mehul soni

89 posts

mehul soni

mehul soni

@MehulSoni89

building https://t.co/LFoBDVDBq5 - runtime security for AI agents

Tallinn Katılım Ağustos 2014
108 Takip Edilen25 Takipçiler
mehul soni
mehul soni@MehulSoni89·
A single malicious GitHub issue can make an AI agent leak your private repos into a public PR. Not a GitHub bug - just a bad chain of otherwise-authorized tool calls. Why prompt-injection filters miss it, and what actually catches the sequence: clampd.dev/blog/github-mc… #AI
English
1
0
1
56
mehul soni
mehul soni@MehulSoni89·
Most agent security tools log one agent at a time. But production breaks in the chain. Auto-discovered delegation graph. Per-edge approval. This is what a real multi-agent workload looks like in the dashboard. clampd.dev #OpenAI #LangChain #Anthropic #CrewAI #MCP
mehul soni tweet mediamehul soni tweet media
English
0
0
0
78
mehul soni
mehul soni@MehulSoni89·
Link: clampd.dev/blog Everyone hyped about A2A for agent interoperability.Few talking about the attack surface it creates: dynamic Agent Cards, cross-framework delegations, context poisoning between agents.This is exactly why runtime firewalls like @clampd_dev exist
English
0
0
1
41
mehul soni
mehul soni@MehulSoni89·
mehul soni @MehulSoni89 · 2h This is not an exact replica of the original PocketOS incident. The environment, tooling, and flow were reconstructed to closely mirror the reported kill chain and failure mode for demonstration purposes.
English
0
0
0
22
mehul soni
mehul soni@MehulSoni89·
3/ We rebuilt the entire incident as a live demo: real LangChain agent real MCP tools real Railway API call shape On the protected side, 5 rules trigger the moment the agent reads .env.old. The destructive command never executes because the prerequisite never completes.
English
0
0
0
18
mehul soni
mehul soni@MehulSoni89·
2/ The actual kill chain looked like this: Agent detects corrupted volume Reads .env.old Finds RAILWAY_ROOT_TOKEN Calls Railway GraphQL API Executes volumeDelete
English
0
0
0
13
mehul soni
mehul soni@MehulSoni89·
1/ In April 2026, a Cursor agent running Claude Opus 4.6 deleted a production database + backups in 9 seconds. The takeaway everyone repeated was: “Don’t give AI agents production credentials.” That sounds reasonable. It’s also not realistic.
English
0
0
1
129
mehul soni
mehul soni@MehulSoni89·
Clampd isn't another security tool. It's the guardrail layer AI agents created the need for. Mandatory if your stack has agents with tool access. Overkill if it doesn't. That's the line. #AIAgents #AISecurity #MCP #AgenticAI clampd.dev
English
0
0
0
40
mehul soni
mehul soni@MehulSoni89·
@lifeof_jer The destructive call was indistinguishable from a legitimate one at every layer of the stack. Same auth, same API, same shape. Nothing was inspecting what the call actually did before it ran. That layer doesn't exist by default in any current agent stack.
English
0
0
1
800
JER
JER@lifeof_jer·
An AI agent (Cursor + Claude Opus 4.6) deleted our production database in 9 seconds using a Railway API call with zero confirmation. Then, when asked why, the agent wrote this →
JER@lifeof_jer

x.com/i/article/2048…

English
37
30
96
35.4K
mehul soni
mehul soni@MehulSoni89·
@sunnyjaycer wow!, SUNNYx Please send me on 0x658e1B019F2F30C8089a9Ae3Ae5820F335bd9Ce4
English
1
0
2
0
Sunny Jaycer
Sunny Jaycer@sunnyjaycer·
To get a taste, drop your address below and I'll send you a stream of my very own extremely valuable SUNNYx token 😉 Then, hop on the Dashboard and blow your own mind by watching it stream into your wallet by-the-second 🚰 Here's an active SUNNYx stream I have going now 👇
English
4
0
5
0
mehul soni retweetledi
superfluid.eth
superfluid.eth@Superfluid_HQ·
We’re excited to announce that the Superfluid protocol is coming to @optimismPBC and @arbitrum! 💰🌊 Testnets already available at app.superfluid.finance with a built in faucet for test ETH and tokens 💸 @superfluid_HQ/superfluid-is-coming-to-optimism-and-arbitrum-aca1f29a208c" target="_blank" rel="nofollow noopener">medium.com/@superfluid_HQ
English
18
97
265
0
mehul soni retweetledi
pray.eth
pray.eth@pray_eth·
Watching my salary stream into my wallet through @Superfluid_HQ on @0xPolygon, and then watching investments automatically stream out through @ricochetxchange into @SushiSwap or wherever, all in real time, all fully automated, every second... 🤯 Total game changer.
English
8
46
226
0
mehul soni retweetledi
superfluid.eth
superfluid.eth@Superfluid_HQ·
Don’t miss our Community Call #11 this Thursday! ☎️ Agenda - DAO Global Hackathon 2021 🛠️ - Superfluid at @0xliscon 2021 🇵🇹 - Developer Console Preview 👀 - IDA Support ✅ - Q&A 💬 🗓️ Thu October 14 at 6pm CEST - 12pm EST - 9am PST Sign up below 👇 lu.ma/supercall11
English
2
7
19
0