<?xml version="1.0" encoding="UTF-8"?><oembed><type>video</type><version>1.0</version><html>&lt;iframe src=&quot;https://www.loom.com/embed/df42d52224c340a3a098fc3223aa680d&quot; frameborder=&quot;0&quot; width=&quot;1670&quot; height=&quot;1252&quot; webkitallowfullscreen mozallowfullscreen allowfullscreen&gt;&lt;/iframe&gt;</html><height>1252</height><width>1670</width><provider_name>Loom</provider_name><provider_url>https://www.loom.com</provider_url><thumbnail_height>1252</thumbnail_height><thumbnail_width>1670</thumbnail_width><thumbnail_url>https://cdn.loom.com/sessions/thumbnails/df42d52224c340a3a098fc3223aa680d-1e50cc7dda248ad2.gif</thumbnail_url><duration>185.37</duration><title>Introducing Crimson: Your Red Teaming Helper Agent 🔒</title><description>In this video, I introduced Crimson, our red teaming helper agent designed to address novel security concerns like prompt injection attacks. We have a four-stage pipeline built on AWS strands agents, starting with a recon agent analyzing your source code, followed by a planning agent that identifies potential attack vectors, and an attacking agent that conducts multi-turn adversarial chats. Our metrics show the performance of five predefined agents, highlighting security vulnerabilities with severity ratings and concrete remediation steps. I encourage you to review the findings in the report, particularly noting the critical vulnerabilities related to DevOps, which could expose sensitive credentials. Please take action to address these vulnerabilities to enhance our security posture.</description></oembed>