Overview
News
Technologies
Salaries
Products
People
Growth
Offices
Financials

Overview

Luigi Coniglio’s personal blog about security, computer science and miscellaneous.

News

Blog 3 months ago
AI Data Extraction Lab 1: When Models Remember Too Much
Neural networks are trained to learn patterns, but sometimes they learn a bit too well. Under the right conditions, ML models can memorize specific samples from their training data, and spit them back out. This has real consequences for privacy, intellect
Read more
Report
Blog 5 months ago
The Prompt Injection Defence Landscape
Update: 12 May 2026 I have just released Prompt Injection Defence Atlas, a taxonomy of defences against prompt injection. It includes and summarizes most of the available literature to date. You can explore the interactive graph here. Prompt injection is
Read more
Report
Blog 4 years ago
Using Hermes's Quicksort to run Doom: A tale of JavaScript exploitation
TL;DR: JavaScript engines are fascinating and challenging from a security perspective due to their exposure to malicious code, memory corruption risks, frequent vulnerabilities, and exploit-friendly nature. I work at Meta on enhancing the security of the
Read more
Report
Blog 7 years ago
Exploring Execution Trace Analysis
I have recently published a blogpost showing some of the work I have done during my internship at Quarkslab. The blogpost can be found here.
Read more
Report
Blog 7 years ago
Tackling Associative Arrays in Symbolic Execution
Recently as part of a small project I have been wondering what is the most efficient data structure for implementing associative arrays when symbolic keys are involved. An associative array is a data type consisting in a collection of key-value pairs such
Read more
Report