Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I think you will need to use some NLP/ML technique for adversarial identification. In a marketing sort of way, that is gonna be AI and may or may not be LLM. It would also not be a single solution that works for every kind of attack, because it's unstructured and often without syntax. (unlike the SQL injection parallel that is always cited).

Ideally, any security check must happen before it comes in contact with the business logic part of any architecture. Here, based on your and other comments, and reading online, I think a failsafe might need to be built on the interacting apps end (like Gmail building some sort of an extra layer of security to prevent attacks). Would be tedious to implement I agree.



Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: