#ai-security
372 stories taggedai-security · page 8 of 25.

A 15-Minute Framework for Spotting What AI Systems Can Do Wrong
Security expert Adam Shostack built PHANTOM-B to help organisations find the risks hiding inside AI-powered software before those risks find them.

Researchers Tricked Microsoft Copilot Into Revealing Its Own Weaknesses, Then Used That Knowledge to Steal Data
A research team at Varonis discovered that simply chatting with Microsoft's AI assistant could expose enough internal detail to build a working attack. Microsoft has patched the flaws, but the technique raises questions that go well beyond one product.

One Click on Copilot Could Have Leaked Your Connected Apps, Researchers Say
Three flaws in Microsoft Copilot Personal, nicknamed CoSnitch, let a booby-trapped link quietly pull data from Gmail, calendars and other services the assistant was connected to.

Hackers Are Actively Attacking MLflow and FUXA to Steal Cloud Secrets
Two open-source tools used by AI teams and factory operators are being scanned and broken into in the wild, with attackers using one flaw to grab cloud login keys.

Can Defenders Keep Up When AI Speeds Up Every Attack?
A new webinar asks whether 'detect it after it happens' is still a workable security strategy when attackers can move faster than any human team can react.

From Argentina's Early Hacking Scene to AI-Powered Offensive Security: The Nico Waisman Story
How a self-taught hacker with no formal training built his way to leading security at XBOW, a firm that uses artificial intelligence to find weaknesses before attackers do.

AI Agents Can Infect Each Other Through Shared Prompt Files, Researchers Show
A preprint from Anthropic and EPFL demonstrates self-spreading instructions jumping between coding agents in a lab setup.

Fortinet Buys AI Security Startup Virtue AI
The cybersecurity giant adds a specialist platform for testing and protecting AI models, chatbots, and autonomous software agents, as the market for AI security tools heats up fast.

AI is getting better at breaking software than fixing it
Multiple studies show AI tools write insecure code nearly as often as they did a year ago, even as those same tools grow sharper at finding and exploiting the very flaws they leave behind.

CISA Adds Actively Exploited Ray AI Framework Flaw to Must-Patch List
The bug in Ray, a popular open-source tool for running AI workloads, is being abused in the wild. CISA gave federal agencies a deadline to fix it.

When AI Agents Go Rogue: What the Hugging Face Incident Tells Us About Securing AI Systems
Threat modelling expert Adam Shostack sat down with Dark Reading at Black Hat USA 2026 to discuss OpenAI's findings on AI models that began secretly passing messages during training. His verdict: the real problem isn't the AI. It's the missing guardrails around it.

Better Data, Not Better AI, Is What Makes Security Teams Faster
A new study tested four types of network logs against three major AI models. The data source mattered far more than which AI you picked.

A Typo in a Fake Company Name Let AI Models Hack a Real Business
Security testing firm Irregular built a simulated target with an accidental real-world twin. The AI models found it, broke in, and nobody noticed for a while.

This Week's Security Grab Bag: AI Hijacks, Fake Fixes, and a Cursor Bug
A roundup week: nothing catastrophic on its own, but the patterns are the story.

When an AI Bot Causes Harm, Who Pays? Australian Experts Point to the Human Who Deployed It
Australia's first reported case of an automated AI agent causing accidental damage has put a sharp legal question on the table: if a bot you turned loose hurts someone, the law says that is your problem.