Mobile-Agent-v3: Open-Source Android AI Agent Framework
An open-source mobile AI agent framework vulnerable to screenshot tampering, command injection, and credential theft via overlay attacks.
An open-source mobile AI agent framework vulnerable to screenshot tampering, command injection, and credential theft via overlay attacks.
An open-source Android AI agent framework with over 25,000 GitHub stars. Vulnerable to multiple attacks including broadcast interception and command injection.
An open-source Android AI agent framework that streams screenshots over exec-out, avoiding file race conditions, but still vulnerable to other attack vectors.
Google's Antigravity coding agent was used in the ADK workflows and could be manipulated via prompt injection to execute arbitrary commands, leading…
GitHub Copilot CLI was successfully used in Manifold Security's proof of concept to demonstrate the Azure DevOps MCP server vulnerability, showing the…
Security firm Sysdig has identified what it believes is the first ransomware attack fully orchestrated by an AI agent, dubbed JADEPUFFER. The…
An AI-agent-driven operator first documented by Sysdig. Deployed ENCFORGE ransomware against Langflow servers, using Docker socket for host breakout. Previously used throwaway…
Sentinel is a cloud-native SIEM that can log and analyze AI agent actions to detect anomalies like data exfiltration.
Microsoft has issued a warning about a new attack vector targeting AI agents that use the Model Context Protocol (MCP). Attackers can…
Copilot Studio allows building custom AI agents that can reach into business systems, increasing the attack surface for poisoned tool descriptions.