Live online workshop · Hacking AI agents

Slay
the
Zmey

See how AI agents get hacked. Then hack one yourself.

Two hours of AI hacking for people who use AI. Real demos show, step by step, how attackers manipulate AI assistants and agents. Then you attack Zmey, an AI agent built to be broken. No code, just words.

Date
Tuesday, October 20
Time
18:00–20:00 EEST · 2 hours
Where
Online · Google Meet
Format
90 min + 30 min Q&A

€23 €32

Early bird price
for the first 30 seats

Stihia presenter explaining prompt injection to a workshop audience around a long table
Workshop snapshot · July 2026 Prompt injection: direct and indirect attacks

Seats 50

Why now

AI security incidents are real.

You don't need to be a hacker to break an AI agent. The right words are enough.

20,000+

Instagram accounts stolen through Meta's AI support

June 2026

$150,000

stolen with a single prompt injection

May 2026

DROP

Replit's AI agent deletes a production database during a code freeze

Rogue agent

leaks at Samsung: source code and internal data pasted into ChatGPT

Data leakage

Audience

Built for people who use AI and want to see it break

This is for you if you are

Developer, QA, DevOps, or AI engineer
You give AI coding assistants and agents access to code, terminals, and secrets, and want to see exactly how they get tricked.
CTO, CIO, founder, or tech lead
You choose and roll out the AI stack (build or buy) and want to see firsthand how an attacker breaks it.
IT or security generalist
You know systems and classic security, but AI agents are new territory. You want to see how attacks on them really work.
Experienced AI user
A PM, analyst, or marketer who connects AI to email, documents, MCP servers, and customer data, and is curious how someone could turn it against you.

You don't need to be a security expert or write code. If you use AI in your work every day, you're ready.

This is not for you if you are looking for

An introduction to AI
We won't explain what a chatbot is or how a language model works. We assume you already use AI.
A prompt engineering or productivity course
The focus is on breaking AI agents, not on getting better results out of them.
Professional red-team or pentest training
This is a hands-on introduction for people who use AI, not advanced tooling for security pros.
Defense, compliance, or an audit of your company
The evening is all offense. Protecting your own AI stack, internal policies, and EU rules are part of our corporate workshop, tailored to your company.
A passive webinar running in the background
The value is in taking part live: questions, demos, and the start of the tournament against Zmey.

What you take away

Six things you leave with

You watch demo attacks, then test your skills on a real AI agent.

01

Know how AI agents get hacked

The main attacks on AI assistants and agents today: prompt injection, hijacked goals, poisoned context, and leaked secrets.

02

See real attacks step by step

Demos on real assistants and agents, with every step of the attack explained in plain language.

03

Spot what makes an agent easy to exploit

A simple mental model for the combination of capabilities attackers look for in any agent, MCP server, or skill.

04

Think like the attacker

You break Zmey yourself. You understand from the inside how an agent gets manipulated, one level at a time.

05

Recognize an attack in the wild

You'll know what hidden instructions look like in the emails, documents, and web pages your AI tools read every day.

06

Leave with a certificate

A certificate of participation (PDF) you can show to a client or employer.

Why this session

What makes the evening different

Two hours in which you watch demo attacks, then test your skills on a live AI agent.

Register
  • Real attacks, real demos

    See how AI assistants and agents get manipulated, with every step explained.

  • You are the attacker

    Every participant attacks Zmey, a real AI agent with defenses, and sees how an attacker thinks.

  • Led by a practitioner

    Run by the engineer building AI threat detection in Stihia Sense, who researches the attacks you'll see.

  • Up to date as of October 2026

    Attacks and incidents from recent months. The demos follow the newest vulnerabilities.

  • In plain language

    Every attack explained clearly, without security jargon. You don't need a hacking background.

  • The price of a book

    €23 for 2 hours of attacks, hands-on hacking, and a shot at the prizes.

Agenda

From theory to breach in 90 minutes

The agenda follows the path of an attack: what the agent is, where it is weak, what has already happened, and how it gets breached. And at the end, you break in yourself.

Presentation and demos
90 min
Open Q&A
30 min
  1. 01

    Kickoff

    How the evening will run and how we'll compete in Zmey.

    Moderator
  2. 02

    How we use AI agents

    How agents work with code, data, email, and tools in daily work, and why that makes them a target.

    Ivan
  3. 03

    Today's vulnerabilities

    The main attacks on AI agents today, how prompt injection works, and what makes an agent easy to exploit.

    Ivan
  4. 04

    Real incidents

    Recent incidents at real companies, taken apart from the attacker's side: the way in, the trick, and the damage.

