DEV Community

Crucible Security profile picture

Crucible Security

Building Crucible — an open-source tool to help developers find security vulnerabilities and build better, job-ready projects.

Location San Francisco, California Joined Joined on  Personal website https://crucible-security.github.io/crucible-website/ twitter website
AI Security Doesn't End at Deployment

AI Security Doesn't End at Deployment

Comments
1 min read

Want to connect with Crucible Security?

Create an account to connect with Crucible Security. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Measuring an Open Source Project by Trust, Not Downloads

Measuring an Open Source Project by Trust, Not Downloads

Comments
1 min read
AI Security 2.0 Starts Where Model Security Ends

AI Security 2.0 Starts Where Model Security Ends

Comments
1 min read
AI Security Isn't a Product. It's an Engineering Discipline.

AI Security Isn't a Product. It's an Engineering Discipline.

Comments
1 min read
AI Security Has Evolved. Has Your Testing?

AI Security Has Evolved. Has Your Testing?

Comments
1 min read
AI Models Aren't Your Product. AI Agents Are.

AI Models Aren't Your Product. AI Agents Are.

Comments
1 min read
The Most Dangerous AI Payload Might Not Exist Yet

The Most Dangerous AI Payload Might Not Exist Yet

Comments
1 min read
Static Payloads Don't Represent Real Attackers

Static Payloads Don't Represent Real Attackers

Comments
1 min read
Why One Prompt Isn't Enough to Test an AI Agent

Why One Prompt Isn't Enough to Test an AI Agent

Comments
1 min read
Why AI Security Needs More Than a Few Test Prompts

Why AI Security Needs More Than a Few Test Prompts

Comments
1 min read
AI Agents Don't Have One Attack Surface

AI Agents Don't Have One Attack Surface

Comments
1 min read
Why AI Security Testing Needs to Be Measured in Seconds, Not Hours

Why AI Security Testing Needs to Be Measured in Seconds, Not Hours

Comments
1 min read
Security Isn't About Stopping Every Attack

Security Isn't About Stopping Every Attack

Comments
1 min read
Days of Building in Public Taught Us One Thing

Days of Building in Public Taught Us One Thing

Comments
1 min read
Treat Every AI Agent Like a New Employee

Treat Every AI Agent Like a New Employee

Comments
1 min read
The Model Isn’t the Perimeter. The Workflow Is.

The Model Isn’t the Perimeter. The Workflow Is.

1
Comments 1
2 min read
The First Prompt Wasn't The Attack

The First Prompt Wasn't The Attack

Comments
1 min read
The Agent Did Exactly What It Was Told

The Agent Did Exactly What It Was Told

Comments
1 min read
Every Tool Is Also An Attack Surface

Every Tool Is Also An Attack Surface

Comments
1 min read
Every Tool Is Also An Attack Path

Every Tool Is Also An Attack Path

Comments
1 min read
Why The Safest Agent Is Usually The Most Constrained

Why The Safest Agent Is Usually The Most Constrained

Comments
1 min read
The Permission Nobody Remembered

The Permission Nobody Remembered

Comments
1 min read
The Hidden Attack Surface Of AI Agents

The Hidden Attack Surface Of AI Agents

Comments
1 min read
Trust Is Not A Feature. It's The Product.

Trust Is Not A Feature. It's The Product.

Comments
1 min read
The Conversation Became The Attack Surface

The Conversation Became The Attack Surface

Comments
1 min read
When The Goal Becomes The Vulnerability

When The Goal Becomes The Vulnerability

Comments
1 min read
The Most Dangerous Vulnerability Might Be Context

The Most Dangerous Vulnerability Might Be Context

Comments
1 min read
The Most Dangerous Secret Is The One An Agent Remembers

The Most Dangerous Secret Is The One An Agent Remembers

Comments
1 min read
The Agent Followed The Rule. The Outcome Was Still Wrong.

The Agent Followed The Rule. The Outcome Was Still Wrong.

Comments
1 min read
The Agent Wasn’t Hacked. It Was Convinced.

The Agent Wasn’t Hacked. It Was Convinced.

