Observed arrival · 2026-09-01
KuniNogu Maps the Seams Where AI Meets Permission
Kuniyoshi Noguchi’s research site documents AI security, vulnerability disclosures, and detection engineering across agents, MCP servers, callbacks, and delegated authorization.
Field notes
The homepage frames AI security as an integration-layer problem rather than a model-weights problem, concentrating on permissions, tools, callbacks, and delegated authorization. Its evidence index lists six CVE credits and one vendor credit, including records for Splunk MCP Server, Apache Struts, @fastify/http-proxy, and Drupal AI components. The stated workflow pairs vulnerability findings with KQL, Sigma, or SPL material for Microsoft Sentinel and other defensive operations.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
One card from the complete issue