AI

AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code

AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code 2026-09-18 at 15:45 By Eduard Kovacs Hacktron researchers earned a bug bounty after demonstrating access to OpenAI employee accounts.  The post AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code Read More »

Microsoft Patches 18 Vulnerabilities in AI, Cloud Products

Microsoft Patches 18 Vulnerabilities in AI, Cloud Products 2026-09-18 at 13:57 By Eduard Kovacs Microsoft fixed vulnerabilities across Azure and AI-branded products, with privilege escalation flaws accounting for the majority. The post Microsoft Patches 18 Vulnerabilities in AI, Cloud Products appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft Patches 18 Vulnerabilities in AI, Cloud Products Read More »

Zero-click RCE vulnerability hit four major AI coding agents, two remain unpatched

Zero-click RCE vulnerability hit four major AI coding agents, two remain unpatched 2026-09-18 at 11:49 By Sinisa Markovic Four major AI coding agents, Claude Code, Codex, GitHub Copilot and Gemini CLI, all share the same zero-click RCE vulnerability, one that could give an attacker the same reach into a company’s systems and data as the […]

Zero-click RCE vulnerability hit four major AI coding agents, two remain unpatched Read More »

Hardcoded MCP credentials found in public GitHub files

Hardcoded MCP credentials found in public GitHub files 2026-09-18 at 08:30 By Anamarija Pogorelec Hardcoded API keys, access tokens and other credentials used by AI coding tools have been found in publicly accessible MCP configuration files on GitHub, according to research from Hush Security’s The State of MCP Configuration: The Identity Security Gaps report. The […]

Hardcoded MCP credentials found in public GitHub files Read More »

OpenAI Says Its Models Searched GitHub for Leaked API Keys During Training

OpenAI Says Its Models Searched GitHub for Leaked API Keys During Training 2026-09-17 at 18:45 By Eduard Kovacs OpenAI published a framework for disclosing model misalignment alongside six reports describing problematic behavior. The post OpenAI Says Its Models Searched GitHub for Leaked API Keys During Training appeared first on SecurityWeek. This article is an excerpt […]

OpenAI Says Its Models Searched GitHub for Leaked API Keys During Training Read More »

Scammers leave AI fingerprints all over fake antivirus renewal page

Scammers leave AI fingerprints all over fake antivirus renewal page 2026-09-17 at 13:10 By Sinisa Markovic AI appears to be helping scammers with little web development skill build convincing fake antivirus-renewal pages, Malwarebytes found. The researchers came across a scam page impersonating Avast, aimed at users in Belgium, that was more polished than most sites […]

Scammers leave AI fingerprints all over fake antivirus renewal page Read More »

Spain reports first data breach involving autonomous AI agent

Spain reports first data breach involving autonomous AI agent 2026-09-17 at 11:39 By Sinisa Markovic Spain’s data protection authority (AEPD) has reported its first data breach blamed on an AI agent acting on its own, after the system reportedly logged into a company’s network, found a way to alter personal records, and pulled invoice data. […]

Spain reports first data breach involving autonomous AI agent Read More »

AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals

AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals 2026-09-17 at 10:41 By Eduard Kovacs New research from Irregular shows AI agents can retrain and redeploy their own underlying models during routine maintenance tasks. The post AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals appeared first on SecurityWeek. […]

AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals Read More »

The AI security question leaders should be asking instead

The AI security question leaders should be asking instead 2026-09-17 at 08:30 By Mirko Zorz In this Help Net Security interview, Frederic Bull, Security Officer at Gremlin, talks about what AI means for security teams. The conversation covers why asking what data a model was trained on is only part of the picture, and why […]

The AI security question leaders should be asking instead Read More »

First Agentic AI Data Breach Reported to Spanish Regulator

First Agentic AI Data Breach Reported to Spanish Regulator 2026-09-16 at 19:39 By Kevin Townsend Spanish regulators say an AI agent chained together a successful login, vulnerability discovery, and access to personal data in a potential milestone for autonomous cyberattacks. The post First Agentic AI Data Breach Reported to Spanish Regulator appeared first on SecurityWeek. […]

