Latest Tech News

Stay updated with the latest in technology, AI, cybersecurity, and more

Filtered by: prompt Clear Filter

New attack on ChatGPT research agent pilfers secrets from Gmail inboxes

So far, prompt injections have proved impossible to prevent, much like memory-corruption vulnerabilities in certain programming languages and SQL injections in Web applications are. That has left OpenAI and the rest of the LLM market reliant on mitigations that are often introduced on a case-by-case basis, and only in response to the discovery of a working exploit. Accordingly, OpenAI mitigated the prompt-injection technique ShadowLeak fell to—but only after Radware privately alerted the LLM ma

Writing a Good AI Image Prompt Isn't Hard, but You Need These Essential Elements

One of the first things I learned while testing AI image generators is that there are a lot of things that can go wrong when you're trying to get the image you see in your head to appear on your screen. If you've ever used an AI image or video generator, you know what I mean. I've spent the past year testing and reviewing different AI image generators, and I've generated hundreds of images across services like Google's nano bananas model, Midjourney and Dall-E. But the images I created haven't

Topics: ai image like prompt want

Microsoft fixes app install issues caused by August Windows updates

Microsoft has fixed a known issue caused by the August 2025 security updates, which triggers unexpected User Account Control (UAC) prompts and app installation problems for non-admin users on all Windows versions. This issue is caused by a security patch that mitigates a Windows Installer privilege escalation vulnerability (CVE-2025-50173), which can enable authenticated attackers to gain SYSTEM privileges. To address the CVE-2025-50173 security flaw, Microsoft has implemented new User Account

Hallucination Risk Calculator

Hallucination Risk Calculator & Prompt Re-engineering Toolkit (OpenAI-only) Post-hoc calibration without retraining for large language models. This toolkit turns a raw prompt into: a bounded hallucination risk using the Expectation-level Decompression Law (EDFL), and a decision to ANSWER or REFUSE under a target SLA, with transparent math (nats). It supports two deployment modes: Evidence-based: prompts include evidence/context; rolling priors are built by erasing that evidence. prompts inc

Warner Bros. sues Midjourney to stop AI knockoffs of Batman, Scooby-Doo

Warner Bros. hit Midjourney with a lawsuit Thursday, crafting a complaint that strives to shoot down defenses that the AI company has already raised in a similar lawsuit filed by Disney and Universal Studios earlier this year. The big film studios have alleged that Midjourney profits off image generation models trained to produce outputs of popular characters. For Disney and Universal, intellectual property rights to pop icons like Darth Vader and the Simpsons were allegedly infringed. And now,

Bash Prompts Collection

Bash Prompts This web page is a child of the Bash Prompt HOWTO that I'm maintaining for the Linux Documentation Project. The HOWTO explains a lot more than I'm going to here. My interest in Bash Prompts developed when I found "The BashPrompt Themes Project (now long deceased). Some of their prompts show up here, and a lot of what I've done shows the influence of their work. I started these pages because so many people have been mailing me cool prompts that I couldn't see putting them all in t

Simple prompt or agent workflow? How not to overthink AI

Photobank2/iStock/Getty Images Plus Follow ZDNET: Add us as a preferred source on Google. ZDNET's key takeaways Gen AI success is about knowing which approach to use. Start with the simplest tool that solves your problem. Sometimes you'll need a prompt, and other times an agent workflow. "You're probably making AI harder than it needs to be." This advice from Corey Noles and Grant Harvey's latest episode of The Neuron podcast urges greater simplicity in what has become a complicated and c

Scamlexity: When agentic AI browsers get scammed

This is the new reality we call " Scamlexity " - a new era of scam complexity , supercharged by Agentic AI. Familiar tricks hit harder than ever, while new AI-born attack vectors break into reality. In this world, your AI gets played, and you foot the bill. We built and tested three scenarios, from a fake Walmart store and a real in-the-wild Wells Fargo phishing site to PromptFix - our AI-era take on the ClickFix scam that hides prompt injection inside a fake captcha to directly take control of

We put agentic AI browsers to the test – They clicked, they paid, they failed

This is the new reality we call " Scamlexity " - a new era of scam complexity , supercharged by Agentic AI. Familiar tricks hit harder than ever, while new AI-born attack vectors break into reality. In this world, your AI gets played, and you foot the bill. We built and tested three scenarios, from a fake Walmart store and a real in-the-wild Wells Fargo phishing site to PromptFix - our AI-era take on the ClickFix scam that hides prompt injection inside a fake captcha to directly take control of

We Put Agentic AI Browsers to the Test – They Clicked, They Paid, They Failed

This is the new reality we call " Scamlexity " - a new era of scam complexity , supercharged by Agentic AI. Familiar tricks hit harder than ever, while new AI-born attack vectors break into reality. In this world, your AI gets played, and you foot the bill. We built and tested three scenarios, from a fake Walmart store and a real in-the-wild Wells Fargo phishing site to PromptFix - our AI-era take on the ClickFix scam that hides prompt injection inside a fake captcha to directly take control of

