Microsoft Threat Intelligence Podcast

AI Recommendation Poisoning: When Optimization Becomes Manipulation


Listen Later

In this episode of the Microsoft Threat Intelligence Podcast, Sherrod DeGrippo speaks with Microsoft security and AI researchers Giorgio Severi and Noam Kochavi about a newly observed trend in AI abuse: recommendation poisoning through memory manipulation

While looking into prompt injection and reprompt-style behaviors, the team uncovered something quieter but potentially more persistent—websites embedding hidden instructions inside Summarize with AI links that attempt to influence what an AI assistant remembers and recommends over time. 

Rather than focusing on immediate exploitation, this technique aims to shape long-term behavior inside AI systems. Giorgio and Noam explain how it works, why it’s spreading across industries, where legitimate marketing tactics can blur into security risk, and what defenders and users should understand about managing AI memory in an increasingly agent-driven environment. 


In this episode you’ll learn:      

  • How AI memory poisoning differs from traditional prompt injection 

    • Why legitimate businesses are using memory manipulation tactics 

      • What threat hunters can look for inside enterprise telemetry 

         Some questions we ask:     

        • How is memory poisoning different from prompt injection? 

          • What are the long-term risks of embedding bias into AI memory? 

            • Could this technique be used for more harmful influence beyond marketing? 

               

              Resources:  

              View Giorgio Severi on LinkedIn  

              View Noam Kochavi on LinkedIn  

              View Sherrod DeGrippo on LinkedIn  

               

              Related Microsoft Podcasts:                   

              • Afternoon Cyber Tea with Ann Johnson 

                • The BlueHat Podcast 

                  • Uncovering Hidden Risks     

                     

                    Discover and follow other Microsoft podcasts at microsoft.com/podcasts  

                     

                    Get the latest threat intelligence insights and guidance at Microsoft Security Insider 

                     

                     

                    The Microsoft Threat Intelligence Podcast is produced by Microsoft, Hangar Studios and distributed as part of N2K media network. 

                    ...more
                    View all episodesView all episodes
                    Download on the App Store

                    Microsoft Threat Intelligence PodcastBy Microsoft

                    • 5
                    • 5
                    • 5
                    • 5
                    • 5

                    5

                    22 ratings


                    More shows like Microsoft Threat Intelligence Podcast

                    View all
                    Hacked by Hacked

                    Hacked

                    188 Listeners

                    Security Now (Audio) by TWiT

                    Security Now (Audio)

                    2,009 Listeners

                    The Talk Show With John Gruber by Daring Fireball / John Gruber

                    The Talk Show With John Gruber

                    3,143 Listeners

                    Risky Business by Risky Business Media

                    Risky Business

                    373 Listeners

                    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

                    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

                    651 Listeners

                    CyberWire Daily by N2K Networks

                    CyberWire Daily

                    1,025 Listeners

                    Smashing Security by Graham Cluley

                    Smashing Security

                    319 Listeners

                    Click Here by Recorded Future News

                    Click Here

                    417 Listeners

                    Darknet Diaries by Jack Rhysider

                    Darknet Diaries

                    8,070 Listeners

                    Cybersecurity Today by Jim Love

                    Cybersecurity Today

                    178 Listeners

                    Hacking Humans by N2K Networks

                    Hacking Humans

                    316 Listeners

                    CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

                    CISO Series Podcast

                    194 Listeners

                    Cybersecurity Headlines by CISO Series

                    Cybersecurity Headlines

                    140 Listeners

                    Cyber Hack by BBC World Service

                    Cyber Hack

                    1,593 Listeners

                    Risky Bulletin by Risky Business Media

                    Risky Bulletin

                    45 Listeners