<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[AIPwn: AIBounty]]></title><description><![CDATA[AI bug bounty wrteups tracking]]></description><link>https://read.aipwn.org/s/aibounty</link><image><url>https://substackcdn.com/image/fetch/$s_!55kH!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc03c5133-3a7d-4dae-ba10-925cd67ac425_1024x1024.png</url><title>AIPwn: AIBounty</title><link>https://read.aipwn.org/s/aibounty</link></image><generator>Substack</generator><lastBuildDate>Sun, 19 Apr 2026 17:25:34 GMT</lastBuildDate><atom:link href="https://read.aipwn.org/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[AIPwn]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[aipwn@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[aipwn@substack.com]]></itunes:email><itunes:name><![CDATA[AIPwn]]></itunes:name></itunes:owner><itunes:author><![CDATA[AIPwn]]></itunes:author><googleplay:owner><![CDATA[aipwn@substack.com]]></googleplay:owner><googleplay:email><![CDATA[aipwn@substack.com]]></googleplay:email><googleplay:author><![CDATA[AIPwn]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[AIPwn ·100 Days to PWN AI]]></title><description><![CDATA[Hello everyone, I&#8217;m pxiaoer from AIPwn.org. I&#8217;m launching a 100-day AIPwn bug-hunting challenge. From 2025/09/23 to 2026/01/01, I will devote &#8805;2 hours every day to AI security practice, and continuously publish learning notes, dev reflections, and discovery ideas in the AIBounty column (no reproducible exploit details will be shared).]]></description><link>https://read.aipwn.org/p/aipwn-100-days-to-pwn-ai</link><guid isPermaLink="false">https://read.aipwn.org/p/aipwn-100-days-to-pwn-ai</guid><dc:creator><![CDATA[AIPwn]]></dc:creator><pubDate>Tue, 23 Sep 2025 15:36:43 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Fb6G!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa328c4f0-01b1-43ba-b445-99bd00110c1e_188x188.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hello everyone, I&#8217;m pxiaoer from <a href="https://aipwn.org/">AIPwn.org</a>. I&#8217;m launching a 100-day AIPwn bug-hunting challenge. From 2025/09/23 to 2026/01/01, I will devote &#8805;2 hours every day to AI security practice, and continuously publish learning notes, dev reflections, and discovery ideas in the AIBounty column (no reproducible exploit details will be shared).</p><p>&#128073; <strong>Subscribe:</strong> </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://read.aipwn.org/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://read.aipwn.org/subscribe?"><span>Subscribe now</span></a></p><p></p><h2>What I will (and won&#8217;t) publish</h2><ul><li><p>&#9989; <strong>Learning Notes:</strong> Key takeaways from worthwhile papers/projects/articles and my transferable reasoning.</p></li><li><p>&#9989; <strong>Dev Reflections:</strong> Design trade-offs, parameter choices, costs, and pitfalls while building my AI security automation testing framework.</p></li><li><p>&#9989; <strong>Discovery Ideas:</strong> How to identify testable starting points and minimal validation paths across <strong>MLSys, open-source models/frameworks, mainstream products &amp; plugins, and multimodal/agent systems</strong>.</p></li><li><p>&#10060; <strong>Won&#8217;t disclose:</strong> Any reproducible exploit details, unpatched risks, or information involving private or production data.</p></li></ul><p></p><h2>Challenge Goals</h2><ul><li><p>Produce <strong>100 high-quality vulnerability reports</strong>.</p></li><li><p><strong>Cumulative bounty target: $50,000</strong> (subject to platform/vendor confirmation).</p></li><li><p><strong>&#8805;2 hours of hands-on work per day</strong>, with weekly reviews and monthly summaries.</p></li><li><p>Release a public (abstracted) version of the <strong>AIPwn methodology + automation toolchain</strong>.</p><p></p></li></ul><h2>Challenge Scope</h2><p>This challenge centers on AIPwn (vulnerability discovery in AI systems) and covers:</p><h3>1) Vulnerability Types</h3><p>Prompt Injection | Jailbreak | Data Leakage | Denial of Service | Model Inversion | Multimodal adversarial issues and other emerging categories</p><h3>2) Target Systems</h3><ul><li><p><strong>Models &amp; Frameworks:</strong> Major LLMs (including open-source), RAG/retrieval pipelines, plugins, and tool interfaces.</p></li><li><p><strong>Products &amp; Ecosystem:</strong> Popular AI products and open-source projects; multimodal systems (image/audio/video/tool calls); multi-agent/agent systems.</p></li></ul><h3>3) Methodology</h3><ul><li><p>Develop an <strong>AI security automation testing toolkit</strong>.</p></li></ul><p></p><h2>Why this challenge?</h2><p>AI security matters more than ever. Through this challenge, I hope to:</p><ul><li><p>Strengthen my professional capabilities in AI security.</p></li><li><p>Contribute to the safety of AI products.</p></li><li><p>Explore a <strong>systematic</strong> approach to AI vulnerability research.</p></li><li><p>Promote <strong>responsible disclosure</strong> in AI security.