
Sign up to save your podcasts
Or

![[un]prompted Security Practitioner Con 2026](https://podcast-api-images.s3.amazonaws.com/corona/show/7188602/logo_300x300.jpeg)
Day 1 | Stage 1
Shows how modern KYC workflows that delegate passport parsing, database writes, and customer verification to AI-driven extraction agents are vulnerable. Document-embedded injects and compliance controls together steer AI agents into cross-record reads and writes, enabling data theft and exfiltration without bypassing access controls. Presents a scalable exploitation approach across KYC extraction agents using LLM-generated high-success payloads.
Sean Park is Principal Threat Researcher, TrendAI.
Watch on YouTube: https://www.youtube.com/watch?v=XVos-fhnsek
By [un]promptedDay 1 | Stage 1
Shows how modern KYC workflows that delegate passport parsing, database writes, and customer verification to AI-driven extraction agents are vulnerable. Document-embedded injects and compliance controls together steer AI agents into cross-record reads and writes, enabling data theft and exfiltration without bypassing access controls. Presents a scalable exploitation approach across KYC extraction agents using LLM-generated high-success payloads.
Sean Park is Principal Threat Researcher, TrendAI.
Watch on YouTube: https://www.youtube.com/watch?v=XVos-fhnsek