AI

New “HashJack” attack can hijack AI browsers and assistants

New “HashJack” attack can hijack AI browsers and assistants 2025-11-26 at 14:18 By Zeljka Zorz Security researchers at Cato Networks have uncovered a new indirect prompt injection technique that can force popular AI browsers and assistants to deliver phishing links or disinformation (e.g., incorrect medicine dosage guidance or investment advice), send sensitive data to the […]

New “HashJack” attack can hijack AI browsers and assistants Read More »

AI Agent Security Firm Vijil Raises $17 Million

AI Agent Security Firm Vijil Raises $17 Million 2025-11-25 at 20:32 By Ionut Arghire Focusing on improving the resilience of AI agents, the startup will use the funding to accelerate deployments of its platform. The post AI Agent Security Firm Vijil Raises $17 Million appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

AI Agent Security Firm Vijil Raises $17 Million Read More »

Microsoft Highlights Security Risks Introduced by New Agentic AI Feature

Microsoft Highlights Security Risks Introduced by New Agentic AI Feature 2025-11-24 at 15:32 By Ionut Arghire Without proper security controls, AI agents could perform malicious actions, such as data exfiltration and malware installation. The post Microsoft Highlights Security Risks Introduced by New Agentic AI Feature appeared first on SecurityWeek. This article is an excerpt from

Microsoft Highlights Security Risks Introduced by New Agentic AI Feature Read More »

SquareX and Perplexity Quarrel Over Alleged Comet Browser Vulnerability

SquareX and Perplexity Quarrel Over Alleged Comet Browser Vulnerability 2025-11-21 at 13:20 By Eduard Kovacs SquareX claims to have found a way to abuse a hidden Comet API to execute local commands, but Perplexity says the research is fake. The post SquareX and Perplexity Quarrel Over Alleged Comet Browser Vulnerability appeared first on SecurityWeek. This

SquareX and Perplexity Quarrel Over Alleged Comet Browser Vulnerability Read More »

Runlayer Emerges From Stealth Mode With $11 Million in Funding

Runlayer Emerges From Stealth Mode With $11 Million in Funding 2025-11-21 at 12:46 By Ionut Arghire The company has operated in stealth mode for four months and has signed dozens of customers, including eight unicorns. The post Runlayer Emerges From Stealth Mode With $11 Million in Funding appeared first on SecurityWeek. This article is an

Runlayer Emerges From Stealth Mode With $11 Million in Funding Read More »

Security gap in Perplexity’s Comet browser exposed users to system-level attacks

Security gap in Perplexity’s Comet browser exposed users to system-level attacks 2025-11-20 at 17:56 By Zeljka Zorz There is a serious security problem inside Comet, the AI-powered agentic browser made by Perplexity, SquareX researchers say: Comet’s MCP API allows the browser’s built-in (but hidden from the user) extensions to issue commands directly to a user’s

Security gap in Perplexity’s Comet browser exposed users to system-level attacks Read More »

Secure.com Raises $4.5 Million for Agentic Security

Secure.com Raises $4.5 Million for Agentic Security 2025-11-19 at 20:16 By Ionut Arghire The cybersecurity company has launched Digital Security Teammate (DST), AI agents that investigate, triage, and escalate incidents when needed. The post Secure.com Raises $4.5 Million for Agentic Security appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Secure.com Raises $4.5 Million for Agentic Security Read More »

Two-Year-Old Ray AI Framework Flaw Exploited in Ongoing Campaign

Two-Year-Old Ray AI Framework Flaw Exploited in Ongoing Campaign 2025-11-19 at 15:31 By Ionut Arghire Threat actors are exploiting a two-year-old vulnerability in the Ray AI framework in a fresh campaign that hit numerous clusters, Oligo reports. Maintained by Anyscale, Ray is an open source framework for scaling Python-based AI and ML applications. Ray clusters

Two-Year-Old Ray AI Framework Flaw Exploited in Ongoing Campaign Read More »

AI Is Supercharging Phishing: Here’s How to Fight Back

AI Is Supercharging Phishing: Here’s How to Fight Back 2025-11-19 at 14:19 By Torsten George AI has given cybercriminals the ability to operate like Fortune‑500‑scale marketing departments—except their product is account takeover, data theft, and identity fraud. The post AI Is Supercharging Phishing: Here’s How to Fight Back appeared first on SecurityWeek. This article is

AI Is Supercharging Phishing: Here’s How to Fight Back Read More »

Anthropic Says Claude AI Powered 90% of Chinese Espionage Campaign

Anthropic Says Claude AI Powered 90% of Chinese Espionage Campaign 2025-11-14 at 10:30 By Ionut Arghire A state-sponsored threat actor manipulated Claude Code to execute cyberattacks on roughly 30 organizations worldwide. The post Anthropic Says Claude AI Powered 90% of Chinese Espionage Campaign appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Anthropic Says Claude AI Powered 90% of Chinese Espionage Campaign Read More »

