Debating LLM Egress Security: Why Every Tool Call Can Run Through Your MITM Proxy

evilsocket · x · 2026-10-07

evilsocket and MooncastOnline debate monitoring LLM traffic via an egress MITM proxy. evilsocket argues the approach applies broadly: tool calls execute external tools you don't control, so you can intercept not just the harness but every shell utility, DB connection, or anything the model uses as a tool. The counterpoint: defending a hacked fine-tuned LLM differs from general egress MITM, with SSL pinning as an obstacle; options include inspecting every tool call or treating the system as air-gapped and batch-reviewing. Consensus: treat everything an LLM outputs as suspicious.

Related event: Debate Flares Over MITM Proxy Monitoring of LLM Traffic(2 posts)→

Original post →

More from coding & agent

coding & agent channel →