dr.chaos

~/category/adversarial-ai

Adversarial AI

Attacks on and with AI — prompt injection, model red teaming, AI-driven offense and defense.

27 articles

Kimi K3 and K3 Swarm: An Open-Weight Model Review from the Red Team Chair

A balanced cybersecurity review of Moonshot's Kimi K3 and the multi-agent K3 Swarm. Not "is it smart" but the question a red team actually asks: does an open, self-hostable, agentic model make you more effective on an engagement, and what does it give you that Claude and GPT cannot? Data that stays in the room, no vendor holding your engagement hostage, cost at scale, and a swarm that fits the work, weighed honestly against where the closed frontier models still win.

Aamir Lakhani13 min read

The State of AI Automation: Zapier vs Make vs n8n, Through a Red Team Lens

AI automation quietly became critical infrastructure that security never signed off on. A deep look at where automation actually is in 2026, the real differences between Zapier, Make, and n8n, when to reach for each, and why every one of them is a beautiful new attack surface: standing credentials, unauthenticated webhooks, shadow automation, and prompt injection into agents that hold tools.

Aamir Lakhani15 min read

What Is Model Looping, and Why Should Security Teams Care?

Artificial intelligence is quickly becoming part of everyday business workflows. We use AI to summarize emails, write reports, analyze logs, review documents, generate code, support customers, and automate tasks.That sounds great.It also means we are building systems where one AI may talk to another

Aamir Lakhani10 min read

Agentic AI is Changing CyberSecurity Faster Than Expected..

Written by Anthony Giandomenicohttps://www.linkedin.com/in/anthonygiandomenico/The Shift: Not New, But Moving FastAgentic AI is not a new concept. At this point, most people in the industry have heard about it, and many have been experimenting with it in different forms. The idea of systems that can

Anthony Giandomenico6 min read

Podcast: Project Glasswing and Agentic AI loops

Click here to listen on SoundCloud: https://soundcloud.com/drchaos-podcast/project-glasswing-podcastIn this week's episode of the Dr. Chaos Podcast, hosts Anthony Giandomenico (Tony G) and Aamir Lakhani (Dr. Chaos) dive deep into the rapidly evolving landscape of AI in cybersecurity. We are official

Aamir Lakhani1 min read

AI Security Isn’t One Thing — It’s a Stack

1. Model and AI Pipeline SecurityThe first area is what I’d call model and AI pipeline security.This is where a lot of the early focus has been — making sure the model itself, the data feeding it, and the overall pipeline are secure before anything ever gets deployed.These solutions are looking for

Anthony Giandomenico7 min read

Thinking Out Loud: Agentic AI and the Future of Threat Intelligence

There’s a question that’s been sitting in the back of my mind lately.If we’re moving into a world where autonomous systems are planning, adapting, and executing actions with increasing independence… what does that actually mean for threat intelligence teams?I’m not asking this from a hype perspectiv

Anthony Giandomenico5 min read

Agentic AI Failures Are Architectural, Not Prompt-Level

In conversations with people who are actually building and red teaming agentic systems, one theme keeps coming up: the failures they’re seeing don’t really look like prompt problems. They look like architectural ones.That framing matters, because it changes where attention goes. A lot of early work

Anthony Giandomenico3 min read

From Chatbots to Actors: Why Agentic AI Changes the Security Model

  For years, security teams learned how to protect systems that respond. Agentic AI introduces systems that decide.That difference sounds small at first. It isn’t.Most of today’s AI security conversation still treats models like tools: prompt in, response out, controls around the edges. Agentic syst

Anthony Giandomenico4 min read