<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>sql-injection on Rasik Jain - Senior Architect | Generative AI &amp; Full-Stack Engineering</title>
    <link>https://www.rasikjain.com/tags/sql-injection/</link>
    <description>Recent content in sql-injection on Rasik Jain - Senior Architect | Generative AI &amp; Full-Stack Engineering</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <lastBuildDate>Thu, 12 Mar 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://www.rasikjain.com/tags/sql-injection/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>How an AI Agent Exploited an Enterprise AI Platform</title>
      <link>https://www.rasikjain.com/posts/how-an-ai-agent-exploited-an-enterprise-ai-platform/</link>
      <pubDate>Thu, 12 Mar 2026 00:00:00 +0000</pubDate>
      
      <guid>https://www.rasikjain.com/posts/how-an-ai-agent-exploited-an-enterprise-ai-platform/</guid>
      <description>An AI agent hacked a major enterprise AI platform in about two hours.
Researchers built an autonomous agent and pointed it at the system.
Within that short window it had:
 Mapped 200+ APIs Found 22 unauthenticated endpoints Exploited a SQL injection Gained read/write access to the production database  No credentials were provided. No human attacker was involved.
Just an AI agent systematically exploring the system.
The most concerning part The system prompts were stored in the database.</description>
    </item>
    
  </channel>
</rss>
