Published research
Security Advisories
CVE-tracked vulnerability disclosures with MITRE ATLAS mapping, coordinated vendor disclosure, and detection signatures.
Threat Intelligence
Data-driven threat landscape reports with trend analysis, emerging threats, and actionable recommendations.
Research Radar
Digest translating academic AI security papers into practitioner summaries – each rated act now, watch, or horizon.
Auditable Signatures
Open, auditable detection signatures, every one mapped to MITRE ATLAS and OWASP ASI, continuously updated from research findings.
From the lab to your cloud
CloudTrail detection research for agent activity in your own AWS accounts – an agent role reading a secret raises a data-exfiltration alert. Self-hosted, watching your accounts; correlation, not exact attribution. Early access.
How discoveries become detections
Discover
Labs researchers find new AI vulnerability
Analyse
Characterise attack, map to MITRE ATLAS
Publish
Advisory + CVE + YAML detection signatures
Detect
Signatures join the RAXE detection stack as open, auditable rules
Where we focus
Adversarial ML
Prompt injection, jailbreaking, role hijacking, instruction override, and model behaviour manipulation techniques.
AI Agent Security
Tool-call abuse, MCP server exploitation, agent manipulation, multi-turn attacks, and autonomous system threats.
Model Supply Chain
Training data poisoning, model backdoors, weight manipulation, and supply chain integrity threats.
Prompt Injection Taxonomy
Systematic classification of injection techniques, encoding tricks, evasion patterns, and context manipulation methods.
Agent Cloud Activity
Agent behaviour in cloud accounts: CloudTrail patterns for agent roles reading secrets, IAM misuse by autonomous agents, and AgentCore telemetry. Agents on AWS →
How our reports may be shared
Every RAXE Labs publication carries a Traffic Light Protocol marking that states exactly how far it may travel.
Public research
Advisories, threat reports, and radar issues published on this site. Unrestricted distribution – share them freely, with attribution.
Design-partner briefings
Briefings shared with design partners may circulate within your organisation, sector peers, and partner network – never on public channels.
See the research running against your agents
Every advisory ships with open detection signatures, mapped to MITRE ATLAS and OWASP ASI. See them at work in the RAXE console, self-hosted in your environment. Early access – design partner programme.