Indirect Prompt Injection in 2026: What Google Actually Found
Indirect Prompt Injection: Google’s Data Ends the Debate According to Google’s AI security team, the...
May 17, 2026
Threat Research
You cannot defend an attack surface you do not know exists. RiskIQ, acquired by Microsoft in 2021, pioneered the discipline of external attack surface management (EASM), continuously discovering internet-facing assets that organizations did not know they had: forgotten subdomains, shadow cloud instances, exposed APIs, and third-party integrations leaking data to the open web. That technology now powers Microsoft Defender External Attack Surface Management, giving security teams the attacker's view of their digital footprint and the intelligence needed to reduce it before someone else exploits it.
"Microsoft Defender External Attack Surface Management discovers unknown and unmanaged resources visible and accessible from the internet, essentially the same view an attacker has when selecting a target."
Microsoft as reported in InfoQ
The platform works by scanning the entire internet daily, mapping infrastructure connections, DNS records, certificates, WHOIS data, and service banners back to your organization. It discovers assets that traditional asset inventory tools miss entirely: cloud resources spun up outside IT governance, development environments left exposed after testing, acquisitions whose infrastructure was never fully cataloged, and third-party services that inadvertently expose your brand. Each discovered asset is assessed for vulnerabilities, misconfigurations, and exposure risk, creating a prioritized remediation queue that focuses security teams on the assets most likely to be targeted.
Mergers and acquisitions routinely introduce unknown attack surface. Run a Microsoft Defender EASM discovery immediately after any acquisition to catalog the acquired company's internet-facing assets before they become your inherited vulnerabilities.
The Microsoft acquisition transformed RiskIQ from a standalone product into a component of the broader Microsoft Defender ecosystem. Researchers from RiskIQ's team, combined with Microsoft's Threat Intelligence Center (MSTIC) and Defender 365 teams, now staff the Microsoft Defender Threat Intelligence product, which enriches EASM findings with context about active threat campaigns, known attacker infrastructure, and indicators of compromise. For organizations already invested in the Microsoft security stack, Defender EASM integrates naturally with Sentinel, Defender for Cloud, and Microsoft Purview, creating a unified view of both internal and external security posture.
Sources: InfoQ, SC Media, Microsoft Tech Community
Indirect Prompt Injection: Google’s Data Ends the Debate According to Google’s AI security team, the...
May 17, 2026
Learn more about RiskIQ (Microsoft) Digital Threat Management directly from RiskIQ.
RiskIQ Official SiteTypeScript hooks + skill for Claude Code that sanitise every web fetch, detect p...
TypeScript hooks + skill for Claude Code that sanitise every web fetch, detect p...
TypeScript hooks + skill for Claude Code that sanitise every web fetch, detect p...
TypeScript hooks + skill for Claude Code that sanitise every web fetch, detect p...
Let's Speed Up
Our clients a fast website!
Thank you, !
We'll be in touch within 24 hours.
Loading glossary…
Term not found.