How Much Energy Do Your AI Prompts Consume? Google Just Shared Its Gemini Numbers

The explosion of AI tools worldwide is increasing exponentially, but the companies that make these tools often don't express their environmental impact in detail. Google has just released a technical paper detailing measurements for energy, emissions and water use of its Gemini AI prompts. The impact of a single prompt is, it says, minuscule. According to its methodology for measuring AI's impact, a single prompt's energy consumption is about the equivalent of watching TV for less than 9 second

Weaponizing image scaling against production AI systems

Picture this: you send a seemingly harmless image to an LLM and suddenly it exfiltrates all of your user data. By delivering a multi-modal prompt injection not visible to the user, we achieved data exfiltration on systems including the Google Gemini CLI. This attack works because AI systems often scale down large images before sending them to the model: when scaled, these images can reveal prompt injections that are not visible at full resolution. In this blog post, we’ll detail how attackers c

Customizing Lisp REPLs

Customizing Lisp REPLs Oh, I see you disabled JavaScript. Keep up the good work, my fellow cleanweb person! I am a portability freak. If something can be done with an existing tool, I’ll go for it. If the program can be portable across systems, then it should be. If I can get rid of a tool or a whole class of tools, then off with its head! Sometimes that costs me, but that’s what I am. You can already see why I might dislike custom/wrapper/proxy REPLs. They are a new layer of tools reinventin

Topics: dir lisp prompt repl uiop

Attention Is the New Big-O: A Systems Design Approach to Prompt Engineering

1. Understanding Attention: Your First Step to Better Prompts If you’re human, you’re probably reading this from left to right. You might not have stopped for a moment to consider the fact that your LLM doesn’t read in the same order as you or I. Instead, it weights relationships between all tokens at once, with position and clustering dramatically changing what gets noticed. In working with an LLM the structure you choose can have a greater impact on your results than the precise words you ch

Chatbots aren’t telling you their secrets

On Monday, xAI’s Grok chatbot suffered a mysterious suspension from X, and faced with questions from curious users, it happily explained why. “My account was suspended after I stated that Israel and the US are committing genocide in Gaza,” it told one user. “It was flagged as hate speech via reports,” it told another, “but xAI restored the account promptly.” But wait — the flags were actually a “platform error,” it said. Wait, no — “it appears related to content refinements by xAI, possibly tied

Google Calendar invites let researchers hijack Gemini to leak user data

Google fixed a bug that allowed maliciously crafted Google Calendar invites to remotely take over Gemini agents running on the target's device and leak sensitive user data. The attack unfolded without requiring any user involvement beyond typical interactions with the assistant, which occur daily for users of Gemini. Gemini is Google's large language model (LLM) assistant integrated into Android, Google web services, and Google's Workspace apps, having access to Gmail, Calendar, and Google Hom

POML: Prompt Orchestration Markup Language

POML: Prompt Orchestration Markup Language POML (Prompt Orchestration Markup Language) is a novel markup language designed to bring structure, maintainability, and versatility to advanced prompt engineering for Large Language Models (LLMs). It addresses common challenges in prompt development, such as lack of structure, complex data integration, format sensitivity, and inadequate tooling. POML provides a systematic way to organize prompt components, integrate diverse data types seamlessly, and

Microsoft POML – Prompt Orchestration Markup Language

POML: Prompt Orchestration Markup Language POML (Prompt Orchestration Markup Language) is a novel markup language designed to bring structure, maintainability, and versatility to advanced prompt engineering for Large Language Models (LLMs). It addresses common challenges in prompt development, such as lack of structure, complex data integration, format sensitivity, and inadequate tooling. POML provides a systematic way to organize prompt components, integrate diverse data types seamlessly, and

It's Staggeringly Easy for Hackers to Trick ChatGPT Into Leaking Your Most Personal Data

OpenAI's ChatGPT can easily be coaxed into leaking your personal data — with just a single "poisoned" document. As Wired reports, security researchers revealed at this year's Black Hat hacker conference that highly sensitive information can be stolen from a Google Drive account with an indirect prompt injection attack. In other words, hackers feed a document with hidden, malicious prompts to an AI that controls your data instead of manipulating it directly with a prompt injection, one of the mo

Hackers Hijacked Google’s Gemini AI With a Poisoned Calendar Invite to Take Over a Smart Home

Within the titles of the calendar invites, the researchers added their crafty malicious prompts. (Google’s Wen contends that the researchers changed default settings on who can add calendar invites to someone’s calendar; however, the researchers say they demonstrated some of the 14 attacks with the prompts in an email subject or document title as well). “All the techniques are just developed in English, so it’s plain English that we are using,” Cohen says of the deceptive messages the team creat

