A curated reading list of official incident reports, threat-intelligence posts, and defensive advisories on attackers using LLMs or targeting LLM and agent systems. I kept the most relevant, primary sources and dropped broad or clearly off-target results.
Use these first for documented or near-primary reporting on adversary tradecraft involving AI tools, including reconnaissance, phishing, vulnerability exploitation, and intrusion support.
These are the most relevant sources for prompt injection, exfiltration, AI app compromise, and incident-response guidance for AI systems.
Useful supporting references for analysts mapping AI-enabled operations to ATT&CK or validating terminology around public AI service abuse and related tactics.
Get more accurate answers with Super Pandi, upload files, personalized discovery feed, save searches and contribute to the PandiPedia.
Let's look at alternatives: