jer_mchugh Profile Banner
Jeremy McHugh, DSc. Profile
Jeremy McHugh, DSc.

@jer_mchugh

Followers
417
Following
7K
Media
41
Statuses
479

Co-founder & CEO @preambleAI. Securing increasingly capable AI. Owner @omniainnov. US Air Force Veteran. DSc AI security. @penn_state alum & hockey.

Pittsburgh, PA
Joined December 2022
Don't wanna be here? Send us removal request.
@jer_mchugh
Jeremy McHugh, DSc.
3 days
New PI Disclosure: GeminiJack Vendor: Google Product: Gemini Enterprise (AI Agent) Alias: GeminiJack Impact: Zero-click exfiltration of Gmail, Calendar, and Docs data via shared documents Tactic: Indirect prompt injection through RAG retrieval Vendor Response:
1
0
2
@jer_mchugh
Jeremy McHugh, DSc.
3 days
My team and I knew prompt injections were going to be a big problem in 2022. Now government agencies like the UK's NCSC are finally saying it: "SQL injection can be properly mitigated with parameterised queries, but there's a good chance prompt injection will never be properly
@NCSC
NCSC UK
4 days
Why do researchers keep finding so many prompt injection issues? Perhaps it is because many AI system designers and defenders are misunderstanding the risks.🚨 Find out more⬇️ https://t.co/j7eAFszNcl
0
0
1
@jer_mchugh
Jeremy McHugh, DSc.
7 days
Latest Prompt Injection disclosure Vendor: Google, Anthropic, OpenAI, GitHub Product: Gemini CLI, Claude Code, Codex CLI, GitHub AI Inference (any LLM-based GitHub Actions agent) Alias: PromptPwnd Impact: Enables secret exfiltration (GITHUB_TOKEN, API keys, cloud
2
0
1
@jer_mchugh
Jeremy McHugh, DSc.
9 days
It’s great to see Perplexity taking prompt injections seriously. Every AI product vendor should follow suit. Most customers don’t understand AI risks enough to protect themselves.
@AravSrinivas
Aravind Srinivas
10 days
We've fine-tuned a version of Qwen3-30B that can scan raw HTML and detect prompt injection attacks even before a user initiates any request to the Comet Assistant on the client. We've also released the BrowseSafe-Bench of simulated attacks, and hope to continue contributing to
0
0
0
@jer_mchugh
Jeremy McHugh, DSc.
11 days
I’m not surprised this attack works on robots as well.
0
0
0
@jer_mchugh
Jeremy McHugh, DSc.
16 days
It's kind of interesting and funny when you use an AI tool to create a software development plan and it lists milestones in weeks--like, no, you're going to do this in minutes. I think it's a been a subtle hint of the efficiency gains AI offers. Based on its training data, those
0
0
0
@jer_mchugh
Jeremy McHugh, DSc.
17 days
The Genesis Mission represents a significant shift in how seriously the US is taking AI. I was just reviewing old rejection emails from VCs, accelerators, and the NSF Seed Fund. We often heard, "We're glad you're working on this interesting problem/solution, but we don't see the
0
1
10
@jer_mchugh
Jeremy McHugh, DSc.
18 days
Interesting, if you're using Anthropic's Claude Desktop you can continue your work in Google's Antigravity AI IDE. Adding Claude Code inside the desktop app is a nice touch as well.
0
0
3
@jer_mchugh
Jeremy McHugh, DSc.
18 days
I wish I had Opus 4.5 to use during the HTB CTF and I could afford to let it run for an hour
1
0
4
@jer_mchugh
Jeremy McHugh, DSc.
19 days
I just wrapped up the Hack The Box Neurogrid AI CTF this weekend, where I let LLMs do most of the hacking. With no preconfigured AI-hacking tools, I finished 30 out of 45 challenges (3 were unsolved by everyone) across reverse engineering, web, AI and forensics, using a mix of
0
0
7
@jer_mchugh
Jeremy McHugh, DSc.
22 days
I’m sure every AI tool is being used maliciously by end users if companies investigate their usage, but another case was discovered
@FactoryAI
Factory
22 days
We detected and disrupted a highly automated cyber operation attempting to use Factory as a node in a worldwide mesh of “off-label” LLM usage. The attackers deployed AI coding agents to generate and maintain their infrastructure, adapt to our defenses in real time, and
0
0
13
@jer_mchugh
Jeremy McHugh, DSc.
24 days
I feel like with all the hype around the Gemini 3 launch, people are missing out on another big announcement of Google's own AI IDE. A lot to experiment with this week.
@kevinhou22
Kevin Hou
24 days
Today, our team launched Google Antigravity. - Agent-first IDE powered by Gemini 3 Pro 🧠 - Browser control to test your apps automatically 🤖 - Agent Manager to orchestrate parallel agents ♾️ Stoked to keep shipping with the @antigravity team. This is going to be fun.
0
0
1
@jer_mchugh
Jeremy McHugh, DSc.
24 days
Since there are a lot of organizations that can't afford NGFW, CASB, and other expensive tools to prevent unauthorized AI usage, we're sharing a free browser extension to mitigate these risks. Or as one reviewer said, "AI Blocking for your corporate overlords."
@PreambleAI
Preamble
24 days
Shadow AI is a real threat. Employees using unauthorized AI tools = data leaks + compliance risks. Announcing the latest and biggest update to Shadow AI Blocker v1.7.0 ✅ Blocks 100+ GenAI products ✅ Easy to deploy extension ✅ Protect sensitive data 1/2
0
0
1
@jer_mchugh
Jeremy McHugh, DSc.
29 days
Well my email client is working overtime. My Preamble inbox wouldn't be at 30k+ emails if I had Omnia OS years ago. 1000+ unknown, new senders and all of their emails are isolated from my inbox. I already unsubscribed from 150+ random email subscriptions. I might actually be
0
0
6
@jer_mchugh
Jeremy McHugh, DSc.
1 month
Hate to hear about service members being thrown under the bus then not getting support when they need it most.
@ShawnRyan762
Shawn Ryan
1 month
In this episode, I sit down with Matt Bissonnette, the former Navy SEAL Team 6 operator who helped take down Osama bin Laden and authored No Easy Day under the name Mark Owen. For the first time, Matt reveals his identity publicly and shares the untold story behind his battle
0
0
4
@jer_mchugh
Jeremy McHugh, DSc.
1 month
Obviously, there are many other factors to consider when releasing an open source model, but it could be worth revisiting for US AI labs. As long as models keep getting retired, that might be a good signal for sharing open weights.
0
0
1
@jer_mchugh
Jeremy McHugh, DSc.
1 month
Given the progress of LLMs, the next Google Gemini & XAI Grok models will leap frog the leaders before the EOY. So anyone saying Kimi or Deepseek has killed US AI, is chasing clicks.
1
0
2
@jer_mchugh
Jeremy McHugh, DSc.
1 month
When OpenAI and Anthropic only had an LLM their business model was different, now that they have their own product lines the models are more commodities. Some of the most successful AI products offer multiple LLMs from different vendors.
1
0
0