<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Josh Fischer</title>
    <link>https://www.joshfischer.io/</link>
    <description>Security research for the better.</description>
    <language>en</language>
    <atom:link href="https://www.joshfischer.io/rss.xml" rel="self" type="application/rss+xml" />
    <lastBuildDate>Sun, 02 Aug 2026 00:00:00 GMT</lastBuildDate>
    <item>
      <title>Jailbreaking an LLM, a small local experiment</title>
      <link>https://www.joshfischer.io/articles/red-team-lab/</link>
      <guid isPermaLink="true">https://www.joshfischer.io/articles/red-team-lab/</guid>
      <pubDate>Sun, 02 Aug 2026 00:00:00 GMT</pubDate>
      <category>article</category>
      <description>Reasoning models like deepseek-r1 leaked a protected secret into their &lt;think&gt; trace while the visible answer still refused. Simpler models without a reasoning channel held up better.</description>
    </item>
  </channel>
</rss>
