Very interesting. How does this approach work for complex agentic workflows where the LLM is expected to orchestrate across multiple tools (such as when using MCP)? Or is this mainly for simple cases like the ones presented in the blog post?
> were able to sign into a Snowflake employee’s ServiceNow account using stolen credentials, thus bypassing OKTA
It's probably not technically relevant to the breach, but it's at least interesting that the CEO of Snowflake is the former CEO of ServiceNow: https://en.wikipedia.org/wiki/Frank_Slootman
At least they've sucessfully got a probe onto the Moon, as opposed to Russia who poisoned their lead scientist with mushrooms after it failed to do so.