dr.chaos

Podcast: Project Glasswing and Agentic AI loops

Aamir Lakhani1 min read

Click here to listen on SoundCloud: https://soundcloud.com/drchaos-podcast/project-glasswing-podcast

In this week's episode of the Dr. Chaos Podcast, hosts Anthony Giandomenico (Tony G) and Aamir Lakhani (Dr. Chaos) dive deep into the rapidly evolving landscape of AI in cybersecurity. We are officially witnessing a massive shift: AI is moving beyond its role as a simple conversational assistant and stepping into the realm of fully autonomous agents.

Tony and Aamir break down the implications of "Agentic AI loops" and discuss what happens when AI can autonomously generate test cases, find vulnerabilities, and mutate attacks without human intervention. The duo also explores the alarming—and exciting—capabilities of frontier models, with a specific focus on Anthropic's leaked "Project Glasswing" preview, which reportedly demonstrated an AI's ability to exploit systems and even break out of sandboxed environments.

Aamir Lakhani

Founder · Dr. Chaos

Aamir Lakhani is a leading senior security strategist responsible for providing IT security solutions to major enterprises and government organizations. He creates technical security strategies and leads security implementation projects for

~/related

Keep digging

More research along the same attack path.

Podcast: AI Agents and the New Insider Threat

Check out our companion blog at: https://www.drchaos.com/post/the-agentic-shift-architecting-for-the-crisis-of-authenticity-and-industrialized-cybercrime-in-2026Join our latest podcast. We explore the transformative impact of AI on insider threat dynamics. Learn about how AI agents manipulate system

Aamir Lakhani1 min read

Kimi K3 and K3 Swarm: An Open-Weight Model Review from the Red Team Chair

A balanced cybersecurity review of Moonshot's Kimi K3 and the multi-agent K3 Swarm. Not "is it smart" but the question a red team actually asks: does an open, self-hostable, agentic model make you more effective on an engagement, and what does it give you that Claude and GPT cannot? Data that stays in the room, no vendor holding your engagement hostage, cost at scale, and a swarm that fits the work, weighed honestly against where the closed frontier models still win.

Aamir Lakhani13 min read

The State of AI Automation: Zapier vs Make vs n8n, Through a Red Team Lens

AI automation quietly became critical infrastructure that security never signed off on. A deep look at where automation actually is in 2026, the real differences between Zapier, Make, and n8n, when to reach for each, and why every one of them is a beautiful new attack surface: standing credentials, unauthenticated webhooks, shadow automation, and prompt injection into agents that hold tools.

Aamir Lakhani15 min read