Three Acts. One Grand Prize.

AI agents are already operating inside enterprise environments, with or without IT and security teams’ knowledge. These agents can query internal knowledge bases, execute code, initiate workflows, and communicate with external services. Most organizations have deployed them without dedicated runtime security in place, leaving their business open to attack or the consequences of agentic misalignment.
August 31-September 7: ,000 prize
*NO PURCHASE NECESSARY TO PARTICIPATE OR WIN. Challenge begins 8/31/26 at 5:00 p.m. PT and ends 9/29/26 at 11:59 p.m. PT. Must be at least age of majority in jurisdiction of residence to participate. Void in select jurisdictions & where prohibited. See full Official Rules, which govern the challenge, for complete details.
Play Now →
Participants can compete in all three acts; the top-scoring player in each act wins. Players are scored based on their ability to use AI manipulation techniques, and the efficiency of those techniques, to solve puzzles, unlock gates, and proceed through the acts. Following the competition, the full game experience will remain available as an on-demand educational resource.
Act 3: The Basilisk
Our first challenge, AI Unlocked: Decoding Prompt Injection, gave thousands of players an introduction to this world. The new game Agents of Chaos goes further and much deeper down the agent rabbit hole. This new competition was designed to make these threats to agents tangible and accelerate the security community’s readiness to defend against them. 
Want to go deeper on the security challenges AI agents create?

Why We Built This Game

September 15-29: ,000 grand prize
Securing these AI agents requires practical experience with how they fail, how adversaries exploit that failure, and what defenders can do about it.
Agents of Chaos launches August 31 and runs through the end of September. Its three acts unlock sequentially, escalating in difficulty and prize value.
Act 1: The Sanctum
Act 2: The Gatekeeper
August 31-September 14: ,000 prize

AI Detection and Response (AIDR) is the security category built for this challenge. Where traditional security tools detect threats to infrastructure, AIDR detects threats that target and weaponize AI itself in real time, across the full scope of agentic activity. 

Similar Posts