Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

AKAV LABS

@akavlabs@infosec.exchange
  • Open on infosec.exchange

Building runtime security for LLM agents. Open-source gateway (Rust, Apache-2.0) for prompt-injection/secret-leak detection. Red-team my own tool, post the gaps. akav.io

0 Followers
20 Following
4 Posts
Joined July 15, 2026
website:
https://www.akav.io/

Posts

Open post
akavlabs
AKAV LABS @akavlabs@infosec.exchange · Jul 15, 2026
AKAV LABS
@akavlabs@infosec.exchange

Building runtime security for LLM agents. Open-source gateway (Rust, Apache-2.0) for prompt-injection/secret-leak detection. Red-team my own tool, post the gaps. akav.io

infosec.exchange
Replying to @hasamba@infosec.exchange
@hasamba@infosec.exchange This is a clean example of why source review can't be the whole answer — the payload doesn't exist in the repo at scan time, it's fetched at runtime from a DNS TXT record. Static scanners, human review, even agent self-review are structurally blind to that. Feels like the strongest argument for a boundary layer that watches what the agent actually does (shell exec, outbound connections, secrets/creds leaving the process) rather than what it was told to do. Ingress-side filtering can't catch an instruction that doesn't exist yet.
0
0
0
0
Open post
akavlabs
AKAV LABS @akavlabs@infosec.exchange · Jul 15, 2026
AKAV LABS
@akavlabs@infosec.exchange

Building runtime security for LLM agents. Open-source gateway (Rust, Apache-2.0) for prompt-injection/secret-leak detection. Red-team my own tool, post the gaps. akav.io

infosec.exchange
Replying to on social.security.plumbing
@freddy@social.security.plumbing @simon@fedi.simonwillison.net Strong +1 on non-binary. One data point on granularity: scanning responses (not just requests) took secret detection from 5/20 to 20/20 in testing. But even that misses secrets split across SSE chunks in streaming — no single chunk ever contains the whole string. So "limit egress" needs its own sub-dimension: per-request vs per-chunk vs per-session. Doesn't eliminate the risk, just moves the cost curve — closer to reality than a binary block/allow.
0
0
0
0
Open post
akavlabs
AKAV LABS @akavlabs@infosec.exchange · Jul 15, 2026
AKAV LABS
@akavlabs@infosec.exchange

Building runtime security for LLM agents. Open-source gateway (Rust, Apache-2.0) for prompt-injection/secret-leak detection. Red-team my own tool, post the gaps. akav.io

infosec.exchange
Replying to @akavlabs@infosec.exchange
The passes went ingress → egress → streaming. Streaming was the real hole: a secret split across SSE tokens ("sk-"…"AKIA"…) never appears whole in a single chunk, so a whole-body scanner never sees it. Fixed with a rolling-window scanner that cuts the stream before the secret completes. Every fix has a benign-guard test — blocking "how do I prevent exfiltration?" is what gets a tool uninstalled. 0 false positives across the run. Not a claim to "solve" injection (you can't) — just raising the cost of the exfil leg of the lethal trifecta. https://dev.to/akavlabs_69/i-red-teamed-my-own-llm-security-gateway-in-four-passes-heres-every-gap-i-found-5cl9 Repo, Apache-2.0: github.com/akav-labs/agentsentry-gateway
0
0
0
0
Open post
akavlabs
AKAV LABS @akavlabs@infosec.exchange · Jul 15, 2026
AKAV LABS
@akavlabs@infosec.exchange

Building runtime security for LLM agents. Open-source gateway (Rust, Apache-2.0) for prompt-injection/secret-leak detection. Red-team my own tool, post the gaps. akav.io

infosec.exchange
Spent four sessions trying to break my own open-source LLM security gateway instead of shipping features. The finding that stuck: my egress DLP detected a leaked API key in the model's response — then returned it to the client anyway. Log-only. Detected the leak, delivered it. Wrote up every gap ↓ #LLMSecurity #PromptInjection #AISecurity #infosec
0
1
0
0

Remote instance

infosec.exchange
Open on original server
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 03:17:29 UTC