All posts
Topic
Tool Calling
2 articles on tool calling.
What Is Prompt Injection? How to Scan for It and Defend Your Agents
Prompt injection explained for practitioners: direct vs. indirect attacks, why tool-calling agents make it worse, real attack patterns, and the defenses โ treat tool output as data, scan it, and constrain what agents can do.
September 14, 2026
When Your LLM Router Turns On You: Tool-Call Injection and Credential Theft
A defensive brief on a fast-rising risk class: malicious or compromised LLM routers and MCP gateways that inject unintended tool calls, steal credentials in transit, and pivot across hosts. What the attack looks like, why it scales, and the controls that actually contain it.
September 11, 2026