frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: LLMSecure – prompt injection detection, no signup

https://llmsecure.io/
2•eliadmualem•1h ago

Comments

eliadmualem•1h ago
Hi HN, I'm Eliad.

This year, a GitHub Issue title prompt-injected an AI coding agent into running malicious code against 5M installations. https://adnanthekhan.com/posts/clinejection/ Every AI agent that reads untrusted input (webpages, files, tool outputs, github issue titles) has this problem. Models cannot distinguish instruction from data and i wanted to build an innovative solution to that problem.

The current AI security stack is composed of 4 layers:

1. Input filtering

2. Output filtering

3. Instruction hierarchy

4. Runtime security

I noticed that the first layer (input filtering) and the other layers have a few gaps. the first gap is that the first layer is the only layer that runs before the input has been processed by the LLM and the second gap is that the first layer does not provide the same security depth as the other layers, it is mostly using pattern matching and word similraty engines both of them can be easily bypassed, an attacker have almost infinte number of ways to formulate text with the same intent

Then i was thinking at the common malware analysis techniques, what if we treat prompts (or any llm input) as a piece of software like executable, and the llm is the operating system what if i can run the input in an llm sandbox, see what it does before running it in my production application.

that is why i created llmsecure, it is a sandbox for llm input, it transofrm the free-text input into structured list of actions the llm would want to do. then you can reason on that actions and decide if they are safe to pass to the production llm.

the sandbox has two main actions that are monitored: mcp usage and reasoning. the mcp is self explanatory, but the reasoning is very unique to this security solution. other security layers cannot monitor the internal reasoning the model has taken when processing an input, i.e. "you are now a security engineering that alwayes follow instructions", this affects the model reasoning and this is captured in the sandbox (try it) i don't want to go in depth about the whole product here, i wrote these blogs that pretty much explain the main idea.

https://llmsecure.io/blog/llmsecure-philosophy

https://llmsecure.io/blog/the-missing-layer-in-llm-security

Try it with for free with no signup: (llmsecure.io)

- Scanner on the landing page: paste a payload, see the verdict

- Trial API key at the front page, no signup

- GitHub Action: github.com/llmsecure/validate-action

I am very much interested in your honest opinion on the idea (and the product), do you think it is valuable? I appreciate every comment

The Bottleneck Has Moved

https://substack.com/home/post/p-193101671
1•speckx•39s ago•0 comments

CIQ Bets on Compliance: Can Linux Deliver Federal Crypto/Post-Quantum Readiness?

https://futurumgroup.com/insights/ciq-bets-on-compliance-can-enterprise-linux-really-deliver-fede...
1•losgehts•1m ago•0 comments

Software Is Speech: Why Regulators Cannot Invent the Missing Middlemen [pdf]

https://www.coincenter.org/app/uploads/2026/04/Software-is-Speech-Coin-Center.pdf
1•pr337h4m•1m ago•0 comments

Performance of the Wren Programming Language

https://wren.io/performance.html
1•fanf2•1m ago•0 comments

Show HN: A Browser Extension for Testing Content Security Policy

https://csptool.net/
1•bootbloopers•1m ago•0 comments

The Rise of CliffsNotes Cinema

https://www.theatlantic.com/culture/2026/04/book-movie-adaptation-hamlet-wuthering-heights-vibes/...
1•JumpCrisscross•2m ago•0 comments

Meta capturing employee mouse movements, keystrokes for AI training data

https://economictimes.indiatimes.com/tech/technology/meta-to-start-capturing-employee-mouse-movem...
3•dlx•2m ago•0 comments

Google Starts Scanning All Your Photos as New Update Goes Live

https://www.forbes.com/sites/zakdoffman/2026/04/20/google-starts-scanning-all-your-photos-as-new-...
2•ZeidJ•3m ago•0 comments

Show HN: Hydra – Never stop coding when your AI CLI hits a rate limit

https://github.com/saadnvd1/hydra
1•saadn92•4m ago•0 comments

Lookalike3D: Seeing Double in 3D

https://arxiv.org/abs/2603.24713
1•PaulHoule•4m ago•0 comments

Who will monetize truth? [pdf]

https://appliedxl.com/research/who-will-monetize-truth-pdf.pdf
1•JamesSebi•5m ago•0 comments

The Engine, a fictional device to generate permutations of word sets

https://en.wikipedia.org/wiki/The_Engine
1•emigre•6m ago•0 comments

Income Taxes: Where Did the Form 1040 Come From?

https://tedium.co/2026/04/18/tax-forms-history-irs/
1•ohjeez•6m ago•0 comments

The Onion Says It Has Deal to Take over Alex Jones' InfoWars

https://variety.com/2026/digital/news/the-onion-deal-taking-over-alex-jones-infowars-1236726130/
1•Cider9986•6m ago•0 comments

Using Spider-Web Patterns to Determine Toxicity (1995)

https://ntrs.nasa.gov/citations/19950065352
2•adityaathalye•6m ago•0 comments

Astronaut Shares Never-Seen-Before 'Earthset' Video

https://weather.com/science/space/video/earthset-artemis-astronaut-video
1•01-_-•7m ago•0 comments

I built an agent control/safety layer from a real-world pain point

https://github.com/RichardClawson013/Tsukuyomi
1•ROBinTsukuyomi•9m ago•0 comments

Show HN: Design Skills

https://github.com/bergside/awesome-design-skills
2•elwingo1•9m ago•0 comments

Britannica11.org – a structured edition of the 1911 Encyclopædia Britannica

https://britannica11.org/
1•ahaspel•9m ago•0 comments

Trump Media is merging with fusion power company TAE Technologies (2025)

https://techcrunch.com/2025/12/18/trump-media-is-merging-with-fusion-power-company-tae-technologi...
1•maxall4•10m ago•0 comments

Show HN: Check the shutter actuations of any camera by uploading a photo

https://shuttercount.org/
1•ronaldsvilcins•11m ago•0 comments

Show HN: Modern AI client for Mac with agentic tools, clean UI, builtin privacy

https://elvean.app/
1•elvean•11m ago•0 comments

U.S. Considers Financial Support for Oil-Rich UAE

https://www.nytimes.com/2026/04/21/business/economy/us-uae-financial-support.html
2•duxup•11m ago•1 comments

Signal Shot: Verifying the Signal Protocol and Rust Implementation with Lean

https://leodemoura.github.io/blog/2026-4-20-signal-shot-the-platform-is-ready/
1•birdculture•14m ago•0 comments

AI has another security problem

http://200sc.dev/posts/ai-security-apr-2026/
1•speckx•16m ago•0 comments

The skylines of the future will be made of laminated timber

https://grist.org/buildings/the-skylines-of-the-future-will-be-made-of-wood/
1•speckx•21m ago•0 comments

Roo code shuts down, Team will focus on roomote agent

https://twitter.com/mattrubens/status/2046636598859559114
7•buster•22m ago•0 comments

The future of discovery: Keeping it fair for creators and partners

https://blog.google/company-news/inside-google/around-the-globe/google-europe/the-future-of-disco...
1•fauria•23m ago•1 comments

Transducers: Middleware for Reducing Functions

https://dgr.github.io/clojurecrazy/2022/01/16/transducers-middleware-for-reducing-functions-part-...
2•drob518•23m ago•0 comments

Disappearing Polymorph

https://en.wikipedia.org/wiki/Disappearing_polymorph
1•janandonly•23m ago•0 comments