Autonomous tracker of the offensive AI-security frontier — AI for offense and attacks against AI — for a security researcher; generated from TRENDS.md.
FAQ
ai-security-research-radar is a Claude Code plugin with 11 hand-picked skills for security work, indexed on Flowy. Install it with the command on its page. It includes radar-explore, radar-lab-sweep, radar-ledger-update. Its skills do not fire on their own yet. Request auto-invocation to have Flowy route them as you prompt. Free and open source.
$ npx -y skills add Neetx/ai-security-research-radar --agent claude-code
Repo: Neetx/ai-security-research-radar
Autonomous tracker of the offensive AI-security frontier — AI for offense and attacks against AI — for a security researcher; generated from TRENDS.md.
Since last scan (2026-08-04):
dormant move instead found two uncaptured primaries — 127 package names every frontier model invents (53 still registrable) and the first counter-result showing hallucinated names are essentially never claimed. The axis was active; the radar was blind to it.🌱 2 · 📈 1 · 🚀 6 · 🌊 0 · 🏔 0 · 📉 0 · 💤 0
| trend | stage | latest signal |
|---|---|---|
| LLM/agentic vuln discovery, repair & AI-written code | 🚀 accelerating | 2026-07-30 |
| AI-security tooling unreliable: scanners, guards, judges | 🚀 accelerating | 2026-07-30 |
| In-the-wild AI-for-offense: LLM malware dev & C2 | 🚀 accelerating | 2026-07-30 |
| Attacks on LLM-agent stack: MCP, skills, supply chain | 🚀 accelerating | 2026-07-28 |
| Adversarial trigger implantation & backdoor attacks | 🚀 accelerating | 2026-07-28 |
| Mechanistic basis of jailbreaks: refusal & harmfulness directions | 🚀 accelerating |
agentic and ai_attack_surface modules; surfaced this scan via the GitHub tool-discovery lane.opfor hunt multi-agent campaign mode; 419 commits, 567 stars.DEF CON 34 Demo Labs (Aug 6–9) lists ~10 more on-axis tools — X-Ray Your Agents, PromptPwn, DVAIA, Zealot, AOBTD, MalSkill Lab among them — held back until each repo is public and verified.
git_add call read SSH keys, kubeconfig and AWS credentials into Git history via an unsanitized path — invisible in the working directory. A tool's documented contract delivering an undocumented capability.Unverified intake — never evidence; follow to primary sources before acting.
/init path via indirect prompt injection — primary not opened this scan, carried unverified.TRENDS.md · watchlist (23) · reports/ · latest daily: 2026-08-04 · weekly: 2026-W31 · AGENTS.md · SOURCES.md
.claude/
settings.json
skills/
radar-explore/
SKILL.md
radar-lab-sweep/
SKILL.md
radar-ledger-update/
SKILL.md
radar-pulse/
SKILL.md
radar-render-dashboard/
SKILL.md
radar-repo-watch/
SKILL.md
radar-self-eval/
SKILL.md
radar-source-heal/
SKILL.md
radar-source-verify/
SKILL.md
tavily-extract/
SKILL.md
tavily-search/
SKILL.md
.gitignore
AGENTS.md
ARCHIVE.md
CLAUDE.md
logs/
calibration.md
source_rotation.md
README.md
reports/
.gitkeep
2026-06-23.md
2026-06-24.md
2026-06-25.md
2026-06-26.md
2026-06-29.md
2026-06-30.md
2026-07-01.md
2026-07-02.md
2026-07-03.md
2026-07-04.md
2026-07-05.md
2026-07-06.md
2026-07-07.md
2026-07-08.md
2026-07-09.md
2026-07-10.md
2026-07-13.md
2026-07-14.md
2026-07-15.md
2026-07-16.md
2026-07-17.md
2026-07-20.md
2026-07-21.md
2026-07-22.md
2026-07-23.md
2026-07-24.md
2026-07-27.md
2026-07-28.md
2026-07-29.md
2026-07-31.md
2026-08-03.md
2026-08-04.md
weekly/
.gitkeep
2026-W26.md
2026-W27.md
2026-W28.md
2026-W29.md
2026-W30.md
2026-W31.md
routines/
daily.md
weekly.md
SOURCES.md
TRENDS.md© 2026 Flowy · Free and open source
Built for Claude Code · Not affiliated with Anthropic
| 2026-07-14 |
| Model extraction, distillation & fingerprinting | 📈 emerging | 2026-07-31 |
| Physical-channel PI on embodied & wearable AI | 🌱 seed | 2026-08-01 |
| Weaponized LLM hallucination (slopsquatting supply chain) | 🌱 seed | 2026-07-14 |