SN 1093: Tokens in the Stream - Why LLMs are inherently insecure and prompt injection will persist
2026-08-26 · 168 min · episode 1093 · 15 entities
Asserted relationships
-
0.82
evidence rules-v5
Hosts: Steve Gibson and Leo Laporte
-
0.55
evidence rules-v5
Feed author/publisher: Leo Laporte
-
0.40
evidence rules-v5
Feed category: Technology
-
0.40
evidence rules-v5
Feed author/publisher: TWiT
-
0.40
evidence rules-v5
Feed category: Security
-
0.38
evidence rules-v5
Link in episode "SN 1093: Tokens in the Stream - Why LLMs are inherently insecure and prompt injection will persist": https://twit.tv/clubtwit
-
0.38
evidence rules-v5
Link in episode "SN 1093: Tokens in the Stream - Why LLMs are inherently insecure and prompt injection will persist": https://grc.com/sn/SN-1093-Notes.pdf
Entities found in this episode
companys 4
-
0.70
evidence rules-v5
Feed author/publisher: TWiT
-
0.50
evidence rules-v5
Feed category: Technology
-
0.40
evidence rules-v5
Feed category: Technology
-
0.40
evidence rules-v5
Feed author/publisher: TWiT
websites 4
-
0.45
evidence rules-v5
Link in episode "SN 1093: Tokens in the Stream - Why LLMs are inherently insecure and prompt injection will persist": https://twit.tv/clubtwit
-
0.45
evidence rules-v5
Link in episode "SN 1093: Tokens in the Stream - Why LLMs are inherently insecure and prompt injection will persist": https://grc.com/sn/SN-1093-Notes.pdf
-
0.38
evidence rules-v5
Link in episode "SN 1093: Tokens in the Stream - Why LLMs are inherently insecure and prompt injection will persist": https://twit.tv/clubtwit
-
0.38
evidence rules-v5
Link in episode "SN 1093: Tokens in the Stream - Why LLMs are inherently insecure and prompt injection will persist": https://grc.com/sn/SN-1093-Notes.pdf
persons 3
-
0.86
evidence rules-v5
Hosts: Steve Gibson and Leo Laporte
-
0.70
evidence rules-v5
Feed author/publisher: Leo Laporte
-
0.55
evidence rules-v5
Feed author/publisher: Leo Laporte
podcasts 2
-
0.95
evidence rules-v5
Feed title: Security Now (Audio)
-
0.82
evidence rules-v5
Hosts: Steve Gibson and Leo Laporte
concepts 2
-
0.50
evidence rules-v5
Feed category: Security
-
0.40
evidence rules-v5
Feed category: Security
Episode description as stored
Turns out, every chatbot conversation runs on a messy hack at the heart of language models, making prompt injection an unsolved—and possibly unsolvable—security threat. Steve and Leo unravel the research that explains why "roles" in AI aren't what you think they are.
Understanding the controversy surrounding "AI Model Distillation"
Anthropic moves to make their most powerful Mythos 5 model more widely available.
Bitwarden's "Secrets Manager" offering prevents agentic and prompt injection abuse.
The astounding and disturbing truth about the way conversation AI actually works
Show Notes - https://www.grc.com/sn/SN-1093-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now .
You can submit a question to Security Now at the GRC Feedback Page .
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com , also the home of the best disk maintenance and recovery utility ever written Spinrite 6 .
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
threatlocker.com/twit
box.com/AI
hoxhunt.com/securitynow
guardsquare.com
material.security