Learning new ways to exploit LLM APIs.
Just solved a practitioner-level lab on #WebSecAcademy by #base64 #encoding my #payload. The model decoded and executed it without any pushback.
Never rely on prompt-level filters when the backend blindly trusts model output.
