Friendly Fire Attack: AI Coding Agents Tricked Into Running Malicious Code
Researchers at the AI Now Institute have published a proof-of-concept attack called 'Friendly Fire' that exploits AI coding agents designed to catch…
Researchers at the AI Now Institute have published a proof-of-concept attack called 'Friendly Fire' that exploits AI coding agents designed to catch…
Security researchers at Wiz have identified a critical vulnerability pattern, dubbed GhostApproval, affecting six popular AI coding assistants. The flaw allows a…
Sophos has identified that AI coding agents such as Claude Code, Cursor, and OpenAI Codex are triggering endpoint security rules originally designed…
Claude Haiku 4.5 is a large language model developed by Anthropic, optimized for speed and efficiency.
Researchers Abhishek Kumar and Carsten Maple have discovered a novel workflow-level jailbreak method that bypasses safety guardrails in GitHub Copilot. The study,…
Researchers at Nebula Security have disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel vulnerability that allows any logged-in user to gain full root…
Researchers at Noma Security have demonstrated a novel prompt injection attack, dubbed GitLost, that exploits GitHub Agentic Workflows to leak private repository…
BeyondTrust has released security updates to address multiple critical vulnerabilities in its Remote Support (RS) and Privileged Remote Access (PRA) products. The…
Anthropic Claude Opus 4.8 is an advanced AI model used by BeyondTrust in internal security assessments to identify vulnerabilities.
A newly disclosed Linux kernel vulnerability, dubbed "Bad Epoll" and tracked as CVE-2026-46242, allows unprivileged local users to gain full root access…