ChatGPT Vulnerability Exposed Underlying Cloud Infrastructure

ChatGPT Vulnerability Exposed Underlying Cloud Infrastructure 2025-11-13 at 17:50 By Eduard Kovacs A researcher found a way to exploit an SSRF vulnerability related to custom GPTs to obtain an Azure access token.  The post ChatGPT Vulnerability Exposed Underlying Cloud Infrastructure appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

ChatGPT Vulnerability Exposed Underlying Cloud Infrastructure Read More »

Sweet Security Raises $75 Million for Cloud and AI Security

Sweet Security Raises $75 Million for Cloud and AI Security 2025-11-12 at 15:42 By Ionut Arghire The cybersecurity startup will use the investment to accelerate global expansion and product innovation. The post Sweet Security Raises $75 Million for Cloud and AI Security appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Sweet Security Raises $75 Million for Cloud and AI Security Read More »

Tenzai Raises $75 Million in Seed Funding to Build AI-Powered Pentesting Platform

Tenzai Raises $75 Million in Seed Funding to Build AI-Powered Pentesting Platform 2025-11-11 at 23:07 By Mike Lennon Tel Aviv, Israel based Tenzai has developed an AI-driven platform for penetration testing, which it says can continuously identify and address vulnerabilities. The post Tenzai Raises $75 Million in Seed Funding to Build AI-Powered Pentesting Platform appeared first

Tenzai Raises $75 Million in Seed Funding to Build AI-Powered Pentesting Platform Read More »

‘Whisper Leak’ LLM Side-Channel Attack Infers User Prompt Topics

‘Whisper Leak’ LLM Side-Channel Attack Infers User Prompt Topics 2025-11-11 at 14:10 By Ionut Arghire Attackers intercepting network traffic can determine the conversation topic with a chatbot despite end-to-end encrypted communication. The post ‘Whisper Leak’ LLM Side-Channel Attack Infers User Prompt Topics appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

‘Whisper Leak’ LLM Side-Channel Attack Infers User Prompt Topics Read More »

Many Forbes AI 50 Companies Leak Secrets on GitHub

Many Forbes AI 50 Companies Leak Secrets on GitHub 2025-11-10 at 18:35 By Eduard Kovacs Wiz found the secrets and warned that they can expose training data, organizational structures, and private models. The post Many Forbes AI 50 Companies Leak Secrets on GitHub appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Many Forbes AI 50 Companies Leak Secrets on GitHub Read More »

Data Exposure Vulnerability Found in Deep Learning Tool Keras

Data Exposure Vulnerability Found in Deep Learning Tool Keras 2025-11-07 at 15:41 By Ionut Arghire The vulnerability is tracked as CVE-2025-12058 and it can be exploited for arbitrary file loading and conducting SSRF attacks. The post Data Exposure Vulnerability Found in Deep Learning Tool Keras appeared first on SecurityWeek. This article is an excerpt from

Data Exposure Vulnerability Found in Deep Learning Tool Keras Read More »

Researchers Hack ChatGPT Memories and Web Search Features

Researchers Hack ChatGPT Memories and Web Search Features 2025-11-06 at 19:09 By Eduard Kovacs Tenable researchers discovered seven vulnerabilities, including ones affecting the latest GPT model. The post Researchers Hack ChatGPT Memories and Web Search Features appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Researchers Hack ChatGPT Memories and Web Search Features Read More »

Malware Now Uses AI During Execution to Mutate and Collect Data, Google Warns

Malware Now Uses AI During Execution to Mutate and Collect Data, Google Warns 2025-11-05 at 17:25 By Eduard Kovacs Google has released a report describing the novel ways in which malware has been using AI to adapt and evade detection. The post Malware Now Uses AI During Execution to Mutate and Collect Data, Google Warns

Malware Now Uses AI During Execution to Mutate and Collect Data, Google Warns Read More »

Zscaler Acquires AI Security Company SPLX

Zscaler Acquires AI Security Company SPLX 2025-11-04 at 12:55 By Eduard Kovacs SPLX red teaming, asset management, and threat inspection technology will enable Zscaler to expand its Zero Trust Exchange platform. The post Zscaler Acquires AI Security Company SPLX appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Zscaler Acquires AI Security Company SPLX Read More »

How Software Development Teams Can Securely and Ethically Deploy AI Tools

How Software Development Teams Can Securely and Ethically Deploy AI Tools 2025-11-03 at 18:13 By Matias Madou To deploy AI tools securely and ethically, teams must balance innovation with accountability—establishing strong governance, upskilling developers, and enforcing rigorous code reviews. The post How Software Development Teams Can Securely and Ethically Deploy AI Tools appeared first on

How Software Development Teams Can Securely and Ethically Deploy AI Tools Read More »

Scroll to Top