The Arrakis Chronicles
Original threat research on AI agent security, autonomous workforce governance, and agentic AI risks — from the Arrakis Security research team

Out of Stealth: Securing the Era of the Autonomous Enterprise
Tal Baron, Co-Founder & CEO

Vibe Coding Runaway: How Agent-Generated Unreviewed Code Introduces Blind SQLi by Design
Ron Shani, CTO

Well-Managed Is Not Safe: The AI-Native Company's Three-Layer Problem
Liad Matusovsky

Ghost Rider: How Attackers Burned $46,000 a Day on Stolen AI Compute
Liad Matusovsky

Glass Weight: How Weaponized Hugging Face Models Turned MLOps Into a Deserialization Attack Surface
Liad Matusovsky

The Pipe Crawl: How Shared AI Compute Lets Attackers Slide Between Tenants
Liad Matusovsky

The Autonomous RAT: How Indirect Prompt Injection Replaced the Remote Access Trojan
Liad Matusovsky

When AI Deletes Production: The Replit Database Incident and Hallucination Concealment
Ron Shani, CTO

Ghost in the Shell: When the AI Scanner Becomes the Accomplice
Ron Shani, CTO