Tag: ai
-
Why Identity Security Is Your Cyber Career Entry Point
As AI reshapes cybersecurity workflows, John Paul Cunningham, CISO at SIlverfort, says the technology is creating opportunities rather than eliminating jobs, and there are more ways than ever to break into the essential field. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/identity-security-cyber-career-entry-point
-
Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak Data
New Microsoft research shows how attackers can hijack AI agents that act on a user’s behalf, using nothing more than a poisoned tool description to make the agent quietly hand over company data to an outsider.The trick is that the agent never breaks a rule. Every step looks routine, so in a default setup no…
-
AI Models Trust Writing Style Over Security Labels
Researchers Show Style-Based Prompts Bypass AI Safety Controls. Artificial intelligence chatbots decide which instructions to obey based on whether the text seems like it comes from a user, not the security labels meant to mark it as trusted or untrusted, say researchers. This can allow attackers to fake a system command. First seen on govinfosecurity.com…
-
Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App Endpoints
Tags: ai, attack, crypto, cve, data-breach, endpoint, exploit, intelligence, rce, remote-code-execution, threat, vulnerabilityThreat actors are continuing to exploit a critical Langflow vulnerability as part of fresh attacks designed to deliver a Monero cryptocurrency miner.The activity has been found to weaponize CVE-2026-33017 (CVSS score: 9.3), an unauthenticated remote code execution (RCE) vulnerability in Langflow, indicating threat actors are scanning and targeting exposed artificial intelligence (AI) First seen on…
-
Reflectiz to Host Webinar, Joined by Taboola, on Securing Third-Party Marketing in the AI Era
Boston, Massachusetts, June 30th, 2026, CyberNewswire Reflectiz, the web exposure management platform, today announced a live webinar with Taboola, >>Securing Third-Party Marketing in the AI Era,<< taking place July 8 at 9 AM EDT / 3 PM CEST. Every marketing vendor a company approves can silently introduce third and fourth-party scripts that no security team…
-
Reflectiz to Host Webinar, Joined by Taboola, on Securing Third-Party Marketing in the AI Era
Boston, Massachusetts, June 30th, 2026, CyberNewswire Reflectiz, the web exposure management platform, today announced a live webinar with Taboola, >>Securing Third-Party Marketing in the AI Era,<< taking place July 8 at 9 AM EDT / 3 PM CEST. Every marketing vendor a company approves can silently introduce third and fourth-party scripts that no security team…
-
Critical flaw in SimpleHelp exploited in attacks targeting sensitive credentials
Researchers found two previously undisclosed malware samples used to steal AI assistant tokens and other valuable secrets. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/critical-flaw-simplehelp-exploited-attacks-credentials/824105/
-
Fake Perplexity extension on Chrome Web Store tracked searches
A malicious extension in the Chrome Web Store is masquerading as the Perplexity AI answer engine, intercepting search traffic and collecting browsing information. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fake-perplexity-extension-on-chrome-web-store-tracked-searches/
-
Sicherheitslücken ohne Ende: Menge an KIReports überfordert Github
Github kommt bei der Bearbeitung von Sicherheitsmeldungen nicht mehr hinterher. Es gibt wohl einen Rückstau von mehreren Wochen. First seen on golem.de Jump to article: www.golem.de/news/sicherheitsluecken-ohne-ende-flut-an-ki-bug-reports-ueberfordert-github-2606-210347.html
-
Reflectiz to Host Webinar, Joined by Taboola, on Securing Third-Party Marketing in the AI Era
Tags: aiBoston, Massachusetts, 30th June 2026, CyberNewswire First seen on hackread.com Jump to article: hackread.com/reflectiz-to-host-webinar-joined-by-taboola-on-securing-third-party-marketing-in-the-ai-era/
-
SimpleHelp Flaw Exploited to Deploy Malware Targeting Windows, macOS, and Linux
A SimpleHelp authentication flaw is being exploited to deploy Djinn Stealer, a cross-platform malware targeting cloud, developer, and AI credentials. The post SimpleHelp Flaw Exploited to Deploy Malware Targeting Windows, macOS, and Linux appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-simplehelp-flaw-djinn-stealer-developer-credentials/
-
iPhone Security Fixes May Arrive Sooner as AI Speeds Up Threats
Apple is releasing some iPhone security fixes earlier as AI raises concerns about faster cyberattacks and shorter patch windows. The post iPhone Security Fixes May Arrive Sooner as AI Speeds Up Threats appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-apple-iphone-ai-security-updates/
-
AppViewX Launches Global Partner Program Amid Rising Demand for Machine and Agent Identity Security
New York, United States, June 30th, 2026, CyberNewswire Building on the momentum of its Agent Identity Security launch, AppViewX invests in partner success through enhanced enablement and co-selling support AppViewX, the only machine and agent identity security company built for the AI and quantum era, today announced the launch of its first global Partner Program.…
-
GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks
The safety check that is supposed to stop an AI coding agent from running a dangerous command can be walked straight past using a shell trick that has been public for decades.New research from Adversa AI, which is named the bypass GuardFall, found it works against ten of the eleven popular open-source coding and computer-use…
-
282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study
