
Author profile
Phillip Williams
Co-Founder & CTO, Legba
Phillip Williams leads architecture and product innovation at Legba. A veteran security engineer, he writes about browser threats, detection gaps, and the security architecture behind isolated browsing.
Published articles
Indirect prompt injection targets browser agents
Indirect prompt injection hides commands inside content a browser agent retrieves. See why filters miss them and how disposable execution limits the blast radius.
Security Research · 2026-07-24
MCP server security: the config nobody reads
An MCP config can add executable code, credentials, tool authority, and browser identity in one block. Threat-model the server before your agent calls it.
Security Research · 2026-07-24
Device Code Phishing: Why Your SOC Can't See the Attack Until It's Too Late
EvilTokens encrypts device code phishing payloads. See why static SOC analysis misses them until a browser executes the attack.
Security Research · 2026-07-01