How I Found a HIGH-Severity AI Security Issue on Khan Academy's VDP A security researcher discovered a high-severity AI security vulnerability on Khan Academy's Vulnerability Disclosure Program (VDP). The issue involved prompt injection in an AI agent, allowing unauthorized actions. The researcher reported the flaw, and Khan Academy is addressing it. 🛠️ Tools & Resources I Use - Hack The Box VIP https://amzn.to/4bHackTheBox — practice environment for recon techniques - YubiKey 5C NFC https://amzn.to/4bYubiKey — hardware key for API token security - Free AI Prompt Tester https://galeops.xyz/tools/prompt-test/ — test your own AI agent for the same bugs As an Amazon Associate I earn from qualifying purchases. Originally published on GaleOps Blog.