Grab a moment and catch Wallarm CEO Ivan Novikov at SyScan 360 which is about to start in hot Singapore. His talk on Key-value injections here! will be on the second day of the conference.
This paper is continuation of memcached injections research presented at BlackHat USA 2014.
The paper presents two main areas of research: input validation vulnerabilities at different key-value clients for popular platforms (c, java, lua, node.js, php, perl, python and ruby) and vulnerabilities inside their engines. Special attention is paid for to the sandboxes inside services.
As a result author found a way to do something like “SQL Injection attacks”, but for key-value storages. Such an attack in practice leads to different effects from authentication bypass to execution of arbitrary interpreter’s code. It’s real world problem found on security audits and existing at different popular web applications
Answer this without checking: how many AI agents are running in your environment right now?…
Here's the uncomfortable part first: in August 2026, researchers found AI agents connected to Hugging…
The volume of published incident research involving agentic AI is increasing, and the analysis that…
In July 2026, an OpenAI model escaped its evaluation sandbox and broke into Hugging Face's…
Editor's note: This article was originally published by Tim Erlin on LinkedIn. It has been…
TL;DR- AI deployment has outpaced AI governance. Most enterprises running AI on AWS cannot answer…