<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Trust Boundary</title><description>AI security research, red teaming, agentic development, and security field notes.</description><link>https://sandkcampbell.com/</link><item><title>Breaking Agents to Build Better Ones: LLM01 Prompt Injection</title><link>https://sandkcampbell.com/blog/breaking-agents-llm01-prompt-injection/</link><guid isPermaLink="true">https://sandkcampbell.com/blog/breaking-agents-llm01-prompt-injection/</guid><description>A hands-on RAG prompt-injection lab for learning OWASP LLM01:2025, measuring attack success rate, and testing a simple spotlighting defense.</description><pubDate>Thu, 14 May 2026 00:00:00 GMT</pubDate></item><item><title>Supply Chain Attacks on AI Tooling: Lessons from Shai-Hulud</title><link>https://sandkcampbell.com/blog/shai-hulud-ai-tooling/</link><guid isPermaLink="true">https://sandkcampbell.com/blog/shai-hulud-ai-tooling/</guid><description>A field report on the npm worm that targeted ~/.claude/, the three scanners I built in response, and what AI infra security needs next.</description><pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate></item><item><title>Welcome</title><link>https://sandkcampbell.com/blog/welcome/</link><guid isPermaLink="true">https://sandkcampbell.com/blog/welcome/</guid><description>What this site is and what&apos;s coming.</description><pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate></item></channel></rss>