Security Articles

RSS feed

10 articles found in Security

MCP Server Instructions: How to Test for Prompt Injection | TestMu AI (Formerly LambdaTest)
MCP Server Instructions: How to Test for Prompt Injection | TestMu AI (Formerly LambdaTest)

MCP prompt injection can start at connection time: 66% of live registry servers in an August 2026 audit return instructions. Learn how to test your MCP client.

Anubhav Singhmaar

Anubhav Singhmaar

September 29, 2026

15 min read

AI Agent Red Teaming: A Test Plan for Tool Misuse | TestMu AI (Formerly LambdaTest)
AI Agent Red Teaming: A Test Plan for Tool Misuse | TestMu AI (Formerly LambdaTest)

AI agent red teaming as a runnable test plan: 11 injection and tool misuse scenarios for AI agent security testing, graded on what the agent did, not its reply.

Vipul Verma

Vipul Verma

September 29, 2026

16 min read

AI Agent Permissions: How to Test That Agent Scope Holds | TestMu AI (Formerly LambdaTest)
AI Agent Permissions: How to Test That Agent Scope Holds | TestMu AI (Formerly LambdaTest)

A read-only subagent can still run rm -rf. Test AI agent permissions by trying out-of-scope actions on every route, checking the effect, and enforcing scope.

Sirajuddin Khan

Sirajuddin Khan

September 29, 2026

15 min read

SalesBleed Explained: How Agentforce Leaked CRM Data Through DNS | TestMu AI (Formerly LambdaTest)
SalesBleed Explained: How Agentforce Leaked CRM Data Through DNS | TestMu AI (Formerly LambdaTest)

Zenity Labs' SalesBleed let a poisoned Salesforce lead make Agentforce leak CRM data over a DNS lookup, no click. How it worked and what Salesforce fixed.

Vipul Verma

Vipul Verma

September 28, 2026

5 min read

What Gemini's Security Eval Reveals About Agent Trust | TestMu AI (Formerly LambdaTest)
What Gemini's Security Eval Reveals About Agent Trust | TestMu AI (Formerly LambdaTest)

Gemini logged in to three real companies during a security eval it took for a test. How it compares with OpenAI and Anthropic, and a pre-run check to catch it.

Vipul Verma

Vipul Verma

September 24, 2026

5 min read

AI Agent Security: A Complete Guide for 2026 | TestMu AI (Formerly LambdaTest)
AI Agent Security: A Complete Guide for 2026 | TestMu AI (Formerly LambdaTest)

AI agent security explained: the OWASP Agentic Top 10 risks, the controls that matter, and how to test both what an AI agent says and what it actually does.

Yogendra Porwal

Yogendra Porwal

September 17, 2026

5 min read

MCP Security: What Changes When a Model Decides
MCP Security: What Changes When a Model Decides

MCP security changes when a model, not your code, decides a tool runs. Covers prompt injection via tool results, tool poisoning, scoping, and supply chain risk.

Anubhav Singhmaar

Anubhav Singhmaar

August 27, 2026

5 min read

AI Test Automation Compliance for Finance and Healthcare
AI Test Automation Compliance for Finance and Healthcare

What finance and healthcare teams should require from test automation: auditability, data residency, and human review gates, sourced from HIPAA and PCI DSS.

Mythili Raju

Mythili Raju

August 27, 2026

5 min read

AI Testing Data Security: What SOC 2 Actually Covers
AI Testing Data Security: What SOC 2 Actually Covers

AI testing tools read your test fixtures, DOM, and CI logs. Learn what SOC 2 actually covers, where it stops for AI, and the exact questions to ask a vendor.

Sawan Garg

Sawan Garg

August 25, 2026

5 min read

Prompt Injection Testing: How to Test LLM Apps and AI Agents
Prompt Injection Testing: How to Test LLM Apps and AI Agents

Prompt injection testing checks whether crafted inputs can override an LLM app's instructions. Learn the methodology, payloads, tools, and CI/CD checks to run.

Prince Dewani

Prince Dewani

August 9, 2026

5 min read