Skip to content
Menu
IT-DRAFTS
  • About
  • My Statistics at Microsoft Q&A
  • Privacy policy
IT-DRAFTS

Tag: promptinjection

December 18, 2025December 18, 2025

CHAPTER 6/8 AI Zero Trust Architecture (ZTA 2026): Isolation of AI Pipelines, Token Protection, Sandboxing, Output Firewalls, Purview Orchestration

0. Prologue: “Zero Trust used to be about people. Zero Trust 2026 is about models.” Most organisations still believe Zero Trust is simply: MFA Conditional Access geography filters compliant devices Access Packages and a few glossy dashboards But in 2026, Zero Trust means something entirely different: Zero Trust = Verify the AI, its tools, its…

Read More
December 12, 2025

CHAPTER 5/8 Deep-Dive: MITRE ATT&CK for AI Systems (2026 Edition)

0. Prologue: MITRE has finally realised that AI is a new attack surface For a long time, MITRE pretended that LLMs and AI systems were merely “new applications”.But after the 2024–2025 spike in attacks on AI tooling, the façade collapsed. In 2026, MITRE formally introduces ATT&CK-AI (v1.0) — an extension to the main matrix that…

Read More
December 9, 2025

CHAPTER 3/8 – Fireside Chat: Lessons in Building a Secure AI Foundation** (hard-edged, technical, irreverent, research-level)

Of the shaman are three hands And a wing from behind his shoulder grows, From the breath of him A candle’s flame is born and glows, And at times he knows himself, Himself, no longer knows, While his soul, flung open wide, Is straining, sings, and overflows. Of the shaman are three hands, The world…

Read More
June 21, 2025June 19, 2025

EchoLeak: When Your Voice Becomes the Exploit (Hi, Cyberpunk, You’re Early)

hi. remember when voice assistants were just fun?“hey Siri, play my sad playlist” or “Alexa, order more coffee”?now imagine your own voice — from a Teams call — being replayed, misused, or even turned against you…yeah. not a dystopian novel. that’s EchoLeak. and it’s real. so what happened exactly? AIM Labs dropped a bomb with…

Read More
June 20, 2025

Prompt Injection vs. FIDES: How to Keep Your Copilot From Leaking Like a Sieve

hi. let’s talk about something that keeps security teams up at night: prompt injection. sounds cool, right? it’s not. it’s a nightmare dressed as a clever email. picture this: u build a sales copilot. it reads incoming customer emails, pulls CRM data, checks a price list, calculates discounts, writes replies. clean. automated. fast. no humans…

Read More

Categories

ActiveDirectory AI AIInfrastructure AIsecurity Azure AzureAI azuresecurity cloudarchitecture CloudSecurity conditionalaccess Copilot ctrlaltdelblog Cybersecurity DataSecurity DevOps devsecops DigitalTransformation EndpointManagement enterpriseai enterpriseit enterprisesecurity Entra entraID hybridcloud identitysecurity infosec Innovation Intune ITInfrastructure Microsoft Microsoft365 MicrosoftAzure Microsoft Product microsoftsecurity MicrosoftSentinel promptinjection Security securitycopilot SoftwareUpdate TechNews threatintelligence updates Windows10 Windows11 zeroTrust

Archives

  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • February 2025
  • October 2024
  • September 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
No comments to show.

Recent Comments

Recent Posts

  • Microsoft 365 Copilot Chat: Architectural Shift Toward a Unified AI Work Surface
  • 10 Entra ID Configurations That Should Not Be Left in Their Default State
  • Windows 11 Update Breaks Offline Login — What That Really Means
  • Security That Delivers ROI
  • Kerberos Is Moving to AES by Default: Are Your Domains Ready?
©2026 IT-DRAFTS | Powered by WordPress and Superb Themes!