Related posts
Mario Zechner Blog
The the words it uses that this site has seen least often elsewhere. Posts are matched on those words alone — nothing here is a summary of this one.
Top people
Showing Profile →
Hiding
Hiding
8 September
4 September
-
Their words
It is in practice safe to assume your agents are not going to get prompt injected, even if you are kind of asking for it.
Claude Fable 5.1 and Mythos 5.1: The System Cardthezvi.substack.com
8 August
-
Their words
I REALLY want to believe that this fixes prompt injection risks for coding agents, but I'm just not there yet
27 July
From one piece Boris Cherny: We Cut 80% of Claude Code's Prompt 2 beliefs, in the piece's order there
-
Their words
the model does not seem to be prompt injectable anymore.
-
Their words
it's it's literally we're looking at neurons in the model's brain that light up when prompt injection happens. So the model won't even tell you but we can actually see those neurons and we can figure out and diagnose that it's happening. And then you combine that with the auto mode classifier and with these three layers we just cannot demonstrate prompt injection anymore.
19 March
From one piece Simon Willison: Engineering practices that make coding agents work - The Pragmatic Summit 2 beliefs, in the piece's order there
-
Their words
I call it the lethal trifecta because the only guaranteed solution is to cut off one of the legs.
-
Their words
Problem is, you can solve SQL injection by parameterizing your queries. You can't do that with LLMs.
12 February
-
Their words
So, so the latest generation of models has a lot of post-training to detect those approaches, and it's not as simple as ignore all previous instructions and do this and this. That was years ago. You have to work much harder to do that now. Still possible.
19 September 2025
-
Their words
So Hitler receives this Dolantin injection, and he gets up, he goes into the meeting room, he dominates the meeting room, he feels great. He decides, you know, in front of everybody, no one is able to… no one overpowers him in that meeting. He was very good in the room. And the troops are split up. Like Leningrad is now a target. This weakens the general thrust towards Moscow. This is probably why they didn't take Moscow.
9 August 2025
-
Their words
One of my favorite papers about prompt injection is Design Patterns for Securing LLM Agents against Prompt Injections
22 March 2025
-
korrents.com
Prompt injection is an extremely hard attack to defend against, and hardly anyone integrating AI is talking about it.Their words
One thing that I don't think a lot of people are talking about as we integrate more and more AI is that prompt injection is an extremely hard thing to defend against because it's not really clear how you defend against it.
Nothing matches.
What is a korrent?
A korrent is a belief a person has stated in their own words: one sentence stating the claim, backed by a quote and a source, kept at korrents.com.
Under a name here, the quoted block is what they actually said. The korrent beneath it is the claim those words support, in korrents' wording — tap it to see the record, its source, and who else holds it.
Nobody here wrote their own korrents. They are compiled from public statements, and a person can change their mind, which is recorded too.
About the English under a post
Some people here publish in a language other than English. Where they do, this site shows a machine translation beneath the post, in this typeface — the site's own, not theirs.
The post itself is never changed, moved or hidden: what is set in the serif above is exactly what the person published, and it is what to quote them on. A translation can be wrong in ways that matter, especially about tone.
Only the post's own words are translated. A quoted post, a linked article and a belief on korrents.com are left in their original language.