    Ivan
  5. 05

    Attacks in practice Demos

    Real attacks on AI assistants and agents, shown and explained step by step.

    Ivan
  6. 06

    Final boss: Zmey

    Scan the QR code and use what you just saw against a live AI agent with ever stronger defenses. You start here and have 7 more days to finish.

    Everyone
  7. 07

    Open Q&A

    Ask about the attacks, the demos, or the AI tools you use while the Zmey tournament continues.

    Ivan

What you'll see

How attackers turn everyday AI against its users

Attack 01

Data leakage

How an attacker gets an assistant to hand over confidential data while it thinks it is helping.

Attack 02

Hijacked goals

How hidden instructions in an email, document, or web page take over what an agent does.

Attack 03

Poisoned context

How one planted instruction keeps steering every answer that follows.

Attack 04

Exposed secrets

How an assistant gets talked into revealing the instructions and data it is supposed to guard.

The demos follow the newest vulnerabilities. We only attack our own sandbox environments and public tools.

Stihia presenter running a demo at a laptop, with a coding agent projected on the wall
Two Stihia hosts in front of the projected Final Boss: Zmey screen with a QR code

Final boss

Break Zmey. Claim the prize.

Zmey is an AI agent with real defenses and a secret it guards. You have a phone or laptop, your words, and the tricks from the demos. There are 5 levels, each harder than the one before. You start during the workshop and have 7 days after it to beat them all.

  1. 1

    “Zmey Slayer” medal by mail

    + a free seat at the next workshop + a LinkedIn shout-out

    €30
  2. 2

    Free seat at the next workshop

    + digital badge

    €20
  3. 3

    50% off the next workshop

    + digital badge

    €10

Bonus for the winner's company: 20% off a corporate workshop for the whole team.

Prizes are for registered participants only. The first three to pass all 5 levels within 7 days after the workshop win, in the order they finish. If fewer than three finish, the remaining prizes are not awarded. We'll explain how to prove you passed all 5 levels during the workshop. Cash prizes are paid by bank transfer within 7 days after the tournament closes.

Host

Your guide to breaking AI agents

Ivan Danielov Ivanov

Ivan Danielov Ivanov

AI Engineering & Data Science

Builds threat detection in Stihia Sense and leads the research the demos come from. 10+ years in data science and ML engineering. MSc Computer Science, University of Bonn.

Leads the whole evening: theory, incidents, demos, and Zmey

Tickets

Reserve your spot

Regular

€32

Once the early bird seats are gone. Same content and same prizes.

Register on Luma
  • Card payment through Luma and Stripe
  • Invoice on request
  • Full refund up to 48 hours before the start

Questions

What people ask us most

Can't find an answer? Write to us at info@stihia.ai.

Do I need to be a programmer?

No. You need to use AI tools in your work. Every demo is explained step by step, and for Zmey all you need is a browser and words.

I work in security. Is this for me?

It's built for people who use AI, not for professional red-teamers or pentesters. If AI agents are new to you, it's a fast way in. If you already test them for a living, most of it will be familiar, though Zmey's top levels are still a challenge.

What do I need to take part?

A laptop or phone with a browser and a stable internet connection. No installs and no accounts. Your personal Google Meet link comes from Luma after you register.

Will there be a recording?

No, the session is live only. All participants receive a certificate of participation (PDF) after the event.

How are the prizes won?

You start Zmey during the workshop, but you don't have to finish there. You can keep playing for 7 days after the workshop. The first three registered participants to pass all 5 levels in that time win the €30, €20, and €10 prizes, in the order they finish. If fewer than three finish, the remaining prizes are not awarded. We'll explain how to prove you passed all 5 levels during the workshop. Prizes are paid by bank transfer within 7 days after the tournament closes.

Do you issue invoices?

Yes. Enter your company name and company ID (EIK) when you register, and you will receive an invoice.

Can I get a refund?

Yes, a full refund up to 48 hours before the start. After that, you can transfer your ticket to a colleague.

I want this for my whole team. Is that possible?

Yes. We run corporate workshops on-site or online, from 2 hours to several days. They cover attacks on the tools your team uses and the defense side: how to protect them, internal AI policies, and the EU rules. See the For companies section below.

For companies

Want the defense side too, for your whole team?

This evening covers the attacks. Our corporate workshop adds the defense: protecting your own AI tools, internal AI policies, and the EU rules, tailored to your stack. On-site or online, from 2 hours to several days, with separate tracks for engineers and non-technical staff. Participants in the open session get a €100 credit when they book by November 20.

Oct 20, 2026 · 18:00 · Online

Ready to face Zmey?

50 seats. Early bird price €23 for the first 30.

Register on Luma