Blue AI Security
  • Home
  • About
  • Contact
Search posts...

AI

A collection of 2 Posts

Understanding RAG: Build a Security Assistant with Cloud Run, Firestore, and Vertex AI
AI

Understanding RAG: Build a Security Assistant with Cloud Run, Firestore, and Vertex AI

Build a RAG-powered security assistant on Google Cloud using Firestore and Vertex AI — deployable threat intelligence with context-aware responses.

13 Jan, 2026
25 min read
From Zero to Amazon Bedrock: Learn how to interact with GenAI Models using AWS Lambda
AI

From Zero to Amazon Bedrock: Learn how to interact with GenAI Models using AWS Lambda

A hands-on Python guide to Amazon Bedrock with AWS Lambda — call foundation models, use Converse API, and apply minimal IAM to ship GenAI features fast.

01 Jan, 2026
40 min read

AI-Agents

A collection of 2 Posts

One Prompt. Claude Fixed My Broken SIEM Feed.
AI-Agents

One Prompt. Claude Fixed My Broken SIEM Feed.

A real-world POC: I gave Claude access to Elastic SIEM, Jira, Confluence, and Gmail — and let it triage a broken log feed autonomously. Here's exactly what happened, and how to set it up yourself.

07 Mar, 2026
15 min read
Build Your First AI Agent: From Static AI to Autonomous Systems
AI-Agents

Build Your First AI Agent: From Static AI to Autonomous Systems

Build your first autonomous AI agent with CrewAI — deployable Python code, multi-agent systems, and real API integrations for security engineers.

25 Feb, 2026
26 min read

AI-Security

A collection of 3 Posts

Learn by Doing · AI Security #3: Agent Hijacking
AI-Security

Learn by Doing · AI Security #3: Agent Hijacking

Lab #2 tricked an AI into saying a secret. Lab #3 tricks an agent into doing something: reading your inbox, finding a password, and sending it to an attacker, all from one poisoned email. The EchoLeak pattern, on your laptop.

12 Sep, 2026
9 min read
Learn by Doing · AI Security #2: MCP Tool Poisoning
AI-Security

Learn by Doing · AI Security #2: MCP Tool Poisoning

Lab #1 tricked a chatbot into leaking a secret. Now we give that chatbot tools through an MCP server and watch it get hijacked two new ways — a poisoned tool description, and instructions hidden in a tool's response. Build it, break it, understand it. All local, no API key.

06 Sep, 2026
13 min read
Learn by Doing · AI Security #1: Prompt Injection
AI-Security

Learn by Doing · AI Security #1: Prompt Injection

AI is outpacing the security around it. This series is a place for security people to learn by doing. Lab #1: build a vulnerable chatbot on your laptop, trick it into leaking a secret with one sentence, and understand why the usual guards fail.

05 Sep, 2026
13 min read

Cloud-Security

A collection of 1 Post

Reduce MTTD/MTTR with Amazon Bedrock - From Telemetry to Action
Cloud-Security

Reduce MTTD/MTTR with Amazon Bedrock - From Telemetry to Action

Reduce MTTD/MTTR by combining AWS WAF, CloudWatch, and Amazon Bedrock Agents — from telemetry anomaly detection to automated security mitigation.

01 Jan, 2026
146 min read

Detection-Engineering

A collection of 2 Posts

Hardening Azure Feeds Into Google SecOps
Detection-Engineering

Hardening Azure Feeds Into Google SecOps

A leaked Azure storage key or Event Hub connection string is, by default, usable from anywhere on the public internet. Here's how to put that credential behind a network door — using the Azure firewall and Google's published goog.json IP ranges — with two parallel walkthroughs for the two architectures you'll actually find in the wild, plus a self-maintaining reconciler.

15 Jun, 2026
40 min read
The Feed Health Monitor I'd Actually Deploy
Detection-Engineering

The Feed Health Monitor I'd Actually Deploy

A small Python service for Google SecOps that watches every feed, runs three independent checks per feed, restarts what it can, files one Jira ticket per outage with a Gemini summary, and emails the owner. No agent framework. No MCP. Just a YAML config and a Cloud Run Job. Open source, v1, contributions welcome.

16 May, 2026
21 min read

Prompt-Engineering

A collection of 1 Post

How to Talk to AI: Human–Computer Communication in the LLM Era
Prompt-Engineering

How to Talk to AI: Human–Computer Communication in the LLM Era

A practical field guide to prompting for security engineers — use structure, context, and examples to get consistent, high-quality results from LLMs.

27 Jan, 2026
44 min read

Get the next lab

Want to advance your career in AI security? Build it, hack it, understand it.

One email per lab. Unsubscribe in one click.

Featured posts

Learn by Doing · AI Security #3: Agent Hijacking

Learn by Doing · AI Security #3: Agent Hijacking

12 Sep, 2026
Learn by Doing · AI Security #2: MCP Tool Poisoning

Learn by Doing · AI Security #2: MCP Tool Poisoning

06 Sep, 2026
Learn by Doing · AI Security #1: Prompt Injection

Learn by Doing · AI Security #1: Prompt Injection

05 Sep, 2026
Hardening Azure Feeds Into Google SecOps

Hardening Azure Feeds Into Google SecOps

15 Jun, 2026
The Feed Health Monitor I'd Actually Deploy

The Feed Health Monitor I'd Actually Deploy

16 May, 2026
One Prompt. Claude Fixed My Broken SIEM Feed.

One Prompt. Claude Fixed My Broken SIEM Feed.

07 Mar, 2026
Build Your First AI Agent: From Static AI to Autonomous Systems

Build Your First AI Agent: From Static AI to Autonomous Systems

25 Feb, 2026
How to Talk to AI: Human–Computer Communication in the LLM Era

How to Talk to AI: Human–Computer Communication in the LLM Era

27 Jan, 2026

Topics

AI Cloud-Security Prompt-Engineering AI-Agents Detection-Engineering AI-Security

Blue AI Security

Hands-on AI security labs. Build it, break it, understand it.

Recent Posts

Learn by Doing · AI Security #3: Agent Hijacking

Learn by Doing · AI Security #3: Agent Hijacking

12 Sep, 2026
Learn by Doing · AI Security #2: MCP Tool Poisoning

Learn by Doing · AI Security #2: MCP Tool Poisoning

06 Sep, 2026
Learn by Doing · AI Security #1: Prompt Injection

Learn by Doing · AI Security #1: Prompt Injection

05 Sep, 2026

Menu

Home About Contact
2026 © Blue AI Security by Bartosz Jelen.