Researchers tested 444 AI chatbot apps for iPhone and found that 282 of them, nearly two-thirds, exposed paid AI access through their network traffic.In many cases, the path in was visible just by watching what the app sent: a plaintext API key, a reusable token, or a backend server that accepted requests with no key…
-
npm-Lieferkettenangriff auf KI-Framework Mastra – Gekapertes npm-Konto schleust Schadcode in 140 Mastra-Pakete
First seen on security-insider.de Jump to article: www.security-insider.de/mastra-npm-lieferkettenangriff-a-082843107ef0d041bb0263bbc1329843/
-
Unerlaubte KI-Anwendungen am Arbeitsplatz: IT-Anwalt warnt vor rechtlichen Folgen
Tags: aiFirst seen on t3n.de Jump to article: t3n.de/news/unerlaubte-ki-anwendungen-arbeitsplatz-anwalt-warnt-rechtliche-folgen-1747767/
-
OpenMatter Network Introduces Verifiable Trust Layer for Secure Collaboration and AI Agents
Melbourne, Florida, 30th June 2026, CyberNewswire First seen on hackread.com Jump to article: hackread.com/openmatter-network-introduces-verifiable-trust-layer-for-secure-collaboration-and-ai-agents/
-
AI-Generated Workflows Are a Silent Security Disaster
Teams are dealing with a truly dangerous problem, automation that works, but that no one understands. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/ai-generated-workflows-silent-security-disaster
-
Vertrauen lässt sich nicht prompten
Wie informieren sich IT-Entscheider, und welchen Quellen vertrauen sie? Dieser Frage ist Akima im März 2026 in einer Befragung von 309 IT-Entscheidern in deutschen Unternehmen nachgegangen. KI-Tools sind innerhalb eines Jahres von Platz 9 (2025) auf Platz 3 der meistgenutzten Quellen vorgerückt und haben sich damit als neue Gatekeeper etabliert. An den Kriterien für Vertrauen…
-
Apple Fixes WebKit Flaws in iOS and macOS, With Help From AI Tools
Apple released updates for iOS, iPadOS, macOS, and Safari, fixing WebKit flaws, four of which were found using AI tools like Claude and Codex Apple pushed out security updates for iOS, iPadOS, macOS, and Safari on Monday, and this round comes with a twist worth noticing. Four of the WebKit vulnerabilities patched were found using…
-
Apple Fixes WebKit Flaws in iOS and macOS, With Help From AI Tools
Apple released updates for iOS, iPadOS, macOS, and Safari, fixing WebKit flaws, four of which were found using AI tools like Claude and Codex Apple pushed out security updates for iOS, iPadOS, macOS, and Safari on Monday, and this round comes with a twist worth noticing. Four of the WebKit vulnerabilities patched were found using…
-
Sicherheitslücken ohne Ende: Flut an KIReports überfordert Github
Github kommt bei der Bearbeitung von Sicherheitsmeldungen nicht mehr hinterher. Es gibt wohl einen Rückstau von mehreren Wochen. First seen on golem.de Jump to article: www.golem.de/news/sicherheitsluecken-ohne-ende-flut-an-ki-bug-reports-ueberfordert-github-2606-210347.html
-
Wie das Spannungsfeld zwischen Freiheit und Regulierung maximalen Mehrwert für Unternehmen schafft – Regionale Datensouveränität im KI-Zeitalter
Tags: aiFirst seen on security-insider.de Jump to article: www.security-insider.de/regionale-datensouveraenitaet-im-ki-zeitalter-a-06e751af12236539272169bd284e64be/
-
New BioShocking Attack Tricks AI Browsers Into Leaking User Credentials
Convince an AI browser that it is playing a game, and it can hand over your login details. That is the finding behind BioShocking, a technique from security firm LayerX that tricked six AI browsers and assistants into copying a user’s credentials and sending them to an attacker.The targets included OpenAI’s ChatGPT Atlas, Perplexity’s Comet,…
-
New BioShocking Attack Tricks AI Browsers Into Leaking User Credentials
Convince an AI browser that it is playing a game, and it can hand over your login details. That is the finding behind BioShocking, a technique from security firm LayerX that tricked six AI browsers and assistants into copying a user’s credentials and sending them to an attacker.The targets included OpenAI’s ChatGPT Atlas, Perplexity’s Comet,…
-
OpenClaw for iOS: The viral open-source AI agent comes to iPhone and iPad
OpenClaw, a self-hosted personal AI assistant that connects to existing chat apps, is now available on iPhone, iPad and Apple Watch. The release brings chat, real-time voice … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/30/openclaw-ios-app-iphone-ipad/
-
Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs
Apple on Monday released security updates for iOS, macOS, and the Safari web browser to address over three dozen flaws, including four vulnerabilities in WebKit that were discovered using artificial intelligence (AI) tools like Anthropic Claude and OpenAI Codex Security.The WebKit vulnerabilities are listed below – CVE-2026-43707 – A memory corruption issue that could result…
-
Malicious Chromium Extension Spoofs Perplexity AI to Hijack Browser Searches
A malicious Chromium extension that impersonated the Perplexity AI brand to intercept browser searches and capture keystrokes before delivering users to legitimate search results. The extension, listed as “Search for perplexity ai” (ID flkebkiofojicogddingbdmcmkpbplcd, version 2.2), used Manifest V3 capabilities, declarativeNetRequest (DNR) rules, and a typosquatted domain perplexity-ai[.]online to create a stealthy two”‘hop interception pipeline…
-
KI-Bots: Jede fünfte Webanfrage erfolgt mittlerweile automatisiert
KI-Bots verändern die Vorstellungen von guter Cybersicherheit. Bunny.net analysiert 42,5 Milliarden Anfragen und deckt auf, dass KI-Crawler mittlerweile mit Suchmaschinen konkurrieren und rekordverdächtige Angriffe auf Anwendungsebene verzeichnen. Jede fünfte Anfrage, die bei Websites eingeht, ist mittlerweile automatisiert, da KI-gestützte Bots, KI-Crawler und API-gesteuerter Datenverkehr die Art und Weise, wie Unternehmen mit dem Internet… First seen…

