Loading…
11-12, August 2026
Seoul, South Korea
View More Details & Registration
Note: The schedule is subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Korea 2026 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Korea Standard Time (KST), UTC +9. To see the schedule in your preferred timezone, please select from the drop-down menu to the right.
Wednesday August 12, 2026 13:35 - 14:05 KST
As LLM-based agents gain access to tools - APIs, databases, file systems, and internal services, the security model changes. The model is no longer only generating text; it is selecting actions and invoking capabilities across systems.

Prompt injection attacks exploit this boundary. between model reasoning & external execution.

This talk examines how tool-enabled agents built on open LLM frameworks expand the attack surface and why traditional input validation approaches are insufficient.

We will analyze concrete failure modes such as:
- Prompt injection vs classical injection: control of model reasoning rather than query structure
- Tool outputs as secondary injection vector in multi-step workflows
- Why system prompts & guardrails are not reliable isolation boundaries
- Capability scoping & least-privilege design for tool access
- Isolation patterns for tool execution (sandboxing, mediated execution layers)
- Structured tool interfaces vs free-form prompting
- Observability patterns for tracing agent decisions and tool calls
- Adversarial testing of agent pipelines

Examples draw from patterns emerging in open-source LLM and agent ecosystems.
Speakers
avatar for Jigyasa Grover

Jigyasa Grover

ML Tech Lead • Google Developer Advisory Board Member • LinkedIn [in]structor • Book Author • Startup Advisor • 12 time AI + Open Source Award Winner • Featured @ Forbes, UN, Google I/O, and more!, Uber
Jigyasa Grover is an ML tech lead at Uber focused on large-scale ML and personalization, previously at Twitter/X, Meta, Faire, and Bordo AI. Author of Sculpting Data for ML, she serves on Google’s Developer Advisory Board and was selected for Google I/O. A Google Developer Expert... Read More →
avatar for Rishabh Misra

Rishabh Misra

Principal ML Engineer, Atlassian
I am a Principal ML Engineer & Researcher with over 10 years of experience in the AI and ML space. I am currently driving LLM pretraining, postraining, and personalization efforts at Atlassian, and have previously led Deep Learning & GenAI-powered user personalization at late-stage... Read More →
Wednesday August 12, 2026 13:35 - 14:05 KST
Grand Ballroom 2-3

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link