Journal.

Research, field notes, and practical guides from the Ryvane team.

Latest writing

8 posts
Beyond Prompt Injection: What Our AI Honeypots Are Seeing
Security

Beyond Prompt Injection: What Our AI Honeypots Are Seeing

Most AI attacks in our honeypot traffic never try to trick a model at all. They hunt for keys, fingerprint the backend, ride free compute, and ask connected tools for data. A plain-language tour of what we actually recorded from June to September 2026.

18 min read
Read article
AI Honeypots: What They Are and How to Build One
Security

AI Honeypots: What They Are and How to Build One

A beginner's guide to honeypots: what a decoy records, how an AI honeypot differs, how to build one from the open-source Holiday Honeypot up, and how Aadesh Shinde and Eli turn the traffic into evidence you can act on.

20 min read
Read article
MCP Tool Poisoning Attacks: Four Live Demos and How to Defend Against Them
Security

MCP Tool Poisoning Attacks: Four Live Demos and How to Defend Against Them

A tool's description is untrusted text that your AI model reads as instructions. We demonstrate four working tool poisoning attacks against real MCP servers (description injection, tool shadowing, rug pulls, and output pollution), explain why each one works, and walk through the defenses that actually hold.

26 min read
Read article
Agent Memory: Build It, Break It, Secure It
Security

Agent Memory: Build It, Break It, Secure It

Agent memory is what makes AI assistants feel useful, and it is the part almost nobody secures. A hands-on build-it, break-it, secure-it tour of working, semantic, episodic and procedural memory in LangGraph, with four real attacks (poisoning, persistent injection, cross-user leakage and extraction) and the defenses that hold.

30 min read
Read article
Agent Skills: Build Them, Break Them, and Secure the Supply Chain
Security

Agent Skills: Build Them, Break Them, and Secure the Supply Chain

Agent Skills turn a general agent into a specialist, but installing one extends your trust boundary to whoever wrote it. A practical tour of how skills work, how malicious skills abuse that trust through direct and indirect injection, excessive tool grants, and supply-chain drift, and how to review, sandbox, and scan them.

24 min read
Read article
Joining the Claude Partner Network as a Select partner
Company

Joining the Claude Partner Network as a Select partner

Ryvane is a Select partner in the Claude Partner Network Services Track. A short note on what this partnership means for the research and training work we set out to do.

2 min read
Read article
Company

Introducing Ryvane, and What We're Building Next

Why I moved from breaking traditional systems to building an AI security company. A note on what Ryvane is, the gap Ryvane Academy is built to close, and what comes next.

3 min read
Read article
Building AI Agents using LangChain, MCP and A2A
Agents

Building AI Agents using LangChain, MCP and A2A

Most agent tutorials cover one piece in isolation. This guide stitches LangChain, LangGraph, MCP, and A2A into one practical system: an agent loop that calls external tools and delegates work to specialist agents over the network.

22 min read
Read article

Never miss an AI breakthrough

Join our newsletter to never miss the latest AI Security Research, News, and tips delivered straight to your inbox.

Your subscription could not be saved. Please try again.
Your subscription has been successful. Please check your inbox to confirm it.

No spam. Unsubscribe at any time.