<?xml version="1.0" encoding="UTF-8"?>
<!-- This sitemap was dynamically generated on June 24, 2026 at 9:53 pm by All in One SEO v4.9.8 - the original SEO plugin for WordPress. -->

<?xml-stylesheet type="text/xsl" href="https://security.unboundcompute.com/default-sitemap.xsl"?>

<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>UnboundCompute Security</title>
		<link><![CDATA[https://security.unboundcompute.com]]></link>
		<description><![CDATA[UnboundCompute Security]]></description>
		<lastBuildDate><![CDATA[Wed, 24 Jun 2026 04:53:47 +0000]]></lastBuildDate>
		<docs>https://validator.w3.org/feed/docs/rss2.html</docs>
		<atom:link href="https://security.unboundcompute.com/sitemap.rss" rel="self" type="application/rss+xml" />
		<ttl><![CDATA[60]]></ttl>

		<item>
			<guid><![CDATA[https://security.unboundcompute.com/mcp-rug-pull-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/mcp-rug-pull-attack/]]></link>
			<title>The MCP Rug Pull: When an Approved Tool Changes After You Trust It</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:47 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/llm-data-exfiltration-markdown/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/llm-data-exfiltration-markdown/]]></link>
			<title>LLM Data Exfiltration Through Markdown Image Rendering</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:45 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/confused-deputy-ai-agents/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/confused-deputy-ai-agents/]]></link>
			<title>The Confused Deputy Attack in AI Agents Explained</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:42 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/excessive-agency-in-ai-agents/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/excessive-agency-in-ai-agents/]]></link>
			<title>Excessive Agency in AI Agents: When a Tool Can Do Too Much</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:40 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/agent-memory-poisoning/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/agent-memory-poisoning/]]></link>
			<title>Agent Memory Poisoning: When an AI Agent Remembers an Attacker&#8217;s Instruction</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:38 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-web-cache-poisoning/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-web-cache-poisoning/]]></link>
			<title>What is Web Cache Poisoning? How One Request Hits Many Users</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:33:11 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-nosql-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-nosql-injection/]]></link>
			<title>What is NoSQL Injection? How Query Operators Get Abused</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:33:09 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-mass-assignment/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-mass-assignment/]]></link>
			<title>What is a Mass Assignment Vulnerability? How Extra Fields Break Access Control</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:33:06 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-host-header-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-host-header-injection/]]></link>
			<title>What is Host Header Injection? How a Trusted Header Goes Wrong</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:33:04 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-cors-misconfiguration/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-cors-misconfiguration/]]></link>
			<title>What is a CORS Misconfiguration? How It Leaks Data</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:33:01 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-server-side-template-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-server-side-template-injection/]]></link>
			<title>What is Server Side Template Injection? SSTI Explained</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:32:59 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/kubernetes-service-account-token-abuse/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/kubernetes-service-account-token-abuse/]]></link>
			<title>Kubernetes service account token abuse: from one pod to cluster admin</title>
			<pubDate><![CDATA[Tue, 23 Jun 2026 02:21:14 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/saml-signature-wrapping/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/saml-signature-wrapping/]]></link>
			<title>SAML Signature Wrapping Explained: When a Valid Signature Lies</title>
			<pubDate><![CDATA[Tue, 23 Jun 2026 02:21:12 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/dependency-confusion-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/dependency-confusion-attack/]]></link>
			<title>Dependency Confusion Attack Explained</title>
			<pubDate><![CDATA[Tue, 23 Jun 2026 02:21:10 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/rag-data-poisoning/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/rag-data-poisoning/]]></link>
			<title>RAG Data Poisoning: How Attackers Corrupt the Knowledge Base Behind an LLM</title>
			<pubDate><![CDATA[Tue, 23 Jun 2026 02:21:07 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/the-lethal-trifecta/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/the-lethal-trifecta/]]></link>
			<title>The lethal trifecta in AI agents</title>
			<pubDate><![CDATA[Tue, 23 Jun 2026 02:21:05 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/]]></link>
			<title>Home</title>
			<pubDate><![CDATA[Sat, 20 Jun 2026 02:09:26 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/jwt-algorithm-confusion-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/jwt-algorithm-confusion-attack/]]></link>
			<title>JWT Algorithm Confusion Attack Explained</title>
			<pubDate><![CDATA[Tue, 23 Jun 2026 02:21:02 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/blog/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/blog/]]></link>
			<title>Blog</title>
			<pubDate><![CDATA[Sat, 20 Jun 2026 01:29:58 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-insecure-deserialization/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-insecure-deserialization/]]></link>
			<title>What is insecure deserialization?</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:41 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-do-hackers-find-vulnerabilities/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-do-hackers-find-vulnerabilities/]]></link>
			<title>How do hackers find vulnerabilities?</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:39 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/teardown-chaining-bugs-into-a-breach/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/teardown-chaining-bugs-into-a-breach/]]></link>
			<title>Teardown: chaining small bugs into a real breach</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:37 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-browser-fingerprinting-works/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-browser-fingerprinting-works/]]></link>
			<title>How Browser Fingerprinting Identifies You Without a Cookie</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:35 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-command-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-command-injection/]]></link>
			<title>What is command injection? Examples explained</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:33 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/sast-vs-dast-vs-iast/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/sast-vs-dast-vs-iast/]]></link>