</p></li></ul><p>I&#8217;ll share progress regularly on <strong><a href="https://zhuanlan.zhihu.com/column/c_1953519639624679575">Zhihu</a></strong> and <strong><a href="https://aipwn.org/">AIPwn</a></strong>. If you&#8217;re interested in AI security, let&#8217;s connect and discuss!</p><p></p><h2>About the Author</h2><p>I&#8217;m a researcher passionate about AI security, focusing on the area for <strong>8 years</strong>, with <strong>10+ years</strong> of machine learning/NLP R&amp;D experience. I hope this challenge not only sharpens my skills but also contributes to the AI security community.</p><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://read.aipwn.org/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">AIPwn is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[I embarked on my AI Bounty journey]]></title><description><![CDATA[On April 1, 2025]]></description><link>https://read.aipwn.org/p/i-embarked-on-my-ai-bounty-journey</link><guid isPermaLink="false">https://read.aipwn.org/p/i-embarked-on-my-ai-bounty-journey</guid><dc:creator><![CDATA[AIPwn]]></dc:creator><pubDate>Tue, 01 Apr 2025 13:16:27 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>On the first day of April 2025, I started something&#8212;AI Bounty. I&#8217;ll spend some time on it every day moving forward, hoping for good results.</p><p></p><p>I&#8217;ll be syncing my research experiences and findings through <a href="https://aipwn.org/">AIPwn.org</a> as they happen, so feel free to follow along if you&#8217;re interested.</p><p></p><h3>Model Security in the LLM Era</h3><p><br>Last month, I gave a talk on model security for a big company. Below are a few screenshots from the slides I used at the time. The link to the slides is at the end&#8212;feel free to reach out and discuss!</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!AJsa!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!AJsa!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 424w, https://substackcdn.com/image/fetch/$s_!AJsa!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 848w, https://substackcdn.com/image/fetch/$s_!AJsa!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 1272w, https://substackcdn.com/image/fetch/$s_!AJsa!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!AJsa!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png" width="1456" height="817" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:817,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:111373,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://aipwn.org/i/160327126?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!AJsa!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 424w, https://substackcdn.com/image/fetch/$s_!AJsa!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 848w, https://substackcdn.com/image/fetch/$s_!AJsa!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 1272w, https://substackcdn.com/image/fetch/$s_!AJsa!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c9e5e84-520f-4f28-ae2e-a97337d6f407_2206x1238.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!DlRo!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!DlRo!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 424w, https://substackcdn.com/image/fetch/$s_!DlRo!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 848w, https://substackcdn.com/image/fetch/$s_!DlRo!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 1272w, https://substackcdn.com/image/fetch/$s_!DlRo!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!DlRo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png" width="1456" height="831" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/dd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:831,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:756980,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://aipwn.org/i/160327126?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!DlRo!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 424w, https://substackcdn.com/image/fetch/$s_!DlRo!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 848w, https://substackcdn.com/image/fetch/$s_!DlRo!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 1272w, https://substackcdn.com/image/fetch/$s_!DlRo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd65a56e-ac0c-4de2-a32e-51bf93984495_2078x1186.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!zOuk!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!zOuk!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 424w, https://substackcdn.com/image/fetch/$s_!zOuk!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 848w, https://substackcdn.com/image/fetch/$s_!zOuk!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 1272w, https://substackcdn.com/image/fetch/$s_!zOuk!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!zOuk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png" width="1456" height="824" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:824,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:648786,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://aipwn.org/i/160327126?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!zOuk!