AI Research
Research at the intersection of offensive security and artificial intelligence. How AI is reshaping vulnerability discovery, bug bounty hunting, and the attacker-defender equilibrium.
root@johnmatrix:~$ ls ./ai-research/ | wc -l → 12
20 Concepts That Explain Modern AITwenty mental models that close the gap between using AI and understanding it.
→
Agent Containment Failures in Offensive Tool-UseA taxonomy of containment failures from six months of red-team agents - and what actually caught them.
→
Building an Autonomous Pentest Agent: What I Learned the Hard WayWhat I learned building an autonomous pentest agent: what works, what doesn't, and where the field is going.
→
Context Engineering: The Skill Nobody Named in 2024The discipline of managing what the model sees, remembers, and forgets.
→
Credential Sprawl in AI-Assisted DevelopmentAI coding assistants log your secrets in plaintext. I scanned 200 sessions to count the damage.
→
Graphing the Agent: Orchestration Graphs and the New Control PlaneHow agent systems went from chains to graphs, and why the graph is where containment now lives.
→
How LLMs Are Actually Built: The Architecture Is the Part That Matters LeastFrom tokenization to RLHF: how language models are actually built, and why the architecture matters least.
→
Loop Engineering, 2026: The Bash Loop That Ate Software DevelopmentThe 2026 deep-dive: bash loops to Gas City, METR time-horizon economics, and the security tax of unattended agents.
→
Loop Engineering: Replacing Yourself as the Prompter (and the Security Tax Nobody Budgets For)The agentic loop pattern that turns a single prompt into a self-directed workflow - and the security tax it adds.
→
MCP Permission Models Are BrokenThe Model Context Protocol's permission model is broken. Here's how to fix it before agents ship.
→
Offensive AI in Bug Bounty: The Real State of PlayHow AI is changing bug bounty hunting - for attackers, defenders, and the platforms in between.
→
Prompt Injection and the Agentic Attack SurfacePrompt injection is the new SQL injection. Here's the attack surface and how to close it.
→