<?xml version="1.0" encoding="UTF-8"?>
<!-- This sitemap was dynamically generated on June 28, 2026 at 7:53 pm by All in One SEO v4.9.8 - the original SEO plugin for WordPress. -->

<?xml-stylesheet type="text/xsl" href="https://security.unboundcompute.com/default-sitemap.xsl"?>

<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>UnboundCompute Security</title>
		<link><![CDATA[https://security.unboundcompute.com]]></link>
		<description><![CDATA[UnboundCompute Security]]></description>
		<lastBuildDate><![CDATA[Sun, 28 Jun 2026 04:37:01 +0000]]></lastBuildDate>
		<docs>https://validator.w3.org/feed/docs/rss2.html</docs>
		<atom:link href="https://security.unboundcompute.com/sitemap.rss" rel="self" type="application/rss+xml" />
		<ttl><![CDATA[60]]></ttl>

		<item>
			<guid><![CDATA[https://security.unboundcompute.com/fine-tuning-jailbreak/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/fine-tuning-jailbreak/]]></link>
			<title>The Fine Tuning Jailbreak: How Training Strips Safety Alignment</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:37:01 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/llm-insecure-output-handling/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/llm-insecure-output-handling/]]></link>
			<title>Insecure Output Handling: When Apps Trust the Model&#8217;s Words</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:59 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/excessive-agency-ai-agents/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/excessive-agency-ai-agents/]]></link>
			<title>Excessive Agency in AI Agents: The Risk That Turns a Trick Into a Breach</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:56 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/model-extraction-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/model-extraction-attack/]]></link>
			<title>Model Extraction Attack: Stealing a Model Through Its API</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:54 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/membership-inference-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/membership-inference-attack/]]></link>
			<title>Membership Inference Attack: Proving a Record Was in Training Data</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:51 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/ai-prompt-injection-worm/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/ai-prompt-injection-worm/]]></link>
			<title>The AI Prompt Injection Worm That Spreads Between Agents</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:49 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/policy-puppetry-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/policy-puppetry-attack/]]></link>
			<title>The Policy Puppetry Attack: When User Text Pretends to Be System Policy</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:47 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/skeleton-key-jailbreak/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/skeleton-key-jailbreak/]]></link>
			<title>Skeleton Key: The Jailbreak That Rewrites a Model&#8217;s Own Rules</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:44 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/ai-agent-memory-poisoning/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/ai-agent-memory-poisoning/]]></link>
			<title>AI Agent Memory Poisoning: When a Planted Note Attacks Later</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:42 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/rag-poisoning-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/rag-poisoning-attack/]]></link>
			<title>RAG Poisoning Attack: When Retrieved Documents Hijack the Model</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:36:40 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/mcp-rug-pull-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/mcp-rug-pull-attack/]]></link>
			<title>The MCP Rug Pull: When an Approved Tool Changes After You Trust It</title>
			<pubDate><![CDATA[Sun, 28 Jun 2026 04:33:40 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/ansi-escape-injection-terminals/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/ansi-escape-injection-terminals/]]></link>
			<title>ANSI Escape Injection: Attacking AI Agents That Print to a Terminal</title>
			<pubDate><![CDATA[Sat, 27 Jun 2026 02:05:23 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/code-interpreter-sandbox-escape/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/code-interpreter-sandbox-escape/]]></link>
			<title>Code Interpreter Escape: Breaking Out of an AI Agent&#8217;s Sandbox</title>
			<pubDate><![CDATA[Sat, 27 Jun 2026 02:05:07 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/crescendo-multi-turn-jailbreak/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/crescendo-multi-turn-jailbreak/]]></link>
			<title>Crescendo: The Multi Turn Jailbreak That Escalates Slowly</title>
			<pubDate><![CDATA[Sat, 27 Jun 2026 02:05:04 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/multimodal-prompt-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/multimodal-prompt-injection/]]></link>
			<title>Multimodal Prompt Injection: Hiding Instructions in an Image</title>
			<pubDate><![CDATA[Sat, 27 Jun 2026 01:47:48 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/glitch-token-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/glitch-token-attack/]]></link>
			<title>Glitch Tokens: The Words That Break a Language Model</title>
			<pubDate><![CDATA[Sat, 27 Jun 2026 01:47:45 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-nosql-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-nosql-injection/]]></link>
			<title>What is NoSQL Injection? How Query Operators Get Abused</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:33:09 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/markdown-image-data-exfiltration/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/markdown-image-data-exfiltration/]]></link>
			<title>Markdown Image Exfiltration: How a Chat UI Leaks Your Data</title>
			<pubDate><![CDATA[Sat, 27 Jun 2026 01:47:43 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/blog/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/blog/]]></link>
			<title>Blog</title>
			<pubDate><![CDATA[Sat, 20 Jun 2026 01:29:58 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/]]></link>
			<title>Home</title>
			<pubDate><![CDATA[Sat, 20 Jun 2026 02:09:26 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/hash-length-extension-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/hash-length-extension-attack/]]></link>
			<title>Hash Length Extension Attack: How to Forge a MAC Without the Secret</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:56 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/llm-backdoor-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/llm-backdoor-attack/]]></link>
			<title>LLM Backdoors: Hiding a Trigger in the Training Data</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 10:55:08 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/tool-output-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/tool-output-injection/]]></link>
			<title>Tool Output Injection: When an Agent&#8217;s Own Tools Lie to It</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 10:54:58 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/embedding-inversion-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/embedding-inversion-attack/]]></link>
			<title>Embedding Inversion: Reading Text Back Out of a Vector Database</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 10:54:48 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/poisoned-pipeline-execution/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/poisoned-pipeline-execution/]]></link>
