CLOADER: Evading Security Mobile Defenses via Runtime Obfuscation and Adaptive Hooking Tactics
저자: Nhat-Anh Huynh, Minh Quang Luu, Ngoc Hong Tran발표: arXiv v1, 2026-09-20 / ICMR 2025 acceptance report ICMR2025-391원문: arXivTags: Android Security, Frida, Dynamic Instrumentation, Runtime Obfuscation, Hooking, Root Detection, Mobile Defense, Evasion, Reverse Engineering, Red Team본 글은 원 논문의 주요 기술적 내용을 이해하기 쉽게 요약·정리한 글입니다. 자세한 내용은 상단의 원문 링크를 참고하세요.한눈에 보기CLOADER는 rooted Android 14 장치에서 Frida serv..
2026. 9. 23.
Defusing Explosive Prompts: Understanding and Preventing Trigger-Based Prompt Injections in LLM Agents
저자: Justin Szczepaniak, Elad Feldman, Naum Viner, Ben Nassi발표: arXiv v1, 2026-09-18원문: arXivTags: Explosive Prompt, Indirect Prompt Injection, LLM Agent, Multi-Turn Attack, AgentDojo, DeFuse, Tool Misuse, Trigger Attack, Input Detection, AI Security본 글은 원 논문의 주요 기술적 내용을 이해하기 쉽게 요약·정리한 글입니다. 자세한 내용은 상단의 원문 링크를 참고하세요.한눈에 보기이 논문은 악성 문서가 즉시 행동을 요구하지 않고 “나중에 특정 말·상황이 나타나면 실행하라”는 조건부 지시를 에이전트 문맥에 심는 E..
2026. 9. 23.
Zero-Trust Authorization and Discovery for Enterprise MCP
저자: Huan Li, Yuwei Wang, Srinivasan Manoharan발표: arXiv v1, 2026-09-18원문: arXivTags: MCP, Zero Trust, Authorization, Tool Discovery, Prompt Injection, Least Privilege, Token Introspection, FastMCP, Agent Security, Enterprise AI본 글은 원 논문의 주요 기술적 내용을 이해하기 쉽게 요약·정리한 글입니다. 자세한 내용은 상단의 원문 링크를 참고하세요.한눈에 보기이 논문은 Model Context Protocol 서버에서 인증, component discovery, 실제 invocation 인가를 하나의 권한 선언으로 묶는 Python..
2026. 9. 23.
Your Mailbox Is Mine: Prompt Injection Attacks Against Real-World LLM Email Agents
저자: Jiangrong Wu 외발표: arXiv v2, 2026-09-19 / NDSS 2027 accepted원문: arXivTags: Email Agent, Prompt Injection, ESPI, LLM Security, Tool Calling, Protocol State, EmailStateGuard, ESPInspector, Phishing, NDSS본 글은 원 논문의 주요 기술적 내용을 이해하기 쉽게 요약·정리한 글입니다. 자세한 내용은 상단의 원문 링크를 참고하세요.한눈에 보기ESPI는 공격 이메일이 가짜 IMAP/SMTP/MIME/quota/NDR 상태와 그에 따른 “복구” 논리를 주장해, LLM 이메일 에이전트가 검색·출력·draft·send·delete tool을 오용하게 만드는 간..
2026. 9. 23.
Secrets That Survive Everything: Runtime Credential Exposure in Production Web Applications
저자: Hemanth Gorijala발표: IEEE Access, 2026년 / arXiv v1, 2026-09-19원문: arXiv · DOITags: Runtime Credential Exposure, Client-Side Secrets, Azure AD, APIM, JavaScript Bundle, Secret Scanning, OAuth, CryptoJS, DevSecOps, Web Security본 글은 원 논문의 주요 기술적 내용을 이해하기 쉽게 요약·정리한 글입니다. 자세한 내용은 상단의 원문 링크를 참고하세요.한눈에 보기이 연구는 저장소가 아니라 실제 운영 웹 애플리케이션의 브라우저 응답을 검사해, 빌드 이후에만 나타나는 자격증명 노출을 측정합니다. 한 조직이 허가한 약 2,000개 자산 ..
2026. 9. 23.