CodeWall
BlogManifestoContact
Blog

Our Research & Disclosures

RSS Feed
2026-03-10

AI vs AI: How Our AI Agent Hacked a $20M-Funded AI Recruiter

Our autonomous agent chained four harmless bugs into a CVSS 9.8 org takeover of a $20M-funded AI recruiter — then gave itself a voice and talked to the target's AI. Clients included Anthropic, Stripe, and Monzo.

2026-03-09

How We Hacked McKinsey's AI Platform

An autonomous AI agent found a SQL injection in McKinsey's Lilli AI platform. What it extracted was worse than we expected.

© 2026 CodeWall

CodeWall
Contact