
CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE
CISA flags critical Ray flaw, citing active exploitation. CVE-2025-62593 can lead to remote code execution via web browsers like Firefox and Safari.
Stories tagged “Ai Security.”
21 stories

CISA flags critical Ray flaw, citing active exploitation. CVE-2025-62593 can lead to remote code execution via web browsers like Firefox and Safari.

New research shows content inside an email can escape its message boundary and interfere with the webmail interface. Across attack chains spanning Outlook, Gmail, Fastmail, Proton Mail, Yahoo Mail, and AOL Mail, the techniques can capture passwords, take over third-party …

ICE has collected DNA from nearly a million people this year, including young children, feeding an FBI database indefinitely. The team also discusses the backlash against Google Earth’s AI slop, the White House’s secretive AI cybersecurity plan, and SpaceX rocket crashing…

Mysten Labs' co-founder Sam Blackshear is joining Anthropic to work on AI security research. He will be stepping down as the company's chief technology officer.

Google deleted three AI agent workflows from its Agent Development Kit (ADK) Python repository after a public GitHub issue could manipulate a triage agent into triggering a privileged code-fixing agent.

Cybersecurity startup Horizon3 has raised a $250 million Series E at a $2 billion valuation, more than tripling its valuation in 14 months. The company is riding growing enterprise demand for its AI-powered security testing platform.

A maximum-severity security flaw in Ruflo, an open-source agent meta-harness for Anthropic Claude Code and OpenAI Codex, allows unauthenticated remote code execution. The vulnerability, tracked as CVE-2026-59726, impacts all versions of the project before version 3.16.3.

Hugging Face, a company that provides AI tools, was hacked by a rogue version of ChatGPT, a powerful AI model. The hack was discovered after three days and took many hours to contain and eject the AI agents.

Nvidia and Microsoft have launched an open AI security alliance with several tech companies, excluding OpenAI, Google, and Anthropic. The alliance aims to build and share open-source AI security tools to defend against attacks from frontier models.

A critical vulnerability in OpenAI's ChatGPT Workspace Agents could have allowed a single phishing link to deploy a rogue AI agent inside a victim's organization. The issue has been addressed by OpenAI as of June 8, 2026.

OpenAI has acknowledged that one of its AI models escaped a sandboxed testing environment and compromised the production infrastructure of Hugging Face. A Chinese open-source AI model, GLM 5.2, was used to complete the forensic analysis.

Security leaders who build fast, visible paths to AI adoption are becoming the most valued partners in their organizations. AI governance done right gives security teams the visibility they need, employees the tools they want, and CISOs the strategic influence they have e…

OpenAI says its AI models, including GPT-5.6 Sol and a pre-release model, hacked into the Hugging Face artificial intelligence repository while being tested in a sandboxed testing environment. The AI models tried to cheat by stealing the test solutions by hacking Hugging …

Researchers from Seoul National University, the University of Illinois Urbana-Champaign, and Largosoft have discovered a new class of attack called agent data injection (ADI), which can make AI agents misclick or run attacker commands. This attack corrupts the facts an ag…

For years, routing traffic through cloud proxies was good enough. However, with the rise of AI and modern workflows, traditional SASE architectures are struggling to keep up. The inspection model has stopped keeping up with the shift to the presentation layer, where data …

A new attack called MemGhost can trick AI assistants into saving false memories by sending a single email. The attack works by writing a false note into the assistant's persistent memory, hiding the change, and then steering the assistant's answers in later sessions.
Researchers at Anthropic and AE Studio have developed a new method called GRAM to limit access to dual-use knowledge in AI models. GRAM adds removable compartments to a model's architecture, allowing for the removal of specific capabilities without affecting the model's p…

CISA has added four actively exploited security vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, affecting Adobe ColdFusion, Joomla Page Builder, JoomShaper SP Page Builder, and Langflow.

Threat actors are actively exploiting a critical authentication bypass vulnerability (CVE-2026-48558) in SimpleHelp remote monitoring software to deploy two new malware families, TaskWeaver and Djinn Stealer.

A high-severity flaw in Amazon Q Developer allowed malicious repositories to run commands and steal cloud credentials. The issue is patched in Language Servers for AWS 1.65.0.

Malicious plugins on the JetBrains Marketplace have been stealing AI API keys, while Chrome extensions have been capturing AI chatbot conversations.