Research & Insights

Technical deep dives and research from the Gödel Labs security team.

The Hidden Danger in Your ChatGPT Summaries: When AI Becomes a Phishing Tool
May 31, 2026Mangesh Chate , Founding Enginner , Godel Labs

If you’ve been using ChatGPT to summarize web pages, you might want to think twice. A recently discovered security vulnerability reveals that the popular AI chatbot cannot distinguish between legitimate content and malicious instructions hidden within web pages, essentially turning any webpage into a potential attack vector. The Trust Problem That Shouldn’t Exist Security researcher […]

Inside Microsoft Agent Governance Toolkit: What It Does, And What Still Missing
May 27, 2026Vishal Kagde, Co-founder, Godel-Labs

When Microsoft open-sourced the Agent Governance Toolkit (AGT) in April 2026, it filled a gap the industry had been circling for two years. As enterprise AI moved from chat to action — agents calling tools, mutating data, talking to other agents — security teams kept asking the same question: who governs what these agents actually […]

From Document to Detonation: How AI Agents Turn Malicious Text into Actions
May 19, 2026Vishal Kagde, Co-founder, Godel-Labs

The real danger of malicious content in AI systems is not that it changes the phrasing of an answer. The real danger is that agents can turn document content into actions. An ordinary-looking file can be translated into: That is the shift security teams need to internalize. In classic software, documents were usually inputs to […]

When Documents Start Talking Back: How Hidden Instructions Hijack AI Agents
May 11, 2026Vishal Kagde, Co-founder, Godel-Labs

AI agents are being asked to do something traditional software never had to do at scale: read untrusted human content and then act on it. That sounds harmless until you realize what “content” now includes. Emails. PDFs. Web pages. Resumes. Reports. Support tickets. Shared docs. CRM notes. Knowledge base articles. Anything an agent can retrieve, […]

The Grok Morse Code Attack Wasn’t a Crypto Hack. It Was an AI Logic-Layer Failure.
May 6, 2026Sandeep Lahane , Co-founder, Godel Labs

On or around May 4, 2026, an X user reportedly exploited a prompt-injection vulnerability involving Grok and Bankrbot, an automated crypto/trading bot operating on Base. The attacker used Morse code to hide a token-transfer instruction. Grok reportedly decoded the message and surfaced it publicly with a Bankrbot tag. Bankrbot then treated the decoded text as […]

Agent Traps: Your AI Doesn’t Get Hacked. It Gets Convinced.
Apr 21, 2026Sandeep Lahane , Co-founder, Godel Labs

Everyone is worried about model-level safety—jailbreaks, alignment, and guardrails. While those vulnerabilities are real and require attention, treating them as the primary threat is a mistake. The most frequent and severe exploits do not happen inside the neural network itself; they happen in the agent harness. This harness—the surrounding scaffolding of memory pipelines, web scrapers, […]

Godel Sieve: Securing What Your AI Consumes
Apr 6, 2026Vishal Kagde, Co-founder, Godel-Labs

AI systems don’t just process prompts anymore.They consume documents, images, audio, video, and external data and they trust it. That trust is where things start to break. What is Godel Sieve Godel Sieve is an AI-native security scanner that analyses everything your AI consumes like documents, images, audio, video, and skills to detect malicious or […]