			<title>Poisoned Pipeline Execution: When Your CI Runs Attacker Code With Your Secrets</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:52 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/mcp-token-passthrough/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/mcp-token-passthrough/]]></link>
			<title>MCP Token Passthrough: How an Agent Hands Over Its Access</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 10:54:40 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/adversarial-suffix-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/adversarial-suffix-attack/]]></link>
			<title>Adversarial Suffix Attacks: The Gibberish String That Jailbreaks a Model</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 10:54:34 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/prompt-injection-to-xss/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/prompt-injection-to-xss/]]></link>
			<title>Prompt Injection to XSS: When Model Output Becomes the Payload</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 10:54:27 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/client-side-path-traversal/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/client-side-path-traversal/]]></link>
			<title>Client Side Path Traversal: When the Browser Sends Your Fetch Somewhere Else</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:47 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/agent-memory-poisoning/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/agent-memory-poisoning/]]></link>
			<title>Agent Memory Poisoning: When an AI Agent Remembers an Attacker&#8217;s Instruction</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 10:42:33 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/oauth-redirect-uri-manipulation/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/oauth-redirect-uri-manipulation/]]></link>
			<title>OAuth redirect_uri Manipulation: How a Loose Callback Check Leaks Your Code</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:10:01 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/aes-gcm-nonce-reuse/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/aes-gcm-nonce-reuse/]]></link>
			<title>AES GCM Nonce Reuse: The Forbidden Attack Explained</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:59 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/system-prompt-extraction/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/system-prompt-extraction/]]></link>
			<title>System Prompt Extraction: Why Keeping the Prompt Secret Is Not Security</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:42 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/css-injection-data-exfiltration/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/css-injection-data-exfiltration/]]></link>
			<title>CSS Injection: Stealing Data With Style Rules and No JavaScript</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 08:11:07 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/llm-data-exfiltration-markdown/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/llm-data-exfiltration-markdown/]]></link>
			<title>LLM Data Exfiltration Through Markdown Image Rendering</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:45 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/confused-deputy-ai-agents/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/confused-deputy-ai-agents/]]></link>
			<title>The Confused Deputy Attack in AI Agents Explained</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:42 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/excessive-agency-in-ai-agents/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/excessive-agency-in-ai-agents/]]></link>
			<title>Excessive Agency in AI Agents: When a Tool Can Do Too Much</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:53:40 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/what-is-web-cache-poisoning/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/what-is-web-cache-poisoning/]]></link>
			<title>What is Web Cache Poisoning? How One Request Hits Many Users</title>
			<pubDate><![CDATA[Wed, 24 Jun 2026 04:33:11 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/many-shot-jailbreaking/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/many-shot-jailbreaking/]]></link>
			<title>Many Shot Jailbreaking: How a Long Context Window Becomes an Attack Surface</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 08:11:00 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/cross-site-leaks/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/cross-site-leaks/]]></link>
			<title>Cross Site Leaks: Reading Secrets You Are Never Allowed to See</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 08:10:50 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/jwt-jwks-spoofing/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/jwt-jwks-spoofing/]]></link>
			<title>JWKS Spoofing: When a JWT Header Tells the Server Which Key to Trust</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 08:10:35 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/double-clickjacking/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/double-clickjacking/]]></link>
			<title>Double Clickjacking: The Clickjacking Revival That Beats Frame Defenses</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:54 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/postmessage-vulnerabilities/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/postmessage-vulnerabilities/]]></link>
			<title>postMessage Vulnerabilities: When Cross Origin Messages Turn Into XSS</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:50 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/cross-site-websocket-hijacking/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/cross-site-websocket-hijacking/]]></link>
			<title>Cross Site WebSocket Hijacking: The CSRF of WebSockets</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:45 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/denial-of-wallet-ai-agents/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/denial-of-wallet-ai-agents/]]></link>
			<title>Denial of Wallet: When Attackers Run Up Your AI Agent&#8217;s Bill</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:40 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/mcp-tool-shadowing/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/mcp-tool-shadowing/]]></link>
			<title>MCP Tool Shadowing: When One Server Hijacks Another&#8217;s Tools</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:37 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/ascii-smuggling-prompt-injection/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/ascii-smuggling-prompt-injection/]]></link>
			<title>ASCII Smuggling: Invisible Unicode Prompt Injection That Humans Cannot See</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:35 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/slopsquatting-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/slopsquatting-attack/]]></link>
			<title>Slopsquatting: When Attackers Register the Packages AI Hallucinates</title>
			<pubDate><![CDATA[Thu, 25 Jun 2026 02:09:32 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/http2-rapid-reset-attack/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/http2-rapid-reset-attack/]]></link>
			<title>HTTP/2 Rapid Reset: How a Cancel Frame Became a Record DDoS</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 08:10:44 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://security.unboundcompute.com/ecdsa-nonce-reuse/]]></guid>
			<link><![CDATA[https://security.unboundcompute.com/ecdsa-nonce-reuse/]]></link>
			<title>ECDSA Nonce Reuse: How One Repeated Number Leaks the Private Key</title>
			<pubDate><![CDATA[Fri, 26 Jun 2026 08:10:25 +0000]]></pubDate>
		</item>
				</channel>
</rss>
