Logo Hackmosphere Blanc Baseline
  • About us
  • Our services
    • Cyber pentesting
    • Physical Penetration Test
    • Phishing
    • Red Team
  • Our training courses
  • Contact
  • Blog
  • English
    • French
Free audit
AI-Powered Security Services: Which Solution Fits Which Need?

AI-Powered Security Services: Which Solution Fits Which Need?

by Saoussen Bahloul | Aug 24, 2026 | Other

Hackmosphere presents its three action plans dedicated to AI: two support offerings to help you master and secure your AI use cases, and a third that provides you with our AI-enhanced expertise. This specific approach is essential, as traditional cybersecurity remains...
RAG poisoning: When the knowledge base becomes a cyberattack weapon

RAG poisoning: When the knowledge base becomes a cyberattack weapon

by Saoussen Bahloul | Aug 24, 2026 | Other, Red Team

A case reported by AI Alert illustrates the risk of knowledge base (RAG) poisoning in a corporate setting. At a financial services company, an internal HR assistant—powered by a RAG corpus of HR policies—reportedly provided an incorrect reimbursement threshold for...
LLM Jailbreak: How Can We Secure AI Models Against Bypass Techniques?

LLM Jailbreak: How Can We Secure AI Models Against Bypass Techniques?

by Saoussen Bahloul | Aug 20, 2026 | Other, Red Team

Despite massive investments in security and alignment since 2023, the latest language models can still be circumvented. A  A Unit 42 study published in 2024 reports an average success rate of 64.6% for a multi-stage jailbreak technique tested on eight models. A...
Prompt Injection and AI Security: The Vulnerability That No One Has Solved Yet

Prompt Injection and AI Security: The Vulnerability That No One Has Solved Yet

by Saoussen Bahloul | Aug 18, 2026 | Other, Red Team

In June 2025, a single email was enough to silently clear the Microsoft 365 Copilot context (emails, OneDrive files, Teams conversations) without any employee having to click on anything. This vulnerability  CVE-2025-32711, dubbed EchoLeak, illustrates better...
Shadow AI: Understanding the Risks and Protecting Your Data

Shadow AI: Understanding the Risks and Protecting Your Data

by Saoussen Bahloul | Aug 14, 2026 | Other, Red Team

A sales rep who pastes a confidential pricing grid into ChatGPT to have it reworded. An HR manager who has Gemini analyze resumes. An accountant who submits a projected balance sheet to Claude via his personal account. None of these actions go through the IT...
AI-Powered Security Services: Which Solution Fits Which Need?

AI-Powered Security Services: Which Solution Fits Which Need?

by Saoussen Bahloul | Aug 13, 2026 | Other, Red Team

A traditional web security vulnerability scan does not detect a prompt injection. A standard application penetration test does not assess an AI agent’s resilience against attempts to hijack its purpose, and traditional IT asset mapping generally fails to identify any...
« Older Entries
Next Entries »

Recent Posts

  • Model Extraction: How API Requests Can Be Used to Steal an AI Model
  • AI Security and Function Calling: Risks and Best Practices
  • OWASP LLM Top 10 2026: What’s New in the Latest AI Security Ranking
  • AI Agent Security: Why Does the MCP Protocol Increase Vulnerabilities?
  • System Prompt Leakage: Risks and Security of AI Chatbots

Recent Comments

No comments to show.
Logo Hackmosphere Blanc Baseline
Icon email

contact [ at ] hackmosphere.fr

Icon Linkedin

Follow us

Privacy policy

General terms and conditions

Cookie policy

 

Pôle Alpha
Rue Pierre Lafitte
06410 Biot | Sophia Antipolis
Alpes-Maritimes | 06 | PACA | France

2026 IT-Marketing. All Rights Reserved.

Terms of use

Site map

Gérer le consentement
Pour offrir les meilleures expériences, nous utilisons des technologies telles que les cookies pour stocker et/ou accéder aux informations des appareils. Le fait de consentir à ces technologies nous permettra de traiter des données telles que le comportement de navigation ou les ID uniques sur ce site. Le fait de ne pas consentir ou de retirer son consentement peut avoir un effet négatif sur certaines caractéristiques et fonctions.
Fonctionnel Always active
L’accès ou le stockage technique est strictement nécessaire dans la finalité d’intérêt légitime de permettre l’utilisation d’un service spécifique explicitement demandé par l’abonné ou l’utilisateur, ou dans le seul but d’effectuer la transmission d’une communication sur un réseau de communications électroniques.
Préférences
L’accès ou le stockage technique est nécessaire dans la finalité d’intérêt légitime de stocker des préférences qui ne sont pas demandées par l’abonné ou l’internaute.
Statistiques
Le stockage ou l’accès technique qui est utilisé exclusivement à des fins statistiques. Le stockage ou l’accès technique qui est utilisé exclusivement dans des finalités statistiques anonymes. En l’absence d’une assignation à comparaître, d’une conformité volontaire de la part de votre fournisseur d’accès à internet ou d’enregistrements supplémentaires provenant d’une tierce partie, les informations stockées ou extraites à cette seule fin ne peuvent généralement pas être utilisées pour vous identifier.
Marketing
L’accès ou le stockage technique est nécessaire pour créer des profils d’internautes afin d’envoyer des publicités, ou pour suivre l’utilisateur sur un site web ou sur plusieurs sites web ayant des finalités marketing similaires.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
Voir les préférences
  • {title}
  • {title}
  • {title}