About
I'm a security researcher focused on AI systems and the software around them. I write about the bugs I find, the techniques behind them, and what defenders can do about it.
What I work on#
- Prompt injection and the security of LLM agents that call tools
- Model and dataset supply chain
- Offensive security: web, APIs, smart contracts, reverse engineering
Disclosure#
I follow coordinated disclosure. Vendors get notice and a reasonable window to fix before anything is published. Security issues with this site: see security.txt.
Contact#
A public contact channel is coming soon.
About this site#
Static HTML built with Astro ↗ and the Astro Pure ↗ theme. No cookies, no comments, no third-party trackers.