA;&lt;a href=&#34;https://www.linkedin.com/in/christoph-klaassen-9a4651144/&#34;&gt;Christoph Klaassen&lt;/a&gt;&#xA;on the impact of AI on security governance and compliance. In this post, we&#xA;summarize our thoughts.&lt;/p&gt;</description>
    </item>
    <item>
      <title>BlackBoxAI: AI Agent can get your computer fully compromised</title>
      <link>https://insinuator.net/2026/03/blackboxai-ai-agent-can-get-your-computer-fully-compromised/</link>
      <pubDate>Tue, 03 Mar 2026 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2026/03/blackboxai-ai-agent-can-get-your-computer-fully-compromised/</guid>
      <description>&lt;p&gt;AI agents are here, there, and everywhere. Smarter, faster, and more skilled,&#xA;they gain greater autonomy and trust. We trust their capabilities to do many&#xA;tasks much faster and sometimes better than we can. We trust them as they&#xA;usually demonstrate their eagerness to please us and fulfill our commands. Isn’t&#xA;that too good to be true, and we might be dealing with a double-edged sword&#xA;here? Can attackers use the same capabilities of the AI agents to attack their&#xA;own users? Can they exploit their eagerness to please their users to fulfill the&#xA;attackers’ intentions? And most importantly: what’s the worst that could happen&#xA;if you fully trust some random AI Agent?&lt;/p&gt;</description>
    </item>
    <item>
      <title>Vulnerability Disclosure: Stealing Emails via Prompt Injections</title>
      <link>https://insinuator.net/2025/09/vulnerability-disclosure-stealing-emails-via-prompt-injections/</link>
      <pubDate>Tue, 02 Sep 2025 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2025/09/vulnerability-disclosure-stealing-emails-via-prompt-injections/</guid>
      <description>&lt;p&gt;With the rise of AI assistance features in an increasing number of products, we&#xA;have begun to focus some of our research efforts on refining our internal&#xA;detection and testing guidelines for LLMs by taking a brief look at the new AI&#xA;integrations we discover.&lt;/p&gt;&#xA;&lt;p&gt;Alongside the rise of applications with LLM integrations, an increasing number&#xA;of customers come to ERNW to specifically assess AI applications. Our colleagues&#xA;&lt;a href=&#34;https://www.linkedin.com/in/fgrunow&#34;&gt;Florian Grunow&lt;/a&gt; and&#xA;&lt;a href=&#34;https://www.linkedin.com/in/hannesmohr/&#34;&gt;Hannes Mohr&lt;/a&gt; analyzed the novel attack&#xA;vectors that emerged and presented the results at&#xA;&lt;a href=&#34;https://troopers.de/troopers24/talks/vnwhm8/&#34;&gt;TROOPERS24&lt;/a&gt; already.&lt;/p&gt;</description>
    </item>
    <item>
      <title>I know what you ordered last summer @ Winterkongress 2024</title>
      <link>https://insinuator.net/2024/04/i-know-what-you-ordered-last-summer-@-winterkongress-2024/</link>
      <pubDate>Wed, 03 Apr 2024 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2024/04/i-know-what-you-ordered-last-summer-@-winterkongress-2024/</guid>
      <description>&lt;p&gt;Dennis and I already published blog posts about our research project dealing with vulnerabilities in parcel tracking implementations at &lt;a href=&#34;https://insinuator.net/2023/07/all-your-parcel-are-belong-to-us-talk-at-troopers-2023/&#34;&gt;DHL&lt;/a&gt; and &lt;a href=&#34;https://insinuator.net/2023/09/breaking-dpd-parcel-tracking/&#34;&gt;DPD&lt;/a&gt;. At the &lt;a href=&#34;https://cfp.winterkongress.ch/wk24/schedule/&#34;&gt;&lt;em&gt;Winterkongress&lt;/em&gt;&lt;/a&gt; (winter congress) in Winterthur, Switzerland, we had the great opportunity to give a talk about the matter. The talk was recorded and can be watched &lt;a href=&#34;https://media.ccc.de/v/dgwk2024-56194-ich-wei-was-du-letzten-so&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://digitale-gesellschaft.ch&#34;&gt;&lt;em&gt;DigiGes&lt;/em&gt;&lt;/a&gt; held the Winterkongress, which took place in Winterthur on 01.03. till 02.03.2024. The main topics are ethics, threats, and opportunities of IT. This year, many talks looked at AI in some way.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