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 424w, https://substackcdn.com/image/fetch/$s_!zOuk!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 848w, https://substackcdn.com/image/fetch/$s_!zOuk!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 1272w, https://substackcdn.com/image/fetch/$s_!zOuk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7368f3eb-a5d6-44e3-8b72-bc05f7ec951f_2050x1160.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Slides link:  <a href="https://docs.google.com/presentation/d/1xgkv55cnTsAMaW0uvBOhLWhsgoQnoShBWTvbpGj4Hhk/edit?usp=sharing">LLM&#26102;&#20195;&#30340;&#27169;&#22411;&#23433;&#20840;</a></p><p></p><h3>What AI Bounty Focuses On</h3><p><br>I&#8217;m still in the learning phase right now and plan to cover all the basics. Currently, very few vendors accept AI vulnerabilities, so the most promising starting point is likely AI infrastructure.</p><p></p><p>Of course, I&#8217;ll also dive into some of the latest topics, like Agent security (which I covered in the slides above) and the recently trending <a href="https://arxiv.org/abs/2503.23278">MCP protocol security</a>. </p><p></p><p>This year is being called the "Year of Agents," so a lot of my effort will go into exploring the expanded attack surface of Agents.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pFMB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pFMB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 424w, https://substackcdn.com/image/fetch/$s_!pFMB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 848w, https://substackcdn.com/image/fetch/$s_!pFMB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 1272w, https://substackcdn.com/image/fetch/$s_!pFMB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pFMB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png" width="1023" height="557" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:557,&quot;width&quot;:1023,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!pFMB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 424w, https://substackcdn.com/image/fetch/$s_!pFMB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 848w, https://substackcdn.com/image/fetch/$s_!pFMB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 1272w, https://substackcdn.com/image/fetch/$s_!pFMB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb704bfd3-7741-45be-95c6-85addf4e97c0_1023x557.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>I&#8217;ll also be working on some open-source projects related to AI security, which I&#8217;ll share via <a href="https://aipwn.org/">AIPwn.org</a> when the time comes. </p><p></p><p>Hopefully, in 2025, we all come away with something valuable.</p><p></p><p>My X: <a href="https://x.com/pxiaoer">pxiaoer</a></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://read.aipwn.org/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">AIPwn is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[OpenAI Bug Bounty]]></title><description><![CDATA[start hacking]]></description><link>https://read.aipwn.org/p/openai-bug-bounty</link><guid isPermaLink="false">https://read.aipwn.org/p/openai-bug-bounty</guid><dc:creator><![CDATA[AIPwn]]></dc:creator><pubDate>Wed, 21 Feb 2024 11:07:18 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!fIqF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!fIqF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!fIqF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 424w, https://substackcdn.com/image/fetch/$s_!fIqF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 848w, https://substackcdn.com/image/fetch/$s_!fIqF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 1272w, https://substackcdn.com/image/fetch/$s_!fIqF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!fIqF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png" width="1456" height="784" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:784,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:510111,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!fIqF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 424w, https://substackcdn.com/image/fetch/$s_!fIqF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 848w, https://substackcdn.com/image/fetch/$s_!fIqF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 1272w, https://substackcdn.com/image/fetch/$s_!fIqF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ff023b2-8a94-4ec6-b540-e3c1b99b39f6_2000x1077.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>When embarking on a bug bounty journey, it's best to start by carefully reading the relevant documentation, especially the <strong><a href="https://bugcrowd.com/openai">Program details</a></strong>, which include things you must understand. Treat this as information gathering, read it several times, and form a profile with much of the content.</p><p>OpenAI's bug bounty program is hosted on Bugcrowd, link: <a href="https://bugcrowd.com/openai">https://bugcrowd.com/openai</a></p><p></p>
      <p>
          <a href="https://read.aipwn.org/p/openai-bug-bounty">
              Read more
          </a>
      </p>
   ]]></content:encoded></item></channel></rss>