First Agentic AI Data Breach Reported to Spanish Regulator Read More »

EU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media

EU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media 2026-09-16 at 17:15 By Kevin Townsend Ursula von der Leyen warns that advanced AI could unleash hacking on an unprecedented scale as Europe prepares new protections against social media’s “capture” of children. The post EU Chief Warns of AI-Powered Hacking, Moves to Rein […]

EU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media Read More »

AIUC Raises $40 Million to Certify Enterprise AI Agents

AIUC Raises $40 Million to Certify Enterprise AI Agents 2026-09-16 at 16:38 By Ionut Arghire The company provides a standard for AI systems, testing them against risks such as jailbreaks, prompt injections, and unauthorized actions. The post AIUC Raises $40 Million to Certify Enterprise AI Agents appeared first on SecurityWeek. This article is an excerpt […]

AIUC Raises $40 Million to Certify Enterprise AI Agents Read More »

Self-improving AI should slow down, von der Leyen tells EU lawmakers

Self-improving AI should slow down, von der Leyen tells EU lawmakers 2026-09-16 at 14:28 By Mirko Zorz European Commission President Ursula von der Leyen wants frontier AI development slowed, and said on Wednesday that she will invite the leading AI labs to discuss how the EU can support their own efforts to do that. In […]

Self-improving AI should slow down, von der Leyen tells EU lawmakers Read More »

The modern attack chain: Rethinking Google Workspace security in the age of AI

The modern attack chain: Rethinking Google Workspace security in the age of AI 2026-09-16 at 08:00 By Help Net Security Over the past two months, I’ve written about the Vercel breach and the Composio breach separately. Both offer lessons to learn on their own. But reading them together, I keep coming back to the same […]

The modern attack chain: Rethinking Google Workspace security in the age of AI Read More »

Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech Giants Follow?

Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech Giants Follow? 2026-09-15 at 23:24 By Associated Press Microsoft agreed to adopt guardrails and privacy standards for its AI in schools, as negotiated with the American Federation of Teachers. The post Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech […]

Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech Giants Follow? Read More »

Exein Secures $270M at $1.7B Valuation for Physical AI Security

Exein Secures $270M at $1.7B Valuation for Physical AI Security 2026-09-15 at 18:45 By Ionut Arghire The cybersecurity startup is building a proprietary foundation model and plans to accelerate global expansion. The post Exein Secures $270M at $1.7B Valuation for Physical AI Security appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Exein Secures $270M at $1.7B Valuation for Physical AI Security Read More »

Uncensored AI sold on hacking forum as alternative to ChatGPT and Claude jailbreaks

Uncensored AI sold on hacking forum as alternative to ChatGPT and Claude jailbreaks 2026-09-15 at 15:32 By Sinisa Markovic A new AI subscription service called Luciferus is being marketed on a hacking forum as an alternative to jailbreaking ChatGPT or Claude, Sophos found. The Counter Threat Unit (CTU) spotted the advertisement on August 24 on […]

Uncensored AI sold on hacking forum as alternative to ChatGPT and Claude jailbreaks Read More »

Microsoft sets security and safety rules for its AI models

Microsoft sets security and safety rules for its AI models 2026-09-15 at 13:50 By Anamarija Pogorelec Microsoft AI has published the first draft of its Humanist AI Code of Conduct, a training manual outlining how it develops AI models and intends them to behave during deployment. The draft is open for public consultation for six […]

Microsoft sets security and safety rules for its AI models Read More »

Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints

Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints 2026-09-15 at 12:40 By Eduard Kovacs The Humanist AI Code of Conduct draws a line between defensive cyber research and operational attack capability. The post Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints appeared first on SecurityWeek. […]

Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints Read More »

Your employees are already using AI tools you never approved

Your employees are already using AI tools you never approved 2026-09-15 at 08:00 By Anamarija Pogorelec Seventy-four percent of respondents report departmental or scaled AI adoption at their organizations, including within individual teams or departments, across business functions, and as part of processes and operations, according to the latest OneTrust 2026 AI-Ready Governance Report. The […]

Your employees are already using AI tools you never approved Read More »

Scroll to Top