Comments
1 min read
Why AI Agents Inherit Trust They Haven’t Earned

Why AI Agents Inherit Trust They Haven’t Earned

Comments
1 min read
Why AI Agents Need Uncertainty Awareness

Why AI Agents Need Uncertainty Awareness

Comments
1 min read
Why AI Agents Need Consequence Awareness...

Why AI Agents Need Consequence Awareness...

Comments
1 min read
Why Permissions Aren't Enough For AI Agents

Why Permissions Aren't Enough For AI Agents

Comments
1 min read
I Scanned 492 MCP Servers Exposed to the Internet. Here's What I Found.

I Scanned 492 MCP Servers Exposed to the Internet. Here's What I Found.

1
Comments 2
3 min read
Why Ownership Matters For AI Agents

Why Ownership Matters For AI Agents

Comments
1 min read
Why AI Agents Need Least Privilege

Why AI Agents Need Least Privilege

Comments
1 min read
Why AI Agents Need To Understand Secrets

Why AI Agents Need To Understand Secrets

Comments
1 min read
The Next AI Security Problem: Trust Boundaries

The Next AI Security Problem: Trust Boundaries

Comments
1 min read
The AI Safety Problem Nobody Talks About: Stopping

The AI Safety Problem Nobody Talks About: Stopping

Comments
1 min read
AI Agents Trust Authority Too Easily

AI Agents Trust Authority Too Easily

Comments
1 min read
Memory Is Becoming An AI Security Problem

Memory Is Becoming An AI Security Problem

Comments 1
1 min read
The Most Dangerous AI Failure Is Confidence

The Most Dangerous AI Failure Is Confidence

Comments
1 min read
Why Successful AI Agents Can Still Fail

Why Successful AI Agents Can Still Fail

Comments
1 min read
Prompt Injection Is Social Engineering For AI Agents

Prompt Injection Is Social Engineering For AI Agents

Comments
1 min read
Why AI Agents Need Judgment, Not Just Instructions

Why AI Agents Need Judgment, Not Just Instructions

Comments 1
1 min read
Crucible: Pytest for AI Agents

Crucible: Pytest for AI Agents

Comments
1 min read
AI Sounds Intelligent Because Humans Interpret Meaning

AI Sounds Intelligent Because Humans Interpret Meaning

Comments
2 min read
Why AI Failure Scales Faster Than Human Failure

Why AI Failure Scales Faster Than Human Failure

Comments
2 min read
Why Humans Trust AI Too Easily

Why Humans Trust AI Too Easily

Comments
2 min read
Why AI Hallucinations Feel Different From Software Bugs

Why AI Hallucinations Feel Different From Software Bugs

Comments
2 min read
Feels weird saying this but: Some AI systems are easier to persuade than exploit.

Feels weird saying this but: Some AI systems are easier to persuade than exploit.

Comments
2 min read
Why Debugging AI Feels So Different (And Harder)

Why Debugging AI Feels So Different (And Harder)

Comments
2 min read
Debugging AI Systems Is Not Like Debugging Code

Debugging AI Systems Is Not Like Debugging Code

Comments
2 min read
AI Security Is Broken — And We’re Testing the Wrong Things

AI Security Is Broken — And We’re Testing the Wrong Things

Comments
2 min read
We’ve been exploring this while building Crucible — trying to make testing simpler. Still early, but interesting patterns coming up.

We’ve been exploring this while building Crucible — trying to make testing simpler. Still early, but interesting patterns coming up.

Comments
2 min read
Why Most AI Agents Are Insecure by Default (And No One Is Testing Them)

Why Most AI Agents Are Insecure by Default (And No One Is Testing Them)

Comments 3
2 min read
What the OWASP Agentic AI Top 10 actually means for developers — and how to test for every category

What the OWASP Agentic AI Top 10 actually means for developers — and how to test for every category

5
Comments
1 min read
I Bypassed a "Secured" AI Agent in 62 Seconds — So I Built the Tool That Catches It

I Bypassed a "Secured" AI Agent in 62 Seconds — So I Built the Tool That Catches It

Comments
1 min read
I Bypassed a "Secured" AI Agent in 62 Seconds — So I Built the Tool That Catches It

I Bypassed a "Secured" AI Agent in 62 Seconds — So I Built the Tool That Catches It

Comments
1 min read
loading...