Watch · narrated walkthroughs
Embeddings are treated as opaque numbers, but they are near-invertible and attacker-manipulable, and the retrieval layer is both a confidentiality leak and an injection vector. This threat lab measures text-embedding inversion, nearest-neighbor and cross-tenant leakage, retrieval corruption by neighborhood poisoning, and approximate-index abuse for denial and eviction — each paired with a hardening. Grounded in the primary embedding-inversion and vector-index literature.