<?xml version="1.0" encoding="UTF-8"?><oembed><type>video</type><version>1.0</version><html>&lt;iframe src=&quot;https://www.loom.com/embed/34ad585695784680b1770dfaad41c525&quot; frameborder=&quot;0&quot; width=&quot;1732&quot; height=&quot;1299&quot; webkitallowfullscreen mozallowfullscreen allowfullscreen&gt;&lt;/iframe&gt;</html><height>1299</height><width>1732</width><provider_name>Loom</provider_name><provider_url>https://www.loom.com</provider_url><thumbnail_height>1299</thumbnail_height><thumbnail_width>1732</thumbnail_width><thumbnail_url>https://cdn.loom.com/sessions/thumbnails/34ad585695784680b1770dfaad41c525-afd00fdc6615e02f.gif</thumbnail_url><duration>286.024</duration><title>Chained Light LLM Attacks, and Mitigations</title><description>This Loom demonstrates how chaining two light LLM vulnerabilities can escalate from authenticated low-privilege access to remote code execution. It shows starting with a minted token, failing to run RCE due to lacking admin access, then using a “PE” against an endpoint to obtain a proxy admin role and write an ID to template lmrc, confirming code execution. In Meego, it highlights visibility including the Kubernetes ingresses and services, the deployment, and DeepTrace context with the command and full stack trace. When mitigation controls are enabled, sensor blocking prevents sub-process creation, and a WAF rule returns a 400 for escalation-like requests, resulting in a 403 with a custom error message on reattempts.</description></oembed>