Frostfire Labs: Offensive AI security research.

Vulnerability research, exploit development, and adversarial probing of AI systems.

Frostfire Labs is an independent research lab. We conduct vulnerability research and exploit development against agent frameworks, model context protocols, retrieval pipelines, and multimodal ingestion pipelines.

Each finding is built into a working exploit.


MCP worms


Adversarial payloads embedded in Model Context Protocol tool descriptions and responses, propagating to downstream agents that connect to the same server.

Cross-modal worms


Adversarial instructions encoded in images, PDFs, and audio that multimodal models parse as commands.


Multi-agent framework worms


Inter-agent propagation through message passing and shared state in LangGraph, AutoGen, and CrewAI agent meshes.

Vector database persistence


Poisoned embeddings planted in retrieval-augmented generation (RAG) indexes that resurface on every matching query.

Your sidebar area is currently empty. Hurry up and add some widgets.