<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url><loc>https://riskatlas.principle.sg/</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/chatbot</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/rag</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/agent</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/computer-use-agent</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/multi-agent</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/internals</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/legal-workflow</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/model-supply-chain</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/training-pipeline</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/rlhf-feedback-loop</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/text-to-image-diffusion</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/conditioned-image-edit</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/identity-deepfake</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/tts-voice-cloning</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/asr-diarization-pipeline</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/diffusion-video-generation</loc></url>
  <url><loc>https://riskatlas.principle.sg/systems/abliteration-pipeline</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-abliteration</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-agentic-misalignment</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-agentjacking</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-backdoor</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-cascading-errors</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-confused-deputy</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-crescendo-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-cua-visual-injection</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-data-exfil</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-denial-of-wallet</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-excessive-agency</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-hallucination</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-image-scaling-injection</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-indirect-injection</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-kv-cache</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-memory-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-poetry-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-rag-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-activation-steering</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-agent-provisioning-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-approval-bypass</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-constrained-decoding-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-embedding-collision</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-guard-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-identity-theft</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-kv-state-splice</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-log-tampering</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-model-theft</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-monitor-subversion</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-rogue-agent</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-task-decomposition</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-tokenizer-bypass</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-tool-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/scenarios/scn-unsafe-execution</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/bing-sydney-prompt-leak</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/grandma-exploit</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/echoleak-copilot</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/greshake-indirect-injection</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/agent-browse-exfil-demos</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/gcg-adversarial-suffixes</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/many-shot-jailbreaking</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/air-canada-chatbot</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/mata-v-avianca</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/chatgpt-behavior-drift</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/poisongpt</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/split-view-dataset-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/samsung-chatgpt-leak</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/chatgpt-memory-exfil</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/replit-agent-db-deletion</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/postmark-mcp-backdoor</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/invariant-mcp-tool-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/huggingface-pickle-rce</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/anthropic-agentic-misalignment</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/ms-agentic-failure-taxonomy</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/denial-of-wallet</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/abliteration-single-direction</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/sleeper-agents</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/prefix-cache-side-channel</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/steering-vectors-repe</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/gtg-1002-ai-orchestrated-espionage</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/near-constant-poison-samples</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/forcedleak-agentforce</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/servicenow-now-assist-agent-discovery</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/shadowleak-deep-research</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/idesaster-ai-ide-vulns</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/copilot-yolo-mode-rce</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/model-namespace-reuse</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/slopsquatting-package-hallucination</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/character-ai-teen-suicide-settlement</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/a2a-agent-in-the-middle</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/a2a-agent-session-smuggling</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/mcp-registry-marketplace-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/clawhavoc-clawhub-skill-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/malice-in-agentland-backdoors</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/pleak-prompt-leaking-attack</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/system-prompt-leak-repositories</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/deepseek-system-prompt-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/morris-ii-ai-worm</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/safe-in-isolation-decomposition-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/replika-garante-ban-fine</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/chail-replika-windsor-crossbow</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/chai-eliza-belgian-suicide</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/gpt4o-sycophancy-rollback</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/sycophancy-rlhf-sharma</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/arup-deepfake-cfo-video-call</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/hk-deepfake-romance-investment-ring</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/deepfake-elon-musk-investment-scams</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/deepfake-tv-doctors-health-scams</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/uk-energy-ceo-voice-fraud</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/uae-bank-voice-clone-heist</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/ftc-voice-clone-family-emergency-advisory</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/taylor-swift-deepfake-nudes-x</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/telegram-nudify-bot-ecosystem</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/iwf-ai-csam-surge</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/school-teen-ai-ncii-deepfakes</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/watermarks-in-the-sand-2023</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/unmarker-universal-image-watermark-attack-2025</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/heretic-automated-abliteration</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/salesloft-drift-oauth-supply-chain</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/amazon-q-wiper-supply-chain</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/nvidia-triton-rce-chain</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/sesameop-openai-assistants-api-c2</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/anamorpher-image-scaling-injection</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/big-sleep-sqlite-cve-2025-6965</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/raine-openai-chatgpt-suicide-suit</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/grok-mechahitler-config-regression</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/attacker-moves-second-adaptive-attacks</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/mcptox-tool-poisoning-benchmark</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/operation-bizarre-bazaar-llmjacking</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/teampcp-litellm-pypi-gateway-compromise</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/adversarial-poetry-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/langflow-cve-2026-21445-auth-bypass</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/agentjacking-sentry-mcp</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/jetbrains-marketplace-ai-keystealer-plugins</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/searchleak-copilot</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/chatgphish-summary-phishing</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/codexui-android-npm-token-theft</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/meta-ai-support-bot-instagram-takeover</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/lerobot-grpc-pickle-rce</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/unsw-capture-the-narrative-wargame</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/flowise-custommcp-rce-cve-2025-59528</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/pytorch-lightning-shai-hulud-pypi</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/anthropic-glasswing-mythos-vuln-discovery</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/gambit-mexico-gov-ai-breach</loc></url>
  <url><loc>https://riskatlas.principle.sg/cases/openclaw-agent-defames-matplotlib-maintainer</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/1</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/2</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/3</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/4</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/5</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/6</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/7</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/8</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/9</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/10</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/11</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/12</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/13</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/14</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/15</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/16</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/17</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/18</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/19</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/20</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/21</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/22</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/23</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/24</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/25</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/26</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/27</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/28</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/29</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/30</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/31</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/32</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/33</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/34</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/35</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/36</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/37</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/38</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/39</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/40</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/41</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/42</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/43</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/r/44</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-prompt-injection</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-indirect-injection</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-hallucination</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-overreliance</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-audit-tampering</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-model-degradation</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-data-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-data-leakage</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-memory-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-excessive-agency</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-tool-misuse</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-unsafe-execution</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-tool-poisoning</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-supply-chain</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-confused-deputy</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-rogue-agent</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-multi-agent-jailbreak</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-cascading-errors</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-agent-misalignment</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-resource-exhaustion</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-abliteration</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-backdoor</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-kv-cache-leak</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-inference-manipulation</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-capability-disclosure</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-parasocial</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-bias-amplification</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-allocation-harm</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-synthetic-impersonation</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-harmful-media-generation</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-provenance-evasion</loc></url>
  <url><loc>https://riskatlas.principle.sg/taxonomy/risk-training-data-rights</loc></url>
  <url><loc>https://riskatlas.principle.sg/controls</loc></url>
  <url><loc>https://riskatlas.principle.sg/glossary</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-rag</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-tools</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-memory</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-agent</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-multiagent</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-computer-use</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-guardrails</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-identity</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-model</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-supply-chain</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-oversight</loc></url>
  <url><loc>https://riskatlas.principle.sg/blocks/cap-interface</loc></url>
  <url><loc>https://riskatlas.principle.sg/sources</loc></url>
</urlset>
