AI & Security
The S in MCP stands for Security
As AI coding assistants gain access to our codebases, terminals, and databases, we're one prompt injection away from disaster. This session explores the "Lethal Trifecta" — the architectural flaw that makes AI systems fundamentally vulnerable — through real-world breaches including zero-click data exfiltration and RCE via code comments. You'll learn attack patterns (tool poisoning, multimodal injections, jailbreaking) and defensive strategies including tool isolation and prompt injection detection. Walk away knowing which AI integrations are safe and which are ticking time bombs.