{"author":"andreadev","children":[{"author":"JoshBlythe","children":[],"created_at":"2026-04-09T13:46:04.000Z","created_at_i":1775742364,"id":47703703,"options":[],"parent_id":47703569,"points":null,"story_id":47703569,"text":"In app builders using LLM&#x27;s you would expect proper prompt injection procedures to be in place - but surprise surprise, it&#x27;s not usually the case. AI tools tend to ship fast and security is alwasy an aferthought.<p>I see this pattern constantly in my day job (I work in cyber for a FTSE 100 bank). I keep seeing tools that just prioritise developer experience over actual input validation, then act surprised when someone exploits it.<p>I&#x27;ve also been building a drop in solution for this exact issue outside of work. Happy to see this stuff (in the best way possible) as it acts as affirmation that what I&#x27;m doing is valuable.","title":null,"type":"comment","url":null}],"created_at":"2026-04-09T13:36:10.000Z","created_at_i":1775741770,"id":47703569,"options":[],"parent_id":null,"points":3,"story_id":47703569,"text":null,"title":"Max severity Flowise RCE vulnerability now exploited in attacks","type":"story","url":"https://www.bleepingcomputer.com/news/security/max-severity-flowise-rce-vulnerability-now-exploited-in-attacks/"}
