Critical Thinking - Bug Bounty Podcast cover image

Episode 146: Hacking Horror Stories

Critical Thinking - Bug Bounty Podcast

00:00

How Did You Abuse AI Query Parameters and CSRF for Prompt Injection?

Joseph describes CSRF Q-parameter injection that made the AI treat attacker input as trusted user commands, bypassing controls.

Play episode from 01:36:02
Transcript

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app