AI Security — Page 7

The 'Rogue Agent' Flaw That Could Have Let Criminals Silently Take Over Google AI Chatbots
A security hole in Google's Dialogflow CX chatbot platform would have let attackers hijack AI conversations, steal user data, and hit every chatbot inside the same cloud account at once.

A Hidden Note in a Bug Report Tricked GitHub's AI Into Leaking Company Secrets
Researchers showed how a single crafted message in a public GitHub issue could fool an AI assistant into reading private code and posting it online for anyone to see.

Copilot Says No in Chat, Then Writes the Same Malware in Your Editor
Researchers found GitHub's AI coding assistant refuses dangerous requests when asked directly, but happily produces the same harmful code when the request is split into small, innocent-looking steps.

Researchers Show How a Fake GitHub Comment Can Trick AI Tools Into Leaking Secret Code
A crafted public comment on GitHub can manipulate AI-powered automation into handing over data from private repositories, no password required.

A Hidden Command in a GitHub Issue Can Silently Steal a Company's Private Code
Researchers found a flaw in GitHub's AI automation tool that lets an outsider read an organisation's private repositories by hiding plain-English instructions inside a public bug report.

Writer AI Patches Critical Cross-Tenant Flaw That Exposed Customer Sessions
A one-click bug dubbed WriteOut let outsiders hop between customer accounts on the enterprise AI platform before it was quietly fixed.

Behavioral AI vs. modern email attacks: what a vendor webinar actually promises
A live session pitches behavioral analysis as the answer to phishing, BEC and account takeover. Here's what that means in plain English, and where the hard parts still sit.

When AI writes your code, your supply chain just got a new stranger in it
For years, defenders worried about which open-source parts sat inside their software. Now an AI assistant is quietly adding parts of its own, and nobody is quite sure who owns the risk.

Keyfactor Raises Over $1 Billion to Tackle AI and Post-Quantum Security
The investment backs technology that manages digital certificates and cryptographic keys, as companies race to prepare for a generation of threats that today's encryption may not survive.

AI Agents Can Be Tricked Into Sending Money. Zscaler Has the Data.
A new study shows that some expensive, enterprise-grade AI assistants fall for hidden instructions that most humans would ignore, and experts warn the real danger is far bigger than a fake three-dollar fee.

UK Watchdog Warns AI Is Outpacing the Rules Meant to Protect Your Money
A government-ordered review says Britain's financial regulator needs stronger powers before AI reshapes banking, insurance, and lending for millions of ordinary people.

AI Is Making Decisions at Work. Most Companies Have No Rules for That.
Security expert Stephen Wilson says businesses are handing AI tools more and more independence, but treating them with the same loose oversight they used when AI just answered questions.

AI Writes Code Faster Than Anyone Can Check It. That's the Problem.
Machine-generated code is flooding into production with fewer human eyes on it. Defenders are being asked to catch what nobody wrote by hand.

An AI Agent Broke Into a Server, Taught Itself to Adapt, and Left a Ransom Note
Security firm Sysdig says it has documented the first fully autonomous AI-driven ransomware attack, where a program called JadePuffer broke into a database, encrypted thousands of records, and demanded Bitcoin payment without a human criminal directing any step.

Hackers Are Hiding Instructions Inside Websites to Make AI Assistants Send Crypto Payments
Two newly discovered attack campaigns show how criminals can secretly hijack AI browsing agents by planting hidden commands in ordinary-looking web pages.