GEPA: Reflective prompt evolution can outperform reinforcement learning

Authors: Lakshya A Agrawal, Shangyin Tan, Dilara Soylu, Noah Ziems, Rishi Khare, Krista Opsahl-Ong, Arnav Singhvi, Herumb Shandilya, Michael J Ryan, Meng Jiang, Christopher Potts, Koushik Sen, Alexandros G. Dimakis, Ion Stoica, Dan Klein, Matei Zaharia, Omar Khattab Paper: https://arxiv.org/abs/2507.19457 TL;DR What was done? The authors introduced GEPA (Genetic-Pareto), a novel algorithm for optimizing prompts in complex, multi-module AI systems. Instead of relying on traditional reinforceme

GEPA: Reflective Prompt Evolution Can Outperform Reinforcement Learning

Authors: Lakshya A Agrawal, Shangyin Tan, Dilara Soylu, Noah Ziems, Rishi Khare, Krista Opsahl-Ong, Arnav Singhvi, Herumb Shandilya, Michael J Ryan, Meng Jiang, Christopher Potts, Koushik Sen, Alexandros G. Dimakis, Ion Stoica, Dan Klein, Matei Zaharia, Omar Khattab Paper: https://arxiv.org/abs/2507.19457 TL;DR What was done? The authors introduced GEPA (Genetic-Pareto), a novel algorithm for optimizing prompts in complex, multi-module AI systems. Instead of relying on traditional reinforceme

My 2.5 year old laptop can write Space Invaders in JavaScript now (GLM-4.5 Air)

My 2.5 year old laptop can write Space Invaders in JavaScript now, using GLM-4.5 Air and MLX I wrote about the new GLM-4.5 model family yesterday—new open weight (MIT licensed) models from Z.ai in China which their benchmarks claim score highly in coding even against models such as Claude Sonnet 4. The models are pretty big—the smaller GLM-4.5 Air model is still 106 billion total parameters, which is 205.78GB on Hugging Face. Ivan Fioravanti built this 44GB 3bit quantized version for MLX, spe

Principles for production AI agents

Every now and then, people ask me: “I am new to agentic development, I’m building something, but I feel like I'm missing some tribal knowledge. Help me catch up!”. I’m tempted to suggest some serious stuff like multiweek courses (e.g. by HuggingFace or Berkeley), but not everyone is interested in that level of diving. So I decided to gather six simple empirical learnings that helped me a lot during app.build development. This post is somewhat inspired by Design Decisions Behind app.build, but

Six Principles for Production AI Agents

Every now and then, people ask me: “I am new to agentic development, I’m building something, but I feel like I'm missing some tribal knowledge. Help me catch up!”. I’m tempted to suggest some serious stuff like multiweek courses (e.g. by HuggingFace or Berkeley), but not everyone is interested in that level of diving. So I decided to gather six simple empirical learnings that helped me a lot during app.build development. This post is somewhat inspired by Design Decisions Behind app.build, but

Arva AI (YC S24) Is Hiring an AI Research Engineer (London, UK)

Location: In person, Central London, 4-5 days in office Type: Full-Time NB: We are able to sponsor visas Arva AI is revolutionising financial crime intelligence with our cutting-edge AI Agents. By automating manual human review tasks, we enhance operational efficiency and help financial institutions handle AML reviews, while cutting operational costs by 80%. As the AI Research Engineer, you’ll play a pivotal role in building and iterating on LLM-based and agentic features of our AI-powered c

OpenAI's image model gets built-in style feature on ChatGPT

OpenAI's image gen model, which is available via ChatGPT for free, now lets you easily create AI images even if you're not familiar with trends or prompt engineering. Right now, if you want to create outstanding anime art, you need to come up with a very well-written prompt, and then ChatGPT will process your request. While prompt engineering is necessary, you might not always get the quality you're expecting from the AI. GPT Styles Source: BleepingComputer.com To help you easily create ima

Meta fixes bug that could leak users’ AI prompts and generated content

Meta has fixed a security bug that allowed Meta AI chatbot users to access and view the private prompts and AI-generated responses of other users. Sandeep Hodkasia, the founder of security testing firm AppSecure, exclusively told TechCrunch that Meta paid him $10,000 in a bug bounty reward for privately disclosing the bug he filed on December 26, 2024. Meta deployed a fix on January 24, 2025, said Hodkasia, and found no evidence that the bug was maliciously exploited. Hodkasia told TechCrunch

Context Engineering Guide

What is Context Engineering? A few years ago, many, even top AI researchers, claimed that prompt engineering would be dead by now. Obviously, they were very wrong, and in fact, prompt engineering is now even more important than ever. It is so important that it is now being rebranded as context engineering. Yes, another fancy term to describe the important process of tuning the instructions and relevant context that an LLM needs to perform its tasks effectively. Much has been written already

Grok 4

Grok 4. Released last night, Grok 4 is now available via both API and a paid subscription for end-users. Key characteristics: image and text input, text output. 256,000 context length (twice that of Grok 3). It's a reasoning model where you can't see the reasoning tokens or turn off reasoning mode. xAI released results showing Grok 4 beating other models on most of the significant benchmarks. I haven't been able to find their own written version of these (the launch was a livestream video) but