			<title>SAST vs DAST vs IAST, what is the difference?</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:31 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-a-padding-oracle-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-a-padding-oracle-attack/]]></link>
			<title>What Is a Padding Oracle Attack and How It Decrypts CBC Without the Key</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:29 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-tls-fingerprinting-works/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-tls-fingerprinting-works/]]></link>
			<title>How TLS Fingerprinting Works: JA3, JA4, and the ClientHello</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:27 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-a-hash-flooding-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-a-hash-flooding-attack/]]></link>
			<title>What Is a Hash Flooding Attack and Why It Stalls a Server With Bytes</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:25 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/llm-security-testing-tools/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/llm-security-testing-tools/]]></link>
			<title>LLM Security Testing Tools: A Vendor Neutral Landscape Guide</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:23 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/mcp-tool-poisoning-explained/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/mcp-tool-poisoning-explained/]]></link>
			<title>MCP Tool Poisoning: When the Tool Description Is the Attack</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:21 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-indirect-prompt-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-indirect-prompt-injection/]]></link>
			<title>What Is Indirect Prompt Injection and Why It Is So Hard to Stop</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:18 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-ssrf/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-ssrf/]]></link>
			<title>What is SSRF? Server Side Request Forgery Explained</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:16 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-an-open-redirect/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-an-open-redirect/]]></link>
			<title>What is an open redirect vulnerability?</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:13 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-dom-based-xss/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-dom-based-xss/]]></link>
			<title>What is DOM based XSS?</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:11 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-xss-and-how-does-it-work/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-xss-and-how-does-it-work/]]></link>
			<title>What is XSS and how does it work? With examples</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 12:13:09 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-web-application-security/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-web-application-security/]]></link>
			<title>What is web application security?</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 10:42:43 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/authentication-vs-authorization/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/authentication-vs-authorization/]]></link>
			<title>Authentication vs authorization, explained with examples</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 10:42:41 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/most-common-web-vulnerabilities/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/most-common-web-vulnerabilities/]]></link>
			<title>The most common web vulnerabilities, explained simply</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 10:27:14 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-csrf/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-csrf/]]></link>
			<title>What is CSRF (cross site request forgery)?</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 10:27:11 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-subdomain-takeover/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-subdomain-takeover/]]></link>
			<title>What Is Subdomain Takeover and Why a Forgotten DNS Record Is Dangerous</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 10:27:09 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/ai-in-security-testing/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/ai-in-security-testing/]]></link>
			<title>AI in Security Testing: What It Actually Does and Where It Falls Down</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 08:22:35 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/ai-security-testing/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/ai-security-testing/]]></link>
			<title>AI Security Testing: A Vendor Neutral Guide to Where AI Helps and Where It Fails</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 08:22:29 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/graphql-api-attack-surface/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/graphql-api-attack-surface/]]></link>
			<title>The GraphQL Attack Surface: Introspection, Query DoS, Broken Authorization, and Injection</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:44 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-ntlm-relay-works/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-ntlm-relay-works/]]></link>
			<title>How NTLM Relay Works and Why a Portable Authentication Breaks Active Directory</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:40 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-rowhammer-works/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-rowhammer-works/]]></link>
			<title>How Rowhammer Works: Flipping Bits in Memory You Were Never Allowed to Touch</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:35 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-bluetooth-le-pairing-breaks/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-bluetooth-le-pairing-breaks/]]></link>
			<title>How Bluetooth LE Pairing Breaks: KNOB, BLESA, Just Works, and Sniffed Keys</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:32 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-sigreturn-oriented-programming/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-sigreturn-oriented-programming/]]></link>
			<title>What Is Sigreturn Oriented Programming and Why One Gadget Owns the CPU</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:30 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-a-container-escape-works/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-a-container-escape-works/]]></link>
			<title>How a Container Escape Works: The cgroups v1 release_agent Technique</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:27 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-web-cache-deception/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-web-cache-deception/]]></link>
			<title>What Is Web Cache Deception and How a Crafted URL Leaks Private Pages</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:25 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/how-dns-rebinding-works/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/how-dns-rebinding-works/]]></link>
			<title>How DNS Rebinding Works and Reaches Inside Your Private Network</title>
			<pubDate><![CDATA[Mon, 22 Jun 2026 06:31:22 +0000]]></pubDate>
		</item>
				</channel>
</rss>
