Every Attack Here Is a Prompt Injection

18,479 attacks that beat a language model, all of them prompt injection by construction. That makes the corpus a rare thing: a technique label you already know the answer to. Deriving it from the prompt text recovers 11.4% of it.

September 28, 2026 · 13 min

Sizing a Fingerprint for Prompt Attacks

Thirty-two bytes is enough to fingerprint a prompt attack so that reworded versions still match, and the fingerprint can be shared without sending the prompt. This is what each size on that curve buys, measured, and where the smallest option is the right call.

September 8, 2026 · 14 min

Twelve Ways to Make a Threat-Intel Bot Lie

A threat-intel assistant that says “I don’t know” is useful. One that invents a plausible answer is a liability. So I spent a day trying to make mine invent things, and wrote down what happened.

June 11, 2026 · 12 min

I'm Ashwin. I build the engineering that lets organizations get ahead of attacks, and write about the decisions behind it.

Email · Resume · GitHub · LinkedIn